40 lines
1.1 KiB
YAML
40 lines
1.1 KiB
YAML
id: ampache-music-installer
|
|
|
|
info:
|
|
name: Ampache Music Installer
|
|
author: tess
|
|
severity: high
|
|
description: Ampache Music is susceptible to the Installation page exposure due to misconfiguration.
|
|
classification:
|
|
cpe: cpe:2.3:a:ampache:ampache:*:*:*:*:*:*:*:*
|
|
metadata:
|
|
verified: true
|
|
max-request: 1
|
|
vendor: ampache
|
|
product: ampache
|
|
shodan-query: title:"For the Love of Music - Installation"
|
|
tags: misconfig,ampache,install,exposure
|
|
|
|
http:
|
|
- method: GET
|
|
path:
|
|
- '{{BaseURL}}/install.php'
|
|
|
|
matchers-condition: and
|
|
matchers:
|
|
- type: word
|
|
part: body
|
|
words:
|
|
- "Ampache :: For the Love of Music - Installation"
|
|
- "Choose Installation Language"
|
|
condition: and
|
|
|
|
- type: word
|
|
part: header
|
|
words:
|
|
- "text/html"
|
|
|
|
- type: status
|
|
status:
|
|
- 200
|
|
# digest: 4b0a00483046022100fd5a4d9ea746fa9adcb1e5076b24ae4962f7f5d12c0ee470bf9fe4bc28bfc7a7022100c0f0916b145ceb0f916397cf2028e66761391c7acf70d9d5bdb1885068b34d54:922c64590222798bb761d5b6d8e72950 |