parent
1815650540
commit
0d6fbd237f
|
@ -5,7 +5,7 @@ info:
|
|||
author: johnk3r
|
||||
severity: medium
|
||||
description: |
|
||||
FortiGate FortiOS through SSL VPN Web Portal contains a cross-site scripting vulnerability. The login redir parameter is not santized, so an attacker can inject arbitrary script in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and launch other attacks such as a URL redirect. Affected versions are 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, and 5.4 and below.
|
||||
FortiGate FortiOS through SSL VPN Web Portal contains a cross-site scripting vulnerability. The login redir parameter is not sanitized, so an attacker can inject arbitrary script in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and launch other attacks such as a URL redirect. Affected versions are 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, and 5.4 and below.
|
||||
reference:
|
||||
- https://www.fortiguard.com/psirt/FG-IR-17-242
|
||||
- https://fortiguard.com/advisory/FG-IR-17-242
|
||||
|
|
|
@ -18,7 +18,7 @@ info:
|
|||
cwe-id: CWE-79
|
||||
metadata:
|
||||
verified: true
|
||||
google-dork: inurl:"/plus/pass_reset.php"
|
||||
google-query: inurl:"/plus/pass_reset.php"
|
||||
tags: cve,cve2019,phpMyChat,xss
|
||||
|
||||
requests:
|
||||
|
|
|
@ -17,7 +17,7 @@ info:
|
|||
cve-id: CVE-2019-20933
|
||||
cwe-id: CWE-287
|
||||
metadata:
|
||||
shodan-dork: InfluxDB
|
||||
shodan-query: InfluxDB
|
||||
verified: "true"
|
||||
tags: unauth,db,influxdb,misconfig
|
||||
requests:
|
||||
|
|
|
@ -15,7 +15,7 @@ info:
|
|||
cve-id: CVE-2020-24902
|
||||
cwe-id: CWE-79
|
||||
metadata:
|
||||
google-dork: intitle:"My Download Server"
|
||||
google-query: intitle:"My Download Server"
|
||||
shodan-query: http.title:"My Download Server"
|
||||
verified: "true"
|
||||
tags: cve,cve2020,quixplorer,xss
|
||||
|
|
|
@ -15,7 +15,7 @@ info:
|
|||
cvss-score: 9.8
|
||||
cve-id: CVE-2021-40859
|
||||
metadata:
|
||||
fofa-dork: '"auerswald"'
|
||||
fofa-query: '"auerswald"'
|
||||
tags: cve,cve2021,iot,unauth,voip,auerswald
|
||||
|
||||
requests:
|
||||
|
|
|
@ -18,7 +18,7 @@ info:
|
|||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.html:"Reprise License Manager"
|
||||
google-dork: inurl:"/goforms/menu"
|
||||
google-query: inurl:"/goforms/menu"
|
||||
tags: cve2021,rlm,auth-bypass,packetstorm,cve
|
||||
|
||||
requests:
|
||||
|
|
|
@ -3,7 +3,7 @@ id: steve-default-login
|
|||
info:
|
||||
name: SteVe Login Panel - Detect
|
||||
author: clem9669
|
||||
severity: high
|
||||
severity: info
|
||||
description: |
|
||||
SteVe login panel was detected.
|
||||
reference:
|
||||
|
|
|
@ -8,7 +8,7 @@ info:
|
|||
classification:
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
fofa-dork: app="ACEmanager"
|
||||
fofa-query: app="ACEmanager"
|
||||
tags: panel,login,tech,acemanager
|
||||
|
||||
requests:
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: http.title:"AirNotifier"
|
||||
shodan-query: http.title:"AirNotifier"
|
||||
tags: panel,airnotifier
|
||||
|
||||
requests:
|
||||
|
|
|
@ -3,7 +3,7 @@ id: apache-jmeter-dashboard
|
|||
info:
|
||||
name: Apache JMeter Dashboard Login Panel - Detect
|
||||
author: tess
|
||||
severity: low
|
||||
severity: info
|
||||
description: Apache JMeter Dashboard login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
|
|
|
@ -3,7 +3,7 @@ id: couchdb-exposure
|
|||
info:
|
||||
name: Apache CouchDB Panel - Detect
|
||||
author: organiccrap
|
||||
severity: low
|
||||
severity: info
|
||||
description: Apache CouchDB panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: title:"Deluge WebUI"
|
||||
shodan-query: title:"Deluge WebUI"
|
||||
tags: panel,deluge
|
||||
|
||||
requests:
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-dork: http.title:"Emerson Network Power IntelliSlot Web Card"
|
||||
shodan-query: http.title:"Emerson Network Power IntelliSlot Web Card"
|
||||
tags: panel,intellislot,emerson
|
||||
|
||||
requests:
|
||||
|
|
|
@ -4,9 +4,13 @@ info:
|
|||
name: Episerver Login Panel
|
||||
author: William Söderberg @ WithSecure
|
||||
severity: info
|
||||
description: Optimizely CMS was detected. Optimizely CMS was formerly known as Episerver.
|
||||
description: Episerver login panel was detected.
