From 97d133022f7d414049b6aebddb6f97c4d1540bc9 Mon Sep 17 00:00:00 2001 From: sandeep <8293321+ehsandeep@users.noreply.github.com> Date: Tue, 6 Apr 2021 12:55:57 +0530 Subject: [PATCH] more tags for panels --- dns/azure-takeover-detection.yaml | 2 +- exposed-panels/active-admin-exposure.yaml | 1 + exposed-panels/activemq-panel.yaml | 1 + exposed-panels/acunetix-panel.yaml | 1 + exposed-panels/adminer-panel.yaml | 1 + exposed-panels/adobe-component-login.yaml | 1 + exposed-panels/advance-setup.yaml | 1 + exposed-panels/aims-password-mgmt-client.yaml | 1 + exposed-panels/aims-password-portal.yaml | 1 + exposed-panels/airflow-exposure.yaml | 1 + exposed-panels/ambari-exposure.yaml | 1 + exposed-panels/ansible-tower-exposure.yaml | 1 + exposed-panels/atlassian-crowd-panel.yaml | 2 ++ exposed-panels/blue-iris-login.yaml | 1 + exposed-panels/checkmarx-panel.yaml | 1 + exposed-panels/cisco-asa-panel.yaml | 2 +- exposed-panels/cisco-finesse-login.yaml | 2 +- exposed-panels/cisco-integrated-login.yaml | 2 +- exposed-panels/cisco-sd-wan.yaml | 2 +- exposed-panels/cisco-security-details.yaml | 2 +- exposed-panels/citrix-adc-gateway-detect.yaml | 4 ++++ exposed-panels/citrix-vpn-detect.yaml | 1 + exposed-panels/compal-panel.yaml | 1 + exposed-panels/couchdb-exposure.yaml | 2 ++ exposed-panels/couchdb-fauxton.yaml | 1 + exposed-panels/crush-ftp-login.yaml | 3 ++- exposed-panels/crxde-lite.yaml | 1 + exposed-panels/d-link-wireless.yaml | 1 + exposed-panels/django-admin-panel.yaml | 1 + exposed-panels/druid-console-exposure.yaml | 1 + exposed-panels/exposed-pagespeed-global-admin.yaml | 1 + exposed-panels/exposed-webalizer.yaml | 1 + exposed-panels/fiorilaunchpad-logon.yaml | 1 + exposed-panels/flink-exposure.yaml | 1 + exposed-panels/fortinet-fortigate-panel.yaml | 1 + exposed-panels/fortiweb-panel.yaml | 1 + exposed-panels/github-enterprise-detect.yaml | 1 + exposed-panels/gitlab-detect.yaml | 1 + exposed-panels/globalprotect-panel.yaml | 1 + exposed-panels/go-anywhere-client.yaml | 1 + exposed-panels/grafana-detect.yaml | 1 + exposed-panels/hadoop-exposure.yaml | 1 + exposed-panels/hivemanager-login-panel.yaml | 1 + exposed-panels/hmc-hybris-panel.yaml | 1 + exposed-panels/identityguard-selfservice-entrust.yaml | 1 + exposed-panels/iomega-lenovo-emc-shared-nas-detect.yaml | 1 + exposed-panels/jfrog.yaml | 1 + exposed-panels/jira-detect.yaml | 1 + exposed-panels/jmx-console.yaml | 1 + exposed-panels/joomla-panel.yaml | 1 + exposed-panels/kafka-connect-ui.yaml | 1 + exposed-panels/kafka-monitoring.yaml | 1 + exposed-panels/kafka-topics-ui.yaml | 1 + exposed-panels/keenetic-web-login.yaml | 1 + exposed-panels/key-cloak-admin-panel.yaml | 1 + exposed-panels/kubernetes-dashboard.yaml | 1 + exposed-panels/manage-engine-admanager-panel.yaml | 1 + exposed-panels/microsoft-exchange-login.yaml | 1 + exposed-panels/mini-start-page.yaml | 1 + exposed-panels/mobileiron-login.yaml | 1 + exposed-panels/nessus-panel.yaml | 1 + exposed-panels/netlify-cms.yaml | 1 + exposed-panels/netscaler-gateway.yaml | 1 + exposed-panels/oipm-detect.yaml | 1 + exposed-panels/oki-data.yaml | 1 + exposed-panels/open-stack-dashboard-login.yaml | 1 + exposed-panels/pandora-fms-console.yaml | 1 + exposed-panels/parallels-html-client.yaml | 1 + exposed-panels/phpmyadmin-panel.yaml | 1 + exposed-panels/plesk-onyx.yaml | 1 + exposed-panels/polycom-admin-detect.yaml | 1 + exposed-panels/powerlogic-ion.yaml | 1 + exposed-panels/prometheus-exporter-detect.yaml | 4 ++-- exposed-panels/public-tomcat-manager.yaml | 1 + exposed-panels/pulse-secure-panel.yaml | 1 + exposed-panels/rabbitmq-dashboard.yaml | 1 + exposed-panels/radius-manager.yaml | 1 + exposed-panels/remote-ui-login.yaml | 1 + exposed-panels/rocketmq-console-exposure.yaml | 1 + exposed-panels/rsa-self-service.yaml | 1 + exposed-panels/sap-hana-xsengine-panel.yaml | 1 + exposed-panels/sap-netweaver-detect.yaml | 1 + exposed-panels/sap-recon-detect.yaml | 1 + exposed-panels/selenoid-ui-exposure.yaml | 1 + exposed-panels/setup-page-exposure.yaml | 1 + exposed-panels/sitefinity-login.yaml | 1 + exposed-panels/siteomat-login.yaml | 1 + exposed-panels/solarwinds-orion.yaml | 1 + exposed-panels/solr-exposure.yaml | 1 + exposed-panels/sonarqube-login.yaml | 1 + exposed-panels/sonicwall-management-panel.yaml | 1 + exposed-panels/sonicwall-sslvpn-panel.yaml | 1 + exposed-panels/sophos-fw-version-detect.yaml | 1 + exposed-panels/sphider-login.yaml | 1 + exposed-panels/supervpn-panel.yaml | 1 + exposed-panels/tikiwiki-cms.yaml | 1 + exposed-panels/tomcat-manager-pathnormalization.yaml | 4 +++- exposed-panels/total-web.yaml | 1 + exposed-panels/traefik-dashboard.yaml | 1 + exposed-panels/tuxedo-connected-controller.yaml | 1 + exposed-panels/unauthenticated-frp.yaml | 3 ++- exposed-panels/vigor-login.yaml | 1 + exposed-panels/virtual-ema-detect.yaml | 1 + exposed-panels/vmware-horizon.yaml | 1 + exposed-panels/wago-plc-panel.yaml | 1 + exposed-panels/weatherlink.yaml | 1 + exposed-panels/weave-scope-dashboard-detect.yaml | 1 + exposed-panels/web-local-craft.yaml | 1 + exposed-panels/webeditors.yaml | 1 + exposed-panels/webmin-panel.yaml | 1 + exposed-panels/wordpress-login.yaml | 1 + exposed-panels/workspace-one-uem.yaml | 2 ++ .../workspaceone-uem-airwatch-dashboard-detect.yaml | 1 + exposed-panels/wso2-management-console.yaml | 1 + exposed-panels/xenmobile-login.yaml | 1 + exposed-panels/yarn-manager-exposure.yaml | 1 + exposed-panels/zipkin-exposure.yaml | 1 + exposed-panels/zte-panel.yaml | 1 + 118 files changed, 129 insertions(+), 11 deletions(-) diff --git a/dns/azure-takeover-detection.yaml