漏洞描述
Unauthenticated Tiny File Manager panel was detected.
id: tiny-file-manager-unauth
info:
name: Tiny File Manager - Unauthorized Access
author: ritikchaddha,HuTa0
severity: medium
description: Unauthenticated Tiny File Manager panel was detected.
metadata:
verified: true
max-request: 1
shodan-query: title:"Tiny File Manager"
zoomeye-query: app="Tiny File Manager"
tags: misconfig,filemanager,detect,vuln
http:
- method: GET
path:
- '{{BaseURL}}/index.php'
host-redirects: true
max-redirects: 2
matchers-condition: and
matchers:
- type: word
words:
- 'Tiny File Manager'
- '<th>Actions'
- 'New Item'
- 'Upload'
condition: and
- type: status
status:
- 200
# digest: 4b0a00483046022100ab1622461613fe068d785137a20b4129a4b681acafdfd752c849ad8552745e130221009df7c84b09d2cd5f51b1d78c0f67104c408d8c5d2cdbc9a81cbce8a1f9e52a6d:922c64590222798bb761d5b6d8e72950