Nmap Development mailing list archives

Re: [NSE Script] HTTP probe for /etc/passwd


From: MadHat Unspecific <madhat () unspecific com>
Date: Fri, 20 Jul 2007 20:00:27 -0500

Kris Katterjohn wrote:
Hey everyone!

I attached HTTPpasswd.nse, which is a script to probe for /etc/passwd 
through HTTP servers that are susceptible to directory traversal.

It's my first script that actually does something, so any comments are 
welcome and appreciated.

Checking for a positive return code is not always useful.  Custom 404 
messages can produce 200 return codes in some configurations.  It would 
be better to check the response for a specific entry like "root:".

-- 
MadHat (at) Unspecific.com, CĀ²ISSP
E786 7B30 7534 DCC2 94D5  91DE E922 0B21 9DDC 3E98
gpg --keyserver wwwkeys.us.pgp.net --recv-keys 9DDC3E98

_______________________________________________
Sent through the nmap-dev mailing list
http://cgi.insecure.org/mailman/listinfo/nmap-dev
Archived at http://SecLists.Org


Current thread: