2021-09-12 17:36:01 +00:00
|
|
|
id: adobe-coldfusion-detect
|
2021-09-02 04:19:36 +00:00
|
|
|
|
|
|
|
info:
|
2021-09-02 07:45:09 +00:00
|
|
|
name: Adobe ColdFusion Detector
|
2021-09-02 04:19:36 +00:00
|
|
|
author: philippedelteil
|
|
|
|
severity: info
|
|
|
|
description: With this template we can detect the version number of Coldfusion instances based on their logos.
|
2022-05-10 07:48:12 +00:00
|
|
|
metadata:
|
|
|
|
verified: true
|
|
|
|
shodan-query: http.component:"Adobe ColdFusion"
|
2022-11-14 19:45:12 +00:00
|
|
|
tags: adobe,coldfusion,tech
|
2021-09-02 04:19:36 +00:00
|
|
|
|
|
|
|
requests:
|
|
|
|
- method: GET
|
|
|
|
path:
|
|
|
|
- "{{BaseURL}}/CFIDE/administrator/images/mx_login.gif"
|
|
|
|
- "{{BaseURL}}/cfide/administrator/images/mx_login.gif"
|
|
|
|
- "{{BaseURL}}/CFIDE/administrator/images/background.jpg"
|
|
|
|
- "{{BaseURL}}/cfide/administrator/images/background.jpg"
|
|
|
|
- "{{BaseURL}}/CFIDE/administrator/images/componentutilslogin.jpg"
|
|
|
|
- "{{BaseURL}}/cfide/administrator/images/componentutilslogin.jpg"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2022-10-07 21:27:25 +00:00
|
|
|
host-redirects: true
|
2021-09-02 04:19:36 +00:00
|
|
|
stop-at-first-match: true
|
|
|
|
max-redirects: 2
|
|
|
|
matchers:
|
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-8"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"da07693b70ddbac5bc0d8bf98d4a3539\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-9"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"c0757351b00f7ecf35a035c976068d12\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-10"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"a4c81b7a6289b2fc9b36848fa0cae83c\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-11"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"7f024de9f480481ca03049e0d66679d6\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-2016"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"f1281b6866aef66e35dc36fe4f0bf990\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-2021"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"a88530d7f1980412dac076de732a4e86\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-2018"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
|
|
|
- "status_code==200 && (\"92ef6ee3c4d1700e3cca797b19d3e7ba\" == md5(body))"
|
2021-09-02 07:45:09 +00:00
|
|
|
|
2021-09-02 04:19:36 +00:00
|
|
|
- type: dsl
|
2021-09-02 07:45:09 +00:00
|
|
|
name: "coldfusion-mx-7"
|
2021-09-02 04:19:36 +00:00
|
|
|
dsl:
|
2021-09-12 17:36:01 +00:00
|
|
|
- "status_code==200 && (\"cb594e69af5ba15bca453f76aca53615\" == md5(body))"
|