|
||||
reference:
|
||||
- https://docs.developers.optimizely.com/content-cloud/v12.0.0-content-cloud/docs/changing-edit-and-admin-view-urls
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: html:"epihash"
|
||||
|
@ -26,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 302
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -14,7 +14,7 @@ info:
|
|||
metadata:
|
||||
verified: true
|
||||
shodan-query: html:"engage - Portail soignant"
|
||||
google-dork: intitle:"engage - Portail soignant"
|
||||
google-query: intitle:"engage - Portail soignant"
|
||||
tags: panel,exolis,engage
|
||||
|
||||
requests:
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-dork: 'http.title:"Extreme NetConfig UI"'
|
||||
shodan-query: 'http.title:"Extreme NetConfig UI"'
|
||||
tags: panel,tech,hiveos,extreme
|
||||
|
||||
requests:
|
||||
|
|
|
@ -3,7 +3,7 @@ id: flink-exposure
|
|||
info:
|
||||
name: Apache Flink Login Panel - Detect
|
||||
author: pdteam
|
||||
severity: low
|
||||
severity: info
|
||||
description: Apache Flink login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
|
|
|
@ -1,12 +1,17 @@
|
|||
id: freepbx-administration-panel
|
||||
|
||||
info:
|
||||
name: FreePBX Administration Panel
|
||||
name: FreePBX Admin Panel - Detect
|
||||
author: tess
|
||||
severity: info
|
||||
description: FreePBX admin panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: "true"
|
||||
shodan-dork: http.title:"FreePBX Administration"
|
||||
shodan-query: http.title:"FreePBX Administration"
|
||||
tags: freepbx,panel
|
||||
|
||||
requests:
|
||||
|
@ -32,3 +37,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: http.title:"Git repository browser"
|
||||
shodan-query: http.title:"Git repository browser"
|
||||
tags: panel,git
|
||||
|
||||
requests:
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: http.title:"Gitblit"
|
||||
shodan-query: http.title:"Gitblit"
|
||||
tags: panel,gitblit
|
||||
|
||||
requests:
|
||||
|
|
|
@ -13,7 +13,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: title:"Honeywell XL Web Controller"
|
||||
shodan-query: title:"Honeywell XL Web Controller"
|
||||
tags: panel,honeywell,edb
|
||||
|
||||
requests:
|
||||
|
|
|
@ -5,7 +5,7 @@ info:
|
|||
author: pussycat0x
|
||||
severity: info
|
||||
metadata:
|
||||
fofa-dork: 'app="kenesto"'
|
||||
fofa-query: 'app="kenesto"'
|
||||
tags: login,tech,kenesto
|
||||
|
||||
requests:
|
||||
|
|
|
@ -1,7 +1,7 @@
|
|||
id: ldap-account-manager-panel
|
||||
|
||||
info:
|
||||
name: LDAP Account Manager Login Panel
|
||||
name: LDAP Account Manager Login Panel - Detect
|
||||
author: DhiyaneshDk
|
||||
severity: info
|
||||
description: |
|
||||
|
@ -35,3 +35,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-dork: http.title:"Linksys Smart WI-FI"
|
||||
shodan-query: http.title:"Linksys Smart WI-FI"
|
||||
tags: tech,panel,linksys,iot
|
||||
|
||||
requests:
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: http.title:"Maestro - LuCI"
|
||||
shodan-query: http.title:"Maestro - LuCI"
|
||||
tags: panel,maestro,luci
|
||||
|
||||
requests:
|
||||
|
|
|
@ -1,12 +1,17 @@
|
|||
id: modoboa-panel
|
||||
|
||||
info:
|
||||
name: Modoboa Login Panel
|
||||
name: Modoboa Login Panel - Detect
|
||||
author: kh4sh3i
|
||||
severity: info
|
||||
description: Modoboa login panel was detected.
|
||||
reference:
|
||||
- https://modoboa.org
|
||||
- https://github.com/modoboa/modoboa
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.favicon.hash:1949005079
|
||||
|
@ -32,3 +37,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: monstra-admin-panel
|
||||
|
||||
info:
|
||||
name: Monstra Admin Panel
|
||||
name: Monstra Admin Panel - Detect
|
||||
author: ritikchaddha
|
||||
severity: info
|
||||
description: Monstra admin panel was detected.
