id: bitrix-login info: name: Bitrix Login Panel author: juicypotato1 severity: info description: Bitrix24 is a unified work space that places a complete set of business tools into a single, intuitive interface. classification: cwe-id: CWE-200 cpe: cpe:2.3:a:bitrix:bitrix24:*:*:*:*:*:*:*:* metadata: max-request: 1 vendor: bitrix product: bitrix24 shodan-query: http.html:"/bitrix/" fofa-query: body="/bitrix/" tags: panel,bitrix,login http: - method: GET path: - "{{BaseURL}}/bitrix/admin/" host-redirects: true max-redirects: 2 matchers-condition: and matchers: - type: word words: - "USER_LOGIN" - "/bitrix/js/main/" part: body condition: and - type: status status: - 200 # digest: 4a0a0047304502205c0b7a4a474bfad77d7caee6e5094a17fc30480c4bb7984c058f33c1597961750221008af382be31ff547030a86cf127a555ba2c5df6af24a798025c9b5d7c6c67e13d:922c64590222798bb761d5b6d8e72950