b/dns/azure-takeover-detection.yaml index c10b79fcbc..616db8eb2e 100644 --- a/dns/azure-takeover-detection.yaml +++ b/dns/azure-takeover-detection.yaml @@ -2,7 +2,7 @@ id: azure-takeover-detection info: name: Azure takeover detection - author: "pdnuclei - projectdiscovery.io" + author: pdteam severity: high tags: dns,takeover diff --git a/exposed-panels/active-admin-exposure.yaml b/exposed-panels/active-admin-exposure.yaml index cac175f040..ea5abea227 100644 --- a/exposed-panels/active-admin-exposure.yaml +++ b/exposed-panels/active-admin-exposure.yaml @@ -4,6 +4,7 @@ info: name: ActiveAdmin Admin Dasboard Exposure author: pdteam severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/activemq-panel.yaml b/exposed-panels/activemq-panel.yaml index b7e3ee94bf..fcc93b5236 100644 --- a/exposed-panels/activemq-panel.yaml +++ b/exposed-panels/activemq-panel.yaml @@ -4,6 +4,7 @@ info: name: Apache ActiveMQ Exposure author: pdteam severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/acunetix-panel.yaml b/exposed-panels/acunetix-panel.yaml index 7bcc9503d6..151404574c 100644 --- a/exposed-panels/acunetix-panel.yaml +++ b/exposed-panels/acunetix-panel.yaml @@ -4,6 +4,7 @@ info: name: Acunetix Panel detector author: joanbono severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/adminer-panel.yaml b/exposed-panels/adminer-panel.yaml index e2b5c04b56..656b06c8bd 100644 --- a/exposed-panels/adminer-panel.yaml +++ b/exposed-panels/adminer-panel.yaml @@ -4,6 +4,7 @@ info: author: random-robbie & meme-lord severity: info reference: https://blog.sorcery.ie/posts/adminer/ + tags: panel # <= 4.2.4 can have unauthenticated RCE via SQLite driver # <= 4.6.2 can have LFI via MySQL LOAD DATA LOCAL diff --git a/exposed-panels/adobe-component-login.yaml b/exposed-panels/adobe-component-login.yaml index 73b20066a3..cf0a6e2a19 100644 --- a/exposed-panels/adobe-component-login.yaml +++ b/exposed-panels/adobe-component-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6846 + tags: panel requests: - method: GET diff --git a/exposed-panels/advance-setup.yaml b/exposed-panels/advance-setup.yaml index f2a2600f5d..957677ccf9 100644 --- a/exposed-panels/advance-setup.yaml +++ b/exposed-panels/advance-setup.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6819 + tags: panel requests: - method: GET diff --git a/exposed-panels/aims-password-mgmt-client.yaml b/exposed-panels/aims-password-mgmt-client.yaml index b66307b2cf..76998f88a1 100644 --- a/exposed-panels/aims-password-mgmt-client.yaml +++ b/exposed-panels/aims-password-mgmt-client.yaml @@ -4,6 +4,7 @@ info: name: Aims Password Management Client Detect author: iamthefrogy severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/aims-password-portal.yaml b/exposed-panels/aims-password-portal.yaml index 55078d3d23..eb21d8e0eb 100644 --- a/exposed-panels/aims-password-portal.yaml +++ b/exposed-panels/aims-password-portal.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6576 + tags: panel requests: - method: GET diff --git a/exposed-panels/airflow-exposure.yaml b/exposed-panels/airflow-exposure.yaml index 8a2292d662..9130363b09 100644 --- a/exposed-panels/airflow-exposure.yaml +++ b/exposed-panels/airflow-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache Airflow Exposure / Unauthenticated Access author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/ambari-exposure.yaml b/exposed-panels/ambari-exposure.yaml index e0f9747126..6dbaa22d28 100644 --- a/exposed-panels/ambari-exposure.yaml +++ b/exposed-panels/ambari-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache Ambari Exposure / Unauthenticated Access author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/ansible-tower-exposure.yaml b/exposed-panels/ansible-tower-exposure.yaml index c1ea658b24..72789c4755 100644 --- a/exposed-panels/ansible-tower-exposure.yaml +++ b/exposed-panels/ansible-tower-exposure.yaml @@ -4,6 +4,7 @@ info: name: Ansible Tower Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/atlassian-crowd-panel.yaml b/exposed-panels/atlassian-crowd-panel.yaml index 6b6d3e01f3..4fd18bcda4 100644 --- a/exposed-panels/atlassian-crowd-panel.yaml +++ b/exposed-panels/atlassian-crowd-panel.yaml @@ -4,6 +4,8 @@ info: name: Atlassian Crowd panel detect author: organiccrap severity: info + tags: panel + requests: - method: GET path: diff --git a/exposed-panels/blue-iris-login.yaml b/exposed-panels/blue-iris-login.yaml index de085c8d45..224b1d1b46 100644 --- a/exposed-panels/blue-iris-login.yaml +++ b/exposed-panels/blue-iris-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6814 + tags: panel requests: - method: GET diff --git a/exposed-panels/checkmarx-panel.yaml b/exposed-panels/checkmarx-panel.yaml index eb46a385f1..4aa65b0e49 100644 --- a/exposed-panels/checkmarx-panel.yaml +++ b/exposed-panels/checkmarx-panel.yaml @@ -4,6 +4,7 @@ info: name: Checkmarx WebClient detector author: joanbono severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/cisco-asa-panel.yaml b/exposed-panels/cisco-asa-panel.yaml index 62aa7c0b5d..0db529493b 100644 --- a/exposed-panels/cisco-asa-panel.yaml +++ b/exposed-panels/cisco-asa-panel.yaml @@ -4,7 +4,7 @@ info: name: Cisco ASA VPN panel detect author: organiccrap severity: info - tags: cisco + tags: cisco,panel requests: - method: GET diff --git a/exposed-panels/cisco-finesse-login.yaml b/exposed-panels/cisco-finesse-login.yaml index c5fc003ef7..0944959e91 100644 --- a/exposed-panels/cisco-finesse-login.yaml +++ b/exposed-panels/cisco-finesse-login.yaml @@ -5,7 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6824 - tags: cisco + tags: panel,cisco