|
||||
reference:
|
||||
- https://github.com/monstra-cms/monstra/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.favicon.hash:419828698
|
||||
|
@ -33,3 +38,5 @@ requests:
|
|||
group: 1
|
||||
regex:
|
||||
- 'Version ([0-9.]+)'
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-dork: 'Server: NetData Embedded HTTP Server'
|
||||
shodan-query: 'Server: NetData Embedded HTTP Server'
|
||||
tags: netdata,panel,tech
|
||||
|
||||
requests:
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: title:"NoEscape - Login"
|
||||
shodan-query: title:"NoEscape - Login"
|
||||
tags: panel,noescape
|
||||
|
||||
requests:
|
||||
|
|
|
@ -3,7 +3,7 @@ id: openshift-installer-panel
|
|||
info:
|
||||
name: OpenShift Assisted Installer Panel - Detect
|
||||
author: DhiyaneshDk
|
||||
severity: high
|
||||
severity: info
|
||||
description: OpenShift Assisted Installer panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
|
|
|
@ -15,7 +15,7 @@ info:
|
|||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"Pega Platform"
|
||||
google-dork: inurl:"/prweb/PRAuth/app/default"
|
||||
google-query: inurl:"/prweb/PRAuth/app/default"
|
||||
tags: panel,pega
|
||||
|
||||
requests:
|
||||
|
|
|
@ -3,7 +3,7 @@ id: php-mailer
|
|||
info:
|
||||
name: PHPMailer Panel - Detect
|
||||
author: ritikchaddha
|
||||
severity: unknown
|
||||
severity: info
|
||||
description: PHPMailer panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
|
|
|
@ -3,7 +3,7 @@ id: prometheus-exposed-panel
|
|||
info:
|
||||
name: Prometheus Panel - Detect
|
||||
author: organiccrap
|
||||
severity: low
|
||||
severity: info
|
||||
description: Prometheus panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
fofa-dork: 'app="Qualcomm-4G-LTE-WiFi-VoIP-Router"'
|
||||
fofa-query: 'app="Qualcomm-4G-LTE-WiFi-VoIP-Router"'
|
||||
tags: panel,qualcomm,iot,router,voip
|
||||
|
||||
requests:
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: saltgui-panel
|
||||
|
||||
info:
|
||||
name: SaltGUI Panel Detect
|
||||
name: SaltGUI Login Panel - Detect
|
||||
author: ritikchaddha
|
||||
severity: info
|
||||
description: SaltGUI login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,saltgui
|
||||
|
||||
requests:
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
fofa-dork: 'app="Securepoint-UTM-v11-Admin-Interface-11.8.8.8"'
|
||||
fofa-query: 'app="Securepoint-UTM-v11-Admin-Interface-11.8.8.8"'
|
||||
tags: securepoint,panel
|
||||
|
||||
requests:
|
||||
|
|
|
@ -10,7 +10,7 @@ info:
|
|||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-dork: 'title:SecuritySpy'
|
||||
shodan-query: 'title:SecuritySpy'
|
||||
tags: unauth,iot,securityspy,panel,camera
|
||||
|
||||
requests:
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: seeddms-panel
|
||||
|
||||
info:
|
||||
name: SeedDMS Login Panel
|
||||
name: SeedDMS Login Panel - Detect
|
||||
author: pussycat0x,daffainfo
|
||||
severity: info
|
||||
description: SeedDMS login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"SeedDMS"
|
||||
tags: panel,seeddms,login
|
||||
|
@ -28,4 +33,6 @@ requests:
|
|||
|
||||
- type: status
|
||||
status:
|
||||
- 200
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: selenium-grid
|
||||
|
||||
info:
|
||||
name: Selenium Grid Dashboard
|
||||
name: Selenium Grid Panel - Detect
|
||||
author: pussycat0x
|
||||
severity: unknown
|
||||
description: Selenium Grid panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Selenium Grid"
|
||||
tags: panel,unauth,selenium
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: selenoid-ui-exposure
|
||||
|
||||
info:
|
||||
name: Selenoid UI Dashboard Exposure
|
||||
name: Selenoid UI Login Panel - Detect
|
||||
author: pdteam
|
||||
severity: medium
|
||||
description: Selenoid UI login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel
|
||||
|
||||
requests:
|
||||
|
@ -15,4 +20,6 @@ requests:
|
|||
words:
|
||||
- "<title>Selenoid UI</title>"
|
||||
- "/manifest.json"
|
||||
condition: and
|
||||
condition: and
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: sentinelone-console
|
||||
|
||||
info:
|
||||
name: SentinelOne - Management Console
|
||||
name: SentinelOne Management Console Login Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: SentinelOne Management Console login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"SentinelOne - Management Console"
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: sequoiadb-login
|
||||
|
||||
info:
|
||||
name: SequoiaDB Login Panel
|
||||
name: SequoiaDB Login Panel - Detect
|
||||
author: dhiyaneshDk
|
||||
severity: info
|
||||
description: SequoiaDB login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"SequoiaDB"
|
||||
tags: sequoiadb,panel,login
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
part: header
|
||||
words:
|
||||
- "text/html"
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: server-backup-manager-se
|
||||
|
||||
info:
|
||||
name: Server Backup Manager SE
|
||||
name: Server Backup Manager SE Login Panel - Detect
|
||||
author: dhiyaneshDK
|
||||
severity: info
|
||||
description: Server Backup Manager SE login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Server Backup Manager SE"
|
||||
tags: panel
|
||||
|
@ -21,3 +26,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,10 +1,14 @@
|
|||
id: servicedesk-login-panel
|
||||
|
||||
info:
|
||||
name: Servicedesk Login Panel Detector
|
||||
name: Jira Service Desk Login Panel - Detect
|
||||
author: aashiq
|
||||
severity: info
|
||||
description: Searches for ServiceDesk login panels by trying to query the "/servicedesk/customer/user/login" endpoint
|
||||
description: Jira Service Desk login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.component:"Atlassian Confluence"
|
||||
tags: servicedesk,confluence,jira,panel,login
|
||||
|
@ -24,3 +28,5 @@ requests:
|
|||
- type: word
|
||||
words:
|
||||
- "https://confluence.atlassian.com"
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,10 +1,14 @@
|
|||
id: setup-page-exposure
|
||||
|
||||
info:
|
||||
name: Zenphoto Setup Page Exposure
|
||||
name: Zenphoto <1.5 Setup Page - Detect
|
||||
author: pdteam
|
||||
severity: medium
|
||||
description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure
|
||||
description: Zenphoto setup page before version 1.5 is susceptible to sensitive information disclosure due to misconfiguration.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
||||
cvss-score: 5.3
|
||||
cwe-id: CWE-200
|
||||
tags: panel,zenphoto,setup
|
||||
|
||||
requests:
|
||||
|
@ -21,3 +25,5 @@ requests:
|
|||
words:
|
||||
- Welcome to Zenphoto! This page will set up Zenphoto
|
||||
part: body
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: sgp-login-panel
|
||||
|
||||
info:
|
||||
name: SGP Panel
|
||||
name: SGP Login Panel - Detect
|
||||
author: dhiyaneshDK
|
||||
severity: info
|
||||
description: SGP login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"SGP"
|
||||
tags: panel,sgp
|
||||
|
@ -29,3 +34,5 @@ requests:
|
|||
group: 1
|
||||
regex:
|
||||
- ">Ver\\. ([0-9.A-Z]+)</p>"
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: sharecenter-login
|
||||
|
||||
info:
|
||||
name: ShareCenter Login Page
|
||||
name: ShareCenter Login Panel - Detect
|
||||
author: dhiyaneshDk
|
||||
severity: info
|
||||
description: ShareCenter login panel was detected.
