nuclei-templates/network/enumeration/mongodb-info-enum.yaml

42 lines
1.1 KiB
YAML
Raw Normal View History

2023-02-02 15:01:26 +00:00
id: mongodb-info-enum
info:
name: MongoDB Information - Detect
2023-02-02 15:01:26 +00:00
author: pussycat0x
severity: info
description: |
MongoDB build and server information was detected.
2023-02-02 15:01:26 +00:00
reference:
- https://nmap.org/nsedoc/scripts/mongodb-info.html
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cwe-id: CWE-200
2023-02-02 15:01:26 +00:00
metadata:
max-request: 1
2023-02-02 15:01:26 +00:00
shodan-query: mongodb server information
verified: true
2023-02-14 18:48:28 +00:00
tags: network,mongodb,enum
2023-02-02 18:02:24 +00:00
tcp:
2023-02-02 15:01:26 +00:00
- inputs:
- data: 3b0000003c300000ffffffffd40700000000000061646d696e2e24636d640000000000ffffffff14000000106275696c64696e666f000100000000
type: hex
host:
- "{{Hostname}}"
2023-09-16 19:35:21 +00:00
port: 27017
2023-02-02 15:01:26 +00:00
read-size: 2048
matchers:
- type: word
part: raw
words:
- "version"
- "maxBsonObjectSize"
2023-02-02 15:03:56 +00:00
condition: and
2023-02-02 18:02:24 +00:00
2023-02-02 15:01:26 +00:00
extractors:
- type: regex
regex:
2023-02-02 15:03:56 +00:00
- "([A-Za-z:0-9.]+)"
# digest: 4b0a00483046022100b13691f8da4de04f7e4981d0ec0ef422e67c532d793319a53974a1040faf68d0022100c6843bcdc6865a3d76e9b16174e59cd77c3609fa0ab40183f227e8c135747660:922c64590222798bb761d5b6d8e72950