From 9309803f3f7d5c1e0b2f26721c1ea7ef36eeb1c8 Mon Sep 17 00:00:00 2001 From: James Kettle Date: Thu, 13 Aug 2015 14:11:37 +0100 Subject: [PATCH] Add wordlist for bruteforcing hidden GET/POST parameters --- Discovery/Web_Content/burp-parameter-names | 2588 ++++++++++++++++++++ 1 file changed, 2588 insertions(+) create mode 100644 Discovery/Web_Content/burp-parameter-names diff --git a/Discovery/Web_Content/burp-parameter-names b/Discovery/Web_Content/burp-parameter-names new file mode 100644 index 0000000..120886d --- /dev/null +++ b/Discovery/Web_Content/burp-parameter-names @@ -0,0 +1,2588 @@ +id +action +page +name +password +url +email +type +username +file +title +code +q +submit +user +token +delete +message +t +c +data +mode +order +lang +p +key +status +start +charset +description +s +post +excerpt +login +search +content +comment +step +ajax +debug +state +query +f +error +save +sort +format +tab +offset +edit +preview +filter +update +from +view +a +limit +do +plugin +theme +text +test +path +language +height +logout +pass +dir +show +h +value +filename +redirect +year +group +template +version +subject +m +download +u +confirm +width +w +callback +size +date +source +GLOBALS +op +method +uid +tag +category +target +ids +term +new +locale +author +paged +cat +msg +to +add +reset +d +day +nonce +captcha +output +host +revision +i +xml +db +time +section +image +r +files +tags +users +role +send +fetch +updated +skips +n +check +table +orderby +num +import +html +log +prefix +fields +pwd +pid +month +module +parent +cancel +activate +ip +checked +success +field +desc +case +remove +position +location +extra +count +b +rating +pass2 +hostname +move +hash +dry +cid +body +src +level +generate +g +folder +dbname +option +userid +sql +options +address +activated +action2 +password2 +pass1 +meta +ID +deleted +act +port +e +taxonomy +ref +publish +secret +create +app +rememberme +number +country +phone +hidden +force +export +sticky +profile +nickname +cmd +v +plugins +locked +command +returnUrl +item +amount +timestamp +server +signature +part +json +del +comments +visible +LoginForm +keywords +enabled +base +return +refresh +foo +y +media +info +guid +dt +x +testdata +load +list +visibility +User +thumb +stage +history +timezone +config +upgrade +menu +items +class +blog +link +end +dbhost +approved +stylesheet +sid +settings +postid +feed +deactivate +closed +posted +noheader +ContactForm +tax +ss +inline +gid +attachments +added +replytocom +dismiss +clear +city +spam +request +all +upload +sidebar +dbuser +checkbox +short +active +session +registration +hh +price +nsql +mm +loggedout +lastname +keyword +SMALLER +saved +rsd +ps +newcontent +mn +linkurl +jj +install +hidem +firstname +detached +color +clearsql +checkemail +BIGGER +aa +slug +remember +referrer +reason +params +o +note +referredby +l +domain +deletepost +dbpass +attached +tid +testcookie +noredir +newcat +monthnum +metakeyinput +insertonlybutton +input +form +failure +down +deletemeta +deletecomment +context +backto +admin +val +undismiss +sitename +service +select +resetheader +print +phperror +oitar +metavalue +metakeyselect +mail +liveupdate +linkcheck +deletebookmarks +changeit +answers +addmeta +trashed +fid +back +style +selection +mod +label +img +features +direction +uname +sidebars +hide +auth +untrashed +task +submitted +database +addnew +Submit +purge +notes +editwidget +removewidget +nrows +groups +disabled +zip +trash +repair +overwrite +referer +themes +mid +defaults +custom +ctype +widget +topic +next +main +js +blogname +untrash +unspammed +unspam +spammed +selectall +quantity +newuser +networkwide +invalid +index +function +screen +reply +lat +gender +find +enable +display +directory +batch +alt +set +scrollto +fwidth +fheight +sub +same +rows +reauth +notify +confirmdelete +autosave +aid +vote +site +review +keys +destination +allusers +passwd +change +apage +allblogs +where +private +noapi +dest +charsout +catslist +categories +up +subscribe +script +report +removeheader +pos +period +nocache +kill +columns +api +z +sortby +register +recovered +pagenum +last +event +customized +attachment +answer +welcome +timeout +scope +rid +result +public +pg +payload +ns +mobile +css +continue +align +what +rank +qqfile +max +createuser +background +avatar +alias +total +question +priority +make +days +cache +skin +schema +orientation +modify +groupid +done +summary +skipped +root +range +go +dump +confirmation +CKEditorFuncNum +changes +uri +ticket +pw +pointer +param +first +entry +drop +default +selected +popup +owner +nolog +nochange +length +goto +company +Comment +close +website +st +skip +restart +process +pages +node +localize +fname +except +disable +Type +restore +profiler +previewed +password1 +NewFolderName +lng +left +layout +k +fn +flag +doaction2 +details +currency +copy +compare +column +broken +block +account +paper +line +jax +icon +flush +fileName +dl +controller +catid +PayerID +newname +flash +decomposition +confirmed +chromeless +bid +yes +weight +verify +values +run +route +replace +read +project +Post +PHPSESSID +nid +md5 +map +logopng +listInfo +letter +hour +fullname +exclude +dbprefix +authors +zoom +userId +trigger +string +setting +rs +provider +package +operation +ok +object +mark +lid +invoice +insertonly +full +forum +err +doit +backup +ac +sent +phpThumbDebug +photo +open +interval +editor +echostr +doc +channel +args +agree +access +WPLANG +userspage +usersearch +triggers +insert +inc +homepage +hello +grant +func +duration +did +cookie +contact +chunk +apply +terms +tables +startdate +shortcode +scale +reverse +required +rename +origin +no +indexes +identifier +hashed +fontcolor +databases +approve +advanced +webfile +urls +types +toggledisplay +subaction +sortorder +sign +sEcho +searchtype +saveasdraft +rss +recipient +prev +notice +njlowercolor +njform +njfontcolor +members +member +md5s +init +hs +headerimage +header +fontdisplay +finish +fax +engine +current +client +cc +callf +article +ver +ts +row +roles +region +raw +qid +old +nick +model +lon +lock +iDisplayLength +ext +expire +enddate +empty +chunks +album +userselect +userName +telephone +stats +saveauthors +right +revert +response +news +lname +images +highlight +frob +embed +denied +dccharset +contents +compress +Command +area +aim +accept +vid +unit +undeleted +thread +textinputs +textcolor +store +sqlite +showall +rsargs +reload +record +posts +pagenow +override +opt +opname +job +idx +help +groupname +filters +fileid +expand +entity +cp +clean +caption +apikey +verbose +var +tpl +topics +top +tablename +sSearch +sex +separator +scripts +rules +rt +rate +product +prepopulate +pgtIou +pgtId +pgsql +permissions +oracle +oldpass +mssql +modules +labels +get +foldername +family +delimiter +CurrentFolder +choice +box +autologin +age +again +actions +wysiwyg +word +userID +unsort +uninstall +unfoldmenu +support +startDate +standalone +since +score +runtests +regex +published +proxy +points +phrase +oldpassword +oid +noajax +newpassword +newName +minute +mac +langCode +iDisplayStart +genre +From +font +emails +eid +dst +device +demo +deletefile +cropDetails +connection +collation +cms +attributes +attribute +as +adduser +zone +zipcode +words +viewtype +usr +To +ssl +single +sendmail +protocol +phpinfo +perpage +newsletter +newsid +names +Name +min +logoutRequest +logo +interface +frequency +firstName +dbName +criteria +by +button +break +bg +ban +authorize +artist +allow +un +stripeToken +resize +replyto +remote +random +products +pic +perms +parentid +original +opener +namespace +mime +loc +lastName +jabber +global +forums +foo1 +FileName +endpoint +Email +detail +descr +deny +delall +customer +copyright +compression +collection +address2 +yim +week +unsubscribe +truncate +tableName +speed +sortOrder +sig +share +servername +sections +room +results +resource +req +qty +perm +orderid +operator +noconfirmation +newFileName +makedoc +license +graph +frame +duplicate +discount +created +clearcache +CKEditor +auto +after +about +wsdl +video +uploaded +unban +thumbnail +subtitle +stop +startIndex +sorttype +snippet +silent +sessionid +sequence +sender +searchTerm +sd +sc +rule +reg +redir +quote +prune +productid +popupurl +popuptitle +pageid +oc +nom +newpass +memo +maxResults +iSortingCols +gateway +for +feedback +fcksource +extension +draft +dev +deleteall +csv +business +board +address1 +addr +addgroup +activity +who +unread +ttl +temp +tagid +sure +subpage +stat +showThumbs +setup +sel +res +queryType +postcode +permission +pending +pattern +passkey +nr +match +jsonp +itemid +invites +invite +foo6 +foo2 +filetype +fc +execute +encoding +enc +em +element +discard +delay +def +dbpassword +currentFolder +course +commit +cols +challenge +call +branch +blogid +banned +array +archive +web +unlock +uniqid +txt +twitter +todo +threadid +team +system +storage +STATUS +sites +rollback +resettext +repeat +rem +reference +receiver +rebuild +rebroadcast +re +quality +qq +Profile +privileges +primary +poll +pdf +Password +parameters +out +os +orderbydate +opauth +messages +maintenance +long +links +ignore +handler +forward +fileext +endDate +driver +docroot +deletepage +d2 +cron +control +configure +conditions +Collation +codepress +chart +bitrate +barcode +AuthItemForm +assign +adminpass +write +watch +switch +subtype +street +str +siteurl +shipping +salt +rev +returnto +repo +rel +RegistrationForm +r2 +pre +player +place +pk +person +permalink +pc +payment +pagename +other +openid +notifications +nojs +newPassword +newdir +network +multi +mailbox +lowercase +layer +jsoncallback +itemName +isbn +iid +grade +game +expires +expiration +encode +edited +dropped +domains +dept +dbtype +conf +col +cname +char +browse +bio +banner +balance +asc +anonymous +announcement +xmldump +UserRecoveryForm +UserLogin +UserChangePassword +USER +updates +tx +tweet +trust +track +topicid +tool +timeformat +tb +step2 +ssid +sendto +season +Search +schedule +scan +sa +repassword +reinstall +realname +radius +px +proxyuser +ProfileField +pmid +pm +picture +paymentType +param2 +nopass +newfolder +mysql +multiple +Message +longitude +logtype +loader +latitude +languages +join +ipaddress +instance +iframe +id2 +hours +home +groupId +gallery +ftp +friends +footer +fld +fieldtype +feature +fail +explain +episode +email2 +EaseTemplateVer +distance +dirname +depth +delfile +decode +dbport +crop +cost +connect +confirmpassword +com +co +chk +child +categoryid +Body +birthdate +begin +before +BackURL +avatars +autofocus +authenticate +at +aname +agreement +adminname +activkey +xajax +viewonline +unwatch +ui +typeid +toggle +th +templateid +targets +tagged +sw +super +subname +subform +subdir +strings +strict +statistics +starttime +spec +sord +snapshot +side +sh +serial +second +rewrite +retry +realm +rand +profiling +previous +preset +poster +policies +pn +platform +placement +pin +pID +php +parentID +pagination +pagesize +p2 +p1 +oldPassword +name2 +msn +moved +monitor +migrate +merge +maxage +mask +manufacturer +ls +loginname +ld +Lang +kid +include +idSelect +hook +goback +fs +frontpage +fontsize +filepath +Filename +filecontent +featured +fav +failed +extend +eventId +eventid +endtime +editid +div +delivery +dbUser +dbsize +dbPassword +DATA +dashboard +cursor +container +component +compact +colors +collapse +characters +ch +cats +cart +calendar +C +browser +brand +birthday +bcc +attr +apps +ad +zid +xajaxargs +which +warned +venue +validate +uuid +usuario +usesubform +unique +undelete +uids +tz +torrent +titles +templates +templatename +targetid +TableList +syear +svg +suser +suffix +subtotal +submitorderby +submitoptions +State +staff +special +sortBy +sorder +sname +sm +sitemap +siteid +simpledb +signin +sidx +sID +ShowFunctionFields +shoutbox +sec +sample +revokeall +resume +resetpasskey +regenerate +recursive +recover +recipients +receipt +quota +quiet +queue +publisher +progress +program +problem +postsperpage +postId +pollid +playlist +paymentAmount +passphrase +pagetitle +pageSize +pageno +pageID +padding +otp +onserver +obfuscate +newvalue +newDir +mongo +moderator +modal +mimetype +mID +ma +lst +loop +lookup +loggedin +lastID +issue +intro +in +idp +head +handle +gz +groupID +gift +gID +funcs +fulltext +folderid +flags +fill +fieldname +feedurl +feeds +exec +errors +entries +elastic +dontlimitchars +donor +document +dob +displayname +disp +des +department +delmarked +dbusername +dbstats +dateformat +crypt +credit +createview +cpu +cover +coppa +contentType +complete +Comments +commentid +cID +catorder +book +authkey +attach +articles +appname +appid +append +and +analyze +agreed +agent +adress +adminmail +addfolder +addcomment +accountid +y2 +x2 +WriteTags +with +wipe +why +wctx +vp +videoType +vcode +vbrmethod +userrole +userpass +Username +useremail +userdata +unsynchronizedtags +unstick +unsecuresubmit +unbookmark +ua +typ +tv +tree +transfer +trackzero +TracksTotal +tracknoalbum +trackinalbum +Track +trace +tot +torrentid +Toolbar +TOKEN +todate +titlefeat +tipo +thumbs +tel +tc +tagtypes +tagname +TagFormatsToWrite +synchronizetagsfrom +sum +subdomain +stype +stub +struct +stock +stick +static +srv +split +sp +sn +smtp +sku +Skin +signout +showwysiwyg +showtagfiles +ShowMD5 +showfiles +shadow +selector +securesubmit +searchtext +searchKey +savemode +saveid +saveField +SAMLResponse +samemix +rpp +rolename +rights +returnURL +returnurl +restrict +resolve +rescanerrors +reorder +renamefileto +reminder +rememberMe +relative +recent +realName +radio +quickmod +qa +pw2 +psubmit +properties +projects +proceed +privacy +pretty +pname +phase +persistent +permanent +percent +pay +PASSWORD +passwd2 +partial +paid +orderId +oID +npassword +notmodrewrite +notapache +nonemptycomments +noalert +newUser +newscan +newpw +newpass2 +newpage +newfile +msgid +mrpage +more +money +moduleName +mlpage +mkdir +missingtrackvolume +minutes +minor +mensaje +md5datadupes +manager +m3utitle +m3ufilename +m3uartist +m3u +longurl +logs +Login +ln +lists +listid +listdirectory +linktype +lines +like +lib +KEY +itemType +itemId +isAjax +int +initial +grp +groupName +GenreOther +genredistribution +Genre +fullfolder +framed +formName +formid +formatdistribution +foldmenu +flip +fixid3v1padding +filetypelist +filesize +filenamepattern +filelist +fileextensions +fieldValue +fieldName +fieldid +fID +feid +extended +extAction +existing +ex +events +eventName +errorswarnings +encoderoptionsdistribution +encodedbydistribution +emptygenres +emailAddress +emailaddress +edituser +dp +displayName +disallow +dirs +dictionary +deleteid +defaultValue +deadfilescheck +deactivated +dd +dbType +dates +ctf +createdb +Country +correctcase +copied +cookies +convert +contactname +confirmPassword +configuration +condition +cluster +clone +CKFinderFuncNum +CKFinderCommand +chmod +children +chat +cfg +cep +cd +cb +catname +catID +CardType +caching +bookmark +bodytext +bgcolor +baseurl +bar +autofixforcesource +autofixforcedest +autofix +authtype +audiobitrates +assignment +artisttitledupes +application +APICpictureType +ans +announce +anchor +amt +always +adv +addusers +accessType +y1 +xrds +x1 +wrap +work +way +warning +votes +vn +views +videoid +verifypeer +verifyhost +vendor +varValue +varName +variant +variable +utmr +utmp +utmdebug +utmac +uses +userEmail +use +uporder +updatedb +unbansubmit +ult +ul2 +ul +UA +u2 +u1 +type2 +txtDescription +transaction +tracker +tos +torrentsperpage +topicsperpage +toboard +Title +timeframe +tID +textarea +testing +testemail +tbl +tasks +taglist +Tag +tableprefix +tableId +t2 +t1 +survey +surname +supportfor +subtab +subscription +submit1 +subj +styles +storyid +step1 +stay +Status +start2 +standard +span +so +smtpPort +smiley +slogan +slide +sitetitle +signatures +SID +showqueries +showpage +shout +sha1 +sf +severity +sesskey +sessidpass +series +sectionid +searchText +searchid +searchField +sdb +sday +scheme +scene +scenario +savesettings +savepms +savefile +saveData +Save +sandbox +rotatefile +rotate +roleid +rn +revoke +returnID +resync +restock +resolution +resizetype +resizefile +resetkey +resend +requestid +reportid +renamefile +renameext +removeall +release +relation +recurring +RecordingUrl +recordid +reasontype +race +qs +push +pub +province +protection +property +pref +predefined +pp +play +plan +pl +ping +pf +permerror +passw +PASS +PaRes +parameter +organization +org +orderBy +online +oldusername +oldpwd +older +objects +nowarn +notification +newpw2 +NEWPASS +newlang +nav +myEditor +modname +modeextension +modcomment +metric +memberName +maxwidth +matchtype +mapping +mandatory +ls2 +local +lightbox +levels +langID +L +kick +karma +j +Itemid +isDuplicate +iphone +ipexclude +invitecode +inv +interests +interest +ins +inputH +industry +incldead +importance +imgurl +imgpath +IMG +imageid +ident +id1 +Id +icq +href +hostid +hl +hit +headline +heading +HeaderHexBytes +goodfiles +Generate +ft +fragment +forumid +foreign +followup +fm +fldr +fileType +filetotal +fileID +fg +fCancel +facebook +extUpload +extTID +extMethod +expiry +example +errorCode +eol +entityid +encoded +emphasis +emailnotif +elements +edition +editing +editfile +editaction +dupfiles +donated +doinstall +docid +dlt +dl2 +direct +dip +Digits +dict +delid +deletepms +deleteImage +decoded +datetime +dateStart +dateEnd +date2 +datatype +cut +currencyCodeType +ct +csrf +cs +cPath +courses +coupon +controllers +content1 +contacts +contactid +conn +commentId +cod +cm +clientid +clearLogs +classification +chosen +channelmode +chanid +chan +Category +campaign +callerid +caller +cached +bulk +bucket +boards +blogusers +blogs +billing +bID +bib +bbconfigloc +base64 +bansubmit +badfiles +authorID +attempt +arguments +anon +angle +alpha +alert +albumid +ageverify +agb +afilter +adminpassword +adminid +adminemail +AddAuthItemForm +activation +actionfile +Action +acceptpms +accepted +abstract +abort +a2 +zoneid +youtube +yourname +wwname +wmax +wiki +widgets +Widget +whitelist +wait +voucher +vol +vl +visualizationSettings +viewName +viewname +via +Version +varname +variables +validator +valid +utype +utf8 +usort +Users +USERNAME +url1 +URL +uploadpos +Upload +Update +upc +until +unset +unselectall +unpublished +undo +u9 +u8 +u7 +u6 +u50 +u5 +u49 +u48 +u47 +u46 +u45 +u44 +u43 +u42 +u41 +u40 +u4 +u39 +u38 +u37 +u36 +u35 +u34 +u33 +u32 +u31 +u30 +u3 +u29 +u28 +u27 +u26 +u25 +u24 +u23 +u22 +u21 +u20 +u19 +u18 +u17 +u16 +u15 +u14 +u13 +u12 +u11 +u10 +txtEmail +trid +transactionID +trackusers +totalProductCount +topicID +tokens +times +timer +timelimit +thumbnails +throttle +themename +testmethods +taskid +targetboard +tac +tableFields +tabid +sys +sy +suspend +supplierID +subwdata +suburb +substruc +substep +submit2 +sublogin +subjoin +subconst +subcat +subacc +student +STRUCTURE +structure +strReferrer +strProfileData +strId +strFormId +stream +steps +stdDateFilterField +stdDateFilter +station +startTime +startday +sserver +square +sqlquery +sq +spass +sound +sortKey +sortfield +sortDir +sort2 +song +smonth +skype +singleout +signup +SignatureValue +Signature +showtemplate +showSource +ShowFieldTypesInDataEditView +showAll +shortname +shop +ship +searchType +searchterm +searchbox +searchaction +searchable +school +saveToFile +runQuery +ruleid +rp +round +Role +rmFiles +rm +rID +responsecompression +Reset +requiredData +requestKey +requestcompression +repopulate +removeVariables +removeID +removeid +removeAll +remark +relmodule +RelayState +regSubmit +RegisterForm +refid +referral +records +rec +reboot +rc +ratio +ratings +r1 +quick +quest +queryPart +qtype +qr +purpose +pto +proxypwd +proxyport +proto +promote +probe +PRIVILEGES +printview +previewwrite +pressthis +prenom +posttext +pop +point +pms +pmnotif +plus +pkg +phpMyAdmin +phonenumber +phone2 +phone1 +pfrom +paypal +paste +passwrd +passwordConfirm +password3 +partner +parked +parenttab +ParentID +param1 +panel +pageTitle +PAGE +Page +pack +p2ajax +OutSum +OUTPUTFILETEXT +OUTPUT +orderNo +or +optimize +oldname +offline +occ +npw +np +nowarned +nombre +nn +nID +newuseremail +newtitle +newtext +newtag +newstatus +newpwd +NEWPRIVILEGES +newpassword2 +newPass2 +newpass1 +newPass +NEWNAME +NEWHOST +newdid +NEWCHOICE +nb +name1 +NAME +mytribe +mtime +mp +movie +movefile +mood +months +monitorconfig +modifier +modid +mirror +mhpw +metrics +methodpayload +membername +memberID +membergroups +mediaid +maxtime +markread +markdown +mailto +mailSubject +mailid +longtitle +logoff +loginguest +logid +locations +locationName +listPrice +linkname +limitTypes +lim +lID +legend +leap +lead +lcwidget +latest +languageID +labelName +keystring +keepHTML +keep +ItemId +itemID +itemCode +ipp +IP +invoiceid +InvId +intTimestamp +intDatabaseIndex +institution +installmode +inst +INSERTTYPE +initdb +INDEXTYPE +INDEXCOLUMNLIST +imaptest +IGNOREFIRST +if +idstring +idlist +hosts +HOST +hdnProductId +gzip +grid +GRANTOPTION +google +gold +gids +getInfos +GenerateForm +generated +fullsite +frontend +fromdate +formSubmit +FormbuilderTestModel +FORMAT +follow +folders +folderID +foffset +focus +fldName +filtertype +filterText +filterName +fileFormat +Fields +FIELDNAMES +field2 +field1 +fee +f2 +EXPORTTABLE +exportImages +EXPORTDB +exception +exact +eventID +eval +endyear +en +email1 +EMAIL +elementId +eids +education +editParts +Edit +ec +dtstart +dtend +downloadpos +downloaded +dname +dm +dlconfig +distinct +displayVisualization +director +directmode +dipl +difficulty +DeviceId +design +descending +desact +deluser +DELIMITER +deleteUsers +deletefolder +deldir +decline +dbms +DBLIST +dbg +dbase +dayDelta +date1 +dataType +DATABASE +d1 +cvv +customers +currentid +curr +curfile +cur +ctid +credits +createclass +cr +countryName +countryCode +counter +core +coords +contactName +connectt +conflict +configfile +completed +comp +commenttext +colours +colName +CollectionId +Cmd +clientcookies +clickedon +clicked +cleanup +CHOICE +chartSettings +chars +charge +channelName +channelID +changed +cf +cert +cdone +catId +card +canvas +campaignid +cal +cainfo +build +btn +breakdown +border +bool +blocks +blockid +blacklist +birthDate +binary +bi +bbox +banreason +bank +bandwidth +backend +autodeltime +autodel +autocomplete +authorName +authorized +AuthItem +AuthChildForm +atype +AttachmentName +AssignmentForm +Artist +Article +aoe +allrows +alli2 +allDay +akey +ajxaction +ajaxRequest +aggregate +adminpwd +admid +addon +additional +ADAPTER +ACTION +ACCESSLEVEL +a1 +3 +1