漏洞描述
Repetier Server Dashboard has been exposed.
id: repetier-unauth
info:
name: Repetier Server Dashboard - Unauthenticated
author: ritikchaddha
severity: high
description: |
Repetier Server Dashboard has been exposed.
classification:
cpe: cpe:2.3:a:repetier-server:repetier-server:*:*:*:*:*:*:*:*
metadata:
verified: true
max-request: 1
vendor: repetier-server
product: repetier-server
shodan-query: title:"Repetier-Server"
fofa-query: title="repetier-server"
tags: repetier,dashboard,unauth,misconfig,vuln
http:
- method: GET
path:
- "{{BaseURL}}/#!/printer/Prusa_I3/print"
matchers-condition: and
matchers:
- type: word
part: body
words:
- 'Global Settings'
- 'Edit Profile'
- 'Logout'
- 'Clear all Messages'
condition: and
- type: status
status:
- 200
# digest: 490a00463044022033302be306fb714285dd8b884e9e0c52dc8cf53d64c49674d9af7c38fa35fc1c02200a8a1b670ed12bb189bf9a0f60fa0d2b5ea1c76751c98106cc965dd8e51f398b:922c64590222798bb761d5b6d8e72950