Description

This plugin greps every page for path disclosure vulnerabilities like:

  • C:\www\files\…
  • /var/www/htdocs/…

The results are saved to the KB, and used by all the plugins that need to know the location of a file inside the remote web server.

Plugin type

Grep

Options

This plugin doesn’t have any user configured options.

Source

For more information about this plugin and the associated tests, there’s always the source code to understand exactly what’s under the hood:
github-logoPlugin source code
Unittest source code

Dependencies

This plugin has no dependencies.