漏洞描述
Glances is a cross-platform system monitoring tool written in Python.
id: exposed-glances-api
info:
name: Exposed Glances API
author: princechaddha
severity: low
description: Glances is a cross-platform system monitoring tool written in Python.
reference:
- https://nicolargo.github.io/glances/
metadata:
max-request: 1
tags: glances,exposure,vuln
http:
- method: GET
path:
- "{{BaseURL}}"
matchers-condition: and
matchers:
- type: status
status:
- 200
- type: word
words:
- 'title">Glances</title>'
- 'glances.config'
- '<glances></glances>'
part: body
condition: and
# digest: 4a0a00473045022100d6681af2286ef5fe32abd626a03f1e3be50c859a2105b1ab983fdfff617f8dae02201476f422094f20688d9f1e7378449e6ac61863f50db883d17cfda605eedb6f81:922c64590222798bb761d5b6d8e72950