From 0a8efa723f228af4ce8ed8a3dda8c75818243ee3 Mon Sep 17 00:00:00 2001 From: dcruzec Date: Mon, 10 Jun 2024 23:04:14 -0400 Subject: [PATCH 1/2] Add files via upload --- ...veeam-backup-enterprise-manager-login.yaml | 31 +++++++++++++++++++ 1 file changed, 31 insertions(+) create mode 100644 http/exposed-panels/veeam-backup-enterprise-manager-login.yaml diff --git a/http/exposed-panels/veeam-backup-enterprise-manager-login.yaml b/http/exposed-panels/veeam-backup-enterprise-manager-login.yaml new file mode 100644 index 0000000000..77baa983a0 --- /dev/null +++ b/http/exposed-panels/veeam-backup-enterprise-manager-login.yaml @@ -0,0 +1,31 @@ +id: veeam-backup-enterprise-manager-login + +info: + name: Veeam Backup Enterprise Manager Login - Detect + author: Charles D + severity: info + description: Veeam Backup Enterprise Manager Login + classification: + cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N + cve-id: CWE-200 + metadata: + max-request: 1 + shodan-query: title:"veeam backup enterprise manager" + tags: veeam, panel, enterprise-manager + +http: + - method: GET + path: + - "{{BaseURL}}/login.aspx" + + matchers-condition: and + matchers: + - type: word + part: body + words: + - "Veeam Backup Enterprise Manager" + condition: and + + - type: status + status: + - 200 \ No newline at end of file From db3c1bdca3ffe35f6e3386714f919522b0b7327b Mon Sep 17 00:00:00 2001 From: Ritik Chaddha <44563978+ritikchaddha@users.noreply.github.com> Date: Tue, 11 Jun 2024 13:31:38 +0530 Subject: [PATCH 2/2] updated matcher & id --- ...r-login.yaml => veeam-backup-manager-login.yaml} | 13 +++++++------ 1 file changed, 7 insertions(+), 6 deletions(-) rename http/exposed-panels/{veeam-backup-enterprise-manager-login.yaml => veeam-backup-manager-login.yaml} (67%) diff --git a/http/exposed-panels/veeam-backup-enterprise-manager-login.yaml b/http/exposed-panels/veeam-backup-manager-login.yaml similarity index 67% rename from http/exposed-panels/veeam-backup-enterprise-manager-login.yaml rename to http/exposed-panels/veeam-backup-manager-login.yaml index 77baa983a0..9cd6fce998 100644 --- a/http/exposed-panels/veeam-backup-enterprise-manager-login.yaml +++ b/http/exposed-panels/veeam-backup-manager-login.yaml @@ -1,17 +1,19 @@ -id: veeam-backup-enterprise-manager-login +id: veeam-backup-manager-login info: name: Veeam Backup Enterprise Manager Login - Detect author: Charles D severity: info - description: Veeam Backup Enterprise Manager Login + description: | + Veeam Backup Enterprise Manager Login classification: cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cve-id: CWE-200 metadata: max-request: 1 + verified: true shodan-query: title:"veeam backup enterprise manager" - tags: veeam, panel, enterprise-manager + tags: veeam,panel,enterprise-manager,login,detect http: - method: GET @@ -23,9 +25,8 @@ http: - type: word part: body words: - - "Veeam Backup Enterprise Manager" - condition: and + - "Veeam Backup Enterprise Manager : Login" - type: status status: - - 200 \ No newline at end of file + - 200