Dashboard Content Enhancements (#6598)

Dashboard Content Enhancements
patch-1
MostInterestingBotInTheWorld 2023-01-23 17:14:23 -05:00 committed by GitHub
parent 1815650540
commit 0d6fbd237f
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
135 changed files with 652 additions and 158 deletions

View File

@ -5,7 +5,7 @@ info:
author: johnk3r
severity: medium
description: |
FortiGate FortiOS through SSL VPN Web Portal contains a cross-site scripting vulnerability. The login redir parameter is not santized, so an attacker can inject arbitrary script in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and launch other attacks such as a URL redirect. Affected versions are 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, and 5.4 and below.
FortiGate FortiOS through SSL VPN Web Portal contains a cross-site scripting vulnerability. The login redir parameter is not sanitized, so an attacker can inject arbitrary script in the browser of an unsuspecting user in the context of the affected site. This can allow the attacker to steal cookie-based authentication credentials and launch other attacks such as a URL redirect. Affected versions are 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, and 5.4 and below.
reference:
- https://www.fortiguard.com/psirt/FG-IR-17-242
- https://fortiguard.com/advisory/FG-IR-17-242

View File

@ -18,7 +18,7 @@ info:
cwe-id: CWE-79
metadata:
verified: true
google-dork: inurl:"/plus/pass_reset.php"
google-query: inurl:"/plus/pass_reset.php"
tags: cve,cve2019,phpMyChat,xss
requests:

View File

@ -17,7 +17,7 @@ info:
cve-id: CVE-2019-20933
cwe-id: CWE-287
metadata:
shodan-dork: InfluxDB
shodan-query: InfluxDB
verified: "true"
tags: unauth,db,influxdb,misconfig
requests:

View File

@ -15,7 +15,7 @@ info:
cve-id: CVE-2020-24902
cwe-id: CWE-79
metadata:
google-dork: intitle:"My Download Server"
google-query: intitle:"My Download Server"
shodan-query: http.title:"My Download Server"
verified: "true"
tags: cve,cve2020,quixplorer,xss

View File

@ -15,7 +15,7 @@ info:
cvss-score: 9.8
cve-id: CVE-2021-40859
metadata:
fofa-dork: '"auerswald"'
fofa-query: '"auerswald"'
tags: cve,cve2021,iot,unauth,voip,auerswald
requests:

View File

@ -18,7 +18,7 @@ info:
metadata:
verified: true
shodan-query: http.html:"Reprise License Manager"
google-dork: inurl:"/goforms/menu"
google-query: inurl:"/goforms/menu"
tags: cve2021,rlm,auth-bypass,packetstorm,cve
requests:

View File

@ -3,7 +3,7 @@ id: steve-default-login
info:
name: SteVe Login Panel - Detect
author: clem9669
severity: high
severity: info
description: |
SteVe login panel was detected.
reference:

View File

@ -8,7 +8,7 @@ info:
classification:
cwe-id: CWE-200
metadata:
fofa-dork: app="ACEmanager"
fofa-query: app="ACEmanager"
tags: panel,login,tech,acemanager
requests:

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: http.title:"AirNotifier"
shodan-query: http.title:"AirNotifier"
tags: panel,airnotifier
requests:

View File

@ -3,7 +3,7 @@ id: apache-jmeter-dashboard
info:
name: Apache JMeter Dashboard Login Panel - Detect
author: tess
severity: low
severity: info
description: Apache JMeter Dashboard login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N

View File

@ -3,7 +3,7 @@ id: couchdb-exposure
info:
name: Apache CouchDB Panel - Detect
author: organiccrap
severity: low
severity: info
description: Apache CouchDB panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: title:"Deluge WebUI"
shodan-query: title:"Deluge WebUI"
tags: panel,deluge
requests:

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-dork: http.title:"Emerson Network Power IntelliSlot Web Card"
shodan-query: http.title:"Emerson Network Power IntelliSlot Web Card"
tags: panel,intellislot,emerson
requests:

View File

@ -4,9 +4,13 @@ info:
name: Episerver Login Panel
author: William Söderberg @ WithSecure
severity: info
description: Optimizely CMS was detected. Optimizely CMS was formerly known as Episerver.
description: Episerver login panel was detected.
reference:
- https://docs.developers.optimizely.com/content-cloud/v12.0.0-content-cloud/docs/changing-edit-and-admin-view-urls
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: html:"epihash"
@ -26,3 +30,5 @@ requests:
- type: status
status:
- 302
# Enhanced by md on 2023/01/16

View File

@ -14,7 +14,7 @@ info:
metadata:
verified: true
shodan-query: html:"engage - Portail soignant"
google-dork: intitle:"engage - Portail soignant"
google-query: intitle:"engage - Portail soignant"
tags: panel,exolis,engage
requests:

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-dork: 'http.title:"Extreme NetConfig UI"'
shodan-query: 'http.title:"Extreme NetConfig UI"'
tags: panel,tech,hiveos,extreme
requests:

View File

@ -3,7 +3,7 @@ id: flink-exposure
info:
name: Apache Flink Login Panel - Detect
author: pdteam
severity: low
severity: info
description: Apache Flink login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N

View File

@ -1,12 +1,17 @@
id: freepbx-administration-panel
info:
name: FreePBX Administration Panel
name: FreePBX Admin Panel - Detect
author: tess
severity: info
description: FreePBX admin panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: "true"
shodan-dork: http.title:"FreePBX Administration"
shodan-query: http.title:"FreePBX Administration"
tags: freepbx,panel
requests:
@ -32,3 +37,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: http.title:"Git repository browser"
shodan-query: http.title:"Git repository browser"
tags: panel,git
requests:

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: http.title:"Gitblit"
shodan-query: http.title:"Gitblit"
tags: panel,gitblit
requests:

View File

@ -13,7 +13,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: title:"Honeywell XL Web Controller"
shodan-query: title:"Honeywell XL Web Controller"
tags: panel,honeywell,edb
requests:

View File

@ -5,7 +5,7 @@ info:
author: pussycat0x
severity: info
metadata:
fofa-dork: 'app="kenesto"'
fofa-query: 'app="kenesto"'
tags: login,tech,kenesto
requests:

View File

@ -1,7 +1,7 @@
id: ldap-account-manager-panel
info:
name: LDAP Account Manager Login Panel
name: LDAP Account Manager Login Panel - Detect
author: DhiyaneshDk
severity: info
description: |
@ -35,3 +35,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-dork: http.title:"Linksys Smart WI-FI"
shodan-query: http.title:"Linksys Smart WI-FI"
tags: tech,panel,linksys,iot
requests:

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: http.title:"Maestro - LuCI"
shodan-query: http.title:"Maestro - LuCI"
tags: panel,maestro,luci
requests:

View File

@ -1,12 +1,17 @@
id: modoboa-panel
info:
name: Modoboa Login Panel
name: Modoboa Login Panel - Detect
author: kh4sh3i
severity: info
description: Modoboa login panel was detected.
reference:
- https://modoboa.org
- https://github.com/modoboa/modoboa
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.favicon.hash:1949005079
@ -32,3 +37,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -1,11 +1,16 @@
id: monstra-admin-panel
info:
name: Monstra Admin Panel
name: Monstra Admin Panel - Detect
author: ritikchaddha
severity: info
description: Monstra admin panel was detected.
reference:
- https://github.com/monstra-cms/monstra/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.favicon.hash:419828698
@ -33,3 +38,5 @@ requests:
group: 1
regex:
- 'Version ([0-9.]+)'
# Enhanced by md on 2023/01/16

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-dork: 'Server: NetData Embedded HTTP Server'
shodan-query: 'Server: NetData Embedded HTTP Server'
tags: netdata,panel,tech
requests:

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: title:"NoEscape - Login"
shodan-query: title:"NoEscape - Login"
tags: panel,noescape
requests:

View File

@ -3,7 +3,7 @@ id: openshift-installer-panel
info:
name: OpenShift Assisted Installer Panel - Detect
author: DhiyaneshDk
severity: high
severity: info
description: OpenShift Assisted Installer panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N

View File

@ -15,7 +15,7 @@ info:
metadata:
verified: true
shodan-query: title:"Pega Platform"
google-dork: inurl:"/prweb/PRAuth/app/default"
google-query: inurl:"/prweb/PRAuth/app/default"
tags: panel,pega
requests:

