漏洞描述
Zipline installer setup was detected.
id: zipline-installer
info:
name: Zipline - Installer
author: pussycat0x
severity: critical
description: |
Zipline installer setup was detected.
reference:
- https://zipline.diced.sh/docs/get-started/docker
metadata:
verified: true
max-request: 1
tags: misconfig,setup,zipline,installer,vuln
http:
- method: GET
path:
- "{{BaseURL}}/setup"
matchers-condition: and
matchers:
- type: word
part: body
words:
- "Setup Zipline"
- "Configuration"
- "Create a super-admin account"
condition: and
- type: status
status:
- 200
# digest: 4a0a00473045022053246739a997d4e3f583fb4e65821dbebf46feab459a0ef2a959afaca4ecb0600221008e3d31ba7d90c71e46bb2784e1d2fb09c227d3d80818dc0d6ddf8240fb549ca0:922c64590222798bb761d5b6d8e72950