Commit Graph

720 Commits (021f28b45cf2dfed423be2ee793bf7d2876963c2)

Author SHA1 Message Date
GitHub Action 351b6cb4a1 TemplateMan Update [Tue Aug 22 08:13:27 UTC 2023] 🤖 2023-08-22 08:13:27 +00:00
pussycat0x b2ab37a133
Merge pull request #8040 from projectdiscovery/hongfan-ioffice-rce
Create hongfan-ioffice-rce.yaml
2023-08-22 13:41:18 +05:30
Ritik Chaddha 5f9bc87a4f
lint fix 2023-08-22 13:32:41 +05:30
pussycat0x 4f3d46a5b4
Merge pull request #8035 from projectdiscovery/jinhe-oa-c6-lfi
Create jinhe-oa-c6-lfi.yaml
2023-08-22 13:26:01 +05:30
Ritik Chaddha 623be810d3
Update and rename http/misconfiguration/unauthenticated-nacos-access.yaml to http/vulnerabilities/other/nacos-auth-bypass.yaml 2023-08-22 13:25:14 +05:30
Ritik Chaddha 4302231285
Delete nacos-auth-bypass.yaml 2023-08-22 13:25:06 +05:30
pussycat0x f31747a751
Update jinhe-oa-c6-lfi.yaml 2023-08-22 13:24:50 +05:30
Ritik Chaddha ceca12f8ba
Create nacos-auth-bypass.yaml 2023-08-22 12:43:43 +05:30
Ritik Chaddha 941fb10ea6
Create 74cms-weixin-sqli.yaml 2023-08-22 12:15:54 +05:30
Dhiyaneshwaran 6a27ce7dc8
Create apache-druid-log4j.yaml 2023-08-22 00:08:42 +05:30
Dhiyaneshwaran a1f313c04e
Create hongfan-ioffice-sqli.yaml 2023-08-21 23:35:11 +05:30
Dhiyaneshwaran 818c62aec4
added reference 2023-08-21 23:17:00 +05:30
Ritik Chaddha fd3988e19f
lint fix 2023-08-21 22:58:53 +05:30
Ritik Chaddha e3b60e1775
Create huatian-oa8000-buffalo-rce.yaml 2023-08-21 22:55:44 +05:30
Ritik Chaddha 36554cc5da
Create landray-oa-erp-data-rce.yaml 2023-08-21 22:40:53 +05:30
Dhiyaneshwaran 794116e42a
fix code error 2023-08-21 21:41:27 +05:30
Dhiyaneshwaran d4c6835454
Create hongfan-ioffice-rce.yaml 2023-08-21 21:38:10 +05:30
Dhiyaneshwaran 56f9e228de
Create jinhe-oa-c6-lfi.yaml 2023-08-21 19:53:32 +05:30
Dhiyaneshwaran 2c144b9bd0
Merge pull request #8015 from projectdiscovery/pussycat0x-patch-2
Maltrail <= v0.54 - Unauthenticated OS Command Injection
2023-08-21 13:01:15 +05:30
Dhiyaneshwaran 629618952b
fix colon issue 2023-08-21 12:34:08 +05:30
Dhiyaneshwaran 8501e5e280
fix matcher 2023-08-21 12:31:34 +05:30
Dhiyaneshwaran 405a71d1c2
tag update 2023-08-21 11:39:07 +05:30
Dhiyaneshwaran 336078f409
fix payload 2023-08-21 11:37:14 +05:30
pussycat0x 3c3fe84223
intrusive - tag 2023-08-21 11:33:11 +05:30
pussycat0x 99626ef001
Update h3c-cvm-arbitrary-file-upload.yaml 2023-08-21 08:43:24 +05:30
pussycat0x 2775c34f39
lint - fix 2023-08-21 08:38:07 +05:30
pussycat0x 7bc44bcca6
H3C CVM - Arbitrary File Upload 2023-08-21 08:30:47 +05:30
pussycat0x d553e751e8
Update maltrail-os-command-injection.yaml 2023-08-20 06:16:53 +05:30
pussycat0x 3b72f9e881
Maltrail <= v0.54 - Unauthenticated OS Command Injection 2023-08-19 22:10:28 +05:30
Dhiyaneshwaran 92fb456022 Create hongfan-ioffice-lfi.yaml 2023-08-19 13:12:37 +05:30
mastercho 020f397cad Fixed naming of apmarketplace, fixed old CVE from medium to lowand added another sqli prestashop 2023-08-19 02:19:47 +03:00
mastercho cb8cbac9df Revert "Added/Fixed/Updated XXX Template"
This reverts commit dd08abe04e.

