nuclei-templates/iot/iotawatt-app-exposure.yaml

29 lines
680 B
YAML
Raw Normal View History

id: iotawatt-app-exposure
2021-10-05 16:58:16 +00:00
info:
name: IoTaWatt Configuration app
2021-10-05 16:58:16 +00:00
author: pussycat0x
severity: high
description: unauthenticated IoTaWatt energy monitor leads to upload to any of several third-party energy websites/database
metadata:
fofa-dork: 'app="IoTaWatt-Configuration-app"'
tags: iot,exposure
2021-10-05 16:58:16 +00:00
requests:
- method: GET
path:
- "{{BaseURL}}"
2021-10-05 16:58:16 +00:00
matchers-condition: and
matchers:
2021-10-05 16:58:16 +00:00
- type: word
words:
- '<h3>Configure IoTaWatt Device</h3>'
- '<title>IoTaWatt Configuration app</title>'
condition: and
part: body
2021-10-05 16:58:16 +00:00
- type: status
status:
- 200