====================================================================================================================================
| # Title : Laravel 4.2 sensitive information disclosure Vulnerability |
| # Author : indoushka |
| # Tested on : windows 10 Français V.(Pro) / browser : Mozilla firefox 61.0.1 (32-bit) |
| # Vendor : https://laravel.com/docs/4.2/queries |
| # Dork : "Whoops! There was an error." |
====================================================================================================================================
poc :
[+] This framework In case you do not set a page for error it displays sensitive information about hosting passwords, databases ... etc
[+] Dorking İn Google Or Other Search Enggine .
[+] https://www.immobiliere-pujol.fr/categorie/avant_apres/
[+] https://youtu.be/tz_w563Nyac
Greetings to :=========================================================================================================================
|
jericho * Larry W. Cashdollar * brutelogic* hyp3rlinx* 9aylas * djroot.dz * LiquidWorm* Hussin-X *D4NB4R * shadow_00715 * yasMouh |
|
=======================================================================================================================================