requests: - method: GET diff --git a/exposed-panels/cisco-integrated-login.yaml b/exposed-panels/cisco-integrated-login.yaml index 01d18adfab..0804d5a189 100644 --- a/exposed-panels/cisco-integrated-login.yaml +++ b/exposed-panels/cisco-integrated-login.yaml @@ -5,7 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/3859 - tags: cisco + tags: panel,cisco requests: - method: GET diff --git a/exposed-panels/cisco-sd-wan.yaml b/exposed-panels/cisco-sd-wan.yaml index c156f1460f..6376c9a8ca 100644 --- a/exposed-panels/cisco-sd-wan.yaml +++ b/exposed-panels/cisco-sd-wan.yaml @@ -5,7 +5,7 @@ info: author: z3bd severity: info reference: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-bufovulns-B5NrSHbj - tags: cisco + tags: panel,cisco requests: - method: GET diff --git a/exposed-panels/cisco-security-details.yaml b/exposed-panels/cisco-security-details.yaml index 8ddd313415..8ebd1577a1 100644 --- a/exposed-panels/cisco-security-details.yaml +++ b/exposed-panels/cisco-security-details.yaml @@ -5,7 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6708 - tags: cisco + tags: panel,cisco requests: - method: GET diff --git a/exposed-panels/citrix-adc-gateway-detect.yaml b/exposed-panels/citrix-adc-gateway-detect.yaml index c8db1fce4c..259215205d 100644 --- a/exposed-panels/citrix-adc-gateway-detect.yaml +++ b/exposed-panels/citrix-adc-gateway-detect.yaml @@ -1,8 +1,11 @@ id: citrix-adc-gateway-panel + info: name: Citrix ADC Gateway detect author: organiccrap severity: info + tags: panel + requests: - method: GET path: @@ -10,6 +13,7 @@ requests: - '{{BaseURL}}/logon/LogonPoint/custom.html' headers: User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55 + matchers: - type: word words: diff --git a/exposed-panels/citrix-vpn-detect.yaml b/exposed-panels/citrix-vpn-detect.yaml index d8ed3de3dc..6dad344382 100644 --- a/exposed-panels/citrix-vpn-detect.yaml +++ b/exposed-panels/citrix-vpn-detect.yaml @@ -4,6 +4,7 @@ info: name: Citrix VPN Detection author: pdteam severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/compal-panel.yaml b/exposed-panels/compal-panel.yaml index c88898d88a..5682d683b3 100644 --- a/exposed-panels/compal-panel.yaml +++ b/exposed-panels/compal-panel.yaml @@ -4,6 +4,7 @@ info: name: Compal CH7465LG panel detect author: fabaff severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/couchdb-exposure.yaml b/exposed-panels/couchdb-exposure.yaml index c99f1a5b04..376f2370b6 100644 --- a/exposed-panels/couchdb-exposure.yaml +++ b/exposed-panels/couchdb-exposure.yaml @@ -3,6 +3,7 @@ info: name: couchdb exposure author: organiccrap severity: low + tags: panel requests: - method: GET @@ -18,6 +19,7 @@ requests: - Erlang OTP/ part: header condition: and + - type: status status: - 200 diff --git a/exposed-panels/couchdb-fauxton.yaml b/exposed-panels/couchdb-fauxton.yaml index 9e9694ab06..5ca46a8540 100644 --- a/exposed-panels/couchdb-fauxton.yaml +++ b/exposed-panels/couchdb-fauxton.yaml @@ -4,6 +4,7 @@ info: name: Apache CouchDB Fauxton Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/crush-ftp-login.yaml b/exposed-panels/crush-ftp-login.yaml index 5767a7b8e6..48298e19ba 100644 --- a/exposed-panels/crush-ftp-login.yaml +++ b/exposed-panels/crush-ftp-login.yaml @@ -1,10 +1,11 @@ -id: crushFTP-login +id: crushftp-login info: name: CrushFTP WebInterface author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6591 + tags: panel requests: - method: GET diff --git a/exposed-panels/crxde-lite.yaml b/exposed-panels/crxde-lite.yaml index 36bd50be83..3b578f65e1 100644 --- a/exposed-panels/crxde-lite.yaml +++ b/exposed-panels/crxde-lite.yaml @@ -4,6 +4,7 @@ info: name: CRXDE Lite author: nadino severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/d-link-wireless.yaml b/exposed-panels/d-link-wireless.yaml index 9a339ffa48..d896e4fb9c 100644 --- a/exposed-panels/d-link-wireless.yaml +++ b/exposed-panels/d-link-wireless.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6784 + tags: panel requests: - method: GET diff --git a/exposed-panels/django-admin-panel.yaml b/exposed-panels/django-admin-panel.yaml index 583cb0abfc..20e32f4f96 100644 --- a/exposed-panels/django-admin-panel.yaml +++ b/exposed-panels/django-admin-panel.yaml @@ -4,6 +4,7 @@ info: name: Python Django Admin Panel author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/druid-console-exposure.yaml b/exposed-panels/druid-console-exposure.yaml index 785be117bd..cdeb366871 100644 --- a/exposed-panels/druid-console-exposure.yaml +++ b/exposed-panels/druid-console-exposure.yaml @@ -4,6 +4,7 @@ info: name: Alibaba Druid Console Exposure author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/exposed-pagespeed-global-admin.yaml b/exposed-panels/exposed-pagespeed-global-admin.yaml index 07da9c5477..0ad8e055a4 100644 --- a/exposed-panels/exposed-pagespeed-global-admin.yaml +++ b/exposed-panels/exposed-pagespeed-global-admin.yaml @@ -4,6 +4,7 @@ info: name: Apache PageSpeed Global Admin Dashboard Exposure author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/exposed-webalizer.yaml b/exposed-panels/exposed-webalizer.yaml index 3f39a7874f..c94eb6e39d 100644 --- a/exposed-panels/exposed-webalizer.yaml +++ b/exposed-panels/exposed-webalizer.yaml @@ -4,6 +4,7 @@ info: name: Publicly exposed Webalizer Interface author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/fiorilaunchpad-logon.yaml b/exposed-panels/fiorilaunchpad-logon.yaml index 768a939c64..36e57b30d6 100644 --- a/exposed-panels/fiorilaunchpad-logon.yaml +++ b/exposed-panels/fiorilaunchpad-logon.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6793 + tags: panel requests: - method: GET diff --git a/exposed-panels/flink-exposure.yaml b/exposed-panels/flink-exposure.yaml index f2814aa802..3205841860 100644 --- a/exposed-panels/flink-exposure.yaml +++ b/exposed-panels/flink-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache Flink Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/fortinet-fortigate-panel.yaml b/exposed-panels/fortinet-fortigate-panel.yaml index 4e3d8d8324..df08aa8d97 100644 --- a/exposed-panels/fortinet-fortigate-panel.yaml +++ b/exposed-panels/fortinet-fortigate-panel.yaml @@ -4,6 +4,7 @@ info: name: Fortinet FortiGate SSL VPN Panel author: bsysop severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/fortiweb-panel.yaml b/exposed-panels/fortiweb-panel.yaml index 060b97d997..26e22e6e1f 100644 --- a/exposed-panels/fortiweb-panel.yaml +++ b/exposed-panels/fortiweb-panel.yaml @@ -4,6 +4,7 @@ info: name: Fortinet FortiWeb Login Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/github-enterprise-detect.yaml b/exposed-panels/github-enterprise-detect.yaml index bbe695dc06..bb831d7879 100644 --- a/exposed-panels/github-enterprise-detect.yaml +++ b/exposed-panels/github-enterprise-detect.yaml @@ -4,6 +4,7 @@ info: name: Detect Github Enterprise author: ehsahil severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/gitlab-detect.yaml b/exposed-panels/gitlab-detect.yaml index e91e5c1eeb..43d1837456 100644 --- a/exposed-panels/gitlab-detect.yaml +++ b/exposed-panels/gitlab-detect.yaml @@ -4,6 +4,7 @@ info: name: Detect Gitlab author: ehsahil severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/globalprotect-panel.yaml b/exposed-panels/globalprotect-panel.yaml index a5ad944a04..6d6a03dfce 100644 --- a/exposed-panels/globalprotect-panel.yaml +++ b/exposed-panels/globalprotect-panel.yaml @@ -4,6 +4,7 @@ info: name: PaloAlto Networks GlobalProtect Panel author: organiccrap severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/go-anywhere-client.yaml b/exposed-panels/go-anywhere-client.yaml index 065dc07c66..1aaa3fea26 100644 --- a/exposed-panels/go-anywhere-client.yaml +++ b/exposed-panels/go-anywhere-client.yaml @@ -4,6 +4,7 @@ info: name: GoAnywhere client login detection author: iamthefrogy severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/grafana-detect.yaml b/exposed-panels/grafana-detect.yaml index 4f87f7ee36..21a4f5bc23 100644 --- a/exposed-panels/grafana-detect.yaml +++ b/exposed-panels/grafana-detect.yaml @@ -4,6 +4,7 @@ info: name: Grafana panel detect author: organiccrap severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/hadoop-exposure.yaml b/exposed-panels/hadoop-exposure.yaml index 470ebed082..c5b65f05fc 100644 --- a/exposed-panels/hadoop-exposure.yaml +++ b/exposed-panels/hadoop-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache Hadoop Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/hivemanager-login-panel.yaml b/exposed-panels/hivemanager-login-panel.yaml index 2877cb5e9d..a4da86dd2b 100644 --- a/exposed-panels/hivemanager-login-panel.yaml +++ b/exposed-panels/hivemanager-login-panel.yaml @@ -3,6 +3,7 @@ info: name: HiveManager Login panel author: binaryfigments severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/hmc-hybris-panel.yaml b/exposed-panels/hmc-hybris-panel.yaml index 2fb8ab3570..af21dfa464 100644 --- a/exposed-panels/hmc-hybris-panel.yaml +++ b/exposed-panels/hmc-hybris-panel.yaml @@ -4,6 +4,7 @@ info: name: SAP Hybris Management Console author: dogasantos severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/identityguard-selfservice-entrust.yaml b/exposed-panels/identityguard-selfservice-entrust.yaml index a8cfb6d388..afca78d8fd 100644 --- a/exposed-panels/identityguard-selfservice-entrust.yaml +++ b/exposed-panels/identityguard-selfservice-entrust.yaml @@ -4,6 +4,7 @@ info: name: IdentityGuard Self-Service by Entrust author: nodauf severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/iomega-lenovo-emc-shared-nas-detect.yaml b/exposed-panels/iomega-lenovo-emc-shared-nas-detect.yaml index e240ed43ff..6ab8701c3c 100644 --- a/exposed-panels/iomega-lenovo-emc-shared-nas-detect.yaml +++ b/exposed-panels/iomega-lenovo-emc-shared-nas-detect.yaml @@ -4,6 +4,7 @@ info: name: Iomega Lenovo EMC with shared NAS author: e_schultze_ severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/jfrog.yaml b/exposed-panels/jfrog.yaml index 85b4ebc8e4..be15c7fbd8 100644 --- a/exposed-panels/jfrog.yaml +++ b/exposed-panels/jfrog.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6797 + tags: panel requests: - method: GET diff --git a/exposed-panels/jira-detect.yaml b/exposed-panels/jira-detect.yaml index bf8fffad86..eed2c69c49 100644 --- a/exposed-panels/jira-detect.yaml +++ b/exposed-panels/jira-detect.yaml @@ -4,6 +4,7 @@ info: name: Detect Jira Issue Management Software author: pdteam severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/jmx-console.yaml b/exposed-panels/jmx-console.yaml index 3aeb44f97c..d42d8c1648 100644 --- a/exposed-panels/jmx-console.yaml +++ b/exposed-panels/jmx-console.yaml @@ -3,6 +3,7 @@ info: name: JMX Console author: Yash Anand @yashanand155 severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/joomla-panel.yaml b/exposed-panels/joomla-panel.yaml index 3e1c83cdbf..0ba3c3e6d5 100644 --- a/exposed-panels/joomla-panel.yaml +++ b/exposed-panels/joomla-panel.yaml @@ -4,6 +4,7 @@ info: name: Joomla Panel author: github.com/its0x08 severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/kafka-connect-ui.yaml b/exposed-panels/kafka-connect-ui.yaml index 6c2872e0f1..f05523b287 100644 --- a/exposed-panels/kafka-connect-ui.yaml +++ b/exposed-panels/kafka-connect-ui.yaml @@ -4,6 +4,7 @@ info: name: Apache Kafka Connect UI Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/kafka-monitoring.yaml b/exposed-panels/kafka-monitoring.yaml index 22693d1761..faf62308cc 100644 --- a/exposed-panels/kafka-monitoring.yaml +++ b/exposed-panels/kafka-monitoring.yaml @@ -4,6 +4,7 @@ info: name: Apache Kafka Monitor Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/kafka-topics-ui.yaml b/exposed-panels/kafka-topics-ui.yaml index 4af694953e..8dbc3f9571 100644 --- a/exposed-panels/kafka-topics-ui.yaml +++ b/exposed-panels/kafka-topics-ui.yaml @@ -4,6 +4,7 @@ info: name: Apache Kafka Topics UI Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/keenetic-web-login.yaml b/exposed-panels/keenetic-web-login.yaml index 7f68b943f3..3faad52760 100644 --- a/exposed-panels/keenetic-web-login.yaml +++ b/exposed-panels/keenetic-web-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6817 + tags: panel requests: - method: GET diff --git a/exposed-panels/key-cloak-admin-panel.yaml b/exposed-panels/key-cloak-admin-panel.yaml index 67f08a2e2d..464a7184b7 100644 --- a/exposed-panels/key-cloak-admin-panel.yaml +++ b/exposed-panels/key-cloak-admin-panel.yaml @@ -4,6 +4,7 @@ info: name: Keycloak Admin Panel author: incogbyte severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/kubernetes-dashboard.yaml b/exposed-panels/kubernetes-dashboard.yaml index a688a8d498..96910bb93a 100644 --- a/exposed-panels/kubernetes-dashboard.yaml +++ b/exposed-panels/kubernetes-dashboard.yaml @@ -4,6 +4,7 @@ info: name: Kubernetes Console Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/manage-engine-admanager-panel.yaml b/exposed-panels/manage-engine-admanager-panel.yaml index d4d80647e8..62ca19c347 100644 --- a/exposed-panels/manage-engine-admanager-panel.yaml +++ b/exposed-panels/manage-engine-admanager-panel.yaml @@ -4,6 +4,7 @@ info: name: Manage Engine ADManager Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/microsoft-exchange-login.yaml b/exposed-panels/microsoft-exchange-login.yaml index e6e6ad8092..1ba8607ba6 100644 --- a/exposed-panels/microsoft-exchange-login.yaml +++ b/exposed-panels/microsoft-exchange-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6739 + tags: panel requests: - method: GET diff --git a/exposed-panels/mini-start-page.yaml b/exposed-panels/mini-start-page.yaml index 61b374afe4..e44521550f 100644 --- a/exposed-panels/mini-start-page.yaml +++ b/exposed-panels/mini-start-page.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDk severity: info reference: https://www.exploit-db.com/ghdb/6500 + tags: panel requests: - method: GET diff --git a/exposed-panels/mobileiron-login.yaml b/exposed-panels/mobileiron-login.yaml index dcc9389c43..d5c1833dce 100644 --- a/exposed-panels/mobileiron-login.yaml +++ b/exposed-panels/mobileiron-login.yaml @@ -4,6 +4,7 @@ info: name: MobileIron Login author: dhiyaneshDK & @dwisiswant0 Severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/nessus-panel.yaml b/exposed-panels/nessus-panel.yaml index 23f6fec09b..0b1a054100 100644 --- a/exposed-panels/nessus-panel.yaml +++ b/exposed-panels/nessus-panel.yaml @@ -4,6 +4,7 @@ info: name: Nessus Panel detector author: joanbono severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/netlify-cms.yaml b/exposed-panels/netlify-cms.yaml index a6c3f2da55..48ae323adf 100644 --- a/exposed-panels/netlify-cms.yaml +++ b/exposed-panels/netlify-cms.yaml @@ -4,6 +4,7 @@ info: name: Netlify CMS Admin Panel author: sullo severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/netscaler-gateway.yaml b/exposed-panels/netscaler-gateway.yaml index 0f006101d3..bb2d60dff7 100644 --- a/exposed-panels/netscaler-gateway.yaml +++ b/exposed-panels/netscaler-gateway.yaml @@ -4,6 +4,7 @@ info: name: Netscaler gateway author: joeldeleep severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/oipm-detect.yaml b/exposed-panels/oipm-detect.yaml index 234cae2dc2..7c944150c5 100644 --- a/exposed-panels/oipm-detect.yaml +++ b/exposed-panels/oipm-detect.yaml @@ -3,6 +3,7 @@ info: name: One Identity Password Manager detection author: nodauf severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/oki-data.yaml b/exposed-panels/oki-data.yaml index 43bd50169e..a3173b2a45 100644 --- a/exposed-panels/oki-data.yaml +++ b/exposed-panels/oki-data.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/5937 + tags: panel requests: - method: GET diff --git a/exposed-panels/open-stack-dashboard-login.yaml b/exposed-panels/open-stack-dashboard-login.yaml index 386848e7d2..4f8a19279e 100644 --- a/exposed-panels/open-stack-dashboard-login.yaml +++ b/exposed-panels/open-stack-dashboard-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6464 + tags: panel requests: - method: GET diff --git a/exposed-panels/pandora-fms-console.yaml b/exposed-panels/pandora-fms-console.yaml index 6c3f890f00..5224d23ff1 100644 --- a/exposed-panels/pandora-fms-console.yaml +++ b/exposed-panels/pandora-fms-console.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDk severity: info reference: https://www.exploit-db.com/ghdb/6827 + tags: panel requests: - method: GET diff --git a/exposed-panels/parallels-html-client.yaml b/exposed-panels/parallels-html-client.yaml index a27145fc6b..d55db4e436 100644 --- a/exposed-panels/parallels-html-client.yaml +++ b/exposed-panels/parallels-html-client.yaml @@ -4,6 +4,7 @@ info: name: Parallels HTML5 Client author: pdteam severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/phpmyadmin-panel.yaml b/exposed-panels/phpmyadmin-panel.yaml index 0263c0e1ec..53d14bcdba 100644 --- a/exposed-panels/phpmyadmin-panel.yaml +++ b/exposed-panels/phpmyadmin-panel.yaml @@ -4,6 +4,7 @@ info: name: phpMyAdmin Panel author: pdteam severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/plesk-onyx.yaml b/exposed-panels/plesk-onyx.yaml index 334c420bf9..618a654b01 100644 --- a/exposed-panels/plesk-onyx.yaml +++ b/exposed-panels/plesk-onyx.