id: bitrix-login info: name: Bitrix Login Panel author: juicypotato1 severity: info description: Bitrix24 is a unified work space that places a complete set of business tools into a single, intuitive interface. classification: cwe-id: CWE-200 cpe: cpe:2.3:a:bitrix:bitrix24:*:*:*:*:*:*:*:* metadata: max-request: 1 product: bitrix24 vendor: bitrix tags: panel,bitrix,login http: - method: GET path: - "{{BaseURL}}/bitrix/admin/" host-redirects: true max-redirects: 2 matchers-condition: and matchers: - type: word words: - "USER_LOGIN" - "/bitrix/js/main/" part: body condition: and - type: status status: - 200 # digest: 4b0a00483046022100aed76166bf76788a65dd64db6b0e9852bd233f2edf6c712aa5e0212453007677022100a1805a4a145e8d95695f5f754536f777d3c0a37b4a1867725675ee535755aeef:922c64590222798bb761d5b6d8e72950