From 38f1689e82294fb84fbdb21c466195174f6fedd2 Mon Sep 17 00:00:00 2001 From: ron Date: Wed, 17 Nov 2010 23:57:17 +0000 Subject: [PATCH] Added a leading '/' to paths where it was missing before. --- nselib/data/http-fingerprints.lua | 294 +++++++++++++++--------------- 1 file changed, 147 insertions(+), 147 deletions(-) diff --git a/nselib/data/http-fingerprints.lua b/nselib/data/http-fingerprints.lua index 20e8966c1..6e84326ab 100644 --- a/nselib/data/http-fingerprints.lua +++ b/nselib/data/http-fingerprints.lua @@ -120,150 +120,150 @@ table.insert(fingerprints, { table.insert(fingerprints, { category='general', probes={ - {path='manager/', method='HEAD'}, - {path='manager/html/upload', method='HEAD'}, - {path='web-console/ServerInfo.jsp', method='HEAD'}, - {path='jmx-console/', method='HEAD'}, - {path='CFIDE/administrator/enter.cfm', method='HEAD'}, - {path='CFIDE/componentutils/login.cfm', method='HEAD'}, - {path='admin.php', method='HEAD'}, - {path='admin/', method='HEAD'}, - {path='administrator/', method='HEAD'}, - {path='moderator/', method='HEAD'}, - {path='webadmin/', method='HEAD'}, - {path='adminarea/', method='HEAD'}, - {path='bb-admin/', method='HEAD'}, - {path='adminLogin/', method='HEAD'}, - {path='admin_area/', method='HEAD'}, - {path='panel-administracion/', method='HEAD'}, - {path='instadmin/', method='HEAD'}, - {path='memberadmin/', method='HEAD'}, - {path='administratorlogin/', method='HEAD'}, - {path='adm/', method='HEAD'}, - {path='admin/account.php', method='HEAD'}, - {path='admin/index.php', method='HEAD'}, - {path='admin/login.php', method='HEAD'}, - {path='admin/admin.php', method='HEAD'}, - {path='admin/account.php', method='HEAD'}, - {path='joomla/administrator', method='HEAD'}, - {path='login.php', method='HEAD'}, - {path='admin_area/admin.php', method='HEAD'}, - {path='admin_area/login.php', method='HEAD'}, - {path='siteadmin/login.php', method='HEAD'}, - {path='siteadmin/index.php', method='HEAD'}, - {path='siteadmin/login.html', method='HEAD'}, - {path='admin/account.html', method='HEAD'}, - {path='admin/index.html', method='HEAD'}, - {path='admin/login.html', method='HEAD'}, - {path='admin/admin.html', method='HEAD'}, - {path='admin_area/index.php', method='HEAD'}, - {path='bb-admin/index.php', method='HEAD'}, - {path='bb-admin/login.php', method='HEAD'}, - {path='bb-admin/admin.php', method='HEAD'}, - {path='admin/home.php', method='HEAD'}, - {path='admin_area/login.html', method='HEAD'}, - {path='admin_area/index.html', method='HEAD'}, - {path='admin/controlpanel.php', method='HEAD'}, - {path='admincp/index.asp', method='HEAD'}, - {path='admincp/login.asp', method='HEAD'}, - {path='admincp/index.html', method='HEAD'}, - {path='admin/account.html', method='HEAD'}, - {path='adminpanel.html', method='HEAD'}, - {path='webadmin.html', method='HEAD'}, - {path='webadmin/index.html', method='HEAD'}, - {path='webadmin/admin.html', method='HEAD'}, - {path='webadmin/login.html', method='HEAD'}, - {path='admin/admin_login.html', method='HEAD'}, - {path='admin_login.html', method='HEAD'}, - {path='panel-administracion/login.html', method='HEAD'}, - {path='admin/cp.php', method='HEAD'}, - {path='cp.php', method='HEAD'}, - {path='administrator/index.php', method='HEAD'}, - {path='administrator/login.php', method='HEAD'}, - {path='nsw/admin/login.php', method='HEAD'}, - {path='webadmin/login.php', method='HEAD'}, - {path='admin/admin_login.php', method='HEAD'}, - {path='admin_login.php', method='HEAD'}, - {path='administrator/account.php', method='HEAD'}, - {path='administrator.php', method='HEAD'}, - {path='admin_area/admin.html', method='HEAD'}, - {path