From b44f47c5028f12482a5c4b554c473afdc7b0c01d Mon Sep 17 00:00:00 2001 From: bauthard <8293321+bauthard@users.noreply.github.com> Date: Fri, 31 Jul 2020 23:12:34 +0530 Subject: [PATCH] matcher updates --- cves/CVE-2019-14322.yaml | 2 +- ...ikiwiki-reflected-xss.yam => tikiwiki-reflected-xss.yaml} | 5 +++-- 2 files changed, 4 insertions(+), 3 deletions(-) rename vulnerabilities/{tikiwiki-reflected-xss.yam => tikiwiki-reflected-xss.yaml} (89%) diff --git a/cves/CVE-2019-14322.yaml b/cves/CVE-2019-14322.yaml index 34ac7cd585..fb2ebfceca 100644 --- a/cves/CVE-2019-14322.yaml +++ b/cves/CVE-2019-14322.yaml @@ -22,4 +22,4 @@ requests: - "fonts" - "extensions" condition: and - part: body + part: body \ No newline at end of file diff --git a/vulnerabilities/tikiwiki-reflected-xss.yam b/vulnerabilities/tikiwiki-reflected-xss.yaml similarity index 89% rename from vulnerabilities/tikiwiki-reflected-xss.yam rename to vulnerabilities/tikiwiki-reflected-xss.yaml index 0a5f6edbf5..ba54702ec5 100644 --- a/vulnerabilities/tikiwiki-reflected-xss.yam +++ b/vulnerabilities/tikiwiki-reflected-xss.yaml @@ -10,6 +10,7 @@ requests: path: - "{{BaseURL}}/tiki-5.2/tiki-edit_wiki_section.php?type=%22%3E%3Cscript%3Ealert(31337)%3C/script%3E" - "{{BaseURL}}/tiki-edit_wiki_section.php?type=%22%3E%3Cscript%3Ealert(31337)%3C/script%3E" + matchers-condition: and matchers: - type: status @@ -17,5 +18,5 @@ requests: - 200 - type: word words: - - "31337" - part: body + - "" + part: body \ No newline at end of file