Quantcast
Viewing all articles
Browse latest Browse all 5854

HTTPoxyScan - HTTPoxy Exploit Scanner


PoC/Exploit scanner to scan common CGI files on a target URL for the HTTPoxy vulnerability. Httpoxy is a set of vulnerabilities that affect application code running in CGI, or CGI-like environments. For more details, go to https://httpoxy.org.

REQUIREMENTS:
Requires ncat to establish reverse session

USAGE:
./httpoxyscan.py https://target.com cgi_list.txt 10.1.2.243 3000
This will scan https://target.com with a list of common CGI files while injecting a Proxy header back to a given IP:PORT. A reverse listener will catch the incoming connection to confirm the remote site is vulnerable.


Image may be NSFW.
Clik here to view.

Viewing all articles
Browse latest Browse all 5854

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>