From 085c0450de434b369fde2333ad4fc40ee64d174c Mon Sep 17 00:00:00 2001 From: nullfuzz Date: Wed, 17 Aug 2022 23:40:15 -0300 Subject: [PATCH 1/3] add template phpminiadmin-panel --- exposed-panels/phpminiadmin-panel.yaml | 31 ++++++++++++++++++++++++++ 1 file changed, 31 insertions(+) create mode 100644 exposed-panels/phpminiadmin-panel.yaml diff --git a/exposed-panels/phpminiadmin-panel.yaml b/exposed-panels/phpminiadmin-panel.yaml new file mode 100644 index 0000000000..36530074a1 --- /dev/null +++ b/exposed-panels/phpminiadmin-panel.yaml @@ -0,0 +1,31 @@ +id: phpminiadmin-panel + +info: + name: phpMiniAdmin Panel + author: nullfuzz + severity: info + description: | + phpMiniAdmin is a third-party tool that you can use to manipulate MySQL databases. + reference: + - https://github.com/osalabs/phpminiadmin + tags: panel,phpminiadmin + +requests: + - method: GET + path: + - "{{BaseURL}}/phpminiadmin.php" + + matchers-condition: or + matchers: + - type: dsl + dsl: + - status_code == 200 + - "contains(body, 'phpMiniAdmin')" + condition: and + + extractors: + - type: regex + part: body + group: 1 + regex: + - 'phpMiniAdmin ([0-9._]+)' From d1d96fdb1f55106e444a48fb86aa4611d0ca54a8 Mon Sep 17 00:00:00 2001 From: Ritik Chaddha <44563978+ritikchaddha@users.noreply.github.com> Date: Thu, 18 Aug 2022 10:01:05 +0530 Subject: [PATCH 2/3] Update phpminiadmin-panel.yaml --- exposed-panels/phpminiadmin-panel.yaml | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/exposed-panels/phpminiadmin-panel.yaml b/exposed-panels/phpminiadmin-panel.yaml index 36530074a1..53f9b91983 100644 --- a/exposed-panels/phpminiadmin-panel.yaml +++ b/exposed-panels/phpminiadmin-panel.yaml @@ -1,7 +1,7 @@ id: phpminiadmin-panel -info: - name: phpMiniAdmin Panel +info: + name: PhpMiniAdmin Panel author: nullfuzz severity: info description: | @@ -15,7 +15,6 @@ requests: path: - "{{BaseURL}}/phpminiadmin.php" - matchers-condition: or matchers: - type: dsl dsl: From 92a198e5eba2771e840cce58080e57132e273a5d Mon Sep 17 00:00:00 2001 From: Prince Chaddha <prince@projectdiscovery.io> Date: Sat, 20 Aug 2022 22:44:40 +0530 Subject: [PATCH 3/3] Update phpminiadmin-panel.yaml --- exposed-panels/phpminiadmin-panel.yaml | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/exposed-panels/phpminiadmin-panel.yaml b/exposed-panels/phpminiadmin-panel.yaml index 53f9b91983..be1fd6ccee 100644 --- a/exposed-panels/phpminiadmin-panel.yaml +++ b/exposed-panels/phpminiadmin-panel.yaml @@ -8,6 +8,9 @@ info: phpMiniAdmin is a third-party tool that you can use to manipulate MySQL databases. reference: - https://github.com/osalabs/phpminiadmin + metadata: + verified: true + shodan-query: http.html:"phpMiniAdmin" tags: panel,phpminiadmin requests: @@ -18,7 +21,7 @@ requests: matchers: - type: dsl dsl: - - status_code == 200 + - "status_code == 200" - "contains(body, '<title>phpMiniAdmin')" condition: and