SecLists icon indicating copy to clipboard operation
SecLists copied to clipboard

chore: Add WEB-INF list

Open its0x08 opened this issue 2 years ago • 3 comments

Probably should have added it to Fuzzing directory. Anyway I think it is equally needed in both directories.

its0x08 avatar Aug 30 '22 19:08 its0x08

Interesting. Nice addition! I think the wordlist is fine in that folder. But could you create a simple README.md that has a short explanation of what this list is for? like this. There you can include those three links you listed.

Also, could you rename the wordlist to vulnerability-scan_j2ee-websites_WEB-INF.txt? that way it'll be much more obvious what the wordlist is for

ItsIgnacioPortal avatar Sep 09 '22 04:09 ItsIgnacioPortal

You're right! I myself had to dig a bit when i first found the j2ee lfi/path traverse thing. There wasn't alot of resources around so this was the only one that helped me somewhat.

its0x08 avatar Sep 09 '22 08:09 its0x08

Thank you for the suggestion @its0x08

g0tmi1k avatar Nov 22 '22 12:11 g0tmi1k

@g0tmi1k I think this wordlist should've been renamed to vulnerability-scan_j2ee-websites_WEB-INF.txt, because it's hard to tell what a wordlist is for if they have vague names. What do you think?

ItsIgnacioPortal avatar Nov 23 '22 04:11 ItsIgnacioPortal