nuclei-templates/http/technologies/dell/dell-idrac9-detect.yaml

39 lines
867 B
YAML
Raw Normal View History

2021-02-26 18:49:21 +00:00
id: dell-idrac9-detect
2021-09-09 13:38:13 +00:00
2021-02-25 22:31:38 +00:00
info:
2021-02-26 18:49:21 +00:00
name: Detect Dell iDRAC9
2021-02-25 22:31:38 +00:00
author: kophjager007
severity: info
description: The Integrated Dell Remote Access Controller (iDRAC) is designed for secure local and remote server management and helps IT administrators deploy, update and monitor Dell EMC PowerEdge servers.
2021-09-09 13:38:13 +00:00
tags: tech,dell
metadata:
max-request: 1
2021-02-25 22:31:38 +00:00
http:
2021-02-25 22:31:38 +00:00
- method: GET
path:
- "{{BaseURL}}/sysmgmt/2015/bmc/info" # Firmware Version and other info (iDRAC9)
2021-02-25 22:31:38 +00:00
matchers-condition: and
2021-02-25 22:31:38 +00:00
matchers:
- type: status
status:
- 200
2021-02-25 22:31:38 +00:00
- type: word
words:
- "BuildVersion"
- "SystemModelName"
extractors:
- type: regex
part: body
regex:
2021-02-26 18:49:21 +00:00
- '[0-9]{2}G'
- type: regex
part: body
group: 1
regex:
2021-02-26 18:49:21 +00:00
- '"FwVer" *: *"([^"]+)"'