nuclei-templates/http/osint/user-enumeration/marshmallow.yaml

35 lines
869 B
YAML

id: marshmallow
info:
name: Marshmallow User Name Information - Detect
author: dwisiswant0
severity: info
description: Marshmallow user name information check was conducted.
classification:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cvss-score: 0
cwe-id: CWE-200
metadata:
max-request: 1
tags: osint,osint-social,marshmallow
self-contained: true
http:
- method: GET
path:
- "https://marshmallow-qa.com/{{user}}"
matchers-condition: and
matchers:
- type: status
status:
- 200
- type: word
part: body
words:
- "さんにメッセージをおくる"
# digest: 4a0a0047304502207a8a3a7d26b39607849e13f5d04f29b13a84a039bb03ef354b024299da52e17d022100a38bfce758f30d1918e35418e9f1f9b1e5f7033db3c07a900f102194c73757a7:922c64590222798bb761d5b6d8e72950