Giter Site home page Giter Site logo

owasp / vbscan Goto Github PK

View Code? Open in Web Editor NEW
325.0 35.0 119.0 100 KB

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

Home Page: https://www.owasp.org/index.php/OWASP_VBScan_Project

License: GNU General Public License v3.0

Perl 49.95% Perl 6 10.61% HTML 39.44%
owasp vbscan vbulletin vulnerability vulnerability-scanners exploit

vbscan's Introduction

Version 0.1.8 ToolsWatch Best Tools Perl 5.x GPLv3 License Twitter Leader

OWASP VBScan

OWASP VBScan (short for [VB]ulletin Vulnerability [Scan]ner) is an opensource project in perl programming language to detect VBulletin CMS vulnerabilities and analysis them .

Why OWASP VBScan ?

If you want to do a penetration test on a vBulletin Forum, OWASP VBScan is Your best shot ever! This Project is being faster than ever and updated with the latest VBulletin vulnerabilities.

usage :

./vbscan.pl <target>
./vbscan.pl http://target.com/vbulletin





OWASP VBScan 0.1.7 introduction (Youtube)

OWASP VBScan 0.1.7 introduction

OWASP VBScan Teaser (Youtube)

OWASP VBScan Teaser

vbscan's People

Contributors

inv0ke avatar rezasp avatar saturn99 avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

vbscan's Issues

Adaptation

Hello man. You can adapt it to the latest version perl?

vbscan does not show any information

cmd = perl vbscan.pl url.com
no output, just says your reports: reports//
going to the report files created shows a blank txt file and blank html
Perl version: 5.30.1
uname -an = Darwin root.local 19.4.0 Darwin Kernel Version 19.4.0: Wed Mar 4 22:28:40 PST 2020; root:xnu-6153.101.6~15/RELEASE_X86_64 x86_64

VbScan Not work

Hello
Vbscan Not Work
cmd = perl vbscan.pl google.com
screenshot from 2017-02-28 15-55-31
perl -v = v5.22.3
uname -an = Linux 3v1l 4.9.9-100.fc24.x86_64 #1 SMP Fri Feb 10 00:24:41 UTC 2017 x86_64 x86_64 x86_64 GNU/Linux

Module Pathdisclure broken?

Hello, there appears to be an issue with the pathdisclure module, here's the console output:


[user@domain]$ perl pathdisclur.pl
Can't call method "get" on an undefined value at pathdisclure.pl line 5.

And the output if I try to run via bash:

[user@domain]$ ./pathdisclur.pl
./pathdisclure.pl: line 3: syntax error near unexpected token `('
./pathdisclure.pl: line 3: `@plinks = ("forumdisplay.php?do[]=[test.dll]","calendar.php?do[]=[test.dll]","search.php?do[]=[test.dll]","forumrunner/include/album.php","core/vb5/route/channel.php","core/vb5/route/conversation.php","includes/api/interface/noncollapsed.php","includes/api/interface/collapsed.php","vbseo_sitemap/addons/vbseo_sm_vba.php","vbseo_sitemap/addons/vbseo_sm_vba_links.php");'

I'm on the newest version of Kali Linux, scanning one of my vbulletin sites.

Pls add check validator.php

Hi,
I have small idea, pls add check for validator.php file. With this file you can see all files and directories from the folder with vBulletin installed...

Unable to run on ubuntu

After running on ubuntu perl vbscan.pl (link|path)

String found where operator expected at modules/cpfinder.pl line 8, near "fprint "admincp does not exist or renamed""
(Do you need to predeclare fprint?)

Undefined subroutine &main::tprint called at vbscan.pl line 76.
perl v5.14.2

Running the Script on Windows

After Running the code on windows

cmd> perl vbscan.pl

it returns :-
Undefined subroutine &main::tprint called at "PATH"\vbscan.pl line 76

Restore Color

dont forget to use "\x1b[0m" to restore the original terminal color, else the text will stay blue even after vbscan exits .

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.