id: aem-osgi-bundles info: name: Adobe AEM Installed OSGI Bundles author: dhiyaneshDk severity: low description: Adobe AEM Installed OSGI Bundles leaked. reference: - https://www.slideshare.net/0ang3el/hacking-aem-sites metadata: max-request: 1 shodan-query: - http.title:"AEM Sign In" - http.component:"Adobe Experience Manager" tags: misconfig,aem,adobe http: - method: GET path: - "{{BaseURL}}/bin.tidy.infinity.json" matchers-condition: and matchers: - type: word words: - '"jcr:primaryType":' - '"jcr:uuid":' condition: and - type: status status: - 200 # digest: 490a0046304402204e2d865541ec98c031958ea17a246e62f591878eb7937454afc7613d6eea1b29022054b04763a304b494c9a7d0314f70dfe6aadbb9251da3b120c0390cc3b841ebf4:922c64590222798bb761d5b6d8e72950