Skip to content

Commit df1ed00

Browse files
committed
New Nuclei template for aurum-e1998cdbea795fb8c6e7aaa6d39631b4.yaml [Fri Jan 10 03:40:38 UTC 2025] :robot:
1 parent 4a55ef0 commit df1ed00

File tree

1 file changed

+59
-0
lines changed

1 file changed

+59
-0
lines changed
Lines changed: 59 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,59 @@
1+
id: aurum-e1998cdbea795fb8c6e7aaa6d39631b4
2+
3+
info:
4+
name: >
5+
Aurum - WordPress & WooCommerce Shopping Theme <= 4.0.2 - Missing Authorization to Authenticated (Subscriber+) Demo Content Import
6+
author: topscoder
7+
severity: low
8+
description: >
9+
10+
reference:
11+
- https://github.com/topscoder/nuclei-wordfence-cve
12+
- https://www.wordfence.com/threat-intel/vulnerabilities/id/cd132aa5-d30a-41de-aa8d-aefae6c95c47?source=api-scan
13+
classification:
14+
cvss-metrics:
15+
cvss-score:
16+
cve-id:
17+
metadata:
18+
fofa-query: "wp-content/themes/aurum/"
19+
google-query: inurl:"/wp-content/themes/aurum/"
20+
shodan-query: 'vuln:'
21+
tags: cve,wordpress,wp-theme,aurum,low
22+
23+
http:
24+
- method: GET
25+
redirects: true
26+
max-redirects: 3
27+
path:
28+
- "{{BaseURL}}/wp-content/themes/aurum/style.css"
29+
30+
extractors:
31+
- type: regex
32+
name: version
33+
part: body
34+
group: 1
35+
internal: true
36+
regex:
37+
- "(?mi)Version: ([0-9.]+)"
38+
39+
- type: regex
40+
name: version
41+
part: body
42+
group: 1
43+
regex:
44+
- "(?mi)Version: ([0-9.]+)"
45+
46+
matchers-condition: and
47+
matchers:
48+
- type: status
49+
status:
50+
- 200
51+
52+
- type: word
53+
words:
54+
- "aurum"
55+
part: body
56+
57+
- type: dsl
58+
dsl:
59+
- compare_versions(version, '<= 4.0.2')

0 commit comments

Comments
 (0)