漏洞描述
MySQL instance was detected
id: mysql-detect
info:
name: MySQL Dectect
author: zan8in
severity: info
verified: true
description: MySQL instance was detected
tags: network,db,mysql
set:
host: request.url.domain
hostname: request.url.host
rules:
r0:
request:
type: tcp
host: "{{hostname}}"
data: "\n"
expression: |
response.raw.ibcontains(b"mysql") ||
response.raw.ibcontains(b"mariadb")
extractors:
- type: regex
extractor:
ext: '"(?P<mysql>[0-9]\\.[0-9]{1,2}\\.[0-9]{1,2})".bsubmatch(response.raw)'
mysql: ext["mysql"]
r1:
request:
type: tcp
host: "{{host}}:3306"
data: "\n"
expression: |
response.raw.ibcontains(b"mysql") ||
response.raw.ibcontains(b"mariadb")
extractors:
- type: regex
extractor:
ext: '"(?P<mysql>[0-9]\\.[0-9]{1,2}\\.[0-9]{1,2})".bsubmatch(response.raw)'
mysql: ext["mysql"]
expression: r0() || r1()