Browse Exploit & Auxiliary Modules
The Metasploit Project hosts the world's largest database of quality assured exploits, including hundreds of remote exploits, auxiliary modules, and payloads. You can even review the Metasploit Framework source code of any module - or write your own.
Search for modules
HTTP GET Request URI Fuzzer (Incrementing Lengths)
This module sends a series of HTTP GET request with incrementing URL lengths.
Rank
- Normal
Authors
- nullthreat < >
Development
Similar Modules
Usage Information
$ msfconsole
## ### ## ##
## ## #### ###### #### ##### ##### ## #### ######
####### ## ## ## ## ## ## ## ## ## ## ### ##
####### ###### ## ##### #### ## ## ## ## ## ## ##
## # ## ## ## ## ## ## ##### ## ## ## ## ##
## ## #### ### ##### ##### ## #### #### #### ###
##
msf > use auxiliary/fuzzers/http/http_get_uri_long
msf auxiliary(http_get_uri_long) > set RHOST [TARGET IP]
msf auxiliary(http_get_uri_long) > run
## ### ## ##
## ## #### ###### #### ##### ##### ## #### ######
####### ## ## ## ## ## ## ## ## ## ## ### ##
####### ###### ## ##### #### ## ## ## ## ## ## ##
## # ## ## ## ## ## ## ##### ## ## ## ## ##
## ## #### ### ##### ##### ## #### #### #### ###
##
msf > use auxiliary/fuzzers/http/http_get_uri_long
msf auxiliary(http_get_uri_long) > set RHOST [TARGET IP]
msf auxiliary(http_get_uri_long) > run
Module Options
| MAXLENGTH | The longest string length to try (default: 16384) |
| RHOST | The target address |
| RPORT | The target port (default: 80) |
| URIBASE | The base URL to use for the request fuzzer (default: /) |
| VHOST | The virtual host name to use in requests |
| CHOST | The local client address |
| CPORT | The local client port |
| ConnectTimeout | Maximum number of seconds to establish a TCP connection |
| FuzzChar | Sets the character to use for generating long strings |
| FuzzTracer | Sets the magic string to embed into fuzzer string inputs |
| Proxies | Use a proxy chain |
| SSL | Negotiate SSL for outgoing connections |
| SSLVersion | Specify the version of SSL that should be used (accepted: SSL2, SSL3, TLS1) |
| VERBOSE | Enable detailed status messages |
| WORKSPACE | Specify the workspace for this module |
| TCP::max_send_size | Maxiumum tcp segment size. (0 = disable) |
| TCP::send_delay | Delays inserted before every send. (0 = disable) |
