id: prestashop-module-fuzz info: name: Prestashop Modules Enumeration author: meme-lord severity: info metadata: max-request: 639 tags: fuzzing,bruteforce,prestashop http: - raw: - | GET /modules/{{path}}/config.xml HTTP/1.1 Host: {{Hostname}} Accept: application/json, text/plain, */* Accept-Language: en-US,en;q=0.5 Referer: {{BaseURL}} payloads: path: helpers/wordlists/prestashop-modules.txt threads: 50 matchers-condition: and matchers: - type: word condition: and words: - "" - "" - "" - "" - "" - type: status status: - 200 extractors: - type: regex part: body group: 2 regex: - '(