id: joomla-htaccess-file info: name: Joomla! htaccess file disclosure author: oppsec severity: info description: Joomla! has an htaccess file to store configurations about HTTP config, directory listing, etc. metadata: max-request: 1 tags: miscellaneous,misc,joomla http: - method: GET path: - "{{BaseURL}}/htaccess.txt" matchers-condition: and matchers: - type: word words: - "Joomla" - "Open Source Matters. All rights reserved" condition: and - type: word part: header words: - "text/plain" - type: status status: - 200 # digest: 4a0a00473045022100ce684060c457a53e986b0fa4e410a42541ba46eb29b9f166383beafb805b66090220141dfe88c8431f138b1d92d5dc9513e05b8f86572f549d4e6d183a9aba8baa94:922c64590222798bb761d5b6d8e72950