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6501 + tags: panel requests: - method: GET diff --git a/exposed-panels/polycom-admin-detect.yaml b/exposed-panels/polycom-admin-detect.yaml index daae85917a..3b29cc8b7c 100644 --- a/exposed-panels/polycom-admin-detect.yaml +++ b/exposed-panels/polycom-admin-detect.yaml @@ -4,6 +4,7 @@ info: name: Polycom Admin Panel author: e_schultze_ severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/powerlogic-ion.yaml b/exposed-panels/powerlogic-ion.yaml index 407b1c3baa..4f5ae8d7fd 100644 --- a/exposed-panels/powerlogic-ion.yaml +++ b/exposed-panels/powerlogic-ion.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: low reference: https://www.exploit-db.com/ghdb/6810 + tags: panel requests: - method: GET diff --git a/exposed-panels/prometheus-exporter-detect.yaml b/exposed-panels/prometheus-exporter-detect.yaml index 62746091f9..b77807a555 100644 --- a/exposed-panels/prometheus-exporter-detect.yaml +++ b/exposed-panels/prometheus-exporter-detect.yaml @@ -4,8 +4,8 @@ info: author: jarijaas severity: info description: Prometheus exporter detector - -# See https://github.com/prometheus/prometheus/wiki/Default-port-allocations + tags: panel + reference: https://github.com/prometheus/prometheus/wiki/Default-port-allocations requests: - method: GET diff --git a/exposed-panels/public-tomcat-manager.yaml b/exposed-panels/public-tomcat-manager.yaml index 1a2401b47a..191857362f 100644 --- a/exposed-panels/public-tomcat-manager.yaml +++ b/exposed-panels/public-tomcat-manager.yaml @@ -4,6 +4,7 @@ info: name: tomcat manager disclosure author: Ahmed Sherif & geeknik severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/pulse-secure-panel.yaml b/exposed-panels/pulse-secure-panel.yaml index 48110dddb5..04b74a4464 100644 --- a/exposed-panels/pulse-secure-panel.yaml +++ b/exposed-panels/pulse-secure-panel.yaml @@ -4,6 +4,7 @@ info: name: Pulse Secure VPN Panel author: bsysop severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/rabbitmq-dashboard.yaml b/exposed-panels/rabbitmq-dashboard.yaml index b9add7a446..9a1abcdfe3 100644 --- a/exposed-panels/rabbitmq-dashboard.yaml +++ b/exposed-panels/rabbitmq-dashboard.yaml @@ -4,6 +4,7 @@ info: name: RabbitMQ Dashboard author: fyoorer severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/radius-manager.yaml b/exposed-panels/radius-manager.yaml index 769cf5b94b..2dc11c7ade 100644 --- a/exposed-panels/radius-manager.yaml +++ b/exposed-panels/radius-manager.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6790 + tags: panel requests: - method: GET diff --git a/exposed-panels/remote-ui-login.yaml b/exposed-panels/remote-ui-login.yaml index 2987e33b23..aeeeb8998a 100644 --- a/exposed-panels/remote-ui-login.yaml +++ b/exposed-panels/remote-ui-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6815 + tags: panel requests: - method: GET diff --git a/exposed-panels/rocketmq-console-exposure.yaml b/exposed-panels/rocketmq-console-exposure.yaml index 913802330b..81a07658b3 100644 --- a/exposed-panels/rocketmq-console-exposure.yaml +++ b/exposed-panels/rocketmq-console-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache RocketMQ Console Exposure author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/rsa-self-service.yaml b/exposed-panels/rsa-self-service.yaml index 8743fad505..aa6a36e208 100644 --- a/exposed-panels/rsa-self-service.yaml +++ b/exposed-panels/rsa-self-service.yaml @@ -4,6 +4,7 @@ info: name: Detect RSA Self-Service Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/sap-hana-xsengine-panel.yaml b/exposed-panels/sap-hana-xsengine-panel.yaml index d61062ac70..2b6556f77d 100644 --- a/exposed-panels/sap-hana-xsengine-panel.yaml +++ b/exposed-panels/sap-hana-xsengine-panel.yaml @@ -4,6 +4,7 @@ info: name: SAP HANA XSEngine Admin Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/sap-netweaver-detect.yaml b/exposed-panels/sap-netweaver-detect.yaml index 071739d7b5..13b6517e76 100644 --- a/exposed-panels/sap-netweaver-detect.yaml +++ b/exposed-panels/sap-netweaver-detect.yaml @@ -4,6 +4,7 @@ info: name: SAP NetWeaver Portal detect author: organiccrap severity: info + tags: panel # SAP Netweaver default creds - SAP*/06071992 or TMSADM/$1Pawd2& diff --git a/exposed-panels/sap-recon-detect.yaml b/exposed-panels/sap-recon-detect.yaml index 813cc8314a..d412cdce0f 100644 --- a/exposed-panels/sap-recon-detect.yaml +++ b/exposed-panels/sap-recon-detect.yaml @@ -4,6 +4,7 @@ info: name: SAP RECON Finder author: samueladi_ & organiccrap severity: medium + tags: panel # Source:- https://github.com/chipik/SAP_RECON # This is detection template, please use above poc to exploit this further. diff --git a/exposed-panels/selenoid-ui-exposure.yaml b/exposed-panels/selenoid-ui-exposure.yaml index 7b3aed102b..3185acf898 100644 --- a/exposed-panels/selenoid-ui-exposure.yaml +++ b/exposed-panels/selenoid-ui-exposure.yaml @@ -4,6 +4,7 @@ info: name: Selenoid UI Dashboard Exposure author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/setup-page-exposure.yaml b/exposed-panels/setup-page-exposure.yaml index 0269b6d074..f59a847c59 100644 --- a/exposed-panels/setup-page-exposure.yaml +++ b/exposed-panels/setup-page-exposure.yaml @@ -5,6 +5,7 @@ info: author: pdteam severity: medium description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure + tags: panel requests: - method: GET diff --git a/exposed-panels/sitefinity-login.yaml b/exposed-panels/sitefinity-login.yaml index 277c27bcae..32154bf13e 100644 --- a/exposed-panels/sitefinity-login.yaml +++ b/exposed-panels/sitefinity-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6722 + tags: panel requests: - method: GET diff --git a/exposed-panels/siteomat-login.yaml b/exposed-panels/siteomat-login.yaml index 84f69afe88..cc3de6c3f1 100644 --- a/exposed-panels/siteomat-login.yaml +++ b/exposed-panels/siteomat-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6624 + tags: panel requests: - method: GET diff --git a/exposed-panels/solarwinds-orion.yaml b/exposed-panels/solarwinds-orion.yaml index d7b1c86ab7..22d351173f 100644 --- a/exposed-panels/solarwinds-orion.yaml +++ b/exposed-panels/solarwinds-orion.yaml @@ -4,6 +4,7 @@ info: name: SolarWinds Orion Panel author: puzzlepeaches severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/solr-exposure.yaml b/exposed-panels/solr-exposure.yaml index 22785ac640..fd452ca000 100644 --- a/exposed-panels/solr-exposure.yaml +++ b/exposed-panels/solr-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache Solr Exposure author: pdteam severity: medium + tags: panel requests: - method: GET diff --git a/exposed-panels/sonarqube-login.yaml b/exposed-panels/sonarqube-login.yaml index 320e3089ce..fed56ea5d9 100644 --- a/exposed-panels/sonarqube-login.yaml +++ b/exposed-panels/sonarqube-login.yaml @@ -4,6 +4,7 @@ info: name: SonarQube panel detect author: dhiyaneshDk severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/sonicwall-management-panel.yaml b/exposed-panels/sonicwall-management-panel.yaml index 6bd7500303..edcb9d4636 100644 --- a/exposed-panels/sonicwall-management-panel.yaml +++ b/exposed-panels/sonicwall-management-panel.yaml @@ -4,6 +4,7 @@ info: name: SonicWall Management Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/sonicwall-sslvpn-panel.yaml b/exposed-panels/sonicwall-sslvpn-panel.yaml index b71f83cfd3..cd580effba 100644 --- a/exposed-panels/sonicwall-sslvpn-panel.yaml +++ b/exposed-panels/sonicwall-sslvpn-panel.yaml @@ -4,6 +4,7 @@ info: name: SonicWall Virtual Office SSLVPN Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/sophos-fw-version-detect.yaml b/exposed-panels/sophos-fw-version-detect.yaml index 96dce2b6b6..4805643d16 100644 --- a/exposed-panels/sophos-fw-version-detect.yaml +++ b/exposed-panels/sophos-fw-version-detect.yaml @@ -4,6 +4,7 @@ info: name: Sophos Firewall version detection author: organiccrap severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/sphider-login.yaml b/exposed-panels/sphider-login.yaml index 35bc2c4e27..31a5d753d0 100644 --- a/exposed-panels/sphider-login.yaml +++ b/exposed-panels/sphider-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6641 + tags: panel requests: - method: GET diff --git a/exposed-panels/supervpn-panel.yaml b/exposed-panels/supervpn-panel.yaml index 017194340c..ef939f6a7f 100644 --- a/exposed-panels/supervpn-panel.yaml +++ b/exposed-panels/supervpn-panel.yaml @@ -4,6 +4,7 @@ info: name: SuperVPN panel detect author: organiccrap severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/tikiwiki-cms.yaml b/exposed-panels/tikiwiki-cms.yaml index 35ea7ceccc..6430f470ab 100644 --- a/exposed-panels/tikiwiki-cms.yaml +++ b/exposed-panels/tikiwiki-cms.yaml @@ -4,6 +4,7 @@ info: name: Tiki Wiki CMS Groupware author: chron0x severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/tomcat-manager-pathnormalization.yaml b/exposed-panels/tomcat-manager-pathnormalization.yaml index 54dca1aa99..f01b6b09cf 100644 --- a/exposed-panels/tomcat-manager-pathnormalization.yaml +++ b/exposed-panels/tomcat-manager-pathnormalization.yaml @@ -3,7 +3,9 @@ info: name: Tomcat Manager Path Normalization author: organiccrap severity: info - # https://i.blackhat.com/us-18/Wed-August-8/us-18-Orange-Tsai-Breaking-Parser-Logic-Take-Your-Path-Normalization-Off-And-Pop-0days-Out-2.pdf + reference: https://i.blackhat.com/us-18/Wed-August-8/us-18-Orange-Tsai-Breaking-Parser-Logic-Take-Your-Path-Normalization-Off-And-Pop-0days-Out-2.pdf + tags: panel + requests: - method: GET path: diff --git a/exposed-panels/total-web.yaml b/exposed-panels/total-web.yaml index 2515138891..ba8a8510dc 100644 --- a/exposed-panels/total-web.yaml +++ b/exposed-panels/total-web.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6811 + tags: panel requests: - method: GET diff --git a/exposed-panels/traefik-dashboard.yaml b/exposed-panels/traefik-dashboard.yaml index ac0b10ec90..fa2aee542e 100644 --- a/exposed-panels/traefik-dashboard.yaml +++ b/exposed-panels/traefik-dashboard.yaml @@ -4,6 +4,7 @@ info: name: Traefik Dashboard author: schniggie & StreetOfHackerR007 severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/tuxedo-connected-controller.yaml b/exposed-panels/tuxedo-connected-controller.yaml index 1a34549bf4..b6d98be89e 100644 --- a/exposed-panels/tuxedo-connected-controller.yaml +++ b/exposed-panels/tuxedo-connected-controller.