fscan/WebScan/pocs/druid-monitor-unauth.yml
2025-06-11 00:17:15 +08:00

12 lines
393 B
YAML

name: poc-yaml-druid-monitor-unauth
rules:
- method: GET
path: /druid/index.html
expression: |
response.status == 200 && response.body.bcontains(b"Druid Stat Index") && response.body.bcontains(b"DruidVersion") && response.body.bcontains(b"DruidDrivers")
detail:
author: met7or
links:
- https://github.com/alibaba/druid
- http://43.130.61.224:8088/druid/index.html