Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

tp<=5.2.3 rce 检测 and thinkphp指纹识别问题 #42

Open
3rsh1 opened this issue Oct 18, 2022 · 2 comments
Open

tp<=5.2.3 rce 检测 and thinkphp指纹识别问题 #42

3rsh1 opened this issue Oct 18, 2022 · 2 comments

Comments

@3rsh1
Copy link

3rsh1 commented Oct 18, 2022

https://github.com/vulhub/vulhub/tree/master/thinkphp/5.0.23-rce
本地docker搭建,只能检测出来如下信息
image

@3rsh1
Copy link
Author

3rsh1 commented Oct 18, 2022

命令为 .\vscan.exe -host http://127.0.0.1:8080/

@veo
Copy link
Owner

veo commented Oct 18, 2022

目前会检测返回包
1.header 头包含 ThinkPHP
2.404页面 thinkphp特征

如果都没特征就检测不到

图标的指纹目前没有,但可以加

如果图标都没那可能就真不好判断了

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants