diff --git a/cves/2022/CVE-2022-29272.yaml b/cves/2022/CVE-2022-29272.yaml index 9a7dd10d67..f2c888a6a1 100644 --- a/cves/2022/CVE-2022-29272.yaml +++ b/cves/2022/CVE-2022-29272.yaml @@ -11,20 +11,18 @@ info: - https://nvd.nist.gov/vuln/detail/CVE-2022-29272 classification: cve-id: CVE-2022-29272 - tags: cve,cve2022,redirect,nagios + tags: cve,cve2022,redirect,nagios,nagiosxi requests: - raw: - | GET /nagiosxi/login.php?redirect=/www.interact.sh HTTP/1.1 Host: {{Hostname}} - Cookie: nagiosxi=cvdde3p1b9gtr27pigi8l4fsb5 - | POST /nagiosxi/login.php HTTP/1.1 Host: {{Hostname}} Content-Type: application/x-www-form-urlencoded - Cookie: nagiosxi=cvdde3p1b9gtr27pigi8l4fsb5 nsp={{nsp_token}}&page=auth&debug=&pageopt=login&redirect=%2Fwww.interact.sh&username={{username}}&password={{password}}&loginButton=Login @@ -41,7 +39,7 @@ requests: part: body name: nsp_token group: 1 + internal: true regex: - '' - "" - internal: true