漏洞描述
Detects exposed jfa-go Setup page.
id: jfa-go-installer
info:
name: jfa-go Setup Page - Exposure
author: DhiyaneshDK
severity: high
description: |
Detects exposed jfa-go Setup page.
reference:
- https://github.com/hrfee/jfa-go
metadata:
verified: true
max-request: 1
shodan-query: html:"Setup - jfa-go"
tags: misconfig,install,exposure,jfa-go,vuln
http:
- method: GET
path:
- "{{BaseURL}}"
matchers-condition: and
matchers:
- type: word
part: body
words:
- "Setup - jfa-go"
- type: status
status:
- 200
# digest: 4a0a00473045022100eeff1d3225a38f9674e8adac034765f10b51122a16c53081c99f41c5f1ea9c1d02203f320b9854e76c4d7d751228340824a6fda611b2a096e787882d4c44b790cf9e:922c64590222798bb761d5b6d8e72950