From b0cb29eeb544ce3682611e8a8b0b61578619ef23 Mon Sep 17 00:00:00 2001 From: openx-org Date: Mon, 14 Nov 2022 16:31:32 +0800 Subject: [PATCH] 2.23.9 --- poc/LR_龙软科技/Info_Disclosure/poc.py | 2 +- poc/PuYuan/Config_Info_Disclosure/poc.py | 2 +- poc/PuYuan/Info_Disclosure/poc.py | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/poc/LR_龙软科技/Info_Disclosure/poc.py b/poc/LR_龙软科技/Info_Disclosure/poc.py index 2fdfdc1..06a2c6b 100644 --- a/poc/LR_龙软科技/Info_Disclosure/poc.py +++ b/poc/LR_龙软科技/Info_Disclosure/poc.py @@ -56,7 +56,7 @@ class POC(POCBase): 检测逻辑,漏洞存在则修改vuln值为True,漏洞不存在则不动 """ req = requests.get(url,headers = headers, proxies = self.proxy ,timeout = self.timeout,verify = False) - if "/files/temp/" in req.text:#req.status_code == 200 and : + if req.status_code == 200 and "/files/temp/" in req.text : vuln = [True,req.text] else: vuln = [False,req.text] diff --git a/poc/PuYuan/Config_Info_Disclosure/poc.py b/poc/PuYuan/Config_Info_Disclosure/poc.py index f3f4837..3cb51b8 100644 --- a/poc/PuYuan/Config_Info_Disclosure/poc.py +++ b/poc/PuYuan/Config_Info_Disclosure/poc.py @@ -56,7 +56,7 @@ class POC(POCBase): 检测逻辑,漏洞存在则修改vuln值为True,漏洞不存在则不动 """ req = requests.get(url,headers = headers , proxies = self.proxy ,timeout = self.timeout,verify = False) - if "MQTT_USERNAME:'admin'" and "MQTT_KEY:'Acrel001'"in req.text:#req.status_code == 200 and : + if "MQTT_USERNAME:'admin'" and "MQTT_KEY:'Acrel001'"in req.text and req.status_code == 200 : vuln = [True,req.text] else: vuln = [False,req.text] diff --git a/poc/PuYuan/Info_Disclosure/poc.py b/poc/PuYuan/Info_Disclosure/poc.py index 2b8ef62..44dab5e 100644 --- a/poc/PuYuan/Info_Disclosure/poc.py +++ b/poc/PuYuan/Info_Disclosure/poc.py @@ -56,7 +56,7 @@ class POC(POCBase): 检测逻辑,漏洞存在则修改vuln值为True,漏洞不存在则不动 """ req = requests.get(url,headers = headers , proxies = self.proxy ,timeout = self.timeout,verify = False) - if "jdbc.properties" in req.text:#req.status_code == 200 and : + if "jdbc.properties" in req.text and req.status_code == 200 : vuln = [True,req.text] else: vuln = [False,req.text]