nuclei-templates/misconfiguration/cx-cloud-upload-detect.yaml

18 lines
355 B
YAML

id: cx-cloud-upload-detect
info:
name: CX Cloud Unauthenticated Upload Detect
author: dhiyaneshDk
severity: info
tags: upload
requests:
- method: GET
path:
- '{{BaseURL}}/upload.jsp'
matchers:
- type: word
words:
- "<HEAD><TITLE>Display file upload form to the user</TITLE></HEAD>"
condition: and