wrong commit message
2023-08-19 02:15:25 +03:00
mastercho dd08abe04e Added/Fixed/Updated XXX Template 2023-08-19 02:14:45 +03:00
Dhiyaneshwaran 28f513f412
Rename hanta-rce.yaml to hanta-rce.yaml 2023-08-18 19:53:43 +05:30
Dhiyaneshwaran 2245b5a16d
working fix 2023-08-18 18:22:22 +05:30
Dhiyaneshwaran 800bf35e33
minor update 2023-08-18 18:14:04 +05:30
Dhiyaneshwaran d42cbc571f
Update flir-ax8-rce.yaml 2023-08-18 18:00:58 +05:30
pentesttools-com 38eafd33a2
Modified reference format from string to list to match the remaining cve modules (#8006) 2023-08-18 17:48:01 +05:30
pussycat0x b1f7f3c3d3
Merge pull request #7999 from momika233/main
Hanta-Internet-behavior-management-system-RCE
2023-08-18 14:41:47 +05:30
pussycat0x ce68c40e50 tag - update 2023-08-18 14:10:51 +05:30
GitHub Action 485b39a2db TemplateMan Update [Fri Aug 18 08:29:29 UTC 2023] 🤖 2023-08-18 08:29:30 +00:00
Dhiyaneshwaran 528865b5ce
Merge pull request #8000 from projectdiscovery/pussycat0x-patch-5
AspCMS commentList.asp - SQL Injection
2023-08-18 13:57:20 +05:30
pussycat0x d81343a191
Update aspcms-commentlist-sqli.yaml 2023-08-18 13:45:33 +05:30
pussycat0x 830e50a4b8
Update aspcms-commentlist-sqli.yaml 2023-08-18 13:43:42 +05:30
Dhiyaneshwaran bc99210ab9
Update and rename http/vulnerabilities/Hanta-Internet-behavior-management-system-RCE.yaml to http/vulnerabilities/others/hanta-rce.yaml 2023-08-18 13:38:31 +05:30
Dhiyaneshwaran a8a8361423
Merge pull request #7955 from projectdiscovery/pussycat0x-patch-2
CAIMORE Gateway - Remote Code Execution
2023-08-18 13:30:57 +05:30
Dhiyaneshwaran b906322c1e
remove verified 2023-08-18 13:27:12 +05:30
pussycat0x 4a5bfffe65
AspCMS commentList.asp - SQL Injection 2023-08-18 13:00:19 +05:30
pussycat0x 38a717c064
Update caimore-gateway-rce.yaml 2023-08-18 11:01:18 +05:30
momika233 880a66fe29
Update Hanta-Internet-behavior-management-system-RCE.yaml 2023-08-18 13:24:45 +08:00
GitHub Action d9c4e7154d TemplateMan Update [Fri Aug 18 05:17:58 UTC 2023] 🤖 2023-08-18 05:17:59 +00:00
momika233 f9079b7523
Add files via upload 2023-08-18 13:17:32 +08:00
Dhiyaneshwaran 8c8e23424c
Delete Hanta-Internet-behavior-management-system-RCE.yaml 2023-08-18 10:37:54 +05:30
momika233 b4fb3057df
Update Hanta-Internet-behavior-management-system-RCE.yaml 2023-08-18 13:07:50 +08:00
momika233 feb716e891
Add files via upload 2023-08-18 13:04:34 +08:00
momika233 592d9d1a4b
Merge branch 'projectdiscovery:main' into main 2023-08-18 13:03:42 +08:00
SleepingBag945 a8d056b7aa Added some Templates 2023-08-18 05:22:06 +02:00
pussycat0x 4812b16559
Add files via upload 2023-08-18 00:05:57 +05:30
Dhiyaneshwaran dcd8d7fa30 fix templates 2023-08-17 18:36:17 +05:30
momika233 796f749d19
Delete CAIMORE-Gateway-RCE.yaml 2023-08-17 15:58:58 +08:00
Ritik Chaddha 591066311f
Update wp-real-estate-xss.yaml 2023-08-17 01:02:52 +05:30
Dhiyaneshwaran 44a037fa78
fix-template 2023-08-16 23:41:35 +05:30
Ritik Chaddha 05084960d7
lint and format fix 2023-08-16 23:12:35 +05:30
Harsh Yadav f8cbf253a7
Create wp-real-estate-xss.yaml 2023-08-16 22:28:53 +05:30
momika233 bd027fa42d
Delete ecology-oa-filedownloadforoutdoc-sqli.yaml 2023-08-16 00:33:22 +08:00
momika233 822c8a5192
Update ecology-oa-filedownloadforoutdoc-sqli.yaml 2023-08-16 00:28:39 +08:00
momika233 5a158e156b
Add files via upload 2023-08-16 00:25:07 +08:00
momika233 06b8c2fc26
Add files via upload 2023-08-16 00:23:18 +08:00
momika233 df5eb2b284
Delete ecology-oa-filedownloadforoutdoc-sqli.yaml 2023-08-16 00:18:24 +08:00
momika233 84d8c493e4
Add files via upload 2023-08-16 00:17:28 +08:00
momika233 093a08056f
Delete CAIMORE-Gateway-RCE.yaml 2023-08-16 00:14:12 +08:00
momika233 c1998873ca
