Files
UltyScan/templates/active/Laraval_Environment_File_Found.sh

9 lines
280 B
Bash

AUTHOR='@xer0dayz'
VULN_NAME='Laraval Environment File Found'
URI='/.env'
METHOD='GET'
MATCH="DB_PASSWORD|REDIS_PASSWORD|MAIL_PASSWORD|AWS_SECRET|PUSHER_APP_|MIX_PUSHER_APP_"
SEVERITY='P2 - HIGH'
CURL_OPTS="--user-agent '' -s -L --insecure"
SECONDARY_COMMANDS=''
GREP_OPTIONS='-i'