2022-10-31 21:41:23 +00:00
|
|
|
id: healthchecks-ui-exposure
|
2022-10-31 19:26:54 +00:00
|
|
|
|
|
|
|
info:
|
2022-10-31 21:41:23 +00:00
|
|
|
name: Healthchecks UI Exposure
|
2022-10-31 19:26:54 +00:00
|
|
|
author: tess
|
2022-10-31 21:30:52 +00:00
|
|
|
severity: low
|
2024-01-03 06:08:41 +00:00
|
|
|
description: Healthchecks UI is exposed.
|
2022-10-31 19:26:54 +00:00
|
|
|
metadata:
|
|
|
|
verified: true
|
2023-10-14 11:27:55 +00:00
|
|
|
max-request: 1
|
2022-10-31 21:30:52 +00:00
|
|
|
shodan-query: title:"Health Checks UI"
|
2022-10-31 21:41:23 +00:00
|
|
|
tags: misconfig,exposure
|
2022-10-31 19:26:54 +00:00
|
|
|
|
2023-04-27 04:28:59 +00:00
|
|
|
http:
|
2022-10-31 19:26:54 +00:00
|
|
|
- method: GET
|
|
|
|
path:
|
|
|
|
- "{{BaseURL}}"
|
|
|
|
|
|
|
|
host-redirects: true
|
|
|
|
max-redirects: 3
|
2023-10-14 11:27:55 +00:00
|
|
|
|
2022-10-31 19:26:54 +00:00
|
|
|
matchers-condition: and
|
|
|
|
matchers:
|
|
|
|
- type: word
|
|
|
|
part: body
|
|
|
|
words:
|
2022-10-31 21:38:06 +00:00
|
|
|
- 'Health Checks UI'
|
2022-10-31 21:30:52 +00:00
|
|
|
- 'var webhookEndpoint'
|
2022-10-31 19:26:54 +00:00
|
|
|
condition: and
|
|
|
|
|
|
|
|
- type: status
|
|
|
|
status:
|
|
|
|
- 200
|
2024-01-15 11:49:24 +00:00
|
|
|
# digest: 4b0a00483046022100b3400726182c8f366d7a0910a83e57aeeb6b29732a3ba753856c407008ff55820221009a29b8e57b21ae19bbdd069674b060bef164cc7f0edf274a209cb87313ec6773:922c64590222798bb761d5b6d8e72950
|