nuclei/v2/pkg/protocols/file/request.go

136 lines
3.9 KiB
Go
Raw Normal View History

2021-01-01 15:28:28 +05:30
package file
import (
"encoding/hex"
2021-01-01 15:28:28 +05:30
"io/ioutil"
"os"
"sort"
"strings"
2021-01-01 15:28:28 +05:30
"github.com/pkg/errors"
"github.com/remeh/sizedwaitgroup"
2021-01-01 15:28:28 +05:30
"github.com/projectdiscovery/gologger"
"github.com/projectdiscovery/nuclei/v2/pkg/output"
"github.com/projectdiscovery/nuclei/v2/pkg/protocols"
"github.com/projectdiscovery/nuclei/v2/pkg/protocols/common/helpers/eventcreator"
"github.com/projectdiscovery/nuclei/v2/pkg/protocols/common/helpers/responsehighlighter"
2021-01-01 15:28:28 +05:30
"github.com/projectdiscovery/nuclei/v2/pkg/protocols/common/tostring"
templateTypes "github.com/projectdiscovery/nuclei/v2/pkg/templates/types"
2021-01-01 15:28:28 +05:30
)
var _ protocols.Request = &Request{}
// Type returns the type of the protocol request
func (request *Request) Type() templateTypes.ProtocolType {
return templateTypes.FileProtocol
}
2021-01-01 15:28:28 +05:30
// ExecuteWithResults executes the protocol requests and returns results instead of writing them.
func (request *Request) ExecuteWithResults(input string, metadata /*TODO review unused parameter*/, previous output.InternalEvent, callback protocols.OutputEventCallback) error {
wg := sizedwaitgroup.New(request.options.Options.BulkSize)
2021-01-14 22:43:08 +05:30
err := request.getInputPaths(input, func(data string) {
request.options.Progress.AddToTotal(1)
2021-01-14 22:43:08 +05:30
wg.Add()
go func(filePath string) {
2021-01-14 22:43:08 +05:30
defer wg.Done()
file, err := os.Open(filePath)
2021-01-14 22:43:08 +05:30
if err != nil {
gologger.Error().Msgf("Could not open file path %s: %s\n", filePath, err)
2021-01-14 22:43:08 +05:30
return
}
defer file.Close()
2021-01-01 15:28:28 +05:30
2021-01-14 22:43:08 +05:30
stat, err := file.Stat()
if err != nil {
gologger.Error().Msgf("Could not stat file path %s: %s\n", filePath, err)
2021-01-14 22:43:08 +05:30
return
}
if stat.Size() >= int64(request.MaxSize) {
gologger.Verbose().Msgf("Could not process path %s: exceeded max size\n", filePath)
2021-01-14 22:43:08 +05:30
return
}
2021-01-01 15:28:28 +05:30
2021-01-14 22:43:08 +05:30
buffer, err := ioutil.ReadAll(file)
if err != nil {
gologger.Error().Msgf("Could not read file path %s: %s\n", filePath, err)
2021-01-14 22:43:08 +05:30
return
}
fileContent := tostring.UnsafeToString(buffer)
gologger.Verbose().Msgf("[%s] Sent FILE request to %s", request.options.TemplateID, filePath)
outputEvent := request.responseToDSLMap(fileContent, input, filePath)
2021-01-16 14:10:24 +05:30
for k, v := range previous {
outputEvent[k] = v
}
2021-01-01 15:28:28 +05:30
event := eventcreator.CreateEvent(request, outputEvent, request.options.Options.Debug || request.options.Options.DebugResponse)
dumpResponse(event, request.options, fileContent, filePath)
2021-01-14 22:43:08 +05:30
callback(event)
request.options.Progress.IncrementRequests()
2021-01-14 22:43:08 +05:30
}(data)
2021-01-01 15:28:28 +05:30
})
2021-01-14 22:43:08 +05:30
wg.Wait()
2021-01-01 15:28:28 +05:30
if err != nil {
request.options.Output.Request(request.options.TemplatePath, input, request.Type().String(), err)
request.options.Progress.IncrementFailedRequestsBy(1)
return errors.Wrap(err, "could not send file request")
2021-01-01 15:28:28 +05:30
}
return nil
2021-01-01 15:28:28 +05:30
}
func dumpResponse(event *output.InternalWrappedEvent, requestOptions *protocols.ExecuterOptions, fileContent string, filePath string) {
cliOptions := requestOptions.Options
if cliOptions.Debug || cliOptions.DebugResponse {
hexDump := false
if responsehighlighter.HasBinaryContent(fileContent) {
hexDump = true
fileContent = hex.Dump([]byte(fileContent))
}
highlightedResponse := responsehighlighter.Highlight(event.OperatorsResult, fileContent, cliOptions.NoColor, hexDump)
gologger.Debug().Msgf("[%s] Dumped file request for %s\n\n%s", requestOptions.TemplateID, filePath, highlightedResponse)
}
}
func getAllStringSubmatchIndex(content string, word string) []int {
indexes := []int{}
start := 0
for {
v := strings.Index(content[start:], word)
if v == -1 {
break
}
indexes = append(indexes, v+start)
start += len(word) + v
}
return indexes
}
func calculateLineFunc(contents string, words map[string]struct{}) []int {
var lines []int
for word := range words {
matches := getAllStringSubmatchIndex(contents, word)
for _, index := range matches {
lineCount := int(0)
for _, c := range contents[:index] {
if c == '\n' {
lineCount++
}
}
if lineCount > 0 {
lines = append(lines, lineCount+1)
}
}
}
sort.Ints(lines)
return lines
}