nuclei-templates/http/vulnerabilities/jenkins/unauthenticated-jenkins.yaml

29 lines
662 B
YAML
Raw Normal View History

2022-11-13 20:54:52 +00:00
id: unauthenticated-jenkins
2020-09-15 16:21:32 +00:00
info:
2021-04-29 06:11:35 +00:00
name: Unauthenticated Jenkins Dashboard
2020-09-15 16:21:32 +00:00
author: dhiyaneshDK
2020-09-20 12:57:43 +00:00
severity: high
2024-01-02 15:45:12 +00:00
description: Jenkins Dashboard is exposed to external users.
metadata:
max-request: 1
2023-10-14 11:27:55 +00:00
tags: jenkins
2020-09-15 16:21:32 +00:00
http:
2020-09-15 16:21:32 +00:00
- method: GET
path:
- "{{BaseURL}}"
matchers-condition: and
matchers:
- type: word
words:
- Dashboard [Jenkins]
condition: and
- type: status
status:
- 200
# digest: 4a0a00473045022100811848566c0be01530924be02cd09bff4e6e70f54b2f9e5bf6d0f1818d8acd3a0220407f642622c3548af68ce0db4328b18a9d22cb1f916b7ed5c0e7ba7a000ac70e:922c64590222798bb761d5b6d8e72950