Burpsuite-Parser
view release on metacpan or search on metacpan
t/test1.xml view on Meta::CPAN
Accept: */*
Accept-Language: en
User-Agent: Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 6.0)
Connection: close
]]></request>
<response><![CDATA[HTTP/1.1 200 OK
Date: Mon, 12 Oct 2009 14:27:19 GMT
Server: Apache/2.2.9 (Ubuntu) PHP/5.2.6-bt0 with Suhosin-Patch mod_perl/2.0.4 Perl/v5.10.0
Vary: Accept-Encoding
Content-Length: 3740
Connection: close
Content-Type: text/html;charset=UTF-8
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<html>
<head>
<title>Index of /beef/images</title>
</head>
<body>
<h1>Index of /beef/images</h1>
<table><tr><th><img src="/icons/blank.gif" alt="[ICO]"></th><th><a href="?C=N;O=D">Name</a></th><th><a href="?C=M;O=A">Last modified</a></th><th><a href="?C=S;O=A">Size</a></th><th><a href="?C=D;O=A">Description</a></th></tr><tr><th colspan="5"><hr><...
<tr><td valign="top"><img src="/icons/back.gif" alt="[DIR]"></td><td><a href="/beef/">Parent Directory</a></td><td> </td><td align="right"> - </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="beef.gif">beef.gif</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">486 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="bones.gif">bones.gif</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">356 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="bsd.png">bsd.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">253 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="bsdfreebsd.png">bsdfreebsd.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">329 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="chrome.png">chrome.png</a></td><td align="right">29-Jun-2009 01:02 </td><td align="right">5.1K</td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="epiphany.png">epiphany.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">631 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="firefox.png">firefox.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">368 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="konqueror.png">konqueror.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">285 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="linux.png">linux.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">320 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="mac.png">mac.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">282 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="mozilla.png">mozilla.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">289 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="msie.png">msie.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">314 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="opera.png">opera.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">284 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="safari.png">safari.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">324 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="unknown.png">unknown.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">218 </td></tr>
<tr><td valign="top"><img src="/icons/image2.gif" alt="[IMG]"></td><td><a href="win.png">win.png</a></td><td align="right">18-Jan-2009 03:44 </td><td align="right">334 </td></tr>
<tr><th colspan="5"><hr></th></tr>
</table>
<address>Apache/2.2.9 (Ubuntu) PHP/5.2.6-bt0 with Suhosin-Patch mod_perl/2.0.4 Perl/v5.10.0 Server at 192.168.163.128 Port 80</address>
</body></html>
]]></response>
</requestresponse>
</issue>
<issue>
<serialNumber>4542038331232136192</serialNumber>
<type>5245440</type>
<name>TRACE method is enabled</name>
<host>http://192.168.163.128</host>
<path><![CDATA[/]]></path>
<location><![CDATA[/]]></location>
<severity>Information</severity>
<confidence>Certain</confidence>
<issueBackground><![CDATA[The TRACE method is designed for diagnostic purposes. If enabled, the web server will respond to requests which use the TRACE method by echoing in its response the exact request which was recieved.<br><br>Although this b...
<remediationBackground><![CDATA[The TRACE method should be disabled on the web server.]]></remediationBackground>
<requestresponse>
<request><![CDATA[TRACE / HTTP/1.0
Host: 192.168.163.128
Cookie: 5f14521172325ac3
]]></request>
<response><![CDATA[HTTP/1.1 200 OK
Date: Mon, 12 Oct 2009 14:26:36 GMT
Server: Apache/2.2.9 (Ubuntu) PHP/5.2.6-bt0 with Suhosin-Patch mod_perl/2.0.4 Perl/v5.10.0
Connection: close
Content-Type: message/http
TRACE / HTTP/1.0
Host: 192.168.163.128
Cookie: 5f14521172325ac3
]]></response>
</requestresponse>
</issue>
<issue>
<serialNumber>7327618555200268288</serialNumber>
<type>6291968</type>
<name>Email addresses disclosed</name>
<host>http://192.168.163.128</host>
<path><![CDATA[/beef/js/common.js]]></path>
<location><![CDATA[/beef/js/common.js]]></location>
<severity>Information</severity>
<confidence>Certain</confidence>
<issueBackground><![CDATA[The presence of email addresses within application responses does not necessarily constitute a security vulnerability. Email addresses may appear intentionally within contact information, and many applications (such as w...
<remediationBackground><![CDATA[You should review the email addresses being disclosed by the application, and consider removing any that are unnecessary, or replacing personal addresses with anonymous mailbox addresses (such as helpdesk@example.c...
<issueDetail><![CDATA[The following email address was disclosed in the response:<ul><li>wade@bindshell.net</li></ul>]]></issueDetail>
<requestresponse>
<request><![CDATA[GET /beef/js/common.js HTTP/1.1
Host: 192.168.163.128
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.1.3) Gecko/20090824 Firefox/3.5.3 (.NET CLR 3.5.30729)
Accept: */*
Accept-Language: en-us,en;q=0.5
Accept-Encoding: gzip,deflate
Accept-Charset: ISO-8859-1,utf-8;q=0.7,*;q=0.7
Keep-Alive: 300
Proxy-Connection: keep-alive
Referer: http://192.168.163.128/beef/
]]></request>
<response><![CDATA[HTTP/1.1 200 OK
Date: Mon, 12 Oct 2009 14:27:02 GMT
Server: Apache/2.2.9 (Ubuntu) PHP/5.2.6-bt0 with Suhosin-Patch mod_perl/2.0.4 Perl/v5.10.0
Last-Modified: Sat, 04 Jul 2009 10:17:27 GMT
ETag: "40d80-1149-46dde946a3bc0"
Accept-Ranges: bytes
Content-Length: 4425
Content-Type: application/javascript
// Copyright (c) 2006-2009, Wade Alcorn
// All Rights Reserved
// wade@bindshell.net - http://www.bindshell.net
// --[ DIFF
// diff two arrays
function diff(a,b) {
var c = new Array();
a.each( function(element) {
if(0 > b.indexOf(element)) {
c.push(element);
}
})
return c;
}
// --[ B64REPLACE
// replace a string in a base64 string
function b64replace(b64str, srcstr, deststr) {
str = decode64(b64str);
( run in 0.493 second using v1.01-cache-2.11-cpan-39bf76dae61 )