2021-06-05 10:26:17 +00:00
|
|
|
id: sap-router-info-leak
|
|
|
|
|
|
|
|
info:
|
|
|
|
name: SAPRouter - Routing information leak
|
|
|
|
author: randomstr1ng
|
|
|
|
severity: critical
|
2022-03-22 03:48:47 +00:00
|
|
|
description: SAPRouter contains an information leakage vulnerability.
|
|
|
|
reference:
|
|
|
|
- https://securityforeveryone.com/tools/saprouter-routing-information-leakage-vulnerability-scanner
|
|
|
|
- https://support.sap.com/en/tools/connectivity-tools/saprouter.html
|
2023-04-28 08:11:21 +00:00
|
|
|
metadata:
|
2023-09-27 13:29:58 +00:00
|
|
|
max-request: 1
|
2024-06-07 10:04:29 +00:00
|
|
|
tags: network,sap,misconfig,saprouter,tcp
|
2021-06-05 10:26:17 +00:00
|
|
|
|
2023-04-27 04:28:59 +00:00
|
|
|
tcp:
|
2021-06-05 10:26:17 +00:00
|
|
|
- inputs:
|
|
|
|
- data: 00000022524f555445525f41444d002802000000000000000000000000000000000000000000
|
|
|
|
type: hex
|
|
|
|
|
|
|
|
host:
|
|
|
|
- "{{Hostname}}"
|
2023-09-16 19:35:21 +00:00
|
|
|
port: 3299
|
2021-06-05 10:26:17 +00:00
|
|
|
read-size: 2048
|
|
|
|
|
|
|
|
matchers:
|
|
|
|
- type: word
|
|
|
|
words:
|
|
|
|
- "Routtab"
|
|
|
|
- "Working directory"
|
2022-03-22 03:48:47 +00:00
|
|
|
- "SAProuter Connection Table"
|
2024-06-08 16:02:17 +00:00
|
|
|
# digest: 4a0a00473045022014a865c9a709f92fee268bb0452e98261e9fe5b9dbe0ba42d4596cf0a9021c0a022100d289a3fff3bc1761b789f68cc87a44cc0b469e6eb925b317c8469498508de4b7:922c64590222798bb761d5b6d8e72950
|