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDk severity: info reference: https://www.exploit-db.com/ghdb/6486 + tags: panel requests: - method: GET diff --git a/exposed-panels/unauthenticated-frp.yaml b/exposed-panels/unauthenticated-frp.yaml index b6bb541ef5..1587232c3f 100644 --- a/exposed-panels/unauthenticated-frp.yaml +++ b/exposed-panels/unauthenticated-frp.yaml @@ -5,7 +5,8 @@ info: author: pikpikcu severity: info tags: frp,unauth - link: https://github.com/fatedier/frp/ + vendor: https://github.com/fatedier/frp/ + tags: panel requests: - method: GET diff --git a/exposed-panels/vigor-login.yaml b/exposed-panels/vigor-login.yaml index b0cdb728e3..d487f7344e 100644 --- a/exposed-panels/vigor-login.yaml +++ b/exposed-panels/vigor-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6610 + tags: panel requests: - method: GET diff --git a/exposed-panels/virtual-ema-detect.yaml b/exposed-panels/virtual-ema-detect.yaml index 736b50eb22..7d7e720916 100644 --- a/exposed-panels/virtual-ema-detect.yaml +++ b/exposed-panels/virtual-ema-detect.yaml @@ -4,6 +4,7 @@ info: name: Virtual EMS Panel Detection author: iamthefrogy severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/vmware-horizon.yaml b/exposed-panels/vmware-horizon.yaml index 041294a458..3c4c7f59a2 100644 --- a/exposed-panels/vmware-horizon.yaml +++ b/exposed-panels/vmware-horizon.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6496 + tags: panel requests: - method: GET diff --git a/exposed-panels/wago-plc-panel.yaml b/exposed-panels/wago-plc-panel.yaml index 2e08250a06..7cce350fbf 100644 --- a/exposed-panels/wago-plc-panel.yaml +++ b/exposed-panels/wago-plc-panel.yaml @@ -4,6 +4,7 @@ info: name: WAGO PLC Panel author: github.com/its0x08 severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/weatherlink.yaml b/exposed-panels/weatherlink.yaml index b946732f7b..3f9d994189 100644 --- a/exposed-panels/weatherlink.yaml +++ b/exposed-panels/weatherlink.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6007 + tags: panel requests: - method: GET diff --git a/exposed-panels/weave-scope-dashboard-detect.yaml b/exposed-panels/weave-scope-dashboard-detect.yaml index 0b1d93761a..8bed7aece0 100644 --- a/exposed-panels/weave-scope-dashboard-detect.yaml +++ b/exposed-panels/weave-scope-dashboard-detect.yaml @@ -4,6 +4,7 @@ info: name: Weave Scope Dashboard author: e_schultze_ severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/web-local-craft.yaml b/exposed-panels/web-local-craft.yaml index 20b9387259..72e99b91ce 100644 --- a/exposed-panels/web-local-craft.yaml +++ b/exposed-panels/web-local-craft.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6800 + tags: panel requests: - method: GET diff --git a/exposed-panels/webeditors.yaml b/exposed-panels/webeditors.yaml index c146ab60f8..b00aba5461 100644 --- a/exposed-panels/webeditors.yaml +++ b/exposed-panels/webeditors.yaml @@ -4,6 +4,7 @@ info: name: Web Editors author: pwnmachine severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/webmin-panel.yaml b/exposed-panels/webmin-panel.yaml index 7787b28d95..c75733a336 100644 --- a/exposed-panels/webmin-panel.yaml +++ b/exposed-panels/webmin-panel.yaml @@ -4,6 +4,7 @@ info: name: Webmin Admin Panel author: PR3R00T severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/wordpress-login.yaml b/exposed-panels/wordpress-login.yaml index 5256fef48c..278c7a9113 100644 --- a/exposed-panels/wordpress-login.yaml +++ b/exposed-panels/wordpress-login.yaml @@ -4,6 +4,7 @@ info: name: WordPress Panel author: github.com/its0x08 severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/workspace-one-uem.yaml b/exposed-panels/workspace-one-uem.yaml index 7981d77186..aaf8256561 100644 --- a/exposed-panels/workspace-one-uem.yaml +++ b/exposed-panels/workspace-one-uem.yaml @@ -5,6 +5,8 @@ info: author: gevakun severity: info reference: https://twitter.com/Jhaddix/status/1295861505963909120 + tags: panel + requests: - method: GET path: diff --git a/exposed-panels/workspaceone-uem-airwatch-dashboard-detect.yaml b/exposed-panels/workspaceone-uem-airwatch-dashboard-detect.yaml index 382e84d75b..119554ec8c 100644 --- a/exposed-panels/workspaceone-uem-airwatch-dashboard-detect.yaml +++ b/exposed-panels/workspaceone-uem-airwatch-dashboard-detect.yaml @@ -4,6 +4,7 @@ info: name: Workspace ONE Unified Endpoint Management (UEM) AirWatch author: hanlaomo severity: info + tags: panel requests: - method: GET diff --git a/exposed-panels/wso2-management-console.yaml b/exposed-panels/wso2-management-console.yaml index e149d890d9..5447ade65c 100644 --- a/exposed-panels/wso2-management-console.yaml +++ b/exposed-panels/wso2-management-console.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/5691 + tags: panel requests: - method: GET diff --git a/exposed-panels/xenmobile-login.yaml b/exposed-panels/xenmobile-login.yaml index 683cbeb0f7..08a1bd2e89 100644 --- a/exposed-panels/xenmobile-login.yaml +++ b/exposed-panels/xenmobile-login.yaml @@ -5,6 +5,7 @@ info: author: dhiyaneshDK severity: info reference: https://www.exploit-db.com/ghdb/6675 + tags: panel requests: - method: GET diff --git a/exposed-panels/yarn-manager-exposure.yaml b/exposed-panels/yarn-manager-exposure.yaml index fea9eca13a..641ed517e9 100644 --- a/exposed-panels/yarn-manager-exposure.yaml +++ b/exposed-panels/yarn-manager-exposure.yaml @@ -4,6 +4,7 @@ info: name: Apache Yarn ResourceManager Exposure / Unauthenticated Access author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/zipkin-exposure.yaml b/exposed-panels/zipkin-exposure.yaml index 36c4f95cd6..bf15fa5772 100644 --- a/exposed-panels/zipkin-exposure.yaml +++ b/exposed-panels/zipkin-exposure.yaml @@ -4,6 +4,7 @@ info: name: Zipkin Exposure author: pdteam severity: low + tags: panel requests: - method: GET diff --git a/exposed-panels/zte-panel.yaml b/exposed-panels/zte-panel.yaml index 1d50a9bb4d..d37d9038d4 100644 --- a/exposed-panels/zte-panel.yaml +++ b/exposed-panels/zte-panel.yaml @@ -4,6 +4,7 @@ info: name: ZTE Panel author: github.com/its0x08 severity: info + tags: panel requests: - method: GET