nuclei-templates/http/exposures/configs/rakefile-disclosure.yaml

43 lines
1.1 KiB
YAML
Raw Normal View History

2023-10-10 09:17:39 +00:00
id: rakefile-disclosure
info:
name: Rakefile - File Disclosure
author: DhiyaneshDK
2023-10-10 14:07:58 +00:00
severity: info
2023-10-10 09:17:39 +00:00
description: |
Rakefile configuration file was detected.
reference:
- https://ruby.github.io/rake/doc/rakefile_rdoc.html
2024-09-10 09:08:16 +00:00
classification:
cpe: cpe:2.3:a:ruby-lang:ruby:*:*:*:*:*:*:*:*
2023-10-10 09:17:39 +00:00
metadata:
verified: true
2023-10-14 11:27:55 +00:00
max-request: 1
2024-09-10 08:22:50 +00:00
vendor: ruby-lang
2024-09-10 09:08:16 +00:00
product: ruby
shodan-query: html:"Rakefile"
2023-10-10 09:17:39 +00:00
tags: devops,exposure,rakefile,config,ruby,rails
http:
- method: GET
path:
- "{{BaseURL}}/Rakefile"
matchers-condition: or
matchers:
- type: word
part: body
words:
- 'application.load_tasks'
- 'config/application'
condition: and
case-insensitive: true
- type: word
part: body
words:
- 'require'
- 'desc'
- 'task :'
condition: and
2024-09-12 05:14:01 +00:00
# digest: 490a0046304402205460969ac8d0c2f09cdb500d3e8fda4f8ccf14ade2ba57a1a1ee85ac276d617b022076d62b01ba90cdcf3e967c84762fcd32f8641879db8bbe5d073a1271d724854e:922c64590222798bb761d5b6d8e72950