未授权访问整理

Posted atesetenginner

tags:

篇首语:本文由小常识网(cha138.com)小编为大家整理,主要介绍了未授权访问整理相关的知识,希望对你有一定的参考价值。

 1 #zookeeper Python3
 2 
 3 #-*- coding: utf-8 -*-
 4 
 5 import socket
 6 
 7 def verify(protocol,ip,port):
 8     url = ip+:+str(port)
 9     print(testing if zookeeper unanth vul)
10     try:
11         socket.setdefaulttimeout(3)
12         s = socket.socket(socket.AF_INET, socket.SOCK_STREAM)
13         s.connect((ip, int(port)))
14         flag = b"envi"
15         s.send(flag)
16         data = s.recv(1024)
17         s.close()
18         if bEnvironment in data:
19             msg = There is zookeeper unanth vul on url:  + url +  .
20             print(msg)
21             number = v90
22             return True, url, number, msg
23         else:
24             pass
25     except Exception as e:
26         print(str(e))
27     msg = There is no zookeeper unanth vul.
28     number = v0
29     return False, url, number, msg
30 
31 if __name__ == __main__:
32     res = verify(http,xx.116.40.xx,2181)
33     print(res)

 

以上是关于未授权访问整理的主要内容,如果未能解决你的问题,请参考以下文章

35.为授权访问漏洞总结

常见未授权访问漏洞汇总

rsync未授权访问漏洞复现

未授权访问漏洞总结

2022-10-08(Discuz漏洞FCKeditor文本编辑器漏洞ZooKeeper 未授权访问Memcahe 未授权访问)

Java安全漏洞:Druid未授权访问解决