36 lines
734 B
YAML
36 lines
734 B
YAML
id: springboot-health
|
|||
|
|||
info:
|
|||
|
name: Spring Boot Health Actuator Panel - Detect
|
||
author: pussycat0x
|
|||
severity: info
|
|||
|
description: Spring Boot Health Actuator panel was detected.
|
||
classification:
|
|||
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
|||
cvss-score: 0.0
|
|||
cwe-id: CWE-200
|
|||
tags: springboot,exposure
|
|||
|
|||
http:
|
|||
- method: GET
|
|||
path:
|
|||
- "{{BaseURL}}/health"
|
|||
- "{{BaseURL}}/actuator/health"
|
|||
|
|||
|
stop-at-first-match: true
|
||
matchers-condition: and
|
|||
matchers:
|
|||
- type: word
|
|||
part: body
|
|||
words:
|
|||
- '"status"'
|
|||
- '"diskSpace"'
|
|||
- '"jms"'
|
|||
condition: and
|
|||
|
|||
- type: status
|
|||
status:
|
|||
- 200
|
|||
|
|
||
# Enhanced by md on 2023/02/06
|