|
||||
reference:
|
||||
- https://www.exploit-db.com/ghdb/6892
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: edb,panel,login
|
||||
|
||||
requests:
|
||||
|
@ -18,3 +23,5 @@ requests:
|
|||
- "ShareCenter"
|
||||
- "Please Select Your Account"
|
||||
condition: and
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: shoutcast-server
|
||||
|
||||
info:
|
||||
name: SHOUTcast Server
|
||||
name: SHOUTcast Server Panel - Detect
|
||||
author: dhiyaneshDk
|
||||
severity: info
|
||||
description: SHOUTcast Server panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"SHOUTcast Server"
|
||||
tags: panel
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/16
|
||||
|
|
|
@ -1,12 +1,17 @@
|
|||
id: sidekiq-dashboard
|
||||
|
||||
info:
|
||||
name: sidekiq-dashboard
|
||||
name: Sidekiq Dashboard Login Panel - Detect
|
||||
author: dhiyaneshDK
|
||||
severity: medium
|
||||
description: Sidekiq Dashboard login panel was detected.
|
||||
reference:
|
||||
- https://sidekiq.org
|
||||
- https://github.com/mperham/sidekiq
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
||||
cvss-score: 5.3
|
||||
cwe-id: CWE-200
|
||||
tags: unauth,panel,sidekiq
|
||||
|
||||
requests:
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -11,7 +11,7 @@ info:
|
|||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: title:"SonicWall Analyzer Login"
|
||||
shodan-query: title:"SonicWall Analyzer Login"
|
||||
tags: panel,sonicwall
|
||||
|
||||
requests:
|
||||
|
|
|
@ -1,12 +1,17 @@
|
|||
id: storybook-panel
|
||||
|
||||
info:
|
||||
name: Storybook Panel Detect
|
||||
name: Storybook Panel - Detect
|
||||
author: kh4sh3i
|
||||
severity: info
|
||||
description: Storybook panel was detected.
|
||||
reference:
|
||||
- https://storybook.js.org/
|
||||
- https://github.com/storybookjs/storybook
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.title:"storybook"
|
||||
|
@ -33,3 +38,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: symantec-dlp-login
|
||||
|
||||
info:
|
||||
name: Symantec Data Loss Prevention
|
||||
name: Symantec Data Loss Prevention Login Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: Symantec Data Loss Prevention login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Symantec Data Loss Prevention"
|
||||
tags: symantec,panel,login
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: symantec-epm-login
|
||||
|
||||
info:
|
||||
name: Symantec Endpoint Protection Manager
|
||||
name: Symantec Endpoint Protection Manager Login Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: Symantec Endpoint Protection Manager login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Symantec Endpoint Protection Manager"
|
||||
tags: symantec,panel,login
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: symantec-ewep-login
|
||||
|
||||
info:
|
||||
name: Symantec Encryption Web Email Protection
|
||||
name: Symantec Encryption Server Login Panel - Detect
|
||||
author: johnk3r
|
||||
severity: info
|
||||
description: Symantec Encryption Server login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Symantec Encryption Server"
|
||||
tags: panel,symantec,login
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: symantec-pgp-global-directory
|
||||
|
||||
info:
|
||||
name: Symantec PGP Global Directory
|
||||
name: Symantec PGP Global Directory Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: Symantec PGP Global Directory panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"PGP Global Directory"
|
||||
tags: symantec,panel
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,12 +1,16 @@
|
|||
id: synapse-mobility-panel
|
||||
|
||||
info:
|
||||
name: Synapgse Mobility Login Panel
|
||||
name: Synapse Mobility Login Panel - Detect
|
||||
author: idealphase
|
||||
severity: info
|
||||
description: Synapse Mobility is a zero footprint Universal Viewer that supports Synapse VNA with a full suite of collaboration tools and embedded cloud based image sharing that allows clinicians to access patient information anytime and anywhere, from a variety of platforms or using a mobile device.
|
||||
description: Synapse Mobility login panel was detected.
|
||||
reference:
|
||||
- https://synapse.fujifilm.eu/synapse-mobility.html
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Synapse Mobility Login"
|
||||
google-query: intitle:"Synapse Mobility Login"
|
||||
|
@ -27,3 +31,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: syncthru-web-service
|
||||
|
||||
info:
|
||||
name: SyncThru Web Service
|
||||
name: SyncThru Web Service Panel - Detect
|
||||
author: DhiyaneshDk
|
||||
severity: low
|
||||
description: SyncThru Web Service panel was detected.
|
||||
reference:
|
||||
- https://www.exploit-db.com/ghdb/7843
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"SyncThru Web Service"
|
||||
|
@ -30,3 +35,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: synnefo-admin-panel
|
||||
|
||||
info:
|
||||
name: Synnefo Admin Panel Exposure
|
||||
name: Synnefo Admin Login Panel - Detect
|
||||
author: impramodsargar
|
||||
severity: info
|
||||
description: Synnefo Admin login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,synnefo
|
||||
|
||||
requests:
|
||||
|
@ -20,3 +25,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: sysaid-panel
|
||||
|
||||
info:
|
||||
name: SysAid Panel
|
||||
name: SysAid Login Panel - Detect
|
||||
author: pdteam
|
||||
severity: info
|
||||
description: SysAid login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,sysaid,helpdesk
|
||||
|
||||
requests:
|
||||
|
@ -26,4 +31,6 @@ requests:
|
|||
dsl:
|
||||
- "status_code==200"
|
||||
- "contains(tolower(body), 'sysaid help desk software')"
|
||||
condition: and
|
||||
condition: and
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: tableau-panel
|
||||
|
||||
info:
|
||||
name: Tableau Python Server Default Page Detect
|
||||
name: Tableau Python Server Panel - Detect
|
||||
author: pussycat0x
|
||||
severity: info
|
||||
description: Tableau Python Server panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
fofa-dork: 'app="Tableau-Python-Server"'
|
||||
fofa-query: 'app="Tableau-Python-Server"'
|
||||
tags: tableau,panel,python
|
||||
|
||||
requests:
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: tableau-service-manager
|
||||
|
||||
info:
|
||||
name: Tableau Services Manager Login
|
||||
name: Tableau Services Manager Login Panel - Detect
|
||||
author: DhiyaneshDk
|
||||
severity: info
|
||||
description: Tableau Services Manager login panel was detected.
|
||||
reference:
|
||||
- https://help.tableau.com/current/server/en-us/sign_in_tsm.htm
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"Login - Tableau Services Manager"
|
||||
|
@ -25,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: teamcity-login-panel
|
||||
|
||||
info:
|
||||
name: TeamCity Login Panel
|
||||
name: TeamCity Login Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: TeamCity login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.component:"TeamCity"
|
||||
|
@ -32,3 +37,5 @@ requests:
|
|||
group: 1
|
||||
regex:
|
||||
- 'Version<\/span> ([0-9. (a-z)]+)<\/span>'
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: teampass-panel
|
||||
|
||||
info:
|
||||
name: TeamPass Panel Detect
|
||||
name: TeamPass Panel - Detect
|
||||
author: arafatansari
|
||||
severity: info
|
||||
description: TeamPass panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.html:"teampass"
|
||||
|
@ -27,3 +32,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: tectuus-scada-monitor
|
||||
|
||||
info:
|
||||
name: Tectuus SCADA Monitor
|
||||
name: Tectuus SCADA Monitor Panel - Detect
|
||||
author: geeknik
|
||||
severity: info
|
||||
description: Tectuus SCADA Monitor panel was detected.
|
||||
reference:
|
||||
- https://www.tectuus.mx/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,tectuus,scada
|
||||
|
||||
requests:
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
words:
|
||||
- "<title>SCADAmonitor</title>"
|
||||
part: body
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: tekton-dashboard
|
||||
|
||||
info:
|
||||
name: Tekton Dashboard Exposure
|
||||
name: Tekton Dashboard Panel - Detect
|
||||
author: DhiyaneshDk
|
||||
severity: low
|
||||
description: Tekton Dashboard panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"Tekton"
|
||||
|
@ -25,3 +30,5 @@ requests:
|
|||
part: header
|
||||
words:
|
||||
- "text/html"
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: telerik-server-login
|
||||
|
||||
info:
|
||||
name: Telerik Report Server Login
|
||||
name: Telerik Report Server Login Panel - Detect
|
||||
author: ritikchaddha
|
||||
severity: info
|
||||
description: Telerik Report Server login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.html:"Telerik Report Server"
|
||||
|
@ -26,3 +31,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: tlr-2005ksh-login
|
||||
|
||||
info:
|
||||
name: Telesquare TLR-2005KSH Login Panel
|
||||
name: Telesquare TLR-2005KSH Login Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: Telesquare TLR-2005KSH login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.html:"TLR-2005KSH"
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,13 +1,17 @@
|
|||
id: teltonika-login
|
||||
|
||||
info:
|
||||
name: Teltonika Login panel
|
||||
name: Teltonika Login Panel - Detect
|
||||
author: idealphase
|
||||
severity: info
|
||||
description: Teltonika is exceptional Internet of Things solutions for the global market. More than 16 million IoT devices
|
||||
description: Teltonika login panel was detected.
