New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

http-phpmyadmin-dir-traversal reports false positives #1358

phra opened this Issue Oct 17, 2018 · 0 comments


None yet
1 participant

phra commented Oct 17, 2018


the nse script http-phpmyadmin-dir-traversal is reporting false positives due to how the check is performed, in particular it can't distinguish between the a baseline response and a real vulnerable response. i'm going to send a PR to fix it.

phra added a commit to phra/nmap that referenced this issue Oct 17, 2018

fix: vuln check in http-phpmyadmin-dir-traversal
it adds an additional check against a baseline response.

fixes nmap#1358
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment