From 17afdaa84077953a2a8be6b5cf4ec383d5a190af Mon Sep 17 00:00:00 2001 From: "k11h.de" <17837008+k11h-de@users.noreply.github.com> Date: Thu, 15 Feb 2024 00:35:59 +0100 Subject: [PATCH] entend seen-in-the-wild locations for sendmail I have found several instances where the sendmail log had the the .log filename extension and nuclei did not found it because this widely used location is not present --- http/exposures/logs/roundcube-log-disclosure.yaml | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/http/exposures/logs/roundcube-log-disclosure.yaml b/http/exposures/logs/roundcube-log-disclosure.yaml index 54c237b5e4..e09375b700 100644 --- a/http/exposures/logs/roundcube-log-disclosure.yaml +++ b/http/exposures/logs/roundcube-log-disclosure.yaml @@ -19,15 +19,19 @@ http: payloads: roundcube_path: - roundcube/logs/sendmail + - roundcube/logs/sendmail.log - roundcube/logs/errors.log - roundcube/logs/errors - webmail/logs/sendmail + - webmail/logs/sendmail.log - webmail/logs/errors.log - webmail/logs/errors - mail/logs/sendmail + - mail/logs/sendmail.log - mail/logs/errors.log - mail/logs/errors - logs/sendmail + - logs/sendmail.log - logs/errors.log - logs/errors max-size: 1000 @@ -53,4 +57,4 @@ http: - type: dsl dsl: - content_length -# digest: 4a0a00473045022002319e5d254ede570e3c72f3b3a3bb99e6e13f1a94efd2d0a1081ca408d445d4022100cfb01c4191b36f6cc6aa5c621f73266283e141aeb944d6d161969d3e1af81a1e:922c64590222798bb761d5b6d8e72950 \ No newline at end of file +# digest: 4a0a00473045022002319e5d254ede570e3c72f3b3a3bb99e6e13f1a94efd2d0a1081ca408d445d4022100cfb01c4191b36f6cc6aa5c621f73266283e141aeb944d6d161969d3e1af81a1e:922c64590222798bb761d5b6d8e72950