Merge pull request #4834 from Paper-Pen/master

Add kafka-manager-exposure
patch-1
Prince Chaddha 2022-07-15 16:49:43 +05:30 committed by GitHub
commit 33f2b9472b
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 29 additions and 0 deletions

View File

@ -0,0 +1,29 @@
id: kafka-manager-panel
info:
name: Kafka Manager Panel
author: Paper-Pen
severity: low
description: A kafka manager unauthorized access was discovered.
reference:
- https://github.com/yahoo/CMAK
metadata:
fofa-query: app="Kafka-Manager"
tags: tech,kafka
requests:
- method: GET
path:
- "{{BaseURL}}"
matchers-condition: or
matchers:
- type: word
part: body
words:
- "Kafka Manager"
- type: word
part: header
words:
- "Kafka-Manager"