ice-doom / EyeJo

EyeJo是一款自动化资产风险评估平台,可以协助甲方安全人员或乙方安全人员对授权的资产中进行排查,快速发现存在的薄弱点和攻击面。
454 stars 80 forks source link

使用pocsuite3的poc无法检测出漏洞 #5

Closed TheTh1nk3r closed 3 years ago

TheTh1nk3r commented 3 years ago

漏洞确定存在,但是在使用poc检测的时候无法检测,后台有这个报错 [2021-05-10 17:35:55,225: ERROR/ForkPoolWorker-2] Task exception was never retrieved future: <Task finished name='Task-20' coro=<run_pocsuite() done, defined at /root/eyejo/plugin/poc_verify.py:27> exception=UnboundLocalError("local variable 'result' referenced before assignment")> Traceback (most recent call last): File "/root/eyejo/plugin/poc_verify.py", line 39, in run_pocsuite new_results = [] UnboundLocalError: local variable 'result' referenced before assignment [2021-05-10 17:35:55,226: INFO/ForkPoolWorker-2] EyeJoTask[2074aefb-3940-4c72-b4d5-d40a8e2c26fb]: finish poc_scan time: 0.21214699745178223 [2021-05-10 17:35:55,229: INFO/ForkPoolWorker-2] Task EyeJoTask[2074aefb-3940-4c72-b4d5-d40a8e2c26fb] succeeded in 0.24784187402110547s: None

ice-doom commented 3 years ago

项目docker目录更新了,sql文件少了个字段,跑poc会有其他问题。 目前我这复现不出来,能否把results打印出来,修改文件后重启worker容器。 或者将result变量名修改为其他名字,39、40、41行引用的时候都修改下,再重启容器,添加项目看看是否还报错。