more tags for panels
parent
5a3cda689b
commit
97d133022f
|
@ -2,7 +2,7 @@ id: azure-takeover-detection
|
||||||
|
|
||||||
info:
|
info:
|
||||||
name: Azure takeover detection
|
name: Azure takeover detection
|
||||||
author: "pdnuclei - projectdiscovery.io"
|
author: pdteam
|
||||||
severity: high
|
severity: high
|
||||||
tags: dns,takeover
|
tags: dns,takeover
|
||||||
|
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: ActiveAdmin Admin Dasboard Exposure
|
name: ActiveAdmin Admin Dasboard Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache ActiveMQ Exposure
|
name: Apache ActiveMQ Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Acunetix Panel detector
|
name: Acunetix Panel detector
|
||||||
author: joanbono
|
author: joanbono
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
author: random-robbie & meme-lord
|
author: random-robbie & meme-lord
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://blog.sorcery.ie/posts/adminer/
|
reference: https://blog.sorcery.ie/posts/adminer/
|
||||||
|
tags: panel
|
||||||
|
|
||||||
# <= 4.2.4 can have unauthenticated RCE via SQLite driver
|
# <= 4.2.4 can have unauthenticated RCE via SQLite driver
|
||||||
# <= 4.6.2 can have LFI via MySQL LOAD DATA LOCAL
|
# <= 4.6.2 can have LFI via MySQL LOAD DATA LOCAL
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6846
|
reference: https://www.exploit-db.com/ghdb/6846
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6819
|
reference: https://www.exploit-db.com/ghdb/6819
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Aims Password Management Client Detect
|
name: Aims Password Management Client Detect
|
||||||
author: iamthefrogy
|
author: iamthefrogy
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6576
|
reference: https://www.exploit-db.com/ghdb/6576
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Airflow Exposure / Unauthenticated Access
|
name: Apache Airflow Exposure / Unauthenticated Access
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Ambari Exposure / Unauthenticated Access
|
name: Apache Ambari Exposure / Unauthenticated Access
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Ansible Tower Exposure
|
name: Ansible Tower Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,8 @@ info:
|
||||||
name: Atlassian Crowd panel detect
|
name: Atlassian Crowd panel detect
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
path:
|
path:
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6814
|
reference: https://www.exploit-db.com/ghdb/6814
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Checkmarx WebClient detector
|
name: Checkmarx WebClient detector
|
||||||
author: joanbono
|
author: joanbono
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,7 +4,7 @@ info:
|
||||||
name: Cisco ASA VPN panel detect
|
name: Cisco ASA VPN panel detect
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
tags: cisco
|
tags: cisco,panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,7 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6824
|
reference: https://www.exploit-db.com/ghdb/6824
|
||||||
tags: cisco
|
tags: panel,cisco
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,7 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/3859
|
reference: https://www.exploit-db.com/ghdb/3859
|
||||||
tags: cisco
|
tags: panel,cisco
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,7 +5,7 @@ info:
|
||||||
author: z3bd
|
author: z3bd
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-bufovulns-B5NrSHbj
|
reference: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-bufovulns-B5NrSHbj
|
||||||
tags: cisco
|
tags: panel,cisco
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,7 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6708
|
reference: https://www.exploit-db.com/ghdb/6708
|
||||||
tags: cisco
|
tags: panel,cisco
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -1,8 +1,11 @@
|
||||||
id: citrix-adc-gateway-panel
|
id: citrix-adc-gateway-panel
|
||||||
|
|
||||||
info:
|
info:
|
||||||
name: Citrix ADC Gateway detect
|
name: Citrix ADC Gateway detect
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
path:
|
path:
|
||||||
|
@ -10,6 +13,7 @@ requests:
|
||||||
- '{{BaseURL}}/logon/LogonPoint/custom.html'
|
- '{{BaseURL}}/logon/LogonPoint/custom.html'
|
||||||
headers:
|
headers:
|
||||||
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55
|
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55
|
||||||
|
|
||||||
matchers:
|
matchers:
|
||||||
- type: word
|
- type: word
|
||||||
words:
|
words:
