No user description was provided for this bug report given that it was related to handled exceptions in scan with id 0b7ecf6ee7
Version Information
Python version: 2.7.4 (default, Apr 19 2013, 18:28:01) [GCC 4.7.3]
GTK version: 2.24.17
PyGTK version: 2.24.0
w3af version:
w3af - Web Application Attack and Audit Framework
Version: 1.5
Revision: 7731e36eb4 - 10 6月 2013 21:56
Author: Andres Riancho and the w3af team.
Traceback
An exception was found while running audit.csrf on "http://domain/search.php | Method: GET | Parameters: (keyword="提醒您请输入您要搜索...")". The exception was: "math domain error" at csrf.py:is_csrf_token():246.The full traceback is:
File "/home/user/Program/w3af/core/controllers/core_helpers/consumers/audit.py", line 111, in _audit
plugin.audit_with_copy(fuzzable_request, orig_resp)
File "/home/user/Program/w3af/core/controllers/plugins/audit_plugin.py", line 126, in audit_with_copy
return self.audit(fuzzable_request.copy(), orig_resp)
File "/home/user/Program/w3af/plugins/audit/csrf.py", line 85, in audit
if self._find_csrf_token(freq):
File "/home/user/Program/w3af/plugins/audit/csrf.py", line 169, in _find_csrf_token
if self.is_csrf_token(param_name, element_value):
File "/home/user/Program/w3af/plugins/audit/csrf.py", line 246, in is_csrf_token
entropy = floor(log(total) * (len(value) / log(2)))
User description
No user description was provided for this bug report given that it was related to handled exceptions in scan with id 0b7ecf6ee7
Version Information
Traceback
Enabled Plugins