shuanx/BurpAPIFinder

shuanx/BurpAPIFinder

Releases2
Frequency2 weeks 5 days
Last Release
Stars1.44K
攻防演练过程中,我们通常会用浏览器访问一些资产,但很多未授权/敏感信息/越权隐匿在已访问接口过html、JS文件等,该插件能让我们发现未授权/敏感信息/越权/登陆接口等。

CVE History

CVEPublishedCVSS v3CVSS v2
4.3 MEDIUM5 MEDIUM

A vulnerability has been found in shuanx BurpAPIFinder up to 2.0.2 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file BurpApiFinder.db. The manipulation leads to denial of service. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.