nuclei-templates/http/exposed-panels/atlassian-crowd-panel.yaml

37 lines
928 B
YAML
Raw Normal View History

2020-07-02 13:53:41 +00:00
id: atlassian-crowd-panel
2021-01-10 14:55:57 +00:00
2020-07-02 13:53:41 +00:00
info:
name: Atlassian Crowd Login Panel
author: organiccrap,AdamCrosser
severity: info
description: An Atlassian Crowd login panel was discovered.
reference:
- https://www.atlassian.com/
classification:
cwe-id: CWE-200
metadata:
vendor: atlassian
product: crowd
max-request: 1
category: sso
2023-10-14 11:27:55 +00:00
tags: panel,atlassian
2021-04-06 07:25:57 +00:00
http:
2020-07-02 13:53:41 +00:00
- method: GET
path:
- '{{BaseURL}}/crowd/console/login.action'
2020-07-02 13:53:41 +00:00
matchers:
- type: word
words:
- <title>Atlassian Crowd - Login</title>
part: body
extractors:
- type: regex
name: version
group: 1
regex:
- 'value="Version:&nbsp;([\d.]+)'
part: body
# digest: 4a0a00473045022100a1bb32fdb6681db6b5045dc961e150cca7399f9292a738c4750af3e10bb590d402207301a37582e1c8f82a0e20845f352a0a44ece037f7e70d85a2a3da38bdc5a9f3:922c64590222798bb761d5b6d8e72950