fscan/WebScan/pocs/ruijie-uac-cnvd-2021-14536.yml

12 lines
504 B
YAML
Raw Normal View History

2021-04-17 19:38:46 -07:00
name: poc-yaml-ruijie-uac-cnvd-2021-14536
rules:
- method: GET
path: /login.php
follow_redirects: false
expression: |
2021-04-21 21:06:03 -07:00
response.status == 200 && response.body.bcontains(b"<title>RG-UAC登录页面</title>") && response.body.bcontains(b"get_dkey_passwd") && "\"password\":\"[a-f0-9]{32}\"".bmatches(response.body)
2021-04-17 19:38:46 -07:00
detail:
author: jweny(https://github.com/jweny)
links:
2021-11-30 23:22:48 -08:00
- https://mp.weixin.qq.com/s?__biz=Mzg3NDU2MTg0Ng==&mid=2247483972&idx=1&sn=b51678c6206a533330b0279454335065