9 lines
280 B
Bash
9 lines
280 B
Bash
AUTHOR='@xer0dayz'
|
|
VULN_NAME='Laraval Environment File Found'
|
|
URI='/.env'
|
|
METHOD='GET'
|
|
MATCH="DB_PASSWORD|REDIS_PASSWORD|MAIL_PASSWORD|AWS_SECRET|PUSHER_APP_|MIX_PUSHER_APP_"
|
|
SEVERITY='P2 - HIGH'
|
|
CURL_OPTS="--user-agent '' -s -L --insecure"
|
|
SECONDARY_COMMANDS=''
|
|
GREP_OPTIONS='-i' |