devopsenggineer / Sanity

0 stars 0 forks source link

Vulnerability [null] : GET:/v2/auth/ldap/users/{username} #100

Open devopsenggineer opened 5 years ago

devopsenggineer commented 5 years ago

Project : t

Template : V2AuthLdapUsersUsernameGetAnonymousInvalid

Run Id : 8a808062697f73e00169802e4c400f7a

Job : Default

Env : Default

Category : null

Tags : No tags

Severity : null

Region : FXLabs/US_WEST_1

Result : fail

Status Code : 400

Headers : {Server=[nginx/1.12.1], Date=[Fri, 15 Mar 2019 07:08:32 GMT], Content-Type=[application/json;charset=ISO-8859-1], Content-Length=[87], Connection=[keep-alive]}

Endpoint : http://52.53.242.1/vault/v2/auth/ldap/users/1461476069

Request :

Response :
{ "errors" : [ "Missing request header 'vault-token' for method parameter of type String" ] }

Logs :
Assertion [@StatusCode == 401 OR @StatusCode == 403] resolved-to [400 == 401 OR 400 == 403] result [Failed] --- FX Bot ---