commit
1afc7ba0ca
|
@ -2,10 +2,10 @@ id: jsf-detection
|
|||
|
||||
info:
|
||||
name: JavaServer Faces Detection
|
||||
author: Moritz Nentwig
|
||||
author: brenocss,Moritz Nentwig
|
||||
severity: info
|
||||
description: Searches for JavaServer Faces content on a URL.
|
||||
tags: jsf,tech
|
||||
tags: jsf,tech,primefaces,richfaces
|
||||
|
||||
requests:
|
||||
- method: GET
|
||||
|
@ -14,9 +14,23 @@ requests:
|
|||
|
||||
redirects: true
|
||||
max-redirects: 2
|
||||
matchers-condition: or
|
||||
matchers:
|
||||
- type: word
|
||||
words:
|
||||
- "javax.faces.resource"
|
||||
- "javax.faces.ViewState"
|
||||
condition: or
|
||||
- type: dsl
|
||||
name: javafaces
|
||||
dsl:
|
||||
- "(contains(body, 'javax.faces.resource') || contains(body, 'javax.faces.ViewState'))"
|
||||
|
||||
- type: dsl
|
||||
name: primefaces
|
||||
dsl:
|
||||
- "contains(body, 'primefaces')"
|
||||
- "contains(body, 'javax.faces.resource') || contains(body, 'javax.faces.ViewState')"
|
||||
condition: and
|
||||
|
||||
- type: dsl
|
||||
name: richfaces
|
||||
dsl:
|
||||
- "contains(body, 'richfaces')"
|
||||
- "contains(body, 'javax.faces.resource') || contains(body, 'javax.faces.ViewState')"
|
||||
condition: and
|
||||
|
|
Loading…
Reference in New Issue