tag:support.arachni-scanner.com,2012-07-01:/discussions/problems/4202-infinite-recusrion-on-captcha-scriptArachni: Discussion 2017-02-17T11:59:36Ztag:support.arachni-scanner.com,2012-07-01:Comment/419392892017-02-12T10:27:20Z2017-02-12T10:31:23ZInfinite recusrion on captcha script<div><p>hello, noticed that arachni is unable to avoid scanning
recursive elements, such as captcha script. I've tried with option
--scope-auto-redundant=2 but it didn't work.<br>
Link example:<br>
target.com/plugins/system/captcha/showcode.php?1486894932(DYNAMIC)&sid=632197564be8d7889071176760e51422(DYNAMIC)&crt=0&clr=255,255,255&bgr=196,196,196&xsize=100&ysize=40&suf=1<br>
Dynamic values are marked by me as "(DYNAMIC)"</p>
<p>If you need more information (domain/log/etc) please tell me
your email and i'll send it to you</p></div>Johntag:support.arachni-scanner.com,2012-07-01:Comment/419392892017-02-14T12:09:18Z2017-02-14T12:09:18ZInfinite recusrion on captcha script<div><p>Hello,</p>
<p>Looks like a parameter name (<code>1486894932(DYNAMIC)</code>)
is dynamic, so the <code>--scope-auto-redundant</code> option will
not work.<br>
You can use the <code>--scope-redundant-path-pattern</code> option
for greater control, like so:</p>
<pre>
<code>--scope-redundant-paths=1486894932:5</code>
</pre>
<p>Let me know how it works.</p></div>Tasos Laskostag:support.arachni-scanner.com,2012-07-01:Comment/419392892017-02-14T16:50:32Z2017-02-14T16:50:32ZInfinite recusrion on captcha script<div><p>showcode.php:10 worked well, is there any chance to add a plugin
for autosolving such problems without user actions?</p></div>Johntag:support.arachni-scanner.com,2012-07-01:Comment/419392892017-02-14T16:51:50Z2017-02-14T16:51:50ZInfinite recusrion on captcha script<div><p>Can't really be done accurately.</p></div>Tasos Laskos