Skip to content

Instantly share code, notes, and snippets.

@0x6b7966
Forked from johnl/nginx-status.nse
Created September 20, 2019 14:35
Show Gist options
  • Save 0x6b7966/88c7ff0b7260b43aaac89c6e9d205fb8 to your computer and use it in GitHub Desktop.
Save 0x6b7966/88c7ff0b7260b43aaac89c6e9d205fb8 to your computer and use it in GitHub Desktop.
nmap script to check if a service is serving an nginx status page
local http = require "http"
local nmap = require "nmap"
local shortport = require "shortport"
local string = require "string"
description = [[
Detects if the service is serving an nginx status page
]]
---
--@output
-- Nmap scan report for example.com (1.2.3.4)
-- PORT STATE SERVICE
-- 80/tcp open nginx
-- |_nginx-status: Found nginx status page
author = "John Leach"
license = "Same as Nmap--See https://nmap.org/book/man-legal.html"
categories = {"default", "discovery", "safe"}
portrule = shortport.http
function action(host, port)
local resp, redirect_url, title
resp = http.get( host, port, '/nginx_status' )
if ( not(resp.body) ) then
return
end
if string.match(resp.body, "Active connections:") and string.match(resp.body, "server accepts handled requests") then
port.version.name = 'nginx'
nmap.set_port_version(host,port)
return "Found nginx status page"
end
end
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment