devopsenggineer / Sanity

0 stars 0 forks source link

Vulnerability [null] : GET:/v2/seal-status #106

Open devopsenggineer opened 5 years ago

devopsenggineer commented 5 years ago

Project : t

Template : V2SealStatusGetAnonymousInvalid

Run Id : 8a808062697f73e00169802e4c400f7a

Job : Default

Env : Default

Category : null

Tags : No tags

Severity : null

Region : FXLabs/US_WEST_1

Result : fail

Status Code : 200

Headers : {Server=[nginx/1.12.1], Date=[Fri, 15 Mar 2019 07:08:32 GMT], Content-Type=[application/json;charset=ISO-8859-1], Content-Length=[227], Connection=[keep-alive]}

Endpoint : http://52.53.242.1/vault/v2/seal-status

Request :

Response :
{ "messages" : { "type" : "shamir", "initialized" : true, "sealed" : false, "progress" : 0, "version" : "1.0.0", "migration" : false, "cluster_name" : "vault-cluster-34c8423b", "cluster_id" : "0798ab7d-4de7-9669-9ce8-e216c130adf0", "recovery_seal" : false } }

Logs :
Assertion [@StatusCode == 401 OR @StatusCode == 403] resolved-to [200 == 401 OR 200 == 403] result [Failed] --- FX Bot ---