id: webalizer-xtended-stats info: name: Webalizer Xtended Statistics Exposed author: ritikchaddha severity: low description: Webalizer Xtended Statistics is exposed. reference: - https://www.patrickfrei.ch/webalizer/ metadata: verified: true max-request: 1 google-query: inurl:"/usage/error_202109.html" tags: exposure,stats,webalizer http: - method: GET path: - "{{BaseURL}}/usage/" matchers-condition: and matchers: - type: word part: body words: - 'Webalizer' - 'SRC=menu.html' condition: and case-insensitive: true - type: status status: - 200 # digest: 4a0a00473045022100ae228ac8772128506f03f0c7ff157c20e075ea77ede804e2af945189023874f30220365a0e762b99f6d8eb175e02ba6b35695a645385993b49c6bd7ce1c480cbbc85:922c64590222798bb761d5b6d8e72950