updated info & matchers

patch-1
Ritik Chaddha 2023-08-07 22:45:33 +05:30 committed by GitHub
parent 86d0322ea5
commit fd513e8a7d
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 5 additions and 4 deletions

View File

@ -1,7 +1,7 @@
id: socks5-vpn-config
info:
name: Socks5 VPN config.xml - File Disclosure
name: Socks5 VPN - Sensitive File Disclosure
author: DhiyaneshDk
severity: high
description: |
@ -11,9 +11,9 @@ info:
- https://github.com/PeiQi0/PeiQi-WIKI-Book/blob/main/docs/wiki/iot/%E6%83%A0%E5%B0%94%E9%A1%BF/%E6%83%A0%E5%B0%94%E9%A1%BF%20e%E5%9C%B0%E9%80%9A%20config.xml%20%E4%BF%A1%E6%81%AF%E6%B3%84%E6%BC%8F%E6%BC%8F%E6%B4%9E.md?plain=1
metadata:
max-request: 1
fofa-query: app="惠尔顿-e地通VPN"
verified: true
tags: esocks5,exposure,misconfig,files
fofa-query: app="惠尔顿-e地通VPN"
tags: esocks5,exposure,misconfig,files,disclosure
http:
- method: GET
@ -26,7 +26,8 @@ http:
part: body
words:
- "<config>"
- "password"
- "password="
- "username="
condition: and
- type: word