id: nginx-vhost-traffic-status info: name: Nginx Vhost Traffic Status author: geeknik severity: low description: Nginx Vhost Traffic status is exposed. reference: - https://github.com/vozlt/nginx-module-vts metadata: max-request: 1 tags: status,nginx,misconfig http: - method: GET path: - "{{BaseURL}}/status" matchers-condition: and matchers: - type: word words: - "Nginx Vhost Traffic Status" - "Host" - "Zone" condition: and - type: status status: - 200 # digest: 4a0a00473045022100b102f0eb59645595d26eb3706f242a99ffabd0e70fab3e6a86b3bc746d0f470a0220125626b936c2b379adbd642a971beea9b041a7a48d7354a97e9d9cfa61cba2d5:922c64590222798bb761d5b6d8e72950