33 lines
782 B
YAML
33 lines
782 B
YAML
id: dozzle-container-logs
|
||
|
||
info:
|
||
name: Dozzle - Logs Exposure
|
||
author: theabhinavgaur
|
||
severity: medium
|
||
description: Dozzle is a small lightweight application with a web based interface to monitor Docker logs. It doesn’t store any log files. It is for live monitoring of your container logs only.
|
||
reference:
|
||
- https://github.com/amir20/dozzle
|
||
- https://dozzle.dev/
|
||
metadata:
|
||
verified: true
|
||
shodan-query: http.title:"Dozzle"
|
||
tags: exposure,logs,dozzle,docker
|
||
|
||
http:
|
||
- method: GET
|
||
path:
|
||
- "{{BaseURL}}"
|
||
|
||
matchers-condition: and
|
||
matchers:
|
||
- type: word
|
||
part: body
|
||
words:
|
||
- '"authorizationNeeded": "false"'
|
||
- 'Dozzle'
|
||
condition: and
|
||
|
||
- type: status
|
||
status:
|
||
- 200
|