diff --git a/http/misconfiguration/servicenow-widget-misconfig.yaml b/http/misconfiguration/servicenow-widget-misconfig.yaml index 6255cb579c..bdcbd9260f 100644 --- a/http/misconfiguration/servicenow-widget-misconfig.yaml +++ b/http/misconfiguration/servicenow-widget-misconfig.yaml @@ -10,7 +10,7 @@ info: - https://www.enumerated.ie/servicenow-data-exposure metadata: verified: true - max-request: 20 + max-request: 54 shodan-query: title:"servicenow" tags: servicenow,widget,misconfig @@ -19,11 +19,9 @@ http: - | GET / HTTP/1.1 Host: {{Hostname}} - - | GET /login.do HTTP/1.1 Host: {{Hostname}} - - | POST /api/now/sp/widget/widget-simple-list?{{table_list}} HTTP/1.1 Host: {{Hostname}} @@ -54,7 +52,6 @@ http: - t=cmn_notif_device&f=email_address - t=sys_portal_age&f=display_name - t=incident&f=short_description - matchers: - type: word part: body