Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add detection for SAP public admin web interface #9044

Merged
merged 3 commits into from
Jan 30, 2024

Conversation

t3l3machus
Copy link
Contributor

Template / PR Information

The SAP ICM (Internet Communication Manager) admin monitor interface is often set to public and can be accessed without authentication. The interface discloses version information about the underlying operating system, a brief SAP patch level overview and version info, running services including hostnames, their corresponding ports and more.

Template Validation

I've validated this template locally?
YES

image

Additional Details

You can find many vulnerable servers if you search in Shodan "SAP NetWeaver Application Server".
Here's some of the info disclosed by this public interface:

image

image

@DhiyaneshGeek DhiyaneshGeek self-assigned this Jan 30, 2024
@DhiyaneshGeek DhiyaneshGeek added Done Ready to merge good first issue Good for newcomers labels Jan 30, 2024
@olearycrew
Copy link
Contributor

Thanks for this contribution @t3l3machus !

@ritikchaddha
Copy link
Contributor

Hello @t3l3machus, thank you so much for sharing this template with the community and contributing to this project 🍻

You can join our discord server. It's a great place to connect with fellow contributors and stay updated with the latest developments. Thank you once again

@ritikchaddha ritikchaddha merged commit b57c4ce into projectdiscovery:main Jan 30, 2024
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Done Ready to merge good first issue Good for newcomers
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

4 participants