No user description was provided for this bug report given that it was related to handled exceptions in scan with id a76693edeb
Version Information
Python version: 2.7.3 (default, Jul 24 2012, 10:05:38) [GCC 4.7.0 20120507 (Red Hat 4.7.0-5)]
GTK version: 2.24.13
PyGTK version: 2.24.0
w3af version:
w3af - Web Application Attack and Audit Framework
Version: 1.5
Revision: 2371550670 - 13 Jun 2013 13:45
Author: Andres Riancho and the w3af team.
Traceback
An exception was found while running audit.lfi on "http://domain/%%75%46%46%30e\%uF%463%32%%75%46F4%39%uFF%349%uF%46%34%34%%75%46%461%39%u%46F13%uF%46%32d%%75%46%464%65%uF%46%348%u%46%46%31%35%%75%46F26%%75%46F2%32%u%46F%356%%75F%46%353%%75%46%4659%%75%46%46%358%u%46%46%33%30%u%46F%324\%%75FF0%65\%uF%460%65%uFF%2d%312%%75%46F-11%%75FF%30e\%u%46F0e\ | Method: GET | Parameters: (z41Xx="Y", z41Xx="2", z41Xx="7", z41Xx="J", z41Xx="R", z41Xx="R", z41Xx="u", z41Xx="E")". The exception was: "'str' object does not support item assignment" at mutant.py:_create_mutants_worker():274.The full traceback is:
File "/home/user/w3af/core/controllers/core_helpers/consumers/audit.py", line 111, in _audit
plugin.audit_with_copy(fuzzable_request, orig_resp)
File "/home/user/w3af/core/controllers/plugins/audit_plugin.py", line 126, in audit_with_copy
return self.audit(fuzzable_request.copy(), orig_resp)
File "/home/user/w3af/plugins/audit/lfi.py", line 69, in audit
mutants = create_mutants(freq, local_files, orig_resp=orig_response)
File "/home/user/w3af/core/data/fuzzer/fuzzer.py", line 55, in create_mutants
fuzzer_config)
File "/home/user/w3af/core/data/fuzzer/mutants/querystring_mutant.py", line 51, in create_mutants
append, fuzzer_config)
File "/home/user/w3af/core/data/fuzzer/mutants/mutant.py", line 274, in _create_mutants_worker
dc_copy[pname][element_index] = mutant_str
User description
No user description was provided for this bug report given that it was related to handled exceptions in scan with id a76693edeb
Version Information
Traceback
Enabled Plugins