漏洞描述
Searches for exposed webcams by querying the endpoint and the existence of IP Webcam in the body.
id: ip-webcam
info:
name: IP Webcam Viewer Page - Detect
author: gy741
severity: low
description: |
Searches for exposed webcams by querying the endpoint and the existence of IP Webcam in the body.
metadata:
verified: true
max-request: 1
shodan-query: http.favicon.hash:-601917817
tags: webcam,iot,detect,discovery
http:
- method: GET
path:
- "{{BaseURL}}"
matchers:
- type: word
part: body
words:
- '<title>IP Webcam</title>'
- 'Pavel Khlebovich'
condition: and
# digest: 4b0a00483046022100802c5b842aa22c60b6585379311e3f9fe6b3c111b70a128492adc4921cd8b75d022100ebd78662fcae3800bdd05374ac8161deb530d30c4856ddb69538f8646af9dd55:922c64590222798bb761d5b6d8e72950