Skip to content
KitploitKITPLOIT
ToolsBlog
Log in
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
Nosql-MongoDB-injection-username-password-enumeration — Using this script, you can enumerate Usernames and passwords of Nosql(mongodb) injecion vulnerable web applications. | Kitploit
Tools/GitHubGitHub/an0nlk/nosql-mongodb-injection-username-password-enumeration
Password AttacksWeb Application ExploitationPenetration Testing
GitHuban0nlk/nosql-mongodb-injection-username-password-enumeration

Nosql-MongoDB-injection-username-password-enumeration

Using this script, you can enumerate Usernames and passwords of Nosql(mongodb) injecion vulnerable web applications.

View Repository

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
17535126 years agoReviewed by Kitploit

Nosql injection username and password enumeration script

Using this script, we can enumerate Usernames and passwords of Nosql(mongodb) injecion vulnerable web applications.

Exploit Title: Nosql injection username/password enumeration.
Author: Kalana Sankalpa (Anon LK).
Website: https://blogofkalana.wordpress.com/2019/11/14/nosql-injection-username-and-password-enumeration/

How to run

Usage

nosqli-user-pass-enum.py [-h] [-u URL] [-up parameter] [-pp parameter] [-op parameters] [-ep parameter] [-sc character] [-m Method]

Example

python nosqli-user-pass-enum.py -u http://example.com/index.php -up username -pp password -ep username -op login:login,submit:submit

Arguments

ArgumentsDescription
-h, --hshow this help message and exit
-u URLForm submission url. Eg: http://example.com/index.php
-up parameterParameter name of the username. Eg: username, user
-pp parameterParameter name of the password. Eg: password, pass
-op parametersOther paramters with the values. Separate each parameter with a comma(,).
Eg: login:Login, submit:Submit
-ep parameterParameter that need to enumarate. Eg: username, password
-m MethodMethod of the form. Eg: GET/POST

alt test

alt test

alt test

Download Tool