Merge pull request #346 from ngkogkos/patch-1

Update with missing common endpoints

Source: https://twitter.com/NahamSec/status/1177672652011343873
This commit is contained in:
g0tmi1k 2019-09-30 10:37:56 +01:00 committed by GitHub
commit 352782af09
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -123,10 +123,10 @@
/.gitk /.gitk
/.gitkeep /.gitkeep
/.gitlab /.gitlab
/.gitlab-ci.yml
/.gitlab/issue_templates /.gitlab/issue_templates
/.gitlab/merge_request_templates /.gitlab/merge_request_templates
/.gitlab/route-map.yml /.gitlab/route-map.yml
/.gitlab-ci.yml
/.gitmodules /.gitmodules
/.gitreview /.gitreview
/.grunt/ /.grunt/
@ -439,6 +439,7 @@
/_index.php /_index.php
/_install /_install
/_layouts /_layouts
/_legacy
/_log/ /_log/
/_log/access-log /_log/access-log
/_log/access.log /_log/access.log
@ -487,6 +488,9 @@
/accounts /accounts
/accounts.sql /accounts.sql
/accounts.txt /accounts.txt
/activity
/actuator
/actuator/heapdump
/add.php /add.php
/adduser /adduser
/adm /adm
@ -537,6 +541,7 @@
/admin/fckeditor/editor/filemanager/upload/asp/upload.asp /admin/fckeditor/editor/filemanager/upload/asp/upload.asp
/admin/fckeditor/editor/filemanager/upload/aspx/upload.aspx /admin/fckeditor/editor/filemanager/upload/aspx/upload.aspx
/admin/fckeditor/editor/filemanager/upload/php/upload.php /admin/fckeditor/editor/filemanager/upload/php/upload.php
/admin/heapdump
/admin/include/spaw2/dialogs/dialog.php /admin/include/spaw2/dialogs/dialog.php
/admin/includes/configure.php~ /admin/includes/configure.php~
/admin/js/tiny_mce/ /admin/js/tiny_mce/
@ -586,6 +591,7 @@
/adminer-4.2.0-mysql.php /adminer-4.2.0-mysql.php
/adminer-4.2.0.php /adminer-4.2.0.php
/adminer.php /adminer.php
/adminer.sql
/adminer/ /adminer/
/adminer/adminer.php /adminer/adminer.php
/administracao.php /administracao.php
@ -618,6 +624,7 @@
/ajax/app/yahoo/yahoo.htm /ajax/app/yahoo/yahoo.htm
/alfa/ /alfa/
/all.sql /all.sql
/altair
/amad.php /amad.php
/amministratore.php /amministratore.php
/answers/error_log /answers/error_log
@ -631,7 +638,9 @@
/apc/apc.php /apc/apc.php
/apc/index.php /apc/index.php
/api/ /api/
/api/batch
/api/error_log /api/error_log
/api/proxy
/apibuild.pyc /apibuild.pyc
/app.config /app.config
/app.js /app.js
@ -680,6 +689,7 @@
/app_dev.php /app_dev.php
/appcache.manifest /appcache.manifest
/application.log /application.log
/application.wadl
/application/cache/ /application/cache/
/application/logs/ /application/logs/
/apps/frontend/config/app.yml /apps/frontend/config/app.yml
@ -753,6 +763,7 @@
/base/ /base/
/bb-admin/ /bb-admin/
/bd.sql /bd.sql
/beans
/beta/ /beta/
/bigdump.php /bigdump.php
/billing /billing
@ -845,6 +856,7 @@
/changelog.txt /changelog.txt
/CHANGES.html /CHANGES.html
/changes.txt /changes.txt
/charts
/checked_accounts.txt /checked_accounts.txt
/chubb.xml /chubb.xml
/cidr.txtа /cidr.txtа
@ -862,6 +874,7 @@
/classes/cookie.txt /classes/cookie.txt
/cleanup.log /cleanup.log
/ClientAccessPolicy.xml /ClientAccessPolicy.xml
/clientaccesspolicy.xml
/cliente/downloads/h4xor.php /cliente/downloads/h4xor.php
/clients.mdb /clients.mdb
/clients.sql /clients.sql
@ -944,10 +957,10 @@
/config/application.ini /config/application.ini
/config/aws.yml /config/aws.yml
/config/banned_words.txt /config/banned_words.txt
/config/config.ini
/config/config.inc.php /config/config.inc.php
/config/config.inc.php.bak /config/config.inc.php.bak
/config/config.inc.php.dist /config/config.inc.php.dist
/config/config.ini
/config/database.yml /config/database.yml
/config/database.yml.pgsql /config/database.yml.pgsql
/config/database.yml.sqlite3 /config/database.yml.sqlite3
@ -1013,7 +1026,6 @@
/crond/logs/ /crond/logs/
/cronlog.txt /cronlog.txt
/crossdomain.xml /crossdomain.xml
/clientaccesspolicy.xml
/culeadora.txt /culeadora.txt
