jhttp_scan

Version
1.0.1 (last update on Aug 26, 2010)
Rating
Compatibility

Votes
Favoured
11
License
GPLv2 or later
Non-Commercial
Type
Views
6146
Date Added
13 March 2010
Requires PHP 5.3 to run!
jscan_http is a command line utility that scans the directory of a Joomla site for PHP files and tries to access them directly via the web server. Ideally no output should be received from directly accessing any PHP file, with the exception of index.php, index2.php (etc) which should display regular HTML output. Some files will return warning text, such as "Restricted Access", and these will be ignored and considered safe. Any unexpected output will be logged to the console.
This tool is ideal for developers of Joomla component, modules, plugins and templates to ensure that their files correctly prevent direct access (by specifying the exact path to the file in the URL).





