zcyberseclab / zscan

A fast, customizable service detection tool powered by a flexible fingerprint system. It helps you identify services, APIs, and network configurations across your infrastructure.
MIT License
27 stars 2 forks source link

[BUG] Missing body response content #13

Open YGHS4 opened 3 hours ago

YGHS4 commented 3 hours ago

Current Behavior

Zscan missing response body content,missing "@localhost~\" 企业微信截图_17327811648351

Expected Behavior

The browser responds as follows

企业微信截图_17327811801578

Steps To Reproduce

  "bgk": {
    "headers": [
      "Set-Cookie: bgk_"
    ]
  }
go run .\cmd\main.go -target 101.43.111.206

Environment

Go: go1.23.2 windows/amd64 Zscan: v1.0.6

YGHS4 commented 3 hours ago

target: http://101.43.111.206:80

YGHS4 commented 3 hours ago

The following is Poc, please change the suffix to .yml bgk-crm-indexphp-jiliyu-sqlinjection copy.json