nuclei-templates/http/exposed-panels/ampps-admin-panel.yaml

41 lines
836 B
YAML
Raw Normal View History

2021-11-14 10:14:04 +00:00
id: ampps-admin-panel
info:
name: AMPPS Admin Login Panel
2021-11-17 17:23:58 +00:00
author: deFr0ggy
2021-11-14 10:14:04 +00:00
severity: info
description: An AMPPS Admin login panel was detected.
classification:
cwe-id: CWE-200
tags: panel,ampps,login
metadata:
max-request: 1
2021-11-14 10:14:04 +00:00
http:
2021-11-14 10:14:04 +00:00
- method: GET
path:
- "{{BaseURL}}/ampps-admin/index.php?act=login"
host-redirects: true
2021-11-14 10:14:04 +00:00
max-redirects: 2
matchers-condition: and
matchers:
- type: word
2021-11-17 09:08:44 +00:00
part: body
2021-11-14 10:14:04 +00:00
words:
2021-11-17 09:08:44 +00:00
- '<a href="http://www.ampps.com">'
2021-11-14 10:14:04 +00:00
- '<title>Login</title>'
2021-11-17 09:08:44 +00:00
- 'enduser/themes/default/js/universal.js'
condition: and
2021-11-14 10:14:04 +00:00
- type: status
status:
2021-11-17 09:08:44 +00:00
- 200
extractors:
- type: regex
part: body
group: 1
regex:
- 'mpps\.com">Powered By FREE ([A-Z 0-9.]+)<\/a>'