='pages/admin/admin-login.php', method='HEAD'}, - {path='admin/admin-login.php', method='HEAD'}, - {path='admin-login.php', method='HEAD'}, - {path='bb-admin/index.html', method='HEAD'}, - {path='bb-admin/login.html', method='HEAD'}, - {path='bb-admin/admin.html', method='HEAD'}, - {path='admin/home.html', method='HEAD'}, - {path='modelsearch/login.php', method='HEAD'}, - {path='moderator.php', method='HEAD'}, - {path='moderator/login.php', method='HEAD'}, - {path='moderator/admin.php', method='HEAD'}, - {path='account.php', method='HEAD'}, - {path='pages/admin/admin-login.html', method='HEAD'}, - {path='admin/admin-login.html', method='HEAD'}, - {path='admin-login.html', method='HEAD'}, - {path='controlpanel.php', method='HEAD'}, - {path='admincontrol.php', method='HEAD'}, - {path='admin/adminLogin.html', method='HEAD'}, - {path='adminLogin.html', method='HEAD'}, - {path='admin/adminLogin.html', method='HEAD'}, - {path='home.html', method='HEAD'}, - {path='rcjakar/admin/login.php', method='HEAD'}, - {path='adminarea/index.html', method='HEAD'}, - {path='adminarea/admin.html', method='HEAD'}, - {path='webadmin.php', method='HEAD'}, - {path='webadmin/index.php', method='HEAD'}, - {path='webadmin/admin.php', method='HEAD'}, - {path='admin/controlpanel.html', method='HEAD'}, - {path='admin.html', method='HEAD'}, - {path='admin/cp.html', method='HEAD'}, - {path='cp.html', method='HEAD'}, - {path='adminpanel.php', method='HEAD'}, - {path='moderator.html', method='HEAD'}, - {path='administrator/index.html', method='HEAD'}, - {path='administrator/login.html', method='HEAD'}, - {path='user.html', method='HEAD'}, - {path='administrator/account.html', method='HEAD'}, - {path='administrator.html', method='HEAD'}, - {path='login.html', method='HEAD'}, - {path='modelsearch/login.html', method='HEAD'}, - {path='moderator/login.html', method='HEAD'}, - {path='adminarea/login.html', method='HEAD'}, - {path='panel-administracion/index.html', method='HEAD'}, - {path='panel-administracion/admin.html', method='HEAD'}, - {path='modelsearch/index.html', method='HEAD'}, - {path='modelsearch/admin.html', method='HEAD'}, - {path='admincontrol/login.html', method='HEAD'}, - {path='adm/index.html', method='HEAD'}, - {path='adm.html', method='HEAD'}, - {path='moderator/admin.html', method='HEAD'}, - {path='user.php', method='HEAD'}, - {path='account.html', method='HEAD'}, - {path='controlpanel.html', method='HEAD'}, - {path='admincontrol.html', method='HEAD'}, - {path='panel-administracion/login.php', method='HEAD'}, - {path='wp-login.php', method='HEAD'}, - {path='adminLogin.php', method='HEAD'}, - {path='admin/adminLogin.php', method='HEAD'}, - {path='adminarea/index.php', method='HEAD'}, - {path='adminarea/admin.php', method='HEAD'}, - {path='adminarea/login.php', method='HEAD'}, - {path='panel-administracion/index.php', method='HEAD'}, - {path='panel-administracion/admin.php', method='HEAD'}, - {path='modelsearch/index.php', method='HEAD'}, - {path='modelsearch/admin.php', method='HEAD'}, - {path='admincontrol/login.php', method='HEAD'}, - {path='adm/admloginuser.php', method='HEAD'}, - {path='admloginuser.php', method='HEAD'}, - {path='admin2.php', method='HEAD'}, - {path='admin2/login.php', method='HEAD'}, - {path='admin2/index.php', method='HEAD'}, - {path='adm/index.php', method='HEAD'}, - {path='adm.php', method='HEAD'}, - {path='affiliate.php', method='HEAD'}, - {path='adm_auth.php', method='HEAD'}, - {path='memberadmin.php', method='HEAD'}, - {path='administratorlogin.php', method='HEAD'}, + {path='/manager/', method='HEAD'}, + {path='/manager/html/upload', method='HEAD'}, + {path='/web