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Citrix VPN Detection
|
name: Citrix VPN Detection
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Compal CH7465LG panel detect
|
name: Compal CH7465LG panel detect
|
||||||
author: fabaff
|
author: fabaff
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -3,6 +3,7 @@ info:
|
||||||
name: couchdb exposure
|
name: couchdb exposure
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
@ -18,6 +19,7 @@ requests:
|
||||||
- Erlang OTP/
|
- Erlang OTP/
|
||||||
part: header
|
part: header
|
||||||
condition: and
|
condition: and
|
||||||
|
|
||||||
- type: status
|
- type: status
|
||||||
status:
|
status:
|
||||||
- 200
|
- 200
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache CouchDB Fauxton Exposure
|
name: Apache CouchDB Fauxton Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -1,10 +1,11 @@
|
||||||
id: crushFTP-login
|
id: crushftp-login
|
||||||
|
|
||||||
info:
|
info:
|
||||||
name: CrushFTP WebInterface
|
name: CrushFTP WebInterface
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6591
|
reference: https://www.exploit-db.com/ghdb/6591
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: CRXDE Lite
|
name: CRXDE Lite
|
||||||
author: nadino
|
author: nadino
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6784
|
reference: https://www.exploit-db.com/ghdb/6784
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Python Django Admin Panel
|
name: Python Django Admin Panel
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Alibaba Druid Console Exposure
|
name: Alibaba Druid Console Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache PageSpeed Global Admin Dashboard Exposure
|
name: Apache PageSpeed Global Admin Dashboard Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Publicly exposed Webalizer Interface
|
name: Publicly exposed Webalizer Interface
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6793
|
reference: https://www.exploit-db.com/ghdb/6793
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Flink Exposure
|
name: Apache Flink Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Fortinet FortiGate SSL VPN Panel
|
name: Fortinet FortiGate SSL VPN Panel
|
||||||
author: bsysop
|
author: bsysop
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Fortinet FortiWeb Login Panel
|
name: Fortinet FortiWeb Login Panel
|
||||||
author: PR3R00T
|
author: PR3R00T
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Detect Github Enterprise
|
name: Detect Github Enterprise
|
||||||
author: ehsahil
|
author: ehsahil
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Detect Gitlab
|
name: Detect Gitlab
|
||||||
author: ehsahil
|
author: ehsahil
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: PaloAlto Networks GlobalProtect Panel
|
name: PaloAlto Networks GlobalProtect Panel
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: GoAnywhere client login detection
|
name: GoAnywhere client login detection
|
||||||
author: iamthefrogy
|
author: iamthefrogy
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Grafana panel detect
|
name: Grafana panel detect
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Hadoop Exposure
|
name: Apache Hadoop Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -3,6 +3,7 @@ info:
|
||||||
name: HiveManager Login panel
|
name: HiveManager Login panel
|
||||||
author: binaryfigments
|
author: binaryfigments
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SAP Hybris Management Console
|
name: SAP Hybris Management Console
|
||||||
author: dogasantos
|
author: dogasantos
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: IdentityGuard Self-Service by Entrust
|
name: IdentityGuard Self-Service by Entrust
|
||||||
author: nodauf
|
author: nodauf
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Iomega Lenovo EMC with shared NAS
|
name: Iomega Lenovo EMC with shared NAS
|
||||||
author: e_schultze_
|
author: e_schultze_
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6797
|
reference: https://www.exploit-db.com/ghdb/6797
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Detect Jira Issue Management Software
|
name: Detect Jira Issue Management Software
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -3,6 +3,7 @@ info:
|
||||||
name: JMX Console
|
name: JMX Console
|
||||||
author: Yash Anand @yashanand155
|
author: Yash Anand @yashanand155
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Joomla Panel
|
name: Joomla Panel
|
||||||
author: github.com/its0x08
|
author: github.com/its0x08
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Kafka Connect UI Exposure