|
||||
reference:
|
||||
- https://www.exploit-db.com/ghdb/7819
|
||||
- https://teltonika-iot-group.com/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
google-query: intitle:"Teltonika -Web UI" | intitle:"Teltonika-RUT -Web UI" inurl:"/cgi-bin/luci"
|
||||
tags: panel,teltonika,edb
|
||||
|
@ -26,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: tembosocial-panel
|
||||
|
||||
info:
|
||||
name: TemboSocial Administration Panel
|
||||
name: TemboSocial Admin Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: TemboSocial Admin panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"TemboSocial Administration"
|
||||
|
@ -25,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,12 +1,16 @@
|
|||
id: temenos-t24-login
|
||||
|
||||
info:
|
||||
name: Temenos T24/Transact Login Pagel
|
||||
name: Temenos Transact Login Panel - Detect
|
||||
author: korteke
|
||||
severity: info
|
||||
description: Exposed Temenos T24 login panel
|
||||
description: Temenos Transact login panel was detected.
|
||||
reference:
|
||||
- https://www.temenos.com/products/transact/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.title:"t24 sign in"
|
||||
|
@ -29,3 +33,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,12 +1,17 @@
|
|||
id: tenda-web-master
|
||||
|
||||
info:
|
||||
name: Tenda Web Master
|
||||
name: Tenda Web Master Login Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: Tenda Web Master login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: title:"Tenda Web Master"
|
||||
shodan-query: title:"Tenda Web Master"
|
||||
tags: panel,tenda,router
|
||||
|
||||
requests:
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: teradici-pcoip-panel
|
||||
|
||||
info:
|
||||
name: Teradici PCoIP Zero Client Panel
|
||||
name: Teradici PCoIP Zero Client Login Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: Teradici PCoIP Zero Client login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,teradici,pcoip
|
||||
|
||||
requests:
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,13 +1,16 @@
|
|||
id: terraform-enterprise-panel
|
||||
|
||||
info:
|
||||
name: Terraform Enterprise Panel
|
||||
name: Terraform Enterprise Panel - Detect
|
||||
author: Adam Crosser,idealphase
|
||||
severity: info
|
||||
description: Terraform Enterprise is our self-hosted distribution of Terraform Cloud. It offers enterprises a private instance of the Terraform Cloud application, with no resource limits and with additional enterprise-grade
|
||||
architectural features like audit logging and SAML single sign-on.
|
||||
description: Terraform Enterprise panel was detected.
|
||||
reference:
|
||||
- https://www.terraform.io/enterprise/releases
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: title:"Terraform Enterprise"
|
||||
google-query: intitle:"Terraform Enterprise"
|
||||
|
@ -30,3 +33,5 @@ requests:
|
|||
group: 1
|
||||
regex:
|
||||
- '<span class="tag is-light is-lowercase">(.+)<\/span>'
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: terramaster-login
|
||||
|
||||
info:
|
||||
name: TerraMaster Login Panel
|
||||
name: Terramaster Login Panel - Detect
|
||||
author: gy741
|
||||
severity: info
|
||||
description: Terramaster login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,terramaster,login
|
||||
|
||||
requests:
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- "X-Powered-By: TerraMaster"
|
||||
condition: or
|
||||
part: header
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: thinfinity-virtualui-panel
|
||||
|
||||
info:
|
||||
name: Thinfinity VirtualUI Panel Detect
|
||||
name: Thinfinity VirtualUI Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: Thinfinity VirtualUI panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"Thinfinity VirtualUI"
|
||||
tags: panel,thinfinity,virtualui
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,12 +1,16 @@
|
|||
id: threatq-login
|
||||
|
||||
info:
|
||||
name: ThreatQ login panel
|
||||
name: ThreatQ Login Panel - Detect
|
||||
author: idealphase
|
||||
severity: info
|
||||
description: ThreatQ serves as an open and extensible threat intelligence platform that allows you to automate the intelligence lifecycle, quickly understand threats, make better decisions and accelerate detection and response
|
||||
description: ThreatQ login panel was detected.
|
||||
reference:
|
||||
- https://www.threatq.com/threat-intelligence-platform/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,threatq
|
||||
|
||||
requests:
|
||||
|
@ -32,3 +36,5 @@ requests:
|
|||
group: 1
|
||||
regex:
|
||||
- '<script src="/assets/js/threatq.min.js\?(.*)'
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: thruk-login
|
||||
|
||||
info:
|
||||
name: thruk detect
|
||||
name: Thruk Monitoring Panel - Detect
|
||||
author: ffffffff0x
|
||||
severity: info
|
||||
description: Thruk Monitoring panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
fofa-query: title=="Thruk Monitoring Webinterface"
|
||||
tags: thruk,panel
|
||||
|
@ -26,3 +31,5 @@ requests:
|
|||
part: header
|
||||
words:
|
||||
- "thruk_test="
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: tikiwiki-cms
|
||||
|
||||
info:
|
||||
name: Tiki Wiki CMS Groupware
|
||||
name: Tiki Wiki CMS Groupware Login Panel - Detect
|
||||
author: chron0x
|
||||
severity: info
|
||||
description: Tiki Wiki CMS Groupware login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,tikiwiki
|
||||
|
||||
requests:
|
||||
|
@ -21,3 +26,5 @@ requests:
|
|||
words:
|
||||
- "Tiki Wiki CMS Groupware"
|
||||
part: body
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,12 +1,17 @@
|
|||
id: tiny-file-manager
|
||||
|
||||
info:
|
||||
name: Tiny File Manager
|
||||
name: Tiny File Manager Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: Tiny File Manager panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-dork: title:"Tiny File Manager"
|
||||
shodan-query: title:"Tiny File Manager"
|
||||
tags: panel,filemanager
|
||||
|
||||
requests:
|
||||
|
@ -26,3 +31,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,10 +1,16 @@
|
|||
id: total-web-solutions-panel
|
||||
|
||||
info:
|
||||
name: Total Web Solution Panel
|
||||
name: Total Web Solutions Panel - Detect
|
||||
author: dhiyaneshDK
|
||||
severity: info
|
||||
reference: https://www.exploit-db.com/ghdb/6811
|
||||
description: Total Web Solutions panel was detected.
|
||||
reference:
|
||||
- https://www.exploit-db.com/ghdb/6811
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
google-query: intitle:"Total Web Solutions" + "Meter Name"
|
||||
|
@ -24,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,14 +1,19 @@
|
|||
id: totemomail-panel
|
||||
|
||||
info:
|
||||
name: Totemomail Login Panel
|
||||
name: Totemomail Login Panel - Detect
|
||||
author: johnk3r,daffainfo
|
||||
severity: info
|
||||
description: Totemomail login panel was detected.
|
||||
reference:
|
||||
- https://www.totemo.com/en/products/email-encryption
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
google-query: intext:"totemomail" inurl:responsiveUI
|
||||
severity: info
|
||||
tags: totemomail,panel
|
||||
|
||||
requests:
|
||||
|
@ -31,3 +36,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: tracer-sc-login
|
||||
|
||||
info:
|
||||
name: Tracer SC login panel
|
||||
name: Tracer SC Login Panel - Detect
|
||||
author: geeknik
|
||||
severity: info
|
||||
description: Tracer SC login panel was detected.
|
||||
reference:
|
||||
- https://www.trane.com/commercial/north-america/us/en/products-systems/building-management---automation/building-automation-systems/tracer-sc-plus.html
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: tracer,trane,iot,panel,login
|
||||
|
||||
requests:
|
||||
|
@ -27,3 +32,5 @@ requests:
|
|||
part: header
|
||||
words:
|
||||
- "text/html"
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: traefik-dashboard-detect
|
||||
|
||||
info:
|
||||
name: Traefik Dashboard
|
||||
name: Traefik Dashboard Panel - Detect
|
||||
author: schniggie,StreetOfHackerR007
|
||||
severity: info
|
||||
description: Traefik Dashboard panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,traefik
|
||||
|
||||
requests:
|
||||
|
@ -15,3 +20,5 @@ requests:
|
|||
words:
|
||||
- "<meta name=description content=\"Traefik UI\">"
|
||||
part: body
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: trendnet-tew827dru-login
|
||||
|
||||
info:
|
||||
name: TRENDnet TEW-827DRU Login
|
||||
name: TRENDnet TEW-827DRU Login Panel - Detect
|
||||
author: princechaddha
|
||||
severity: info
|
||||
description: TRENDnet TEW-827DRU login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.html:"TEW-827DRU"
|
||||
tags: panel,router,trendnet
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,13 +1,16 @@
|
|||
id: tufin-securetrack-login
|
||||
|
||||
info:
|
||||
name: Tufin SecureTrack Login
|
||||
name: Tufin SecureTrack Login Panel - Detect
|
||||
author: idealphase
|
||||
severity: info
|
||||
description: Tufin SecureTrack is the only security policy management solution that delivers security, compliance and connectivity across physical networks and hybrid cloud by managing the growing complexity and
|
||||
fragmentation of Enterprise IT.
|
||||
description: Tufin SecureTrack login panel was detected.
|
||||
reference:
|
||||
- https://www.tufin.com/tufin-orchestration-suite/securetrack
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"SecureTrack - Tufin Technologies"
|
||||
google-query: intitle:"SecureTrack - Tufin Technologies"
|
||||
|
@ -32,3 +35,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: turnkey-openvpn
|
||||
|
||||
info:
|
||||
name: TurnKey OpenVPN Panel
|
||||
name: TurnKey OpenVPN Panel - Detect
|
||||
author: ritikchaddha
|
||||
severity: info
|
||||
description: TurnKey OpenVPN panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.title:"TurnKey OpenVPN"
|
||||
|
@ -26,3 +31,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: tuxedo-connected-controller
|
||||
|
||||
info:
|
||||
name: Tuxedo Connected Controller
|
||||
name: Tuxedo Connected Controller Login Panel - Detect
|
||||
author: dhiyaneshDk
|
||||
severity: info
|
||||
description: Tuxedo Connected Controller login panel was detected.
|
||||
reference:
|
||||
- https://www.exploit-db.com/ghdb/6486
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,tuxedo,edb
|
||||
|
||||
requests:
|
||||
|
@ -21,3 +26,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: typo3-login
|
||||
|
||||
info:
|
||||
name: TYPO3 Login Detect
|
||||
name: TYPO3 Login Panel - Detect
|
||||
author: dadevel
|
||||
severity: info
|
||||
description: TYPO3 login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: panel,typo3
|
||||
|
||||
requests:
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/18
|
||||
|
|
|
@ -1,12 +1,16 @@
|
|||
id: umbraco-login
|
||||
|
||||
info:
|
||||
name: Umbraco Login Panel
|
||||
name: Umbraco Login Panel - Detect
|
||||
author: ola456
|
||||
severity: info
|
||||
description: An Umbraco backoffice login screen was detected.
