id: roundcube-log-disclosure info: name: Roundcube Log Disclosure author: dhiyaneshDk,kazet severity: medium description: Roundcube Log file was disclosed. reference: - https://github.com/detectify/ugly-duckling/blob/master/modules/crowdsourced/roundcube-log-disclosure.json metadata: max-request: 16 tags: exposure,logs http: - method: GET path: - "{{BaseURL}}/{{roundcube_path}}" payloads: roundcube_path: - roundcube/logs/sendmail - roundcube/logs/sendmail.log - roundcube/logs/errors.log - roundcube/logs/errors - webmail/logs/sendmail - webmail/logs/sendmail.log - webmail/logs/errors.log - webmail/logs/errors - mail/logs/sendmail - mail/logs/sendmail.log - mail/logs/errors.log - mail/logs/errors - logs/sendmail - logs/sendmail.log - logs/errors.log - logs/errors max-size: 1000 matchers-condition: and matchers: - type: word part: body words: - "IMAP Error:" - "Message for" - "DB Error:" - "IMAP Error:" - "PHP Error:" - "PHP Warning:" condition: or - type: status status: - 200 extractors: - type: dsl dsl: - content_length # digest: 4b0a00483046022100f29f0edc0fd1c21ddc672864cdd1b0e8f9b6bf2fd245e63e3a18e009f87dda4802210094fc7c7162920f3d1b9a810729c4ac860b27bb6b73a4fe837009758cf4ee4fae:922c64590222798bb761d5b6d8e72950