|
name: Apache Kafka Connect UI Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Kafka Monitor Exposure
|
name: Apache Kafka Monitor Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Kafka Topics UI Exposure
|
name: Apache Kafka Topics UI Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6817
|
reference: https://www.exploit-db.com/ghdb/6817
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Keycloak Admin Panel
|
name: Keycloak Admin Panel
|
||||||
author: incogbyte
|
author: incogbyte
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Kubernetes Console Exposure
|
name: Kubernetes Console Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Manage Engine ADManager Panel
|
name: Manage Engine ADManager Panel
|
||||||
author: PR3R00T
|
author: PR3R00T
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6739
|
reference: https://www.exploit-db.com/ghdb/6739
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDk
|
author: dhiyaneshDk
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6500
|
reference: https://www.exploit-db.com/ghdb/6500
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: MobileIron Login
|
name: MobileIron Login
|
||||||
author: dhiyaneshDK & @dwisiswant0
|
author: dhiyaneshDK & @dwisiswant0
|
||||||
Severity: info
|
Severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Nessus Panel detector
|
name: Nessus Panel detector
|
||||||
author: joanbono
|
author: joanbono
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Netlify CMS Admin Panel
|
name: Netlify CMS Admin Panel
|
||||||
author: sullo
|
author: sullo
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Netscaler gateway
|
name: Netscaler gateway
|
||||||
author: joeldeleep
|
author: joeldeleep
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -3,6 +3,7 @@ info:
|
||||||
name: One Identity Password Manager detection
|
name: One Identity Password Manager detection
|
||||||
author: nodauf
|
author: nodauf
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/5937
|
reference: https://www.exploit-db.com/ghdb/5937
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6464
|
reference: https://www.exploit-db.com/ghdb/6464
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDk
|
author: dhiyaneshDk
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6827
|
reference: https://www.exploit-db.com/ghdb/6827
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Parallels HTML5 Client
|
name: Parallels HTML5 Client
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: phpMyAdmin Panel
|
name: phpMyAdmin Panel
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6501
|
reference: https://www.exploit-db.com/ghdb/6501
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Polycom Admin Panel
|
name: Polycom Admin Panel
|
||||||
author: e_schultze_
|
author: e_schultze_
|
||||||
severity: low
|
severity: low
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: low
|
severity: low
|
||||||
reference: https://www.exploit-db.com/ghdb/6810
|
reference: https://www.exploit-db.com/ghdb/6810
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,8 +4,8 @@ info:
|
||||||
author: jarijaas
|
author: jarijaas
|
||||||
severity: info
|
severity: info
|
||||||
description: Prometheus exporter detector
|
description: Prometheus exporter detector
|
||||||
|
tags: panel
|
||||||
# See https://github.com/prometheus/prometheus/wiki/Default-port-allocations
|
reference: https://github.com/prometheus/prometheus/wiki/Default-port-allocations
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: tomcat manager disclosure
|
name: tomcat manager disclosure
|
||||||
author: Ahmed Sherif & geeknik
|
author: Ahmed Sherif & geeknik
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Pulse Secure VPN Panel
|
name: Pulse Secure VPN Panel
|
||||||
author: bsysop
|
author: bsysop
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: RabbitMQ Dashboard
|
name: RabbitMQ Dashboard
|
||||||
author: fyoorer
|
author: fyoorer
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6790
|
reference: https://www.exploit-db.com/ghdb/6790
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6815
|
reference: https://www.exploit-db.com/ghdb/6815
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache RocketMQ Console Exposure
|
name: Apache RocketMQ Console Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Detect RSA Self-Service Panel
|
name: Detect RSA Self-Service Panel
|
||||||
author: PR3R00T
|
author: PR3R00T
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SAP HANA XSEngine Admin Panel