View File

@ -3,7 +3,7 @@ id: php-mailer
info:
name: PHPMailer Panel - Detect
author: ritikchaddha
severity: unknown
severity: info
description: PHPMailer panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N

View File

@ -3,7 +3,7 @@ id: prometheus-exposed-panel
info:
name: Prometheus Panel - Detect
author: organiccrap
severity: low
severity: info
description: Prometheus panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
fofa-dork: 'app="Qualcomm-4G-LTE-WiFi-VoIP-Router"'
fofa-query: 'app="Qualcomm-4G-LTE-WiFi-VoIP-Router"'
tags: panel,qualcomm,iot,router,voip
requests:

View File

@ -1,9 +1,14 @@
id: saltgui-panel
info:
name: SaltGUI Panel Detect
name: SaltGUI Login Panel - Detect
author: ritikchaddha
severity: info
description: SaltGUI login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,saltgui
requests:
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
fofa-dork: 'app="Securepoint-UTM-v11-Admin-Interface-11.8.8.8"'
fofa-query: 'app="Securepoint-UTM-v11-Admin-Interface-11.8.8.8"'
tags: securepoint,panel
requests:

View File

@ -10,7 +10,7 @@ info:
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-dork: 'title:SecuritySpy'
shodan-query: 'title:SecuritySpy'
tags: unauth,iot,securityspy,panel,camera
requests:

View File

@ -1,9 +1,14 @@
id: seeddms-panel
info:
name: SeedDMS Login Panel
name: SeedDMS Login Panel - Detect
author: pussycat0x,daffainfo
severity: info
description: SeedDMS login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"SeedDMS"
tags: panel,seeddms,login
@ -28,4 +33,6 @@ requests:
- type: status
status:
- 200
- 200
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: selenium-grid
info:
name: Selenium Grid Dashboard
name: Selenium Grid Panel - Detect
author: pussycat0x
severity: unknown
description: Selenium Grid panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Selenium Grid"
tags: panel,unauth,selenium
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: selenoid-ui-exposure
info:
name: Selenoid UI Dashboard Exposure
name: Selenoid UI Login Panel - Detect
author: pdteam
severity: medium
description: Selenoid UI login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel
requests:
@ -15,4 +20,6 @@ requests:
words:
- "<title>Selenoid UI</title>"
- "/manifest.json"
condition: and
condition: and
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: sentinelone-console
info:
name: SentinelOne - Management Console
name: SentinelOne Management Console Login Panel - Detect
author: DhiyaneshDK
severity: info
description: SentinelOne Management Console login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"SentinelOne - Management Console"
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: sequoiadb-login
info:
name: SequoiaDB Login Panel
name: SequoiaDB Login Panel - Detect
author: dhiyaneshDk
severity: info
description: SequoiaDB login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"SequoiaDB"
tags: sequoiadb,panel,login
@ -24,3 +29,5 @@ requests:
part: header
words:
- "text/html"
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: server-backup-manager-se
info:
name: Server Backup Manager SE
name: Server Backup Manager SE Login Panel - Detect
author: dhiyaneshDK
severity: info
description: Server Backup Manager SE login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Server Backup Manager SE"
tags: panel
@ -21,3 +26,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -1,10 +1,14 @@
id: servicedesk-login-panel
info:
name: Servicedesk Login Panel Detector
name: Jira Service Desk Login Panel - Detect
author: aashiq
severity: info
description: Searches for ServiceDesk login panels by trying to query the "/servicedesk/customer/user/login" endpoint
description: Jira Service Desk login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.component:"Atlassian Confluence"
tags: servicedesk,confluence,jira,panel,login
@ -24,3 +28,5 @@ requests:
- type: word
words:
- "https://confluence.atlassian.com"
# Enhanced by md on 2023/01/16

