Brothersoft.com Windows | Games | Mobile | Wallpapers

Advertisement

Simple Local File Inclusion Exploiter 1.1

Helps you to exploit LFI vulnerabilities.

Advertisement

Last Week downloads: 0
Total downloads: 165
  • Last Updated: Dec 1, 2010
  • License: Freeware Free
  • OS: Not Application
  • Requirements: Python 2 or higher

User reviews

0 out of 5 based on 0 ratings for Simple Local File Inclusion Exploiter 1.1

For Simple Local File Inclusion Exploiter 1.1Publisher's description

Advertisement

Simple Local File Inclusion Exploiter is a Security software developed by Valentin H bel.. After our trial and test, the software is proved to be official, secure and free. Here is the official description for Simple Local File Inclusion Exploiter:

Edit By BS Editor: Description
The Simple Local File Inclusion Exploiter helps you to exploit LFI vulnerabilities. After you found one, simply pass the URL of the affected website and the vulnerable parameter to this tool. You can also use this tool to scan a parameter of an ULR for a LFI vulnerability.

Usage
./lfi_sploiter.py –exploit-url= –vulnerable-parameter=

Usage example
./lfi_sploiter.py –exploit-url=http://www.example.com/PaGE.PHP?file=main –vulnerable-parameter=file

Usage notes
- Always use http://….
- When you pass a vulnerable parameter, this tool assumes that it is really vulnerable.
- If you do not know if a parameter is vulnerable, simply pass it to this script and let the scanner have a look.
- Only use one vulnerable parameter at once.
- This tool does not work with SEO URLs, such as http://www.example.com/news-about-the-internet/.
- If you only have a SEO URL, try to find out the real URL which contents parameters.

Feature list
- Provides a random user agent for the connection.
- Checks if a connection to the target can be established.
- Tries catch most errors with error handling.
- Contains a LFI scanner (only scans one parameter at once).
- Finds out how a LFI vulnerability can be exploited (e.g. directory depth).
- Supports nullbytes!
- Exploit features: Dumps a list of interesting files to your hard disk.
- Supports common *nix targets, but no Windows systems.

Known issues
- I know there is more about LFI than it is covered in this tool. But this is the first release,
and more features will be implemented in future versions.
- This tool is only able to handle “simple” LFI vulnerabilities, but not complex ones. For example: Some LFI vulnerabilities consist of two URL parameters or require to find a way around filters. In those cases, this tool unfortunately does not work.
you can free download Simple Local File Inclusion Exploiter 1.1 now.

For Simple Local File Inclusion Exploiter 1.1Related Software

Statement

Please be aware that Brothersoft do not supply any crack, patches, serial numbers or keygen for Simple Local File Inclusion Exploiter,and please consult directly with program authors for any problem with Simple Local File Inclusion Exploiter.