diff --git a/http/cves/2023/CVE-2023-37270.yaml b/http/cves/2023/CVE-2023-37270.yaml index f7cb519a22..c033626e3d 100644 --- a/http/cves/2023/CVE-2023-37270.yaml +++ b/http/cves/2023/CVE-2023-37270.yaml @@ -34,18 +34,12 @@ http: GET /admin.php?page=user_activity HTTP/1.1 Host: {{Hostname}} + host-redirects: true cookie-reuse: true matchers-condition: and matchers: - - type: word - part: body_2 - words: - - 'Warning: [mysql error' - - 'INSERT INTO' - - 'SQL syntax;' - condition: and - - - type: status - status: - - 200 + - type: dsl + dsl: + - "status_code_2 == 200" + - "contains(body_2,'Warning: [mysql error') && contains(body_2,'INSERT INTO') && contains(body_2,'SQL syntax;')"