more tags for panels

patch-1
sandeep 2021-04-06 12:55:57 +05:30
parent 5a3cda689b
commit 97d133022f
118 changed files with 129 additions and 11 deletions

View File

@ -2,7 +2,7 @@ id: azure-takeover-detection
info: info:
name: Azure takeover detection name: Azure takeover detection
author: "pdnuclei - projectdiscovery.io" author: pdteam
severity: high severity: high
tags: dns,takeover tags: dns,takeover

View File

@ -4,6 +4,7 @@ info:
name: ActiveAdmin Admin Dasboard Exposure name: ActiveAdmin Admin Dasboard Exposure
author: pdteam author: pdteam
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache ActiveMQ Exposure name: Apache ActiveMQ Exposure
author: pdteam author: pdteam
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Acunetix Panel detector name: Acunetix Panel detector
author: joanbono author: joanbono
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
author: random-robbie & meme-lord author: random-robbie & meme-lord
severity: info severity: info
reference: https://blog.sorcery.ie/posts/adminer/ reference: https://blog.sorcery.ie/posts/adminer/
tags: panel
# <= 4.2.4 can have unauthenticated RCE via SQLite driver # <= 4.2.4 can have unauthenticated RCE via SQLite driver
# <= 4.6.2 can have LFI via MySQL LOAD DATA LOCAL # <= 4.6.2 can have LFI via MySQL LOAD DATA LOCAL

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6846 reference: https://www.exploit-db.com/ghdb/6846
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6819 reference: https://www.exploit-db.com/ghdb/6819
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Aims Password Management Client Detect name: Aims Password Management Client Detect
author: iamthefrogy author: iamthefrogy
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6576 reference: https://www.exploit-db.com/ghdb/6576
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Airflow Exposure / Unauthenticated Access name: Apache Airflow Exposure / Unauthenticated Access
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Ambari Exposure / Unauthenticated Access name: Apache Ambari Exposure / Unauthenticated Access
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Ansible Tower Exposure name: Ansible Tower Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,8 @@ info:
name: Atlassian Crowd panel detect name: Atlassian Crowd panel detect
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET
path: path:

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6814 reference: https://www.exploit-db.com/ghdb/6814
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Checkmarx WebClient detector name: Checkmarx WebClient detector
author: joanbono author: joanbono
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,7 +4,7 @@ info:
name: Cisco ASA VPN panel detect name: Cisco ASA VPN panel detect
author: organiccrap author: organiccrap
severity: info severity: info
tags: cisco tags: cisco,panel
requests: requests:
- method: GET - method: GET

View File

@ -5,7 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6824 reference: https://www.exploit-db.com/ghdb/6824
tags: cisco tags: panel,cisco
requests: requests:
- method: GET - method: GET

View File

@ -5,7 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/3859 reference: https://www.exploit-db.com/ghdb/3859
tags: cisco tags: panel,cisco
requests: requests:
- method: GET - method: GET

View File

@ -5,7 +5,7 @@ info:
author: z3bd author: z3bd
severity: info severity: info
reference: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-bufovulns-B5NrSHbj reference: https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-bufovulns-B5NrSHbj
tags: cisco tags: panel,cisco
requests: requests:
- method: GET - method: GET

View File

@ -5,7 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6708 reference: https://www.exploit-db.com/ghdb/6708
tags: cisco tags: panel,cisco
requests: requests:
- method: GET - method: GET

View File

@ -1,8 +1,11 @@
id: citrix-adc-gateway-panel id: citrix-adc-gateway-panel
info: info:
name: Citrix ADC Gateway detect name: Citrix ADC Gateway detect
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET
path: path:
@ -10,6 +13,7 @@ requests:
- '{{BaseURL}}/logon/LogonPoint/custom.html' - '{{BaseURL}}/logon/LogonPoint/custom.html'
headers: headers:
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55 User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:55.0) Gecko/20100101 Firefox/55
matchers: matchers:
- type: word - type: word
words: words:

View File

@ -4,6 +4,7 @@ info:
name: Citrix VPN Detection name: Citrix VPN Detection
author: pdteam author: pdteam
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Compal CH7465LG panel detect name: Compal CH7465LG panel detect
author: fabaff author: fabaff
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -3,6 +3,7 @@ info:
name: couchdb exposure name: couchdb exposure
author: organiccrap author: organiccrap
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET
@ -18,6 +19,7 @@ requests:
- Erlang OTP/ - Erlang OTP/
part: header part: header
condition: and condition: and
- type: status - type: status
status: status:
- 200 - 200

