fix: false negative rundeck

- Fix false negative rundeck by changing the matcher
- Added version detection for old rundeck and new rundeck
patch-1
Muhammad Daffa 2022-10-23 15:15:28 +07:00 committed by GitHub
parent 8e89f23c2f
commit bc40cf9c12
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 17 additions and 7 deletions

View File

@ -1,8 +1,8 @@
id: rundeck-login
info:
name: RunDeck Login
author: DhiyaneshDk
name: RunDeck Login Panel
author: DhiyaneshDk, daffainfo
severity: info
metadata:
verified: true
@ -16,14 +16,24 @@ requests:
host-redirects: true
max-redirects: 2
matchers-condition: or
matchers-condition: and
matchers:
- type: word
part: body
words:
- 'Rundeck - Login</title>'
- 'utm_source=rundeckapp'
- 'name="j_username" id="login"'
- 'name="j_password" id="password"'
condition: and
- type: word
- type: status
status:
- 200
extractors:
- type: regex
part: body
words:
- 'RUNDECK ENTERPRISE - Login</title>'
group: 1
regex:
- '<a href=\"https:\/\/docs.rundeck.com\/([0-9.]+)'
- '<a href=\"http:\/\/rundeck\.org\/([0-9.]+)' ## Detection version on old rundeck