Skip to content

Latest commit

 

History

History
90 lines (68 loc) · 3.12 KB

TODO.rst

File metadata and controls

90 lines (68 loc) · 3.12 KB

TODO

BUGS

  • When using --cat-only: [Check 01/total] => total is taking all checks in account
  • cmd> java -jar jndiat.jar datasource -v -s 192.168.142.41 -p 7002

    SEVERE:You must to choose a mandatory command (--sql-shell, --listen-port) to run this module

IMPROVEMENTS / NEW FEATURES

SMARTMODULES / MATCHSTRINGS

Not done yet: * whatweb

Summary : Script, HTML5, Drupal, PHP[7.2.3], HTTPServer[Debian Linux][Apache/2.4.25 (Debian)], X-Powered-By[PHP/7.2.3], PoweredBy[-block], UncommonHeaders[x-drupal-dynamic-cache,x-content-type-options,x-generator,x-drupal-cache], MetaGenerator[Drupal 8 (https://www.drupal.org)], Content-Language[en], Apache[2.4.25], X-Frame-Options[SAMEORIGIN], X-UA-Compatible[IE=edge]

Summary : PHP[5.6.40], X-Powered-By[PHP/5.6.40], JQuery, PasswordField[password], HttpOnly[89f8df32fa3e404e00d734d41437761f], MetaGenerator[Joomla! - Open Source Content Management], HTTPServer[Debian Linux][Apache/2.4.25 (Debian)], Cookies[89f8df32fa3e404e00d734d41437761f], Apache[2.4.25], HTML5, Script[application/json]

  • davscan
  • wpseku
  • vbscan
  • barmie
  • snmpwn

TOOLS/CHECKS TO ADD

DOCUMENTATION

  • Important note: need to be reachable directly from target for exploit with reverse shell !

SERVICES TO ADD

rvm list rvm use ruby-2.4 rvm gemset create ww

rvm gemset list rvm gemset delete whatweb-test --force

rvm use ruby-2.4@ww or rvm use ruby-2.4 rvm gemset use ww

rvm current # show current env ruby -v http://masnun.com/2012/01/28/fetching-changed-files-diff-between-two-git-commits-in-python.html