diff --git a/exposures/configs/kyan-network-monitor-disclosure.yaml b/exposures/configs/kyan-network-credentials-disclosure.yaml similarity index 64% rename from exposures/configs/kyan-network-monitor-disclosure.yaml rename to exposures/configs/kyan-network-credentials-disclosure.yaml index aa8a0f5a2e..c44c1fd9d0 100644 --- a/exposures/configs/kyan-network-monitor-disclosure.yaml +++ b/exposures/configs/kyan-network-credentials-disclosure.yaml @@ -1,12 +1,12 @@ -id: kyan-network-monitor-disclosure +id: kyan-network-credential-exposure info: - name: Kyan network monitoring device account and password disclosure + name: Kyan network monitoring device account and password exposure author: pikpikcu severity: medium reference: | - https://mp.weixin.qq.com/s/6phWjDrGG0pCpGuCdLusIg - tags: kyan,disclosure + tags: kyan,exposure,config requests: - method: GET @@ -22,6 +22,11 @@ requests: - "Password=" condition: and + - type: word + words: + - "text/plain" + part: header + - type: status status: - 200