id: avantfax-panel info: name: AvantFAX Login Panel author: pikpikcu,daffainfo severity: info description: An AvantFAX login panel was discovered. reference: - http://www.avantfax.com/ classification: cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cwe-id: CWE-668 cpe: cpe:2.3:a:avantfax:avantfax:*:*:*:*:*:*:*:* metadata: max-request: 1 vendor: avantfax product: avantfax shodan-query: - http.title:"AvantFAX - Login" - http.title:"avantfax - login" fofa-query: title="avantfax - login" google-query: intitle:"avantfax - login" tags: panel,avantfax,login http: - method: GET path: - "{{BaseURL}}" matchers-condition: and matchers: - type: word part: body words: - "- AvantFAX - Login" - type: status status: - 200 extractors: - type: regex part: body group: 1 regex: - '

([0-9.]+)<\/p>' # digest: 4a0a0047304502202f660132d55b67dea8144c7cfa35915e47ef4fdf7ae2347befd215163797cb0e02210082bd97c4450b607eb41e2a31725395ef1c7fc1c38fc1d32fb0c684f9a309edcc:922c64590222798bb761d5b6d8e72950