htmLawed
Discovery
nmap -sC -sV TARGET -p 80
# http-title: htmLawed (1.2.5) test/index.php
/htmLawed.php
/htmLawed_README.txt
/htmLawed_README.htm
/htmLawed_TESTCASE.txtferoxbuster -u http://TARGET -x php,txt,htm,htmlCVE-2022-35914
/vendor/htmlawed/htmlawed/htmLawedTest.php# In some PoCs:
uri = "/"
# or
uri = "/htmLawed.php"Getting a Shell
Last updated