id: kibana-panel info: name: Kibana Login Panel - Detect author: petruknisme,daffainfo,c-sh0 severity: info description: Kibana login panel was detected. classification: cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cwe-id: CWE-200 cpe: cpe:2.3:a:elastic:kibana:*:*:*:*:*:*:*:* metadata: max-request: 3 vendor: elastic product: kibana shodan-query: - http.title:"Kibana" - http.title:"kibana" fofa-query: title="kibana" google-query: intitle:"kibana" tags: panel,kibana,elastic http: - method: GET path: - "{{BaseURL}}" - "{{BaseURL}}/login" - "{{BaseURL}}/app/kibana" stop-at-first-match: true host-redirects: true max-redirects: 2 matchers-condition: or matchers: - type: word part: body words: - "Kibana" - "Elastic" - "Kibana Login" condition: or - type: regex part: header regex: - '(?i)(Kbn-Name)' # digest: 4a0a0047304502210091ba187fa1e4fc800eec07189b02e8c2ac6a396a910e09edbcdb0265d8cc1ed102203e6e203e220b65848e17f2f05f0e4a56b56b089de71c4de58c8aa8f5da2d62bf:922c64590222798bb761d5b6d8e72950