Comments (5)
好的,已经收到反馈了,非常感谢师傅的建议😍
from springboot-scan.
但是我没有理解,你写的代码当中,为什么还要多Get请求一次?
直接整体请求一次拿到需要的数据就行了,这样会更好吧。。
try:
requests.packages.urllib3.disable_warnings()
r = requests.get(url=url, headers=newheader, timeout=6, allow_redirects=False, verify=False) # 设置超时6秒
sleep(int(float(sleeps)))
if r.text != None:
if ((r.status_code == 200) and ('need login' not in r.text) and ('禁止访问' not in r.text) and (len(r.content) != 3318) and ('无访问权限' not in r.text) and ('认证失败' not in r.text)):
cprint("[+] 状态码%d" % r.status_code + ' ' + "信息泄露URL为:" + u + ' ' + "页面长度为:" + str(len(r.content)),"red")
f2 = open("output.txt", "a")
f2.write(u + '\n')
f2.close()
elif(r.status_code == 200):
cprint("[+] 状态码%d" % r.status_code + ' ' + "但无法获取信息 URL为:" + u + ' ' + "页面长度为:" + str(len(r.content)),"magenta")
else:
cprint("[-] 状态码%d" % r.status_code + ' ' + "无法访问URL为:" + u ,"yellow")
except KeyboardInterrupt:
print("Ctrl + C 手动终止了进程")
sys.exit()
except Exception as e:
cprint("[-] URL为 " + u + " 的目标积极拒绝请求,予以跳过!", "magenta")
break
from springboot-scan.
但是我没有理解,你写的代码当中,为什么还要多Get请求一次? 直接整体请求一次拿到需要的数据就行了,这样会更好吧。。
try: requests.packages.urllib3.disable_warnings() r = requests.get(url=url, headers=newheader, timeout=6, allow_redirects=False, verify=False) # 设置超时6秒 sleep(int(float(sleeps))) if r.text != None: if ((r.status_code == 200) and ('need login' not in r.text) and ('禁止访问' not in r.text) and (len(r.content) != 3318) and ('无访问权限' not in r.text) and ('认证失败' not in r.text)): cprint("[+] 状态码%d" % r.status_code + ' ' + "信息泄露URL为:" + u + ' ' + "页面长度为:" + str(len(r.content)),"red") f2 = open("output.txt", "a") f2.write(u + '\n') f2.close() elif(r.status_code == 200): cprint("[+] 状态码%d" % r.status_code + ' ' + "但无法获取信息 URL为:" + u + ' ' + "页面长度为:" + str(len(r.content)),"magenta") else: cprint("[-] 状态码%d" % r.status_code + ' ' + "无法访问URL为:" + u ,"yellow") except KeyboardInterrupt: print("Ctrl + C 手动终止了进程") sys.exit() except Exception as e: cprint("[-] URL为 " + u + " 的目标积极拒绝请求,予以跳过!", "magenta") break
from springboot-scan.
收到,已经加上了,感谢师傅的反馈😘
from springboot-scan.
那应该没问题了哈哈,如果还有问题,欢迎师傅继续提Issues,感谢师傅😍
from springboot-scan.
Related Issues (15)
- error HOT 1
- SpringBoot-Scan的一些建议 HOT 3
- CVE_2022_22947漏报 HOT 1
- plz add En Lange and support yaml file HOT 1
- 缺少代理 HOT 1
- 扫出来了这个webjars/springfox-swagger-ui/swagger-ui-standalone-preset.js?v=2.9.2请问有危害吗没看出来怎么利用 HOT 3
- 关于指纹识别的一个疑问 HOT 4
- 考虑增加多线程,面对大批量目标,可以提高扫描速率 HOT 4
- CVE-2022-22965漏洞利用的一些问题 HOT 2
- 扫描报错 HOT 2
- 师傅能不能CVE漏洞增加命令交互功能,默认只执行id,想执行其他命令 HOT 2
- 安装库后,还是报错 HOT 7
- 有一个IP忘记打码了 HOT 1
- 血书一个自定义请求头功能 HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from springboot-scan.