-console/ServerInfo.jsp', method='HEAD'}, + {path='/jmx-console/', method='HEAD'}, + {path='/CFIDE/administrator/enter.cfm', method='HEAD'}, + {path='/CFIDE/componentutils/login.cfm', method='HEAD'}, + {path='/admin.php', method='HEAD'}, + {path='/admin/', method='HEAD'}, + {path='/administrator/', method='HEAD'}, + {path='/moderator/', method='HEAD'}, + {path='/webadmin/', method='HEAD'}, + {path='/adminarea/', method='HEAD'}, + {path='/bb-admin/', method='HEAD'}, + {path='/adminLogin/', method='HEAD'}, + {path='/admin_area/', method='HEAD'}, + {path='/panel-administracion/', method='HEAD'}, + {path='/instadmin/', method='HEAD'}, + {path='/memberadmin/', method='HEAD'}, + {path='/administratorlogin/', method='HEAD'}, + {path='/adm/', method='HEAD'}, + {path='/admin/account.php', method='HEAD'}, + {path='/admin/index.php', method='HEAD'}, + {path='/admin/login.php', method='HEAD'}, + {path='/admin/admin.php', method='HEAD'}, + {path='/admin/account.php', method='HEAD'}, + {path='/joomla/administrator', method='HEAD'}, + {path='/login.php', method='HEAD'}, + {path='/admin_area/admin.php', method='HEAD'}, + {path='/admin_area/login.php', method='HEAD'}, + {path='/siteadmin/login.php', method='HEAD'}, + {path='/siteadmin/index.php', method='HEAD'}, + {path='/siteadmin/login.html', method='HEAD'}, + {path='/admin/account.html', method='HEAD'}, + {path='/admin/index.html', method='HEAD'}, + {path='/admin/login.html', method='HEAD'}, + {path='/admin/admin.html', method='HEAD'}, + {path='/admin_area/index.php', method='HEAD'}, + {path='/bb-admin/index.php', method='HEAD'}, + {path='/bb-admin/login.php', method='HEAD'}, + {path='/bb-admin/admin.php', method='HEAD'}, + {path='/admin/home.php', method='HEAD'}, + {path='/admin_area/login.html', method='HEAD'}, + {path='/admin_area/index.html', method='HEAD'}, + {path='/admin/controlpanel.php', method='HEAD'}, + {path='/admincp/index.asp', method='HEAD'}, + {path='/admincp/login.asp', method='HEAD'}, + {path='/admincp/index.html', method='HEAD'}, + {path='/admin/account.html', method='HEAD'}, + {path='/adminpanel.html', method='HEAD'}, + {path='/webadmin.html', method='HEAD'}, + {path='/webadmin/index.html', method='HEAD'}, + {path='/webadmin/admin.html', method='HEAD'}, + {path='/webadmin/login.html', method='HEAD'}, + {path='/admin/admin_login.html', method='HEAD'}, + {path='/admin_login.html', method='HEAD'}, + {path='/panel-administracion/login.html', method='HEAD'}, + {path='/admin/cp.php', method='HEAD'}, + {path='/cp.php', method='HEAD'}, + {path='/administrator/index.php', method='HEAD'}, + {path='/administrator/login.php', method='HEAD'}, + {path='/nsw/admin/login.php', method='HEAD'}, + {path='/webadmin/login.php', method='HEAD'}, + {path='/admin/admin_login.php', method='HEAD'}, + {path='/admin_login.php', method='HEAD'}, + {path='/administrator/account.php', method='HEAD'}, + {path='/administrator.php', method='HEAD'}, + {path='/admin_area/admin.html', method='HEAD'}, + {path='/pages/admin/admin-login.php', method='HEAD'}, + {path='/admin/admin-login.php', method='HEAD'}, + {path='/admin-login.php', method='HEAD'}, + {path='/bb-admin/index.html', method='HEAD'}, + {path='/bb-admin/login.html', method='HEAD'}, + {path='/bb-admin/admin.html', method='HEAD'}, + {path='/admin/home.html', method='HEAD'}, + {path='/modelsearch/login.php', method='HEAD'}, + {path='/moderator.php', method='HEAD'}, + {path='/moderator/login.php', method='HEAD'}, + {path='/moderator/admin.php', method='HEAD'}, + {path='/account.php', method='HEAD'}, + {path='/pages/admin/admin-login.html', method='HEAD'}, + {path='/admin/admin-login.html', method='