id: jira-unauthenticated-projectcategories info: name: Jira Unauthenticated Project Categories author: TESS severity: info metadata: max-request: 1 shodan-query: http.component:"Atlassian Jira" tags: atlassian,jira http: - method: GET path: - "{{BaseURL}}/rest/api/2/projectCategory?maxResults=1000" matchers-condition: and matchers: - type: word words: - 'self' - 'description' - 'name' condition: and - type: status status: - 200 - type: word part: header words: - "atlassian.xsrf.token" # digest: 4b0a004830460221008f66b3babbdae57b4672c9d6216a67a6b8ca43341b00e673ace120d7b57348410221008bf9c86ab7e3683d0bf6c23dfd9d5220bdd0f070bcb849fbc025127939852ebd:922c64590222798bb761d5b6d8e72950