campaignmonitor-takeover: CampaignMonitor Takeover Detection

日期: 2025-08-01 | 影响软件: CampaignMonitor | POC: 已公开

漏洞描述

CampaignMonitor takeover was detected.

PoC代码[已公开]

id: campaignmonitor-takeover

info:
  name: CampaignMonitor Takeover Detection
  author: pdteam
  severity: high
  description: CampaignMonitor takeover was detected.
  reference:
    - https://github.com/EdOverflow/can-i-take-over-xyz/issues/275
  metadata:
    max-request: 1
  tags: takeover,campaignmonitor,vuln

http:
  - method: GET
    path:
      - "{{BaseURL}}"
    redirects: true
    max-redirects: 1
    matchers:
      - type: word
        words:
          - 'Email Newsletter Software'
          - 'css.createsend1.com'
        condition: and
# digest: 490a0046304402204dc648ef912bbfb1ff123253ca199bd2c1850ef76fb3153fe8dacc4e1b5d1e250220129a3d4ae11b4e4a0d6af3f661f6ebd937dc87b4f0ba6ffcf3651e9be082d61b:922c64590222798bb761d5b6d8e72950

相关漏洞推荐