google / tsunami-security-scanner-plugins

This project aims to provide a central repository for many useful Tsunami Security Scanner plugins.
Apache License 2.0
860 stars 178 forks source link

PRP: Request Web Application Fingerprint - Apache Solr #395

Open W0ngL1 opened 4 months ago

W0ngL1 commented 4 months ago

Hi there,

I would like to start the implementation for a web application fingerprint that detects the following software - Apache Solr.

Docker hub image: https://hub.docker.com/_/solr

I cannot find these fingerprints in this repository. So please let me know if this is in scope.

tooryx commented 4 months ago

Hi @W0ngL1,

Could you please split this into two different issues? Also, can you create one for Apache Ofbiz? Finally, let us know which one you would be interested to start with and we will tell you if you can proceed.

~tooryx

W0ngL1 commented 4 months ago

@tooryx, Of course! I've modified this issue only for apache solr and added another two issues for apache couchdb #397 and apache ofbiz #398.

tooryx commented 3 months ago

Hi @W0ngL1,

Thanks for your request! This vulnerability is in scope for the reward program. Please submit our participation form and you can start working on the development.

Please keep in mind that the Tsunami Scanner Team will only be able to work at one issue at a time for each participant so please hold on the implementation work for any other requests you might have.

Thanks!

W0ngL1 commented 3 months ago

Copy that, I'm working on it.