nuclei-templates/vulnerabilities/wordpress/wordpress-affiliatewp-log.yaml

28 lines
530 B
YAML
Raw Normal View History

2021-02-25 18:51:07 +00:00
id: wordpress-affiliatewp-log
info:
name: WordPress Plugin "AffiliateWP Allowed Products" Log Disclosure
author: dhiyaneshDK
severity: low
requests:
- method: GET
path:
- '{{BaseURL}}/wp-content/uploads/affwp-debug.log'
matchers-condition: and
matchers:
- type: word
words:
2021-02-25 18:51:07 +00:00
- 'Referral could not be retrieved'
- 'Affiliate CSV'
- type: word
words:
- 'text/plain'
part: header
- type: status
status:
- 200