dddd/common/config/pocs/shiro-detect.yaml

27 lines
604 B
YAML
Raw Normal View History

2023-08-18 08:55:46 +02:00
id: shiro-detect
info:
name: Detect Shiro Framework
author: AresX
severity: info
metadata:
max-request: 1
2023-11-01 09:00:03 +01:00
tags: tech,shiro
2023-08-18 08:55:46 +02:00
http:
- method: GET
path:
- '{{BaseURL}}'
2023-11-01 09:00:03 +01:00
2023-08-18 08:55:46 +02:00
headers:
Cookie: JSESSIONID={{randstr}};rememberMe=123;
host-redirects: true
max-redirects: 2
matchers:
- type: word
part: header
words:
- "rememberMe=deleteMe"
2023-11-01 09:00:03 +01:00
# digest: 4a0a00473045022100ef5b22652ce1d79a4b00ae2a53eee9f78b2c0042daa5c736c85a1add769cc14602203bfd13125a69cbb3928016a681afc1e1c6eee18343fda64679c693997c0e4860:922c64590222798bb761d5b6d8e72950