nuclei-templates/http/exposed-panels/ampps-admin-panel.yaml

44 lines
1.0 KiB
YAML
Raw Normal View History

2021-11-14 10:14:04 +00:00
id: ampps-admin-panel
info:
name: AMPPS Admin Login Panel
2021-11-17 17:23:58 +00:00
author: deFr0ggy
2021-11-14 10:14:04 +00:00
severity: info
description: An AMPPS Admin login panel was detected.
classification:
cwe-id: CWE-200
metadata:
max-request: 1
2023-10-14 11:27:55 +00:00
tags: panel,ampps,login
2021-11-14 10:14:04 +00:00
http:
2021-11-14 10:14:04 +00:00
- method: GET
path:
- "{{BaseURL}}/ampps-admin/index.php?act=login"
host-redirects: true
2021-11-14 10:14:04 +00:00
max-redirects: 2
2023-10-14 11:27:55 +00:00
2021-11-14 10:14:04 +00:00
matchers-condition: and
matchers:
- type: word
2021-11-17 09:08:44 +00:00
part: body
2021-11-14 10:14:04 +00:00
words:
2021-11-17 09:08:44 +00:00
- '<a href="http://www.ampps.com">'
2021-11-14 10:14:04 +00:00
- '<title>Login</title>'
2021-11-17 09:08:44 +00:00
- 'enduser/themes/default/js/universal.js'
condition: and
2021-11-14 10:14:04 +00:00
- type: status
status:
2021-11-17 09:08:44 +00:00
- 200
extractors:
- type: regex
part: body
group: 1
regex:
- 'mpps\.com">Powered By FREE ([A-Z 0-9.]+)<\/a>'
# digest: 4a0a00473045022100fbe961d651f3acd1539024989605471d8fb8f3a3a65ea89e362b2fa18fc8b488022074d127f30df6e241297a24be44f1def98e7ff206fcb75e0b53f9ea7d66b2deff:922c64590222798bb761d5b6d8e72950