devopsenggineer / Sanity

0 stars 0 forks source link

Vulnerability [null] : POST:/v2/ss/auth/approle/role #99

Open devopsenggineer opened 5 years ago

devopsenggineer commented 5 years ago

Project : t

Template : V2SsAuthApproleRolePostAnonymousInvalid

Run Id : 8a808062697f73e00169802e4c400f7a

Job : Default

Env : Default

Category : null

Tags : No tags

Severity : null

Region : FXLabs/US_WEST_1

Result : fail

Status Code : 400

Headers : {Server=[nginx/1.12.1], Date=[Fri, 15 Mar 2019 07:08:32 GMT], Content-Type=[application/json;charset=ISO-8859-1], Content-Length=[87], Connection=[keep-alive]}

Endpoint : http://52.53.242.1/vault/v2/ss/auth/approle/role

Request :
{ "token_max_ttl" : "1845165144", "token_ttl" : "1845165144", "role_name" : "ueiORHy2", "policies" : [ "ueiORHy2" ], "bind_secret_id" : false, "secret_id_num_uses" : "ueiORHy2", "secret_id_ttl" : "ueiORHy2", "token_num_uses" : "1845165144" }

Response :
{ "errors" : [ "Missing request header 'vault-token' for method parameter of type String" ] }

Logs :
Assertion [@StatusCode == 401 OR @StatusCode == 403] resolved-to [400 == 401 OR 400 == 403] result [Failed] --- FX Bot ---