Forked-daapd path traversal vulnerability Nuclei template

I went to a local OWASP chapter meeting last week and saw a presentation on the Nuclei vulnerability scanner by Alex Archondakis. I was previously vaguely aware of the tool, but thought this was a good opportunity to take a look in more depth.

A good place to start was creating a detection template for a vulnerability I discovered which has had a patch for a couple of years now.

I was very pleased with the results. With relatively little effort on my part, I was able to create a working template – essentially a signature for the vulnerability.

You can find it on GitHub.

This entry was posted in Security and tagged , . Bookmark the permalink.

Leave a comment