Merge pull request #5843 from pdelteil/template_renaming

Template renaming
patch-1
Prince Chaddha 2022-10-28 19:42:28 +05:30 committed by GitHub
commit 82c0bd449a
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
9 changed files with 11 additions and 6 deletions

View File

@ -1,7 +1,7 @@
id: wordpress-login id: wordpress-login
info: info:
name: WordPress login name: WordPress Login Panel
author: its0x08 author: its0x08
severity: info severity: info
tags: panel,wordpress tags: panel,wordpress
@ -10,6 +10,7 @@ requests:
- method: GET - method: GET
path: path:
- "{{BaseURL}}/wp-login.php" - "{{BaseURL}}/wp-login.php"
matchers: matchers:
- type: word - type: word
words: words:
@ -17,4 +18,5 @@ requests:
- "Log In</title>" - "Log In</title>"
- '/wp-login.php?action=lostpassword">Lost your password?</a>' - '/wp-login.php?action=lostpassword">Lost your password?</a>'
- '<form name="loginform" id="loginform" action="{{BaseURL}}/wp-login.php" method="post">' - '<form name="loginform" id="loginform" action="{{BaseURL}}/wp-login.php" method="post">'
- 'input type="password"'
condition: or condition: or

View File

@ -1,4 +1,4 @@
id: htpasswd id: htpasswd-detection
info: info:
name: Detect exposed .htpasswd files name: Detect exposed .htpasswd files

View File

@ -1,4 +1,4 @@
id: karma-conf-js id: karma-config-js
info: info:
name: Karma Configuration File Exposure name: Karma Configuration File Exposure

View File

@ -4,6 +4,9 @@ info:
name: Pantheon upstream.yml Disclosure name: Pantheon upstream.yml Disclosure
author: DhiyaneshDK author: DhiyaneshDK
severity: low severity: low
description: Public Pantheon YAML Configuration Files might include sensitive info
reference:
- https://pantheon.io/docs/pantheon-yml
metadata: metadata:
verified: true verified: true
google-query: intitle:"index of" "pantheon.upstream.yml" google-query: intitle:"index of" "pantheon.upstream.yml"

View File

@ -5,7 +5,7 @@ info:
author: pdteam author: pdteam
severity: high severity: high
reference: reference:
- https://github.com/EdOverflow/can-i-take-over-xyz - https://github.com/EdOverflow/can-i-take-over-xyz/issues/170
tags: takeover tags: takeover
requests: requests:

View File

@ -1,4 +1,4 @@
id: fortiner-workflow id: fortinet-workflow
info: info:
name: Fortinet Security Checks name: Fortinet Security Checks