nuclei-templates/http/misconfiguration/multilaser-pro-setup.yaml

35 lines
1018 B
YAML

id: multilaser-pro-setup
info:
name: Multilaser Pro Setup Page - Detect
author: ritikchaddha
severity: high
description: This allows the user to access quick setup settings and configuration page through /wizard.htm.
classification:
cpe: cpe:2.3:o:multilaser:ac1200_re018_firmware:*:*:*:*:*:*:*:*
metadata:
verified: true
max-request: 1
vendor: multilaser
product: ac1200_re018_firmware
shodan-query: title:"Setup Wizard" http.favicon.hash:2055322029
tags: misconfig,multilaser,setup,config
http:
- method: GET
path:
- '{{BaseURL}}/wizard.htm'
matchers-condition: and
matchers:
- type: word
part: body
words:
- 'Setup Wizard'
- 'multilaser.png'
condition: and
- type: status
status:
- 200
# digest: 4a0a00473045022037badc4fcf42b2d0d9e1f01bd5e5624db290231e88079dc7b29c54cef4a0fe41022100ac7b9b269a288f36091c24bee80019d0c6bd81b7b5242f027cb82f4c4f1e92a1:922c64590222798bb761d5b6d8e72950