漏洞描述
Detects the presence of exposed Vugex Framework source code by identifying common files and directories associated with the framework.
id: vugex-source-detect
info:
name: Vugex Framework Source Code - Detect
author: ProjectDiscoveryAI,pdteam
severity: medium
description: |
Detects the presence of exposed Vugex Framework source code by identifying common files and directories associated with the framework.
metadata:
verified: true
max-request: 1
shodan-query: html:"Vugex Framework"
tags: vugex,framework,disclosure,info-leak,discovery
http:
- raw:
- |
GET / HTTP/1.1
Host: {{Hostname}}
matchers:
- type: regex
regex:
- "@framework\\s+Vugex Framework"
- "require_once\\s+'?/var/www/scripts/help.php'?"
condition: and
# digest: 480a00453043021f6925176bfa5a3d4e9ebcb4efc9c676060eb442d3c37addc8071d88325678750220512b2cd89fffcf9b9268f500cc848e0f2b9f793e690ddc0fb0f604b79e868a07:922c64590222798bb761d5b6d8e72950