HEAD'}, + {path='/admin-login.html', method='HEAD'}, + {path='/controlpanel.php', method='HEAD'}, + {path='/admincontrol.php', method='HEAD'}, + {path='/admin/adminLogin.html', method='HEAD'}, + {path='/adminLogin.html', method='HEAD'}, + {path='/admin/adminLogin.html', method='HEAD'}, + {path='/home.html', method='HEAD'}, + {path='/rcjakar/admin/login.php', method='HEAD'}, + {path='/adminarea/index.html', method='HEAD'}, + {path='/adminarea/admin.html', method='HEAD'}, + {path='/webadmin.php', method='HEAD'}, + {path='/webadmin/index.php', method='HEAD'}, + {path='/webadmin/admin.php', method='HEAD'}, + {path='/admin/controlpanel.html', method='HEAD'}, + {path='/admin.html', method='HEAD'}, + {path='/admin/cp.html', method='HEAD'}, + {path='/cp.html', method='HEAD'}, + {path='/adminpanel.php', method='HEAD'}, + {path='/moderator.html', method='HEAD'}, + {path='/administrator/index.html', method='HEAD'}, + {path='/administrator/login.html', method='HEAD'}, + {path='/user.html', method='HEAD'}, + {path='/administrator/account.html', method='HEAD'}, + {path='/administrator.html', method='HEAD'}, + {path='/login.html', method='HEAD'}, + {path='/modelsearch/login.html', method='HEAD'}, + {path='/moderator/login.html', method='HEAD'}, + {path='/adminarea/login.html', method='HEAD'}, + {path='/panel-administracion/index.html', method='HEAD'}, + {path='/panel-administracion/admin.html', method='HEAD'}, + {path='/modelsearch/index.html', method='HEAD'}, + {path='/modelsearch/admin.html', method='HEAD'}, + {path='/admincontrol/login.html', method='HEAD'}, + {path='/adm/index.html', method='HEAD'}, + {path='/adm.html', method='HEAD'}, + {path='/moderator/admin.html', method='HEAD'}, + {path='/user.php', method='HEAD'}, + {path='/account.html', method='HEAD'}, + {path='/controlpanel.html', method='HEAD'}, + {path='/admincontrol.html', method='HEAD'}, + {path='/panel-administracion/login.php', method='HEAD'}, + {path='/wp-login.php', method='HEAD'}, + {path='/adminLogin.php', method='HEAD'}, + {path='/admin/adminLogin.php', method='HEAD'}, + {path='/adminarea/index.php', method='HEAD'}, + {path='/adminarea/admin.php', method='HEAD'}, + {path='/adminarea/login.php', method='HEAD'}, + {path='/panel-administracion/index.php', method='HEAD'}, + {path='/panel-administracion/admin.php', method='HEAD'}, + {path='/modelsearch/index.php', method='HEAD'}, + {path='/modelsearch/admin.php', method='HEAD'}, + {path='/admincontrol/login.php', method='HEAD'}, + {path='/adm/admloginuser.php', method='HEAD'}, + {path='/admloginuser.php', method='HEAD'}, + {path='/admin2.php', method='HEAD'}, + {path='/admin2/login.php', method='HEAD'}, + {path='/admin2/index.php', method='HEAD'}, + {path='/adm/index.php', method='HEAD'}, + {path='/adm.php', method='HEAD'}, + {path='/affiliate.php', method='HEAD'}, + {path='/adm_auth.php', method='HEAD'}, + {path='/memberadmin.php', method='HEAD'}, + {path='/administratorlogin.php', method='HEAD'}, }, matches={ {match='Index of', output='Possible admin folder w/ directory listing'}, @@ -734,7 +734,7 @@ table.insert(fingerprints, { table.insert(fingerprints, { category='printer', probes={ - {path='x_logo.gif', method='HEAD'} + {path='/x_logo.gif', method='HEAD'} }, matches= { {match='', output='Xerox printer'} @@ -1067,8 +1067,8 @@ table.insert(fingerprints, { table.insert(fingerprints, { category='attacks', probes={ - {path='.htaccess', method='GET'}, - {path='.htpasswd', method='GET'} + {path='/.htaccess', method='GET'}, + {path='/.htpasswd', method='GET'} }, matches={ -- We look for a '200 OK' message on this one, because most Apache servers return an access denied