diff --git a/exposed-panels/honeywell-xl-web-controller.yaml b/exposed-panels/honeywell-xl-web-controller.yaml new file mode 100644 index 0000000000..e50087f86f --- /dev/null +++ b/exposed-panels/honeywell-xl-web-controller.yaml @@ -0,0 +1,30 @@ +id: honeywell-xl-web-controller + +info: + name: Honeywell XL Web Controller + author: DhiyaneshDK + severity: info + reference: + - https://www.exploit-db.com/ghdb/7130 + classification: + cwe-id: CWE-200 + metadata: + verified: true + shodan-dork: title:"Honeywell XL Web Controller" + tags: panel,honeywell + +requests: + - method: GET + path: + - '{{BaseURL}}/standard/default.php' + + matchers-condition: and + matchers: + - type: word + part: body + words: + - 'Honeywell XL Web Controller' + + - type: status + status: + - 200