nuclei-templates/http/exposed-panels/oipm-detect.yaml

29 lines
976 B
YAML

id: oipm-detect
info:
name: One Identity Password Manager Detection
author: nodauf
severity: info
description: One Identity Password Manager is a secure password manager that gives enterprises control over password management, policies, and automated reset functions.
reference:
- https://www.oneidentity.com/techbrief/security-guide-for-password-manager821177/
remediation: Ensure proper access.
classification:
cwe-id: CWE-200
cpe: cpe:2.3:a:oneidentity:password_manager:*:*:*:*:*:*:*:*
metadata:
max-request: 1
product: password_manager
vendor: oneidentity
tags: panel,oneidentity
http:
- method: GET
path:
- '{{BaseURL}}/PMUser/'
matchers:
- type: word
words:
- "One Identity Password Manager"
# digest: 4a0a004730450220131fe37e04ee50927ea2f263e4acfeebad516f0b25762e81a6fdaeb2d9832dfb022100a15fe24d3c896e6127db0b288051cf202d16a720f61b3b82197a436ab43b4b86:922c64590222798bb761d5b6d8e72950