View File

@ -4,6 +4,7 @@ info:
name: Apache CouchDB Fauxton Exposure name: Apache CouchDB Fauxton Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -1,10 +1,11 @@
id: crushFTP-login id: crushftp-login
info: info:
name: CrushFTP WebInterface name: CrushFTP WebInterface
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6591 reference: https://www.exploit-db.com/ghdb/6591
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: CRXDE Lite name: CRXDE Lite
author: nadino author: nadino
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6784 reference: https://www.exploit-db.com/ghdb/6784
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Python Django Admin Panel name: Python Django Admin Panel
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Alibaba Druid Console Exposure name: Alibaba Druid Console Exposure
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache PageSpeed Global Admin Dashboard Exposure name: Apache PageSpeed Global Admin Dashboard Exposure
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Publicly exposed Webalizer Interface name: Publicly exposed Webalizer Interface
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6793 reference: https://www.exploit-db.com/ghdb/6793
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Flink Exposure name: Apache Flink Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Fortinet FortiGate SSL VPN Panel name: Fortinet FortiGate SSL VPN Panel
author: bsysop author: bsysop
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Fortinet FortiWeb Login Panel name: Fortinet FortiWeb Login Panel
author: PR3R00T author: PR3R00T
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Detect Github Enterprise name: Detect Github Enterprise
author: ehsahil author: ehsahil
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Detect Gitlab name: Detect Gitlab
author: ehsahil author: ehsahil
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: PaloAlto Networks GlobalProtect Panel name: PaloAlto Networks GlobalProtect Panel
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: GoAnywhere client login detection name: GoAnywhere client login detection
author: iamthefrogy author: iamthefrogy
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Grafana panel detect name: Grafana panel detect
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Hadoop Exposure name: Apache Hadoop Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -3,6 +3,7 @@ info:
name: HiveManager Login panel name: HiveManager Login panel
author: binaryfigments author: binaryfigments
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SAP Hybris Management Console name: SAP Hybris Management Console
author: dogasantos author: dogasantos
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: IdentityGuard Self-Service by Entrust name: IdentityGuard Self-Service by Entrust
author: nodauf author: nodauf
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Iomega Lenovo EMC with shared NAS name: Iomega Lenovo EMC with shared NAS
author: e_schultze_ author: e_schultze_
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6797 reference: https://www.exploit-db.com/ghdb/6797
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Detect Jira Issue Management Software name: Detect Jira Issue Management Software
author: pdteam author: pdteam
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -3,6 +3,7 @@ info:
name: JMX Console name: JMX Console
author: Yash Anand @yashanand155 author: Yash Anand @yashanand155
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Joomla Panel name: Joomla Panel
author: github.com/its0x08 author: github.com/its0x08
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Kafka Connect UI Exposure name: Apache Kafka Connect UI Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Kafka Monitor Exposure name: Apache Kafka Monitor Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Kafka Topics UI Exposure name: Apache Kafka Topics UI Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6817 reference: https://www.exploit-db.com/ghdb/6817
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Keycloak Admin Panel name: Keycloak Admin Panel
author: incogbyte author: incogbyte
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Kubernetes Console Exposure name: Kubernetes Console Exposure
author: pdteam author: pdteam
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Manage Engine ADManager Panel name: Manage Engine ADManager Panel
author: PR3R00T author: PR3R00T
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6739 reference: https://www.exploit-db.com/ghdb/6739
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDk author: dhiyaneshDk
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6500 reference: https://www.exploit-db.com/ghdb/6500
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: MobileIron Login name: MobileIron Login
author: dhiyaneshDK & @dwisiswant0 author: dhiyaneshDK & @dwisiswant0
Severity: info Severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Nessus Panel detector name: Nessus Panel detector
author: joanbono author: joanbono
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Netlify CMS Admin Panel name: Netlify CMS Admin Panel
author: sullo author: sullo
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Netscaler gateway name: Netscaler gateway
author: joeldeleep author: joeldeleep
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -3,6 +3,7 @@ info:
name: One Identity Password Manager detection name: One Identity Password Manager detection
author: nodauf author: nodauf
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/5937 reference: https://www.exploit-db.com/ghdb/5937
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6464 reference: https://www.exploit-db.com/ghdb/6464
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDk author: dhiyaneshDk
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6827 reference: https://www.exploit-db.com/ghdb/6827
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Parallels HTML5 Client name: Parallels HTML5 Client
author: pdteam author: pdteam
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: phpMyAdmin Panel name: phpMyAdmin Panel
author: pdteam author: pdteam
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6501 reference: https://www.exploit-db.com/ghdb/6501
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Polycom Admin Panel name: Polycom Admin Panel
author: e_schultze_ author: e_schultze_
severity: low severity: low
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: low severity: low
reference: https://www.exploit-db.com/ghdb/6810 reference: https://www.exploit-db.com/ghdb/6810
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,8 +4,8 @@ info:
author: jarijaas author: jarijaas
severity: info severity: info
description: Prometheus exporter detector description: Prometheus exporter detector
tags: panel
# See https://github.com/prometheus/prometheus/wiki/Default-port-allocations reference: https://github.com/prometheus/prometheus/wiki/Default-port-allocations
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: tomcat manager disclosure name: tomcat manager disclosure
author: Ahmed Sherif & geeknik author: Ahmed Sherif & geeknik
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Pulse Secure VPN Panel name: Pulse Secure VPN Panel
author: bsysop author: bsysop
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: RabbitMQ Dashboard name: RabbitMQ Dashboard
author: fyoorer author: fyoorer
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6790 reference: https://www.exploit-db.com/ghdb/6790
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6815 reference: https://www.exploit-db.com/ghdb/6815
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache RocketMQ Console Exposure name: Apache RocketMQ Console Exposure
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Detect RSA Self-Service Panel name: Detect RSA Self-Service Panel
author: PR3R00T author: PR3R00T
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SAP HANA XSEngine Admin Panel name: SAP HANA XSEngine Admin Panel
author: PR3R00T author: PR3R00T
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SAP NetWeaver Portal detect name: SAP NetWeaver Portal detect
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
# SAP Netweaver default creds - SAP*/06071992 or TMSADM/$1Pawd2& # SAP Netweaver default creds - SAP*/06071992 or TMSADM/$1Pawd2&

View File

@ -4,6 +4,7 @@ info:
name: SAP RECON Finder name: SAP RECON Finder
author: samueladi_ & organiccrap author: samueladi_ & organiccrap
severity: medium severity: medium
tags: panel
# Source:- https://github.com/chipik/SAP_RECON # Source:- https://github.com/chipik/SAP_RECON
# This is detection template, please use above poc to exploit this further. # This is detection template, please use above poc to exploit this further.

View File

@ -4,6 +4,7 @@ info:
name: Selenoid UI Dashboard Exposure name: Selenoid UI Dashboard Exposure
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: pdteam author: pdteam
severity: medium severity: medium
description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure description: Misconfiguration on Zenphoto version < 1.5.X which lead to sensitive information disclosure
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6722 reference: https://www.exploit-db.com/ghdb/6722
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6624 reference: https://www.exploit-db.com/ghdb/6624
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SolarWinds Orion Panel name: SolarWinds Orion Panel
author: puzzlepeaches author: puzzlepeaches
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Apache Solr Exposure name: Apache Solr Exposure
author: pdteam author: pdteam
severity: medium severity: medium
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SonarQube panel detect name: SonarQube panel detect
author: dhiyaneshDk author: dhiyaneshDk
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SonicWall Management Panel name: SonicWall Management Panel
author: PR3R00T author: PR3R00T
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SonicWall Virtual Office SSLVPN Panel name: SonicWall Virtual Office SSLVPN Panel
author: PR3R00T author: PR3R00T
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Sophos Firewall version detection name: Sophos Firewall version detection
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6641 reference: https://www.exploit-db.com/ghdb/6641
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: SuperVPN panel detect name: SuperVPN panel detect
author: organiccrap author: organiccrap
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Tiki Wiki CMS Groupware name: Tiki Wiki CMS Groupware
author: chron0x author: chron0x
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -3,7 +3,9 @@ info:
name: Tomcat Manager Path Normalization name: Tomcat Manager Path Normalization
author: organiccrap author: organiccrap
severity: info severity: info
# https://i.blackhat.com/us-18/Wed-August-8/us-18-Orange-Tsai-Breaking-Parser-Logic-Take-Your-Path-Normalization-Off-And-Pop-0days-Out-2.pdf reference: https://i.blackhat.com/us-18/Wed-August-8/us-18-Orange-Tsai-Breaking-Parser-Logic-Take-Your-Path-Normalization-Off-And-Pop-0days-Out-2.pdf
tags: panel
requests: requests:
- method: GET - method: GET
path: path:

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDK author: dhiyaneshDK
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6811 reference: https://www.exploit-db.com/ghdb/6811
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -4,6 +4,7 @@ info:
name: Traefik Dashboard name: Traefik Dashboard
author: schniggie & StreetOfHackerR007 author: schniggie & StreetOfHackerR007
severity: info severity: info
tags: panel
requests: requests:
- method: GET - method: GET

View File

@ -5,6 +5,7 @@ info:
author: dhiyaneshDk author: dhiyaneshDk
severity: info severity: info
reference: https://www.exploit-db.com/ghdb/6486 reference: https://www.exploit-db.com/ghdb/6486
tags: panel
requests: requests:
- method: GET - method: GET

Some files were not shown because too many files have changed in this diff Show More