From 00acbe2bbb6587a7219cae8822505f12cda2e66d Mon Sep 17 00:00:00 2001 From: Dhiyaneshwaran Date: Thu, 20 Oct 2022 02:30:56 +0530 Subject: [PATCH] Update cisco-vmanage-log4j.yaml --- vulnerabilities/cisco/cisco-vmanage-log4j.yaml | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/vulnerabilities/cisco/cisco-vmanage-log4j.yaml b/vulnerabilities/cisco/cisco-vmanage-log4j.yaml index 525e0faf86..a2e36791c0 100644 --- a/vulnerabilities/cisco/cisco-vmanage-log4j.yaml +++ b/vulnerabilities/cisco/cisco-vmanage-log4j.yaml @@ -22,6 +22,7 @@ info: requests: - raw: - | + @timeout: 20s POST /j_security_check HTTP/1.1 Host: {{Hostname}} Content-Type: application/x-www-form-urlencoded @@ -42,6 +43,11 @@ requests: regex: - '([a-zA-Z0-9.-]+).([a-z0-9]+).([a-z0-9]+).\w+' # Match for extracted ${sys:os.name} variable + - type: word + part: body + words: + - 'Cisco vManage' + extractors: - type: kval kval: @@ -52,5 +58,3 @@ requests: group: 1 regex: - '([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' # Print extracted ${sys:os.name} in output - -# Enhanced by md on 2022/10/04