nuclei-templates/http/exposed-panels/filebrowser-login-panel.yaml

43 lines
1.1 KiB
YAML

id: filebrowser-login-panel
info:
name: File Browser Login Panel - Detect
author: ritikchaddha
severity: info
reference:
- https://filebrowser.org/
classification:
cpe: cpe:2.3:a:filebrowser:filebrowser:*:*:*:*:*:*:*:*
metadata:
verified: true
max-request: 3
vendor: filebrowser
product: filebrowser
shodan-query: http.favicon.hash:1052926265
fofa-query: icon_hash=1052926265
tags: panel,filebrowser,detect
http:
- method: GET
path:
- "{{BaseURL}}"
- "{{BaseURL}}/login"
- "{{BaseURL}}/static/img/icons/favicon-32x32.png"
stop-at-first-match: true
host-redirects: true
max-redirects: 2
matchers-condition: or
matchers:
- type: word
part: body
words:
- 'File Browser</title>'
- 'window.FileBrowser'
condition: or
- type: dsl
dsl:
- "status_code==200 && ('1052926265' == mmh3(base64_py(body)))"
# digest: 4a0a00473045022036bf59cd7de4eecee35d0f7e11e4eba6b6c5bd1f556215aff31c55150e439403022100913a29dcf2ead7153bbc2bb42afe397a720b8fa5d8eed8fa833b8a5fa12d3fee:922c64590222798bb761d5b6d8e72950