Update kavita-lfi.yaml

patch-1
Ritik Chaddha 2022-08-12 16:14:39 +05:30 committed by GitHub
parent 6b6e82d232
commit 5c867517d0
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 8 additions and 6 deletions

View File

@ -9,9 +9,10 @@ info:
reference:
- https://huntr.dev/bounties/2eef332b-65d2-4f13-8c39-44a8771a6f18/
metadata:
verified: true
shodan-query: http.html:"kavita"
verified: "true"
tags: path,traversal
tags: kavita,lfi
requests:
- method: GET
path:
@ -19,13 +20,14 @@ requests:
matchers-condition: and
matchers:
- type: status
status:
- 200
- type: word
part: body
words:
- 'ConnectionStrings'
- 'Path'
- 'TokenKey'
condition: and
- type: status
status:
- 200