nuclei-templates/http/exposed-panels/cvent-panel-detect.yaml

36 lines
980 B
YAML

id: cvent-panel-detect
info:
name: Cvent Login Panel - Detect
author: tess
severity: info
description: Cvent login panel was detected.
classification:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N
cwe-id: CWE-200
metadata:
max-request: 5
shodan-query: http.html:"Cvent Inc"
verified: true
tags: panel,cvent
http:
- method: GET
path:
- '{{BaseURL}}'
- '{{BaseURL}}/Login.aspx'
- '{{BaseURL}}/manager/login.aspx'
- '{{BaseURL}}/GDSHost/Default.aspx'
- '{{BaseURL}}/events/EventRsvp.aspx'
stop-at-first-match: true
host-redirects: true
max-redirects: 2
matchers:
- type: word
part: body
words:
- "Cvent Inc"
- "Cvent, Inc."
condition: or
# digest: 4a0a0047304502204d85ee12883e3c836299c3d3e2548fec871a4b192fe0d7a7b809aa5e68ba2584022100f1dbd2898d4b2e6c11026504b9404644c353386a2a5724f82dd2ef4490ef2ecc:922c64590222798bb761d5b6d8e72950