From 40ab21c292495533a271fe1da8c9a24d1d0deabf Mon Sep 17 00:00:00 2001 From: Dhiyaneshwaran Date: Mon, 4 Jul 2022 18:38:44 +0100 Subject: [PATCH] Create docker-cloud.yaml --- misconfiguration/docker-cloud.yaml | 26 ++++++++++++++++++++++++++ 1 file changed, 26 insertions(+) create mode 100644 misconfiguration/docker-cloud.yaml diff --git a/misconfiguration/docker-cloud.yaml b/misconfiguration/docker-cloud.yaml new file mode 100644 index 0000000000..dcd44707e1 --- /dev/null +++ b/misconfiguration/docker-cloud.yaml @@ -0,0 +1,26 @@ +id: docker-cloud + +info: + name: Docker Cloud Yaml File Disclosure + author: DhiyaneshDK + severity: Medium + reference: https://www.exploit-db.com/ghdb/7959 + metadata: + google-dork: intitle:"index of" "docker-cloud.yml" + tags: misconfig,cloud,devops,docker + +requests: + - method: GET + path: + - "{{BaseURL}}/docker-cloud.yml" + + matchers-condition: and + matchers: + - type: word + words: + - 'image:' + - 'ports:' + + - type: status + status: + - 200