1

DatabaseError当我尝试使用合并的查询集时,Django 通过了一个。我的代码是

assetsNetwork = Asset.objects.filter(client=myClient, module__label__in=network_label_list)
vulnsNetworkRaw = Vuln.objects.none()
for asset in assetsNetwork:
    vulnsNetworkRaw = vulnsNetworkRaw | asset.latest_vulns
    logging.debug("+++%s+++"%vulnsNetworkRaw)

错误信息是

DatabaseError: more than one row returned by a subquery used as an expression

.latest_vulns 方法是

@property
def latest_scan(self):
    from arachni.models import WebScan, Vulns as WebVuln
    my_module = self.module

    try:
        return Scan.objects.filter(assets__id=self.id, status='Audit Complete').latest('completed_Date')
    except:
        return Scan.objects.none()
@property
def latest_vulns(self):
    from arachni.models import WebScan, Vulns as WebVuln
    latest_scan = self.latest_scan
    return Vuln.objects.filter(scan=latest_scan, host=self.IP_Address)

询问:

2012-08-07 16:44:38 EDT STATEMENT:  SELECT "pegasus_vuln"."id", "pegasus_vuln"."nvt_id", "pegasus_vuln"."scan_id", "pegasus_vuln"."host", "pegasus_vuln"."port", "pegasus_vuln"."risk_factor", "pegasus_vuln"."cvss_score", "pegasus_vuln"."status", "pegasus_vuln"."change", "pegasus_vuln"."comment", "pegasus_vuln"."description", "pegasus_vuln"."solution", "pegasus_vuln"."_order" FROM "pegasus_vuln" WHERE (("pegasus_vuln"."host" = '192.168.2.251'  AND "pegasus_vuln"."scan_id" = 95 ) OR ("pegasus_vuln"."host" = '192.168.2.5'  AND "pegasus_vuln"."scan_id" =  (SELECT U0."id" FROM "pegasus_scan" U0)) OR ("pegasus_vuln"."host" = '10.1.10.244'  AND "pegasus_vuln"."scan_id" = 109 ) OR ("pegasus_vuln"."host" = '192.168.2.5'  AND "pegasus_vuln"."scan_id" =  (SELECT U0."id" FROM "pegasus_scan" U0)) OR ("pegasus_vuln"."host" = '192.168.2.248'  AND "pegasus_vuln"."scan_id" =  (SELECT U0."id" FROM "pegasus_scan" U0))) ORDER BY "pegasus_vuln"."_order" ASC LIMIT 21
2012-08-07 16:44:38 EDT ERROR:  more than one row returned by a subquery used as an expression

它成功记录了几次,但也在记录行中给出了错误。有人可以帮助我吗?非常感谢。

4

2 回答 2

1

在你的 SQL 中检查这样的代码。如果可以从嵌套 SQL 中获取多个结果,则需要使用 IN 运算符。

"pegasus_vuln"."scan_id" =  (SELECT U0."id" FROM "pegasus_scan" U0))
于 2012-08-07T20:58:20.470 回答
0

问题已经奇怪地解决了。我添加了登录latest_vulns以评估查询集,然后一切正常。即使在我删除了日志记录后它仍然有效。

于 2012-08-08T14:50:44.747 回答