|
name: SAP HANA XSEngine Admin Panel
|
||||||
author: PR3R00T
|
author: PR3R00T
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SAP NetWeaver Portal detect
|
name: SAP NetWeaver Portal detect
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
# SAP Netweaver default creds - SAP*/06071992 or TMSADM/$1Pawd2&
|
# SAP Netweaver default creds - SAP*/06071992 or TMSADM/$1Pawd2&
|
||||||
|
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SAP RECON Finder
|
name: SAP RECON Finder
|
||||||
author: samueladi_ & organiccrap
|
author: samueladi_ & organiccrap
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
# Source:- https://github.com/chipik/SAP_RECON
|
# Source:- https://github.com/chipik/SAP_RECON
|
||||||
# This is detection template, please use above poc to exploit this further.
|
# This is detection template, please use above poc to exploit this further.
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Selenoid UI Dashboard Exposure
|
name: Selenoid UI Dashboard Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure
|
description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6722
|
reference: https://www.exploit-db.com/ghdb/6722
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6624
|
reference: https://www.exploit-db.com/ghdb/6624
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SolarWinds Orion Panel
|
name: SolarWinds Orion Panel
|
||||||
author: puzzlepeaches
|
author: puzzlepeaches
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Apache Solr Exposure
|
name: Apache Solr Exposure
|
||||||
author: pdteam
|
author: pdteam
|
||||||
severity: medium
|
severity: medium
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SonarQube panel detect
|
name: SonarQube panel detect
|
||||||
author: dhiyaneshDk
|
author: dhiyaneshDk
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SonicWall Management Panel
|
name: SonicWall Management Panel
|
||||||
author: PR3R00T
|
author: PR3R00T
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SonicWall Virtual Office SSLVPN Panel
|
name: SonicWall Virtual Office SSLVPN Panel
|
||||||
author: PR3R00T
|
author: PR3R00T
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Sophos Firewall version detection
|
name: Sophos Firewall version detection
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6641
|
reference: https://www.exploit-db.com/ghdb/6641
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: SuperVPN panel detect
|
name: SuperVPN panel detect
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Tiki Wiki CMS Groupware
|
name: Tiki Wiki CMS Groupware
|
||||||
author: chron0x
|
author: chron0x
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -3,7 +3,9 @@ info:
|
||||||
name: Tomcat Manager Path Normalization
|
name: Tomcat Manager Path Normalization
|
||||||
author: organiccrap
|
author: organiccrap
|
||||||
severity: info
|
severity: info
|
||||||
# https://i.blackhat.com/us-18/Wed-August-8/us-18-Orange-Tsai-Breaking-Parser-Logic-Take-Your-Path-Normalization-Off-And-Pop-0days-Out-2.pdf
|
reference: https://i.blackhat.com/us-18/Wed-August-8/us-18-Orange-Tsai-Breaking-Parser-Logic-Take-Your-Path-Normalization-Off-And-Pop-0days-Out-2.pdf
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
path:
|
path:
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDK
|
author: dhiyaneshDK
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6811
|
reference: https://www.exploit-db.com/ghdb/6811
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -4,6 +4,7 @@ info:
|
||||||
name: Traefik Dashboard
|
name: Traefik Dashboard
|
||||||
author: schniggie & StreetOfHackerR007
|
author: schniggie & StreetOfHackerR007
|
||||||
severity: info
|
severity: info
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
|
@ -5,6 +5,7 @@ info:
|
||||||
author: dhiyaneshDk
|
author: dhiyaneshDk
|
||||||
severity: info
|
severity: info
|
||||||
reference: https://www.exploit-db.com/ghdb/6486
|
reference: https://www.exploit-db.com/ghdb/6486
|
||||||
|
tags: panel
|
||||||
|
|
||||||
requests:
|
requests:
|
||||||
- method: GET
|
- method: GET
|
||||||
|
|
Some files were not shown because too many files have changed in this diff Show More
Loading…
Reference in New Issue