View File

@ -1,10 +1,14 @@
id: setup-page-exposure
info:
name: Zenphoto Setup Page Exposure
name: Zenphoto <1.5 Setup Page - Detect
author: pdteam
severity: medium
description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure
description: Zenphoto setup page before version 1.5 is susceptible to sensitive information disclosure due to misconfiguration.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
cvss-score: 5.3
cwe-id: CWE-200
tags: panel,zenphoto,setup
requests:
@ -21,3 +25,5 @@ requests:
words:
- Welcome to Zenphoto! This page will set up Zenphoto
part: body
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: sgp-login-panel
info:
name: SGP Panel
name: SGP Login Panel - Detect
author: dhiyaneshDK
severity: info
description: SGP login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"SGP"
tags: panel,sgp
@ -29,3 +34,5 @@ requests:
group: 1
regex:
- ">Ver\\. ([0-9.A-Z]+)</p>"
# Enhanced by md on 2023/01/16

View File

@ -1,11 +1,16 @@
id: sharecenter-login
info:
name: ShareCenter Login Page
name: ShareCenter Login Panel - Detect
author: dhiyaneshDk
severity: info
description: ShareCenter login panel was detected.
reference:
- https://www.exploit-db.com/ghdb/6892
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: edb,panel,login
requests:
@ -18,3 +23,5 @@ requests:
- "ShareCenter"
- "Please Select Your Account"
condition: and
# Enhanced by md on 2023/01/16

View File

@ -1,9 +1,14 @@
id: shoutcast-server
info:
name: SHOUTcast Server
name: SHOUTcast Server Panel - Detect
author: dhiyaneshDk
severity: info
description: SHOUTcast Server panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"SHOUTcast Server"
tags: panel
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/16

View File

@ -1,12 +1,17 @@
id: sidekiq-dashboard
info:
name: sidekiq-dashboard
name: Sidekiq Dashboard Login Panel - Detect
author: dhiyaneshDK
severity: medium
description: Sidekiq Dashboard login panel was detected.
reference:
- https://sidekiq.org
- https://github.com/mperham/sidekiq
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
cvss-score: 5.3
cwe-id: CWE-200
tags: unauth,panel,sidekiq
requests:
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -11,7 +11,7 @@ info:
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: title:"SonicWall Analyzer Login"
shodan-query: title:"SonicWall Analyzer Login"
tags: panel,sonicwall
requests:

View File

@ -1,12 +1,17 @@
id: storybook-panel
info:
name: Storybook Panel Detect
name: Storybook Panel - Detect
author: kh4sh3i
severity: info
description: Storybook panel was detected.
reference:
- https://storybook.js.org/
- https://github.com/storybookjs/storybook
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.title:"storybook"
@ -33,3 +38,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: symantec-dlp-login
info:
name: Symantec Data Loss Prevention
name: Symantec Data Loss Prevention Login Panel - Detect
author: princechaddha
severity: info
description: Symantec Data Loss Prevention login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Symantec Data Loss Prevention"
tags: symantec,panel,login
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: symantec-epm-login
info:
name: Symantec Endpoint Protection Manager
name: Symantec Endpoint Protection Manager Login Panel - Detect
author: princechaddha
severity: info
description: Symantec Endpoint Protection Manager login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Symantec Endpoint Protection Manager"
tags: symantec,panel,login
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: symantec-ewep-login
info:
name: Symantec Encryption Web Email Protection
name: Symantec Encryption Server Login Panel - Detect
author: johnk3r
severity: info
description: Symantec Encryption Server login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Symantec Encryption Server"
tags: panel,symantec,login
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: symantec-pgp-global-directory
info:
name: Symantec PGP Global Directory
name: Symantec PGP Global Directory Panel - Detect
author: princechaddha
severity: info
description: Symantec PGP Global Directory panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"PGP Global Directory"
tags: symantec,panel
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,12 +1,16 @@
id: synapse-mobility-panel
info:
name: Synapgse Mobility Login Panel
name: Synapse Mobility Login Panel - Detect
author: idealphase
severity: info
description: Synapse Mobility is a zero footprint Universal Viewer that supports Synapse VNA with a full suite of collaboration tools and embedded cloud based image sharing that allows clinicians to access patient information anytime and anywhere, from a variety of platforms or using a mobile device.
description: Synapse Mobility login panel was detected.
reference:
- https://synapse.fujifilm.eu/synapse-mobility.html
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Synapse Mobility Login"
google-query: intitle:"Synapse Mobility Login"
@ -27,3 +31,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,11 +1,16 @@
id: syncthru-web-service
info:
name: SyncThru Web Service
name: SyncThru Web Service Panel - Detect
author: DhiyaneshDk
severity: low
description: SyncThru Web Service panel was detected.
reference:
- https://www.exploit-db.com/ghdb/7843
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"SyncThru Web Service"
@ -30,3 +35,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: synnefo-admin-panel
info:
name: Synnefo Admin Panel Exposure
name: Synnefo Admin Login Panel - Detect
author: impramodsargar
severity: info
description: Synnefo Admin login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,synnefo
requests:
@ -20,3 +25,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: sysaid-panel
info:
name: SysAid Panel
name: SysAid Login Panel - Detect
author: pdteam
severity: info
description: SysAid login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,sysaid,helpdesk
requests:
@ -26,4 +31,6 @@ requests:
dsl:
- "status_code==200"
- "contains(tolower(body), 'sysaid help desk software')"
condition: and
condition: and
# Enhanced by md on 2023/01/18

View File

@ -1,11 +1,16 @@
id: tableau-panel
info:
name: Tableau Python Server Default Page Detect
name: Tableau Python Server Panel - Detect
author: pussycat0x
severity: info
description: Tableau Python Server panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
fofa-dork: 'app="Tableau-Python-Server"'
fofa-query: 'app="Tableau-Python-Server"'
tags: tableau,panel,python
requests:
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,11 +1,16 @@
id: tableau-service-manager
info:
name: Tableau Services Manager Login
name: Tableau Services Manager Login Panel - Detect
author: DhiyaneshDk
severity: info
description: Tableau Services Manager login panel was detected.
reference:
- https://help.tableau.com/current/server/en-us/sign_in_tsm.htm
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"Login - Tableau Services Manager"
@ -25,3 +30,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: teamcity-login-panel
info:
name: TeamCity Login Panel
name: TeamCity Login Panel - Detect
author: princechaddha
severity: info
description: TeamCity login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.component:"TeamCity"
@ -32,3 +37,5 @@ requests:
group: 1
regex:
- 'Version<\/span> ([0-9. (a-z)]+)<\/span>'
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: teampass-panel
info:
name: TeamPass Panel Detect
name: TeamPass Panel - Detect
author: arafatansari
severity: info
description: TeamPass panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.html:"teampass"
@ -27,3 +32,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,11 +1,16 @@
id: tectuus-scada-monitor
info:
name: Tectuus SCADA Monitor
name: Tectuus SCADA Monitor Panel - Detect
author: geeknik
severity: info
description: Tectuus SCADA Monitor panel was detected.
reference:
- https://www.tectuus.mx/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,tectuus,scada
requests:
@ -23,3 +28,5 @@ requests:
words:
- "<title>SCADAmonitor</title>"
part: body
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: tekton-dashboard
info:
name: Tekton Dashboard Exposure
name: Tekton Dashboard Panel - Detect
author: DhiyaneshDk
severity: low
description: Tekton Dashboard panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"Tekton"
@ -25,3 +30,5 @@ requests:
part: header
words:
- "text/html"
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: telerik-server-login
info:
name: Telerik Report Server Login
name: Telerik Report Server Login Panel - Detect
author: ritikchaddha
severity: info
description: Telerik Report Server login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.html:"Telerik Report Server"
@ -26,3 +31,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: tlr-2005ksh-login
info:
name: Telesquare TLR-2005KSH Login Panel
name: Telesquare TLR-2005KSH Login Panel - Detect
author: princechaddha
severity: info
description: Telesquare TLR-2005KSH login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.html:"TLR-2005KSH"
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,13 +1,17 @@
id: teltonika-login
info:
name: Teltonika Login panel
name: Teltonika Login Panel - Detect
author: idealphase
severity: info
description: Teltonika is exceptional Internet of Things solutions for the global market. More than 16 million IoT devices
description: Teltonika login panel was detected.
reference:
- https://www.exploit-db.com/ghdb/7819
- https://teltonika-iot-group.com/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
google-query: intitle:"Teltonika -Web UI" | intitle:"Teltonika-RUT -Web UI" inurl:"/cgi-bin/luci"
tags: panel,teltonika,edb
@ -26,3 +30,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: tembosocial-panel
info:
name: TemboSocial Administration Panel
name: TemboSocial Admin Panel - Detect
author: DhiyaneshDK
severity: info
description: TemboSocial Admin panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"TemboSocial Administration"
@ -25,3 +30,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,12 +1,16 @@
id: temenos-t24-login
info:
name: Temenos T24/Transact Login Pagel
name: Temenos Transact Login Panel - Detect
author: korteke
severity: info
description: Exposed Temenos T24 login panel
description: Temenos Transact login panel was detected.
reference:
- https://www.temenos.com/products/transact/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.title:"t24 sign in"
@ -29,3 +33,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,12 +1,17 @@
id: tenda-web-master
info:
name: Tenda Web Master
name: Tenda Web Master Login Panel - Detect
author: DhiyaneshDK
severity: info
description: Tenda Web Master login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: title:"Tenda Web Master"
shodan-query: title:"Tenda Web Master"
tags: panel,tenda,router
requests:
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: teradici-pcoip-panel
info:
name: Teradici PCoIP Zero Client Panel
name: Teradici PCoIP Zero Client Login Panel - Detect
author: princechaddha
severity: info
description: Teradici PCoIP Zero Client login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,teradici,pcoip
requests:
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,13 +1,16 @@
id: terraform-enterprise-panel
info:
name: Terraform Enterprise Panel
name: Terraform Enterprise Panel - Detect
author: Adam Crosser,idealphase
severity: info
description: Terraform Enterprise is our self-hosted distribution of Terraform Cloud. It offers enterprises a private instance of the Terraform Cloud application, with no resource limits and with additional enterprise-grade
architectural features like audit logging and SAML single sign-on.
description: Terraform Enterprise panel was detected.
reference:
- https://www.terraform.io/enterprise/releases
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: title:"Terraform Enterprise"
google-query: intitle:"Terraform Enterprise"
@ -30,3 +33,5 @@ requests:
group: 1
regex:
- '<span class="tag is-light is-lowercase">(.+)<\/span>'
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: terramaster-login
info:
name: TerraMaster Login Panel
name: Terramaster Login Panel - Detect
author: gy741
severity: info
description: Terramaster login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,terramaster,login
requests:
@ -24,3 +29,5 @@ requests:
- "X-Powered-By: TerraMaster"
condition: or
part: header
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: thinfinity-virtualui-panel
info:
name: Thinfinity VirtualUI Panel Detect
name: Thinfinity VirtualUI Panel - Detect
author: princechaddha
severity: info
description: Thinfinity VirtualUI panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"Thinfinity VirtualUI"
tags: panel,thinfinity,virtualui
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,12 +1,16 @@
id: threatq-login
info:
name: ThreatQ login panel
name: ThreatQ Login Panel - Detect
author: idealphase
severity: info
description: ThreatQ serves as an open and extensible threat intelligence platform that allows you to automate the intelligence lifecycle, quickly understand threats, make better decisions and accelerate detection and response
description: ThreatQ login panel was detected.
reference:
- https://www.threatq.com/threat-intelligence-platform/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,threatq
requests:
@ -32,3 +36,5 @@ requests:
group: 1
regex:
- '<script src="/assets/js/threatq.min.js\?(.*)'
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: thruk-login
info:
name: thruk detect
name: Thruk Monitoring Panel - Detect
author: ffffffff0x
severity: info
description: Thruk Monitoring panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
fofa-query: title=="Thruk Monitoring Webinterface"
tags: thruk,panel
@ -26,3 +31,5 @@ requests:
part: header
words:
- "thruk_test="
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: tikiwiki-cms
info:
name: Tiki Wiki CMS Groupware
name: Tiki Wiki CMS Groupware Login Panel - Detect
author: chron0x
severity: info
description: Tiki Wiki CMS Groupware login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,tikiwiki
requests:
@ -21,3 +26,5 @@ requests:
words:
- "Tiki Wiki CMS Groupware"
part: body
# Enhanced by md on 2023/01/18

View File

@ -1,12 +1,17 @@
id: tiny-file-manager
info:
name: Tiny File Manager
name: Tiny File Manager Panel - Detect
author: DhiyaneshDK
severity: info
description: Tiny File Manager panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-dork: title:"Tiny File Manager"
shodan-query: title:"Tiny File Manager"
tags: panel,filemanager
requests:
@ -26,3 +31,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,10 +1,16 @@
id: total-web-solutions-panel
info:
name: Total Web Solution Panel
name: Total Web Solutions Panel - Detect
author: dhiyaneshDK
severity: info
reference: https://www.exploit-db.com/ghdb/6811
description: Total Web Solutions panel was detected.
reference:
- https://www.exploit-db.com/ghdb/6811
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
google-query: intitle:"Total Web Solutions" + "Meter Name"
@ -24,3 +30,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,14 +1,19 @@
id: totemomail-panel
info:
name: Totemomail Login Panel
name: Totemomail Login Panel - Detect
author: johnk3r,daffainfo
severity: info
description: Totemomail login panel was detected.
reference:
- https://www.totemo.com/en/products/email-encryption
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
google-query: intext:"totemomail" inurl:responsiveUI
severity: info
tags: totemomail,panel
requests:
@ -31,3 +36,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,11 +1,16 @@
id: tracer-sc-login
info:
name: Tracer SC login panel
name: Tracer SC Login Panel - Detect
author: geeknik
severity: info
description: Tracer SC login panel was detected.
reference:
- https://www.trane.com/commercial/north-america/us/en/products-systems/building-management---automation/building-automation-systems/tracer-sc-plus.html
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: tracer,trane,iot,panel,login
requests:
@ -27,3 +32,5 @@ requests:
part: header
words:
- "text/html"
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: traefik-dashboard-detect
info:
name: Traefik Dashboard
name: Traefik Dashboard Panel - Detect
author: schniggie,StreetOfHackerR007
severity: info
description: Traefik Dashboard panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,traefik
requests:
@ -15,3 +20,5 @@ requests:
words:
- "<meta name=description content=\"Traefik UI\">"
part: body
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: trendnet-tew827dru-login
info:
name: TRENDnet TEW-827DRU Login
name: TRENDnet TEW-827DRU Login Panel - Detect
author: princechaddha
severity: info
description: TRENDnet TEW-827DRU login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.html:"TEW-827DRU"
tags: panel,router,trendnet
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,13 +1,16 @@
id: tufin-securetrack-login
info:
name: Tufin SecureTrack Login
name: Tufin SecureTrack Login Panel - Detect
author: idealphase
severity: info
description: Tufin SecureTrack is the only security policy management solution that delivers security, compliance and connectivity across physical networks and hybrid cloud by managing the growing complexity and
fragmentation of Enterprise IT.
description: Tufin SecureTrack login panel was detected.
reference:
- https://www.tufin.com/tufin-orchestration-suite/securetrack
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"SecureTrack - Tufin Technologies"
google-query: intitle:"SecureTrack - Tufin Technologies"
@ -32,3 +35,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: turnkey-openvpn
info:
name: TurnKey OpenVPN Panel
name: TurnKey OpenVPN Panel - Detect
author: ritikchaddha
severity: info
description: TurnKey OpenVPN panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.title:"TurnKey OpenVPN"
@ -26,3 +31,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,11 +1,16 @@
id: tuxedo-connected-controller
info:
name: Tuxedo Connected Controller
name: Tuxedo Connected Controller Login Panel - Detect
author: dhiyaneshDk
severity: info
description: Tuxedo Connected Controller login panel was detected.
reference:
- https://www.exploit-db.com/ghdb/6486
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,tuxedo,edb
requests:
@ -21,3 +26,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,9 +1,14 @@
id: typo3-login
info:
name: TYPO3 Login Detect
name: TYPO3 Login Panel - Detect
author: dadevel
severity: info
description: TYPO3 login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: panel,typo3
requests:
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/18

View File

@ -1,12 +1,16 @@
id: umbraco-login
info:
name: Umbraco Login Panel
name: Umbraco Login Panel - Detect
author: ola456
severity: info
description: An Umbraco backoffice login screen was detected.
description: Umbraco login panel was detected.
reference:
- https://our.umbraco.com/documentation/Fundamentals/Backoffice/Login/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.title:"Umbraco"
@ -27,3 +31,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,11 +1,16 @@
id: unauth-xproxy-dashboard
info:
name: X-Proxy Dashboard Detect
name: X-Proxy Dashboard Panel - Detect
author: pussycat0x
severity: high
description: X-Proxy Dashboard panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
cvss-score: 5.3
cwe-id: CWE-200
metadata:
fofa-dork: "X-Proxy Dashboard"
fofa-query: "X-Proxy Dashboard"
tags: xproxy,panel
requests:
@ -25,3 +30,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,11 +1,16 @@
id: unauthenticated-frp
info:
name: Unauthenticated FRP
name: FRPS Dashboard - Detect
author: pikpikcu
severity: info
description: FRPS Dashboard panel was detected.
reference:
- https://github.com/fatedier/frp/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
tags: frp,unauth,panel
requests:
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: unifi-panel
info:
name: Unifi Network Panel
name: UniFi Network Login Panel - Detect
author: TechbrunchFR
severity: info
description: UniFi Network login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: http.title:"UniFi Network"
tags: unifi,ubnt,panel
@ -25,3 +30,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: user-control-panel
info:
name: User Control Panel
name: User Control Panel - Detect
author: dhiyaneshDK
severity: info
description: User Control Panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: title:"User Control Panel"
tags: panel,ucp
@ -22,3 +27,5 @@ requests:
- type: word
words:
- "<title>User Control Panel</title>"
# Enhanced by md on 2023/01/20

View File

@ -1,11 +1,16 @@
id: v2924-admin-panel
info:
name: V2924 Admin Panel
name: V2924 Admin Login Panel - Detect
author: DhiyaneshDK
severity: info
description: V2924 admin login panel was detected.
reference:
- https://www.facebook.com/ExWareLabs/photos/a.361854183878462/5538760399521122
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"V2924"
@ -31,3 +36,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: vault-panel
info:
name: Vault Login Panel
name: Vault Login Panel - Detect
author: DhiyaneshDK
severity: info
description: Vault login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.favicon.hash:-919788577
@ -31,3 +36,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: veeam-backup-azure-panel
info:
name: Veeam Backup for Microsoft Azure
name: Veeam Backup for Microsoft Azure Panel - Detect
author: dhiyaneshDK
severity: info
description: Veeam Backup for Microsoft Azure panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
shodan-query: title:"Veeam Backup for Microsoft Azure"
tags: azure,panel,backup,veeam,microsoft
@ -22,3 +27,5 @@ requests:
- type: word
words:
- "<title>Veeam Backup for Microsoft Azure</title>"
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: veeam-backup-gcp
info:
name: Veeam Backup for GCP
name: Veeam Backup for Google Cloud Platform Panel - Detect
author: DhiyaneshDK
severity: info
description: Veeam Backup for Google Cloud Platform panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: title:"Veeam Backup for GCP"
@ -23,3 +28,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: veeam-panel
info:
name: Veeam Login Panel
name: Veeam Login Panel - Detect
author: DhiyaneshDK
severity: info
description: Veeam login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.favicon.hash:-633512412
@ -28,3 +33,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,9 +1,14 @@
id: verizon-router-panel
info:
name: Verizon Router
name: Verizon Router Panel - Detect
author: theamanrawat
severity: info
description: Verizon router panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.title:"Verizon Router"
@ -24,3 +29,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

View File

@ -1,11 +1,16 @@
id: versa-director-login
info:
name: Versa Director Login Panel
name: Versa Director Login Panel - Detect
author: c-sh0
severity: info
description: Versa Director login panel was detected.
reference:
- https://versa-networks.com/products/components/
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0.0
cwe-id: CWE-200
metadata:
verified: true
shodan-query: http.title:"VERSA DIRECTOR Login"
@ -27,3 +32,5 @@ requests:
- type: status
status:
- 200
# Enhanced by md on 2023/01/20

Some files were not shown because too many files have changed in this diff Show More