knownsec / pocsuite3

pocsuite3 is an open-sourced remote vulnerability testing framework developed by the Knownsec 404 Team.
https://pocsuite.org
Other
3.66k stars 783 forks source link

302跳转时出现 unknown encoding问题 #300

Closed saf3d0s closed 2 years ago

saf3d0s commented 2 years ago

在使用pocsuite3 测试 kyan run.php 漏洞时,出现unknown encoding:zh-CN问题,相应包如下图:

image

经排查发现:pocsuite3\pocsuite3\lib\request\patch\hook_request_redirect.py 中,resp.encoding 会变为 zh-CN,导致无法识别改编码。

image

13ph03nix commented 2 years ago

感谢指出 👍,已修复 :)