2021-02-02 12:10:47 +05:30
|
|
|
package format
|
|
|
|
|
|
|
|
|
|
import (
|
|
|
|
|
"bytes"
|
|
|
|
|
"fmt"
|
|
|
|
|
"strings"
|
|
|
|
|
|
|
|
|
|
"github.com/projectdiscovery/nuclei/v2/pkg/output"
|
|
|
|
|
"github.com/projectdiscovery/nuclei/v2/pkg/types"
|
|
|
|
|
)
|
|
|
|
|
|
|
|
|
|
// Summary returns a formatted built one line summary of the event
|
2021-02-26 13:13:11 +05:30
|
|
|
func Summary(event *output.ResultEvent) string {
|
|
|
|
|
template := GetMatchedTemplate(event)
|
2021-02-02 12:10:47 +05:30
|
|
|
|
|
|
|
|
builder := &strings.Builder{}
|
|
|
|
|
builder.WriteString("[")
|
|
|
|
|
builder.WriteString(template)
|
|
|
|
|
builder.WriteString("] [")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(types.ToString(event.Info["severity"]))
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("] ")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(types.ToString(event.Info["name"]))
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString(" found on ")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.Host)
|
2021-02-02 12:10:47 +05:30
|
|
|
data := builder.String()
|
|
|
|
|
return data
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
// MarkdownDescription formats a short description of the generated
|
|
|
|
|
// event by the nuclei scanner in Markdown format.
|
2021-02-26 13:13:11 +05:30
|
|
|
func MarkdownDescription(event *output.ResultEvent) string {
|
|
|
|
|
template := GetMatchedTemplate(event)
|
2021-02-02 12:10:47 +05:30
|
|
|
builder := &bytes.Buffer{}
|
|
|
|
|
builder.WriteString("**Details**: **")
|
|
|
|
|
builder.WriteString(template)
|
|
|
|
|
builder.WriteString("** ")
|
|
|
|
|
builder.WriteString(" matched at ")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.Host)
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("\n\n**Protocol**: ")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(strings.ToUpper(event.Type))
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("\n\n**Full URL**: ")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.Matched)
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("\n\n**Timestamp**: ")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.Timestamp.Format("Mon Jan 2 15:04:05 -0700 MST 2006"))
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("\n\n**Template Information**\n\n| Key | Value |\n|---|---|\n")
|
2021-02-26 13:13:11 +05:30
|
|
|
for k, v := range event.Info {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString(fmt.Sprintf("| %s | %s |\n", k, v))
|
|
|
|
|
}
|
2021-03-22 14:03:05 +05:30
|
|
|
if event.Request != "" {
|
2021-03-22 15:00:26 +05:30
|
|
|
builder.WriteString("\n**Request**\n\n```http\n")
|
2021-03-22 14:03:05 +05:30
|
|
|
builder.WriteString(event.Request)
|
2021-03-22 15:00:26 +05:30
|
|
|
builder.WriteString("\n```\n")
|
2021-03-22 14:03:05 +05:30
|
|
|
}
|
|
|
|
|
if event.Response != "" {
|
2021-03-22 15:00:26 +05:30
|
|
|
builder.WriteString("\n**Response**\n\n```http\n")
|
2021-03-22 14:03:05 +05:30
|
|
|
// If the response is larger than 5 kb, truncate it before writing.
|
|
|
|
|
if len(event.Response) > 5*1024 {
|
|
|
|
|
builder.WriteString(event.Response[:5*1024])
|
|
|
|
|
builder.WriteString(".... Truncated ....")
|
|
|
|
|
} else {
|
|
|
|
|
builder.WriteString(event.Response)
|
|
|
|
|
}
|
|
|
|
|
builder.WriteString("\n```\n\n")
|
|
|
|
|
}
|
2021-02-02 12:10:47 +05:30
|
|
|
|
2021-02-26 13:13:11 +05:30
|
|
|
if len(event.ExtractedResults) > 0 || len(event.Metadata) > 0 {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("**Extra Information**\n\n")
|
2021-02-26 13:13:11 +05:30
|
|
|
if len(event.ExtractedResults) > 0 {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("**Extracted results**:\n\n")
|
2021-02-26 13:13:11 +05:30
|
|
|
for _, v := range event.ExtractedResults {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("- ")
|
|
|
|
|
builder.WriteString(v)
|
|
|
|
|
builder.WriteString("\n")
|
|
|
|
|
}
|
|
|
|
|
builder.WriteString("\n")
|
|
|
|
|
}
|
2021-02-26 13:13:11 +05:30
|
|
|
if len(event.Metadata) > 0 {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("**Metadata**:\n\n")
|
2021-02-26 13:13:11 +05:30
|
|
|
for k, v := range event.Metadata {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString("- ")
|
|
|
|
|
builder.WriteString(k)
|
|
|
|
|
builder.WriteString(": ")
|
|
|
|
|
builder.WriteString(types.ToString(v))
|
|
|
|
|
builder.WriteString("\n")
|
|
|
|
|
}
|
|
|
|
|
builder.WriteString("\n")
|
|
|
|
|
}
|
|
|
|
|
}
|
2021-03-22 14:36:08 +05:30
|
|
|
builder.WriteString("\n---\nGenerated by [Nuclei](https://github.com/projectdiscovery/nuclei)")
|
2021-02-02 12:10:47 +05:30
|
|
|
data := builder.String()
|
|
|
|
|
return data
|
|
|
|
|
}
|
|
|
|
|
|
|
|
|
|
// GetMatchedTemplate returns the matched template from a result event
|
2021-02-26 13:13:11 +05:30
|
|
|
func GetMatchedTemplate(event *output.ResultEvent) string {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder := &strings.Builder{}
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.TemplateID)
|
|
|
|
|
if event.MatcherName != "" {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString(":")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.MatcherName)
|
2021-02-02 12:10:47 +05:30
|
|
|
}
|
2021-02-26 13:13:11 +05:30
|
|
|
if event.ExtractorName != "" {
|
2021-02-02 12:10:47 +05:30
|
|
|
builder.WriteString(":")
|
2021-02-26 13:13:11 +05:30
|
|
|
builder.WriteString(event.ExtractorName)
|
2021-02-02 12:10:47 +05:30
|
|
|
}
|
|
|
|
|
template := builder.String()
|
|
|
|
|
return template
|
|
|
|
|
}
|