Merge pull request #3648 from nielsing/telerik-dialog-update
Adding .axd extensions to all pathspatch-1
commit
6bcb846f06
|
@ -2,7 +2,7 @@ id: telerik-dialoghandler-detect
|
|||
|
||||
info:
|
||||
name: Detect Telerik Web UI Dialog Handler
|
||||
author: organiccrap,zhenwarx
|
||||
author: organiccrap,zhenwarx,nielsing
|
||||
severity: info
|
||||
reference:
|
||||
- https://captmeelo.com/pentest/2018/08/03/pwning-with-telerik.html
|
||||
|
@ -28,6 +28,7 @@ requests:
|
|||
- '{{BaseURL}}/common/admin/Calendar/Telerik.Web.UI.DialogHandler.aspx?dp=1'
|
||||
- '{{BaseURL}}/cms/portlets/Telerik.Web.UI.DialogHandler.aspx?dp=1'
|
||||
- '{{BaseURL}}/dashboard/UserControl/CMS/Page/Telerik.Web.UI.DialogHandler.aspx/Desktopmodules/Admin/dnnWerk.Users/DialogHandler.aspx?dp=1'
|
||||
- '{{BaseURL}}/Telerik.Web.UI.DialogHandler.axd?dp=1'
|
||||
|
||||
stop-at-first-match: true
|
||||
matchers-condition: and
|
||||
|
|
Loading…
Reference in New Issue