id: shopware-installer info: name: Shopware Installer author: DhiyaneshDk severity: high description: Shopware is susceptible to the Installation page exposure due to misconfiguration. reference: - https://www.shopware.com/en/ classification: cpe: cpe:2.3:a:shopware:shopware:*:*:*:*:*:*:*:* metadata: verified: true max-request: 1 vendor: shopware product: shopware fofa-query: title="Installation | Shopware 6" tags: misconfig,shopware,install,exposure http: - method: GET path: - "{{BaseURL}}/public/recovery/install/index.php" matchers-condition: and matchers: - type: word part: body words: - 'Setup | Shopware' - 'install' condition: and - type: status status: - 200 # digest: 4b0a00483046022100c13491f55ff561c6b762807860d867b68ffc943572ca850fdeab9c5a56653366022100a6f7fc6df88c27e24033ff518709afcf572f3e41d585d803048026813688009f:922c64590222798bb761d5b6d8e72950