Ekultek / WhatWaf

Detect and bypass web application firewalls and protection systems
Other
2.55k stars 434 forks source link

Unknown Firewall (4d8b867c2) #1559

Closed WhatWaf-Firewalls closed 1 year ago

WhatWaf-Firewalls commented 2 years ago

WhatWaf version: 2.0.3 Running context: ./whatwaf -u *********************************** Fingerprint:

<!--
GET http://sistemastecnol.com.br HTTP/1.1
Status code: 403
Date: Wed, 29 Jun 2022 14:01:39 GMT
Server: Apache/2.4.6 (CentOS) OpenSSL/1.0.2k-fips PHP/7.4.28
Strict-Transport-Security: max-age=31536000
Content-Length: 483
Connection: close
Content-Type: text/html; charset=iso-8859-1
-->
<!DOCTYPE HTML PUBLIC "-//IETF//DTD HTML 2.0//EN">

<html><head>
<title>403 Forbidden</title>
</head><body>
<h1>Forbidden</h1>
<p>You don't have permission to access /site/;CAT1_GALLERY_1 UNION ALL SELECT (SELECT CAST(CHAR(114)+CHAR(51)+CHAR(100)+CHAR(109)+CHAR(48)+CHAR(118)+CHAR(51)+CHAR(95)+CHAR(104)+CHAR(118)+CHAR(106)+CHAR(95)+CHAR(105)+CHAR(110)+CHAR(106)+CHAR(101)+CHAR(99)+CHAR(116)+CHAR(105)+CHAR(111)+CHAR(110) AS NVARCHAR(4000))),NULL--
on this server.</p>
</body></html>