Files
nuclei-templates/http/technologies/jsf-detect.yaml

40 lines
1.1 KiB
YAML
Raw Normal View History

id: jsf-detect
2021-05-27 10:17:14 +02:00
info:
name: JavaServer Faces Detection
2022-01-29 13:31:51 +05:30
author: brenocss,Moritz Nentwig
2021-05-28 09:47:29 +05:30
severity: info
2021-05-27 10:17:14 +02:00
description: Searches for JavaServer Faces content on a URL.
metadata:
max-request: 1
2023-10-14 16:57:55 +05:30
tags: jsf,tech,primefaces,richfaces
2021-05-27 10:17:14 +02:00
http:
2021-05-27 10:17:14 +02:00
- method: GET
path:
- "{{BaseURL}}"
host-redirects: true
max-redirects: 3
2023-10-14 16:57:55 +05:30
2022-01-29 10:31:15 +05:30
matchers-condition: or
2021-05-27 10:17:14 +02:00
matchers:
2022-01-29 10:31:15 +05:30
- type: dsl
name: javafaces
dsl:
2022-01-29 13:31:51 +05:30
- "(contains(body, 'javax.faces.resource') || contains(body, 'javax.faces.ViewState'))"
2022-01-29 10:31:15 +05:30
- type: dsl
name: primefaces
dsl:
2022-01-29 13:31:51 +05:30
- "contains(body, 'primefaces')"
- "contains(body, 'javax.faces.resource') || contains(body, 'javax.faces.ViewState')"
2022-01-29 10:31:15 +05:30
condition: and
- type: dsl
name: richfaces
dsl:
2022-01-29 13:31:51 +05:30
- "contains(body, 'richfaces')"
- "contains(body, 'javax.faces.resource') || contains(body, 'javax.faces.ViewState')"
2022-01-29 10:31:15 +05:30
condition: and
2024-12-01 13:57:55 +00:00
# digest: 490a0046304402200aebdb1c4a9d965884aa6da82d1520eb5b064c805c787a6ab9e1f9b92e5397850220173ed59c49c0c136cef63dd55b161b46cc4285d8b682b37abf0881c077a69857:922c64590222798bb761d5b6d8e72950