/custom/db.ini /custom/db.ini
/customers.csv /customers.csv
@ -1101,6 +1113,7 @@
/debug_error.jsp /debug_error.jsp
/default.php /default.php
/delete.php /delete.php
/demo
/demo.php /demo.php
/demo/ejb/index.html /demo/ejb/index.html
/demo/sql/index.jsp /demo/sql/index.jsp
@ -1123,6 +1136,7 @@
/doctrine/schema/tmx.yml /doctrine/schema/tmx.yml
/documentation/config.yml /documentation/config.yml
/dom.php /dom.php
/download
/download.php /download.php
/download/history.csv /download/history.csv
/download/users.csv /download/users.csv
@ -1174,6 +1188,7 @@
/engine/classes/swfupload/swfupload.swf /engine/classes/swfupload/swfupload.swf
/engine/classes/swfupload/swfupload_f9.swf /engine/classes/swfupload/swfupload_f9.swf
/engine/libs/spaw/dialogs/dialog.php /engine/libs/spaw/dialogs/dialog.php
/env
/environment.rb /environment.rb
/err /err
/error /error
@ -1235,6 +1250,7 @@
/FCKeditor22/ /FCKeditor22/
/FCKeditor23/ /FCKeditor23/
/FCKeditor24/ /FCKeditor24/
/fetch
/ffftp.ini /ffftp.ini
/file.php /file.php
/file.sql /file.sql
@ -1292,12 +1308,18 @@
/globals.inc /globals.inc
/grabbed.html /grabbed.html
/gradlew /gradlew
/graph
/graphiql
/graphql
/graphql-explorer
/graphql/console
/Gruntfile.js /Gruntfile.js
/haproxy_stats /haproxy_stats
/haproxy_stats1 /haproxy_stats1
/haproxy_stats2 /haproxy_stats2
/haproxy_stats3 /haproxy_stats3
/HEADER.txt /HEADER.txt
/heapdump
/HISTORY /HISTORY
/HISTORY.rst /HISTORY.rst
/home.rar /home.rar
@ -1407,6 +1429,7 @@
/ispmgr/ /ispmgr/
/javax.faces.resource.../WEB-INF/web.xml.jsf /javax.faces.resource.../WEB-INF/web.xml.jsf
/jdbc /jdbc
/jenkins/script
/jira/ /jira/
/jmx-console /jmx-console
/jmx-console/ /jmx-console/
@ -1540,6 +1563,7 @@
/maintenance/test2.php /maintenance/test2.php
/Makefile /Makefile
/manage.py /manage.py
/manage/heapdump
/manager/ /manager/
/manager/html /manager/html
/master.passwd /master.passwd
@ -1560,6 +1584,7 @@
/memoria /memoria
/mercurial.ini /mercurial.ini
/META-INF/context.xml /META-INF/context.xml
/metrics
/moadmin.php /moadmin.php
/moderator.php /moderator.php
/moderator/ /moderator/
@ -1611,6 +1636,7 @@
/nginx.conf /nginx.conf
/nginx_status /nginx_status
/nohup.out /nohup.out
/nomad
/npm-debug.log /npm-debug.log
/nst.php /nst.php
/nstview.php /nstview.php
@ -1636,6 +1662,7 @@
/orders.xls /orders.xls
/orders_log /orders_log
/ospfd.conf /ospfd.conf
/out
/output-build.txt /output-build.txt
/p.php /p.php
/p/m/a/ /p/m/a/
@ -1895,6 +1922,7 @@
/project.pbxproj /project.pbxproj
/project.xml /project.xml
/propel.ini /propel.ini
/proxy
/prv/ /prv/
/public/spaw2/dialogs/dialog.php /public/spaw2/dialogs/dialog.php
/publication_list.xml /publication_list.xml
@ -1913,7 +1941,9 @@
/Read /Read
/Read%20Me.txt /Read%20Me.txt
/read.me /read.me
/read_file
/Read_Me.txt /Read_Me.txt
/readfile
/README /README
/readme /readme
/README.htm /README.htm
@ -1960,6 +1990,8 @@
/secring.bak /secring.bak
/secring.pgp /secring.pgp
/secring.skr /secring.skr
/secure/attachmentzip/
/secure/ConfigureReport.jspa
/sentemails.log /sentemails.log
/serv-u.ini /serv-u.ini
/server-info /server-info
@ -2060,6 +2092,7 @@
/STATUS.txt /STATUS.txt
/status.xsl /status.xsl
/status/ /status/
/status2
/statusicon/ /statusicon/
/stronghold-info /stronghold-info
/stronghold-status /stronghold-status
@ -2071,6 +2104,7 @@
/svn.revision /svn.revision
/SVN/ /SVN/
/svn/ /svn/
/swagger-ui
/swfupload /swfupload
/sxd/ /sxd/
/sxd/backup/ /sxd/backup/
@ -2136,6 +2170,7 @@
/test9.php /test9.php
/test_ /test_
/test_ip.php /test_ip.php
/testing
/tests /tests
/tests/phpunit_report.xml /tests/phpunit_report.xml
/Thumbs.db /Thumbs.db
@ -2261,6 +2296,7 @@
/vb.rar /vb.rar
/vb.sql /vb.sql
/vb.zip /vb.zip
/version
/VERSION.txt /VERSION.txt
/view.php /view.php
/vtund.conf /vtund.conf