漏洞描述
SPA Cart installer was found.
id: spa-cart-installer
info:
name: SPA Cart - Installer
author: pussycat0x
severity: high
description: SPA Cart installer was found.
reference:
- https://spa-cart.com/
classification:
cpe: cpe:2.3:a:spa-cart:spa-cart:*:*:*:*:*:*:*:*
metadata:
max-request: 1
vendor: spa-cart
product: spa-cart
fofa-query: title="SPA Cart Installation"
tags: spa-cart,exposure,installer,misconfig,vuln
http:
- method: GET
path:
- "{{BaseURL}}/install/"
matchers-condition: and
matchers:
- type: word
words:
- "<title>SPA Cart Installation</title>"
- "PHP Version"
condition: and
- type: status
status:
- 200
# digest: 4a0a00473045022100aa9877feff937f8db76a997d17becdd7a47b51c4ca0e5077c6899533d4d8510f02207e7bf20449f1c6d105610234e36ca6837df9d448f8242f71f7e4bed526a41376:922c64590222798bb761d5b6d8e72950