Additional Endpoints Added JKStatus Manager

patch-1
Dhiyaneshwaran 2023-02-08 02:56:36 +05:30 committed by GitHub
parent f1c5c2eeb8
commit 7768c14f04
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 18 additions and 3 deletions

View File

@ -2,17 +2,32 @@ id: jkstatus-manager
info:
name: JK Status Manager
author: pdteam
author: pdteam,DhiyaneshDk
severity: low
reference:
- https://github.com/PortSwigger/j2ee-scan/blob/master/src/main/java/burp/j2ee/issues/impl/JKStatus.java
metadata:
verified: "true"
shodan-query: html:"JK Status Manager"
tags: config,status
requests:
- method: GET
headers:
X-Forwarded-For: "127.0.0.1"
path:
- "{{BaseURL}}/jkstatus/"
- "{{BaseURL}}"
- "{{BaseURL}}/status"
- "{{BaseURL}}/jkstatus"
- "{{BaseURL}}/jkstatus-auth"
- "{{BaseURL}}/jk-status"
- "{{BaseURL}}/jkmanager"
- "{{BaseURL}}/jkmanager-auth"
- "{{BaseURL}}/jdkstatus"
stop-at-first-match: true
matchers:
- type: word
words:
- "<title>JK Status Manager</title>"
- "JK Status Manager"