nuclei-templates/http/token-spray/api-vercel.yaml

37 lines
868 B
YAML
Raw Permalink Normal View History

2021-10-24 05:16:31 +00:00
id: api-vercel
info:
name: Vercel - API Detection
2021-10-24 05:16:31 +00:00
author: dwisiswant0
severity: info
description: Vercel API was detected.
reference:
- https://vercel.com/docs/rest-api
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
2023-10-14 11:27:55 +00:00
cvss-score: 0
cwe-id: CWE-200
metadata:
max-request: 1
2023-10-14 11:27:55 +00:00
tags: token-spray,vercel
2021-10-24 05:16:31 +00:00
self-contained: true
2023-10-14 11:27:55 +00:00
http:
2021-10-24 05:16:31 +00:00
- method: GET
path:
- "https://api.vercel.com/www/user"
2023-10-14 11:27:55 +00:00
2021-10-24 05:16:31 +00:00
headers:
Authorization: Bearer {{token}}
matchers:
- type: word
part: body
words:
- '"user":'
- '"username":'
- '"email":'
condition: and
# digest: 4b0a00483046022100e453d7076b93a15fefaf23195bf6d278dde6cd0809fe2ed049dd453f91e43784022100ef7b70f1946aae18e614327cc98c1cbad46099255acc445b4000643cd5407739:922c64590222798bb761d5b6d8e72950