vugex-source-detect: Vugex Framework Source Code - Detect

日期: 2025-08-01 | 影响软件: vugex-source-detect | POC: 已公开

漏洞描述

Detects the presence of exposed Vugex Framework source code by identifying common files and directories associated with the framework.

PoC代码[已公开]

id: vugex-source-detect

info:
  name: Vugex Framework Source Code - Detect
  author: ProjectDiscoveryAI,pdteam
  severity: medium
  description: |
    Detects the presence of exposed Vugex Framework source code by identifying common files and directories associated with the framework.
  metadata:
    verified: true
    max-request: 1
    shodan-query: html:"Vugex Framework"
  tags: vugex,framework,disclosure,info-leak,discovery

http:
  - raw:
      - |
        GET / HTTP/1.1
        Host: {{Hostname}}

    matchers:
      - type: regex
        regex:
          - "@framework\\s+Vugex Framework"
          - "require_once\\s+'?/var/www/scripts/help.php'?"
        condition: and
# digest: 480a00453043021f6925176bfa5a3d4e9ebcb4efc9c676060eb442d3c37addc8071d88325678750220512b2cd89fffcf9b9268f500cc848e0f2b9f793e690ddc0fb0f604b79e868a07:922c64590222798bb761d5b6d8e72950