diff --git a/misconfiguration/debug/bottle-debug.yaml b/misconfiguration/debug/bottle-debug.yaml new file mode 100644 index 0000000000..47ebea42c9 --- /dev/null +++ b/misconfiguration/debug/bottle-debug.yaml @@ -0,0 +1,33 @@ +id: bottle-debug + +info: + name: Bottle debug mode enabled + author: viondexd + severity: info + reference: + - https://bottlepy.org/docs/dev/tutorial.html#debug-mode + metadata: + verified: true + shodan-query: html:"Sorry, the requested URL" + tags: bottle,exposure,debug + +requests: + - method: GET + path: + - "{{BaseURL}}" + + matchers-condition: and + matchers: + - type: word + part: body + words: + - "Sorry, the requested URL " + - " caused an error:" + condition: and + + - type: word + part: body + words: + - "'{{BaseURL}}'" + - "'{{BaseURL}}/'" + condition: or