diff --git a/http/default-logins/xploitspy/xploitspy-default-login.yaml b/http/default-logins/xploitspy/xploitspy-default-login.yaml index 3d576bdf0f6..6e304d0d079 100644 --- a/http/default-logins/xploitspy/xploitspy-default-login.yaml +++ b/http/default-logins/xploitspy/xploitspy-default-login.yaml @@ -4,7 +4,7 @@ info: name: XploitSPY - Default Login author: andreluna severity: high - description: | + description: | Default login and password to access administrator panel reference: - https://github.com/XploitWizer-Community/XploitSPY @@ -18,9 +18,9 @@ http: - | POST /login HTTP/1.1 Host: {{Hostname}} - Origin: http://{{Hostname}} + Origin: {{RootURL}} Content-Type: application/x-www-form-urlencoded - Referer: http://{{Hostname}}/login + Referer: {{RootURL}}/login username={{user}}&password={{pass}}&hostname={{Hostname}} @@ -42,7 +42,7 @@ http: words: - "Change Password" - "Logout" - condition: and + condition: and - type: status status: