From 3130a5fe5b3ef882dcd791003aab4273522c992b Mon Sep 17 00:00:00 2001 From: memento_mori <105486551+PrajiteshSingh@users.noreply.github.com> Date: Sat, 29 Oct 2022 12:46:43 +0530 Subject: [PATCH] Create connectwise-exposure.yaml --- exposed-panels/connectwise-exposure.yaml | 27 ++++++++++++++++++++++++ 1 file changed, 27 insertions(+) create mode 100644 exposed-panels/connectwise-exposure.yaml diff --git a/exposed-panels/connectwise-exposure.yaml b/exposed-panels/connectwise-exposure.yaml new file mode 100644 index 0000000000..26d7996768 --- /dev/null +++ b/exposed-panels/connectwise-exposure.yaml @@ -0,0 +1,27 @@ +id: ConnectWise + +info: + name: ConnectWise + author: prajiteshsingh + severity: High + reference: + - https://www.connectwise.com/company/trust/security-bulletins/r1soft-and-recover-security-bulletin + metadata: + shodan-query: http.component:zk http.title:"Server Backup" + +requests: + - method: GET + path: + - "{{BaseURL}}/login.zul" + + matchers-condition: and + matchers: + - type: word + part: body + words: + - "Server Backup Manager SE" + condition: and + + - type: status + status: + - 200