nuclei-templates/http/exposed-panels/alfresco-detect.yaml

44 lines
1.2 KiB
YAML

id: alfresco-detect
info:
name: Alfresco CMS Detection
author: pathtaga
severity: info
description: Alfresco CMS was discovered.
reference:
- https://www.alfresco.com/
classification:
cwe-id: CWE-200
cpe: cpe:2.3:a:alfresco:alfresco:*:*:*:*:android:*:*:*
metadata:
max-request: 1
vendor: alfresco
product: alfresco
tags: alfresco,tech,panel
http:
- method: GET
path:
- "{{BaseURL}}/alfresco/api/-default-/public/cmis/versions/1.1/atom"
matchers-condition: and
matchers:
- type: word
part: body
words:
- 'org\/alfresco\/api\/opencmis\/OpenCMIS.get'
- type: word
part: header
words:
- "application/json"
extractors:
- type: regex
part: body
group: 1
regex:
- 'Enterprise v.*([0-9]\.[0-9]+\.[0-9]+)'
- 'Community v.*([0-9]\.[0-9]+\.[0-9]+)'
- 'Community Early Access v.*([0-9]\.[0-9]+\.[0-9]+)'
# digest: 4a0a00473045022006c2000b6a0a543ec1a9658e068cfc76947be534354939a17e1deda23c33d25d022100e6f2d8ee69c3dfc86a6b0d5a640bd186d53d95a5a2764c6397f003e5292de853:922c64590222798bb761d5b6d8e72950