Skip to content

Commit 250afe2

Browse files
committed
up PoCs 2022-08-22
1 parent e42bfd5 commit 250afe2

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

69 files changed

+20819
-1848
lines changed

README.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@
3838
* Snmp
3939
* Wap-wsp (Elasticsearch)
4040
* RouterOs
41-
* HTTP BasicAuth, contains SVN(Apache Subversion) crack
41+
* HTTP BasicAuth(Authorization), contains Webdav、SVN(Apache Subversion) crack
4242
* Weblogic, enable nuclei through enableNuclei=true at the same time, support T3, IIOP and other detection
4343
* Tomcat
4444
* Jboss

README_CN.md

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -38,7 +38,7 @@ Vulnerabilities Scan;15000+PoC漏洞扫描;[ 23 ] 种应用弱口令爆破
3838
* Snmp
3939
* Wap-wsp(Elasticsearch)
4040
* RouterOs
41-
* HTTP BasicAuth, contains SVN(Apache Subversion) crack
41+
* HTTP BasicAuth(Authorization), contains Webdav、SVN(Apache Subversion) crack
4242
* Weblogic,同时通过 enableNuclei=true 开启nuclei,支持T3、IIOP等检测
4343
* Tomcat
4444
* Jboss

brute/dicts/softc.txt

Lines changed: 6 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -28,4 +28,9 @@ VMware
2828
四川久远银海软件股份有限公司
2929
新型农村社会养老保险信息系统
3030
长沙创智和宇信息技术有限公司
31-
北京北控电信通信息技术有限公司
31+
北京北控电信通信息技术有限公司
32+
北京五木恒润科技有限公司
33+
浪潮集团
34+
北大方正集团有限公司
35+
方正科技集团股份有限公司
36+
东软(集团)有限公司

config/databases/db_404_strings

Lines changed: 55 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,55 @@
1+
#VERSION,2.003
2+
#######################################################################
3+
# File Source: https://cirt.net
4+
# (c) 2001 Chris Sullo, All Rights Reserved.
5+
# This file may only be distributed and used with the full Nikto package.
6+
# This file may not be used with any software product without written permission from
7+
# Chris Sullo ([email protected])
8+
#
9+
# Note:
10+
# By submitting updates to this file you are transferring any and all copyright
11+
# interest in the data to Chris Sullo so it can modified, incorporated into this product
12+
# relicensed or reused.
13+
#######################################################################
14+
# Notes:
15+
# Strings to be used for 404 content match
16+
#######################################################################
17+
Access Failed
18+
an error
19+
Bad Request
20+
Client Authentication Remote Service
21+
could not find
22+
error has occurred
23+
Error 404
24+
Error Occurred While Processing Request
25+
Error processing SSI file
26+
ExtendNet DX Configuration
27+
FireWall-1 message
28+
forcelogon.htm
29+
IMail Server Web Messaging
30+
Management Console
31+
name=qt id="search" size=40 value=" "
32+
No web site is configured at this address
33+
not found
34+
parameter is incorrect # IIS 5.0 500 error
35+
Please identify yourself:
36+
Reload acp_userinfo database
37+
RSA SecurID User Name Request
38+
The userid or password that was specified is not valid. # Tivoli server administrator
39+
TYPE=password # As in "<input type=password>"
40+
Unable to complete your request
41+
unable to open
42+
Web access denied
43+
Hack Attempts
44+
does not exist # SAP NetWeaver
45+
<b>Wrong URL. # Cisco SSL VPN
46+
page may no longer exist
47+
page no longer exist
48+
Your session has expired # cPanel webmail
49+
no longer available
50+
Request Rejected
51+
More about this error # MS Lync 2010
52+
No target SAP system for request # SAP web server
53+
no valid destination server available for # SAP web server
54+
unauthorized public IP address # BigIP
55+
<TITLE>Invalid URL</TITLE> # AkamaiGhost

config/databases/db_content_search

Lines changed: 39 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,39 @@
1+
#VERSION,2.000
2+
#######################################################################
3+
# File Source: https://cirt.net
4+
# (c) 2001 Chris Sullo, All Rights Reserved.
5+
# This file may only be distributed and used with the full Nikto package.
6+
# This file may not be used with any software product without written permission from
7+
# Chris Sullo ([email protected])
8+
#
9+
# Note:
10+
# By submitting updates to this file you are transferring any and all copyright
11+
# interest in the data to Chris Sullo so it can modified, incorporated into this product
12+
# relicensed or reused.
13+
#######################################################################
14+
# Notes:
15+
# These can be regular expressions, but will be eval'd case insensitive.
16+
# Since these are run after every page retrieved, we should try to keep these as fast
17+
# regular expressions as possible, and limited to only critical findings.
18+
#######################################################################
19+
"nikto_id","osvdb","matchstring","message"
20+
"750500","3268","[iI]ndex [oO]f \/","Directory indexing found."
21+
"750501","0","Warning(?:<\/b>)?:\s+(?:include|require)(?:_once)?\(","PHP include error may indicate local or remote file inclusion is possible."
22+
"750502","0","failed to open stream: No such file or directory in (?:<b>)?(?:[a-zA-Z]:\\|\/)","PHP include error reveals the full path to the web root."
23+
"750503","0","mysql_p?connect\(","Potential PHP MySQL database connection string found."
24+
"750504","0","pgp_p?connect\(","Potential PHP PostgreSQL database connection string found."
25+
"750505","0","sqlite_p?open\(","Potential PHP SQLite database connection string found."
26+
"750506","0","mssql_p?connect\(","Potential PHP MSSQL database connection string found."
27+
"750507","0","Call to undefined function.*\(\) in \/","PHP error reveals file system path."
28+
"750508","36099","FrameworkLog.xsl\"\\?>.*<version>(?:[0-2]|3\.(?:[0-5]|6\.0\.(?:[0-4]|5(?:[0-3]|4[0-5]))))","McAfee Common Management Agent 3.6.0.546 and below contain multiple overflows."
29+
"750509","0","However, we found documents with names similar to the one you requested","The mod_speling module can reveal otherwise 'hidden' files in directories."
30+
"750510","0","makes use of the Zend Scripting Language","Output from the phpinfo() function was found."
31+
"750511","0","SQLSTATE\[","A database error may reveal internal details about the running database."
32+
"750512","0","jetty-dir.css\" REL=\"stylesheet\" TYPE=\"text/css\"\/><TITLE>Directory: \/","Directory indexing found (Jetty)."
33+
"750513","0","404-server!!","This string is associated with the 'meuhy.php' backdoor file uploader/downloader."
34+
"750514","0","Brazilians Defacers","This string is associated with pages tagged by HackerBrasilll group."
35+
"750515","0","HackerBrasilll","This string is associated with pages tagged by HackerBrasilll group."
36+
"750516","0","plain HTTP to an SSL","You appear to be scanning an HTTPS site with HTTP. This won't work as you expect.."
37+
"750517","0","plain HTTP request was sent to HTTPS","You appear to be scanning an HTTPS site with HTTP. This won't work as you expect."
38+
"750518","0","password e-?mailed","Possible cleartext emailing of stored password."
39+
"750519","0","[T]omcat\s[0-9]{1,3}\.[0-9]{1,3}\.[0-9]{1,3}","The detailed Tomcat version is disclosed in error pages."

0 commit comments

Comments
 (0)