XXEinjector automates retrieving files using direct and out of band methods. Directory listing only works in Java apps. BruteForcing method needs to be used for other apps.
Install on Linux:
Install on Windows:
Install Ruby from Ruby-lang.org
Install Git from Git-scm.com
Open Command Prompt and enter the following commands:
Example usage:
No comments:
Post a Comment