VulnX – CMS And Vulnerabilites Detector From alphabanklog
Vulnx is a cms and vulnerabilities detector, an intelligent auto shell injector, fast cms detection of target and fast scanner and information gathering like subdomains, IP addresses, country, org, time zone, region, ans and more… Instead of injecting shell and checking it works like all the other tools do, vulnx analyses the response with and receive if shell success uploaded or no. vulnx is searching for URLs with dorks.
- Detect cms (WordPress, joomla, prestashop, drupal, opencart, magento, lokomedia)
- Target information gatherings
- Target Subdomains gathering
- Multi-threading on demand
- Checks for vulnerabilities
- Auto shell injector
- Exploit dork searcher
Exploits
Joomla
- 1 Com Jce
- 2 Com Jwallpapers
- 3 Com Jdownloads
- 4 Com Weblinks
- 5 Com Fabrik
- 6 Com Jdownloads Index
- 7 Com Foxcontact
- 8 Com Blog
- 9 Com Users
- 10 Com Ads Manager
- 11 Com Sexycontactform
- 12 Com Media
- Mod_simplefileupload
- Com Facileforms
WordPress
- Simple Ads Manager
- InBoundio Marketing
- WPshop eCommerce
- Synoptic
- Showbiz Pro
- Job Manager
- Formcraft
- PowerZoom
- Download Manager
- Cherry Framework
- Catpro
- Blaze SlideShow
- Wysija-Newsletters
Drupal
- Add Admin
- Drupal BruteForcer
- Drupal Geddon2
PrestaShop
- attributewizardpro
- columnadverts
- soopamobile
- pk_flexmenu
- pk_vertflexmenu
- nvn_export_orders
- megamenu
- tdpsthemeoptionpanel
- psmodthemeoptionpanel
- masseditproduct
- blocktestimonial
- soopabanners
- Vtermslideshow
- simpleslideshow
- productpageadverts
- homepageadvertise
- homepageadvertise2
- jro_homepageadvertise
- advancedslider
- cartabandonmentpro
- cartabandonmentproOld
- videostab
- wg24themeadministration
- fieldvmegamenu
- wdoptionpanel
Opencart
Available command line optionsREAD VULNX WIKI
Code:
usage: vulnx [options]
-u –url url target to scan
-D –dorks search webs with dorks
-o –output specify output directory
-t –timeout http requests timeout
-c –cms-info search cms info[themes,plugins,user,version..]
-e –exploit searching vulnerability & run exploits
-w –web-info web informations gathering
-d –domain-info subdomains informations gathering
-l, –dork-list list names of dorks exploits
–threads number of threads
Click to expand…
Docker
VulnX can be launched in docker.
Code:
git clone https://github.com/anouarbensaad/VulnX.git
cd VulnX
docker build -t vulnx ./docker/
docker run -it –name vulnx vulnx:latest -u
make a local volume to view the results into a logfile
Code:
docker run -it –name vulnx -v “$PWD/logs:/VulnX/logs” vulnx:latest -u
Install VulnX
Code:
git clone https://github.com/anouarbensaad/VulnX.git
cd VulnX
chmod + x install.sh
./install.sh
Now run vulnx
Code:
vulnx -u http://example.com –timeout 3 -c all -d -w –exploit
example command for searching dorks : -D or –dorks , -l –list-dorks
Code:
vulnx –list-dorks return table of exploits name. vulnx -D blaze return urls found with blaze dork
You can also buy instant:
Cashapp Money Transfer Click here
Paypal Money Transfer Click here
Western Union Money Transfer Click here
Venmo Money Transfer Click here
Bank Money Transfer Click here to Contact Us