id: kibana-panel info: name: Kibana Login Panel - Detect author: petruknisme,daffainfo,c-sh0 severity: info description: Kibana login panel was detected. classification: cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:N cwe-id: CWE-200 cpe: cpe:2.3:a:elastic:kibana:*:*:*:*:*:*:*:* metadata: max-request: 3 vendor: elastic product: kibana shodan-query: - http.title:"Kibana" - http.title:"kibana" fofa-query: title="kibana" google-query: intitle:"kibana" tags: panel,kibana,elastic http: - method: GET path: - "{{BaseURL}}" - "{{BaseURL}}/login" - "{{BaseURL}}/app/kibana" stop-at-first-match: true host-redirects: true max-redirects: 2 matchers-condition: or matchers: - type: word part: body words: - "Kibana" - "Elastic" - "Kibana Login" condition: or - type: regex part: header regex: - '(?i)(Kbn-Name)' # digest: 4a0a004730450221009a5c6185fad0b3187a61c62a11f1468a3c7dac72784acc020f02480256f7a0430220184c0cf24fb01534374394fc302aba9548c944733c0bb971d70a5c514c55050b:922c64590222798bb761d5b6d8e72950