nuclei-templates/http/exposed-panels/oipm-detect.yaml

28 lines
900 B
YAML

id: oipm-detect
info:
name: One Identity Password Manager Detection
author: nodauf
severity: info
description: One Identity Password Manager is a secure password manager that gives enterprises control over password management, policies, and automated reset functions.
remediation: Ensure proper access.
reference:
- https://www.oneidentity.com/techbrief/security-guide-for-password-manager821177/
classification:
cwe-id: CWE-200
metadata:
vendor: oneidentity
product: password_manager
max-request: 1
tags: panel
http:
- method: GET
path:
- '{{BaseURL}}/PMUser/'
matchers:
- type: word
words:
- "One Identity Password Manager"
# digest: 4a0a0047304502206da1796fa0c741fc1a74e0b72f452ae0ac19aea93882aedd97b1988b55de221e022100cbe3c2fbd350bc7ff8bd553f6d4f2c10110de0c3f1a023a3c7b08c5825ceabdd:922c64590222798bb761d5b6d8e72950