Refrence also includes explaination and a solution

patch-1
Noam Rathaus 2021-05-10 09:47:28 +03:00
parent fa7567f68e
commit 3644f09534
1 changed files with 3 additions and 1 deletions

View File

@ -5,7 +5,9 @@ info:
severity: medium
description: Nginx off-by-slash vulnerability exposes Git configuration.
tags: config,exposure
reference: https://twitter.com/Random_Robbie/status/1262676628167110656
reference: |
- https://twitter.com/Random_Robbie/status/1262676628167110656
- https://github.com/PortSwigger/nginx-alias-traversal/blob/master/off-by-slash.py
requests:
- method: GET