windowsblindread

Windows path traversal vulnerabilities

Provides a list of files and paths to probe when arbitrary file reads are possible on Microsoft Windows

A list of files / paths to probe when arbitrary files can be read on a Microsoft Windows operating system

GitHub

199 stars
5 watching
36 forks
last commit: over 1 year ago

Related projects:

Repository Description Stars
jcesarstef/dotdotslash Automated tool to test website directory traversal vulnerabilities by injecting user-controlled input into URLs and analyzing responses. 418
gobysec/weblogic Exploring and documenting WebLogic vulnerabilities to aid researchers in identifying and exploiting post-deserialization vulnerabilities 155
spidermate/b-xssrf A toolkit to detect and track vulnerabilities in web applications 295
google/oss-fuzz-vulns Records disclosed OSS-Fuzz vulnerabilities and their impact on versions and commits 133
silentsignal/damn-vulnerable-stateful-web-app A proof-of-concept web application demonstrating common vulnerabilities in PHP stateful applications 14
dustyfresh/php-vulnerability-audit-cheatsheet A collection of grep commands to help find potentially vulnerable PHP code 346
vulnreproduction/linuxflaw Records reproductions of Linux vulnerabilities in various virtual machines. 399
hasecuritysolutions/vulnwhisperer Automates vulnerability scan data aggregation and reporting for various security tools 1,356
r0075h3ll/oralyzer A tool to identify vulnerabilities in web applications by probing for Open Redirections and other types of attacks. 753
wireghoul/dotdotpwn Tool for discovering directory traversal vulnerabilities in software 989
f6jo/routevulscan An extensible burp suite plugin for scanning vulnerable paths in web applications 1,152
momenbasel/liffier Automatically appends dot-dot-slash to URLs to test for path traversal vulnerabilities. 8
1n3/blackwidow A Python-based web application scanner that gathers OSINT and fuzz data to identify OWASP vulnerabilities on target websites. 1,526
1n3/intruderpayloads A collection of tools and methodologies for simulating web application attacks 3,681
shouc/corbfuzz Fuzz testing tool to check browser security policies and detect vulnerabilities in web applications 3