|
||||
description: Umbraco login panel was detected.
|
||||
reference:
|
||||
- https://our.umbraco.com/documentation/Fundamentals/Backoffice/Login/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.title:"Umbraco"
|
||||
|
@ -27,3 +31,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: unauth-xproxy-dashboard
|
||||
|
||||
info:
|
||||
name: X-Proxy Dashboard Detect
|
||||
name: X-Proxy Dashboard Panel - Detect
|
||||
author: pussycat0x
|
||||
severity: high
|
||||
description: X-Proxy Dashboard panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
|
||||
cvss-score: 5.3
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
fofa-dork: "X-Proxy Dashboard"
|
||||
fofa-query: "X-Proxy Dashboard"
|
||||
tags: xproxy,panel
|
||||
|
||||
requests:
|
||||
|
@ -25,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: unauthenticated-frp
|
||||
|
||||
info:
|
||||
name: Unauthenticated FRP
|
||||
name: FRPS Dashboard - Detect
|
||||
author: pikpikcu
|
||||
severity: info
|
||||
description: FRPS Dashboard panel was detected.
|
||||
reference:
|
||||
- https://github.com/fatedier/frp/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
tags: frp,unauth,panel
|
||||
|
||||
requests:
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: unifi-panel
|
||||
|
||||
info:
|
||||
name: Unifi Network Panel
|
||||
name: UniFi Network Login Panel - Detect
|
||||
author: TechbrunchFR
|
||||
severity: info
|
||||
description: UniFi Network login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: http.title:"UniFi Network"
|
||||
tags: unifi,ubnt,panel
|
||||
|
@ -25,3 +30,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: user-control-panel
|
||||
|
||||
info:
|
||||
name: User Control Panel
|
||||
name: User Control Panel - Detect
|
||||
author: dhiyaneshDK
|
||||
severity: info
|
||||
description: User Control Panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: title:"User Control Panel"
|
||||
tags: panel,ucp
|
||||
|
@ -22,3 +27,5 @@ requests:
|
|||
- type: word
|
||||
words:
|
||||
- "<title>User Control Panel</title>"
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: v2924-admin-panel
|
||||
|
||||
info:
|
||||
name: V2924 Admin Panel
|
||||
name: V2924 Admin Login Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: V2924 admin login panel was detected.
|
||||
reference:
|
||||
- https://www.facebook.com/ExWareLabs/photos/a.361854183878462/5538760399521122
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"V2924"
|
||||
|
@ -31,3 +36,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: vault-panel
|
||||
|
||||
info:
|
||||
name: Vault Login Panel
|
||||
name: Vault Login Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: Vault login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.favicon.hash:-919788577
|
||||
|
@ -31,3 +36,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: veeam-backup-azure-panel
|
||||
|
||||
info:
|
||||
name: Veeam Backup for Microsoft Azure
|
||||
name: Veeam Backup for Microsoft Azure Panel - Detect
|
||||
author: dhiyaneshDK
|
||||
severity: info
|
||||
description: Veeam Backup for Microsoft Azure panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
shodan-query: title:"Veeam Backup for Microsoft Azure"
|
||||
tags: azure,panel,backup,veeam,microsoft
|
||||
|
@ -22,3 +27,5 @@ requests:
|
|||
- type: word
|
||||
words:
|
||||
- "<title>Veeam Backup for Microsoft Azure</title>"
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: veeam-backup-gcp
|
||||
|
||||
info:
|
||||
name: Veeam Backup for GCP
|
||||
name: Veeam Backup for Google Cloud Platform Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: Veeam Backup for Google Cloud Platform panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: title:"Veeam Backup for GCP"
|
||||
|
@ -23,3 +28,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: veeam-panel
|
||||
|
||||
info:
|
||||
name: Veeam Login Panel
|
||||
name: Veeam Login Panel - Detect
|
||||
author: DhiyaneshDK
|
||||
severity: info
|
||||
description: Veeam login panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.favicon.hash:-633512412
|
||||
|
@ -28,3 +33,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,9 +1,14 @@
|
|||
id: verizon-router-panel
|
||||
|
||||
info:
|
||||
name: Verizon Router
|
||||
name: Verizon Router Panel - Detect
|
||||
author: theamanrawat
|
||||
severity: info
|
||||
description: Verizon router panel was detected.
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.title:"Verizon Router"
|
||||
|
@ -24,3 +29,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
|
@ -1,11 +1,16 @@
|
|||
id: versa-director-login
|
||||
|
||||
info:
|
||||
name: Versa Director Login Panel
|
||||
name: Versa Director Login Panel - Detect
|
||||
author: c-sh0
|
||||
severity: info
|
||||
description: Versa Director login panel was detected.
|
||||
reference:
|
||||
- https://versa-networks.com/products/components/
|
||||
classification:
|
||||
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
|
||||
cvss-score: 0.0
|
||||
cwe-id: CWE-200
|
||||
metadata:
|
||||
verified: true
|
||||
shodan-query: http.title:"VERSA DIRECTOR Login"
|
||||
|
@ -27,3 +32,5 @@ requests:
|
|||
- type: status
|
||||
status:
|
||||
- 200
|
||||
|
||||
# Enhanced by md on 2023/01/20
|
||||
|
|
Some files were not shown because too many files have changed in this diff Show More
Loading…
Reference in New Issue