1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46
|
#!/usr/bin/env python
from circuits.web import Controller
try:
from httplib import HTTPConnection
except ImportError:
from http.client import HTTPConnection # NOQA
from .helpers import urlopen, HTTPError
class Root(Controller):
def index(self):
return "Hello World!"
def test_root(webapp):
f = urlopen(webapp.server.http.base)
s = f.read()
assert s == b"Hello World!"
def test_badpath_notfound(webapp):
try:
url = "%s/../../../../../../etc/passwd" % webapp.server.http.base
urlopen(url)
except HTTPError as e:
assert e.code == 404
else:
assert False
def test_badpath_redirect(webapp):
connection = HTTPConnection(webapp.server.host, webapp.server.port)
connection.connect()
path = "/../../../../../../etc/passwd"
connection.request("GET", path)
response = connection.getresponse()
assert response.status == 301
assert response.reason == "Moved Permanently"
connection.close()
|