shortscan
An IIS short filename enumeration tool
Name:shortscan
Category:Fuzzing
Publisher:trickest-mhmdiaa
Created:7/25/2024
Container:
quay.io/trickest/shortscan:v0.9.0-patch-3
Output Type:
License:Unknown
Source:View Source
Parameters
urls to scan--header
header to send with each request (use multiple times for multiple headers)--output
output format (human = human readable; json = JSON) [default: human]--isvuln
bail after determining whether the service is vulnerable [default: false]--timeout
per-request timeout in seconds [default: 10]--fullurl
display the full URL for confirmed files rather than just the filename [default: false]--patience
patience level when determining vulnerability (0 = patient; 1 = very patient) [default: 0]--wordlist
combined wordlist + rainbow table generated with shortutil--stabilise
attempt to get coherent autocomplete results from an unstable server (generates more requests) [default: false]--verbosity
how much noise to make (0 = quiet; 1 = debug; 2 = trace) [default: 0]--characters
filename characters to enumerate [default: JFKGOTMYVHSPCANDXLRWEBQUIZ8549176320-_()&'!#$%@^{}~]--norecurse
don't detect and recurse into subdirectories (disabled when autocomplete is disabled) [default: false]--concurrency
number of requests to make at once [default: 20]--header-file
headers to send with each request (one per line)--autocomplete
autocomplete detection mode (auto = autoselect; method = HTTP method magic; status = HTTP status; distance = Levenshtein distance; none = disable) [default: auto]