emo-crab / observer_ward

侦查守卫(observer_ward)Web应用和服务指纹识别工具
https://emo-crab.github.io/observer_ward/
GNU General Public License v3.0
1.26k stars 135 forks source link

没法自动调用模板是啥原因 #152

Closed j4vaovo closed 1 year ago

j4vaovo commented 1 year ago
root@10-11-9-33:~/vulhub-master/fastjson/1.2.47-rce# ./observer_ward -t http://152.32.236.83:8090 --json result.json --plugins default --irr
 __     __     ______     ______     _____
/\ \  _ \ \   /\  __ \   /\  == \   /\  __-.
\ \ \/ ".\ \  \ \  __ \  \ \  __<   \ \ \/\ \
 \ \__/".~\_\  \ \_\ \_\  \ \_\ \_\  \ \____-
  \/_/   \/_/   \/_/\/_/   \/_/ /_/   \/____/
Community based web fingerprint analysis tool.
_____________________________________________
:  https://github.com/0x727/FingerprintHub  :
:  https://github.com/0x727/ObserverWard    :
 --------------------------------------------
[ http://152.32.236.83:8090 |["spring-framework", "alibaba-fastjson"] | 28 | 200 |  ]
[] [] | [] 
Important technology:
+---------------------------+------------------+--------+-------------+-------+----------+---------+
| url                       | name             | length | status_code | title | priority | plugins |
+===========================+==================+========+=============+=======+==========+=========+
| http://152.32.236.83:8090 | spring-framework | 28     | 200         |       | 3        |         |
|                           | alibaba-fastjson |        |             |       |          |         |
+---------------------------+------------------+--------+-------------+-------+----------+---------+

`root@10-11-9-33:~/vulhub-master/fastjson/1.2.47-rce# nuclei -u http://152.32.236.83:8090 -tags "fastjson"

                     __     _
   ____  __  _______/ /__  (_)
  / __ \/ / / / ___/ / _ \/ /
 / / / / /_/ / /__/ /  __/ /
/_/ /_/\__,_/\___/_/\___/_/   v2.9.4

                projectdiscovery.io

[WRN] Found 10 templates loaded with deprecated protocol syntax, update before v2.9.5 for continued support.
[INF] Current nuclei version: v2.9.4 (latest)
[INF] Current nuclei-templates version: v9.5.0 (latest)
[INF] New templates added in latest release: 62
[INF] Templates loaded for current scan: 9
[INF] Targets loaded for current scan: 1
[INF] Using Interactsh Server: oast.pro
[fastjson-1-2-47-rce] [http] [critical] http://152.32.236.83:8090/
root@10-11-9-33:~/vulhub-master/fastjson/1.2.47-rce# ./observer_ward -t http://152.32.236.83:8090 --path /root/nuclei-templates/
 __     __     ______     ______     _____
/\ \  _ \ \   /\  __ \   /\  == \   /\  __-.
\ \ \/ ".\ \  \ \  __ \  \ \  __<   \ \ \/\ \
 \ \__/".~\_\  \ \_\ \_\  \ \_\ \_\  \ \____-
  \/_/   \/_/   \/_/\/_/   \/_/ /_/   \/____/
Community based web fingerprint analysis tool.
_____________________________________________
:  https://github.com/0x727/FingerprintHub  :
:  https://github.com/0x727/ObserverWard    :
 --------------------------------------------
[ http://152.32.236.83:8090 |["alibaba-fastjson", "spring-framework"] | 28 | 200 |  ]
[] [] | [] 
Important technology:
+---------------------------+------------------+--------+-------------+-------+----------+---------+
| url                       | name             | length | status_code | title | priority | plugins |
+===========================+==================+========+=============+=======+==========+=========+
| http://152.32.236.83:8090 | alibaba-fastjson | 28     | 200         |       | 3        |         |
|                           | spring-framework |        |             |       |          |         |
+---------------------------+------------------+--------+-------------+-------+----------+---------+
root@10-11-9-33:~/vulhub-master/fastjson/1.2.47-rce# 
j4vaovo commented 1 year ago

@cn-kali-team nuclei -json 更新成-jsonl了

cn-kali-team commented 1 year ago

我今天更新一下