Reports from command-line scan differ from web ui scan
Hello,
When I run a report from the command line from the experimental branch (as of Saturday, June 29), I see what I expect on the Summary/Issues tab. However, my main Issues "tab" contains nothing. When I run the same scan from the Web UI, I see the results on both tabs. Why is this? The Summary/Issues tab does not contain certain important information, remediation guidance, that I would like to have passed on to the application developers.
Thanks,
Kevin
Comments are currently closed for this discussion. You can start a new one.
Keyboard shortcuts
Generic
? | Show this help |
---|---|
ESC | Blurs the current field |
Comment Form
r | Focus the comment reply box |
---|---|
^ + ↩ | Submit the comment |
You can use Command ⌘
instead of Control ^
on Mac
Support Staff 1 Posted by Tasos Laskos on 01 Jul, 2013 07:19 PM
Hm, there's probably some HTML in there breaking the "Issues" tab. May I get a copy of the AFR that's causing the issue please?
Cheers
2 Posted by Kevin.Hale on 01 Jul, 2013 07:39 PM
Sure. Hopefully you don't mind, but I replaced my test URL and login information. I also included the error log file. I do see an error in there that relates to the report/manager.rb file.
Support Staff 3 Posted by Tasos Laskos on 01 Jul, 2013 07:41 PM
Great thanks, these should be all I need. Will look into it when I get off work and get back to you.
4 Posted by Kevin on 01 Jul, 2013 07:44 PM
Thanks.
Support Staff 5 Posted by Tasos Laskos on 01 Jul, 2013 11:31 PM
I found and fixed a couple of bugs using the files you provided, not 100% sure that they were the ones causing your issues though, you'll have to try the updated nightlies and let me know.
http://downloads.arachni-scanner.com/nightlies/
Cheers for the feedback Kevin.
6 Posted by Kevin on 02 Jul, 2013 02:59 PM
It appears that those bugs were not the ones responsible for my issues. I tried both from the nightly build and by building from the experimental branch and still see the same behavior. I appreciate that you looked at this so quickly. Thanks.
Support Staff 7 Posted by Tasos Laskos on 02 Jul, 2013 03:02 PM
Hm, could you send me the broken HTML report and the AFR for that report? Just those 2.
8 Posted by Kevin.Hale on 02 Jul, 2013 03:30 PM
Here are the files...
Support Staff 9 Posted by Tasos Laskos on 03 Jul, 2013 02:14 PM
The AFR file gets converted to an HTML report just fine and the included HTML report looks OK. The
Issues
tab lists all issues with their details as usual.Tested it with Firefox 22 and Chromium 25. What browser are you using?
10 Posted by Kevin.Hale on 03 Jul, 2013 02:35 PM
Tasos,
You are correct. The browser is the problem. I was using Konqueror 4.8.5. The reports do indeed look correct in Firefox and Chromium. I'm sorry that I didn't consider this before.
Just for the record, Arachni works very well installed on a Samurai WTF 2.0 instance running in VMWare Workstation.
Thanks for all of your help,
Kevin
Support Staff 11 Posted by Tasos Laskos on 03 Jul, 2013 02:38 PM
No worries, at least that's good news. :)
Cheers
Tasos Laskos closed this discussion on 03 Jul, 2013 02:38 PM.