id: zabbix-installer info: name: Zabbix Installation Exposure author: DhiyaneshDK severity: high description: Zabbix is susceptible to the Installation page exposure due to misconfiguration. metadata: verified: true max-request: 1 shodan-query: - http.favicon.hash:892542951 - http.title:"zabbix-server" - cpe:"cpe:2.3:a:zabbix:zabbix" product: zabbix vendor: zabbix fofa-query: - icon_hash=892542951 - app="zabbix-监控系统" && body="saml" - title="zabbix-server" google-query: intitle:"zabbix-server" tags: misconfig,zabbix,install,exposure http: - method: GET path: - '{{BaseURL}}/setup.php' matchers-condition: and matchers: - type: word part: body words: - 'Installation' - 'zabbix' condition: and - type: word part: header words: - "text/html" - type: status status: - 200 # digest: 4a0a0047304502203b72ebdaa69d41081db7d4ff1960ad0480cee43323a97bc895baa189274212b7022100a4f5c4b9e9bf63376b4f88783c661c5ec9e0fc6eabf4e73540946731a511907a:922c64590222798bb761d5b6d8e72950