Delete mooSocial-xss.yaml 2023-08-16 00:13:50 +08:00
momika233 99f32ed102
Add files via upload 2023-08-16 00:09:48 +08:00
momika233 ef8915e472
Add files via upload 2023-08-16 00:08:07 +08:00
momika233 3e5d376135
Merge branch 'projectdiscovery:main' into main 2023-08-15 23:54:46 +08:00
Ritik Chaddha 216e4128be
updated matcher 2023-08-11 15:45:25 +05:30
Dhiyaneshwaran 0656125645
fix trail space 2023-08-11 11:16:44 +05:30
Dhiyaneshwaran 6f656fcc2e
Create ecology-oa-file-sqli.yaml 2023-08-11 11:14:21 +05:30
momika233 1b7dd8f5df
Update FLIR-AX8-RCE.yaml 2023-08-10 23:16:02 +08:00
momika233 621b42eca2
Update FLIR-AX8-RCE.yaml 2023-08-10 23:12:03 +08:00
momika233 eb74a12232
Update FLIR-AX8-RCE.yaml 2023-08-10 23:09:08 +08:00
momika233 ece7176183
Update FLIR-AX8-RCE.yaml 2023-08-10 23:01:37 +08:00
momika233 0102bcf997
Add files via upload 2023-08-10 22:58:24 +08:00
momika233 7d128b858e
Update CAIMORE-Gateway-RCE.yaml 2023-08-10 22:39:40 +08:00
momika233 0bdb7cf4ce
Add files via upload 2023-08-10 22:30:03 +08:00
pussycat0x 103ae05d02
Merge pull request #7892 from kazet/fewer-false-positives-generic-env
Fewer false positives in generic-env.yaml
2023-08-10 15:19:39 +05:30
pussycat0x 864154f8a5
Merge pull request #7889 from momika233/main
CVE-2023-4174/CVE-2023-4173/TerraMaster-RCE/panabit-ixcache-date-config-rce
2023-08-10 11:27:53 +05:30
pussycat0x 6090a6efea tag - update 2023-08-10 11:20:30 +05:30
Dhiyaneshwaran ad3ef52d83
Delete TerraMaster-RCE.yaml 2023-08-10 10:19:34 +05:30
Dhiyaneshwaran c951cf19f4 bring back deleted file 2023-08-10 10:19:01 +05:30
Dhiyaneshwaran 7455c3c320
added content-type 2023-08-10 10:05:00 +05:30
pussycat0x 78429f8520
WiseGiga NAS - LFI 2023-08-09 21:13:26 +05:30
Krzysztof Zając 8da78234c0 Fewer false positives in generic-env.yaml 2023-08-09 10:42:16 +02:00
Dhiyaneshwaran e1e2f44993
Merge pull request #7884 from projectdiscovery/pussycat0x-patch-5
LVS Lean Value Management System Business - Directory Listing
2023-08-09 13:28:24 +05:30
Dhiyaneshwaran 9fd8bdc799
fix template 2023-08-09 13:25:27 +05:30
Dhiyaneshwaran aa23fa9e6b
Merge pull request #7879 from projectdiscovery/pussycat0x-patch-4
TamronOS IPTV - Arbitrary User Creation
2023-08-09 13:25:03 +05:30
Dhiyaneshwaran c214a9c79d
fix template 2023-08-09 13:20:26 +05:30
momika233 a45e1d6852
Delete eaa-app-lfi.yaml 2023-08-09 09:12:42 +08:00
Dhiyaneshwaran c16b8d8902 move directory and minor fix 2023-08-09 03:05:32 +05:30
Dhiyaneshwaran c44468a794 Merge branch 'main' of https://github.com/momika233/nuclei-templates into pr/7889 2023-08-09 03:01:14 +05:30
Dhiyaneshwaran 398b2df0af fix matcher for eaa 2023-08-09 03:01:11 +05:30
momika233 d2717ce8df
Update panabit-ixcache-rce.yaml 2023-08-09 05:16:08 +08:00
Dhiyaneshwaran a5d6c39ccb
fix trail space 2023-08-09 02:36:12 +05:30
Dhiyaneshwaran acb13582ab Merge branch 'main' of https://github.com/momika233/nuclei-templates into pr/7889 2023-08-09 02:33:24 +05:30
Dhiyaneshwaran cbffe81504 re-wrote template 2023-08-09 02:32:42 +05:30
momika233 c2290f1bc3
Add files via upload 2023-08-09 05:01:55 +08:00
momika233 c03b29bb69
Update panabit-ixcache-date-config-rce.yaml 2023-08-09 04:48:31 +08:00
momika233 2e68ef35c5
Update panabit-ixcache-date-config-rce.yaml 2023-08-09 04:31:02 +08:00
momika233 4af9fd765e
Update Social-Commerce-xss.yaml 2023-08-09 04:09:02 +08:00
momika233 cd5a4c4c23
Add files via upload 2023-08-09 04:06:40 +08:00
momika233 91d7c47907
Add files via upload 2023-08-09 03:54:06 +08:00
momika233 fe02b7ef41
Add files via upload 2023-08-09 03:51:09 +08:00
pussycat0x b5301f4d70
Update and rename lean-value-directory-traversal.yaml to lean-value-directory-listing.yaml 2023-08-08 19:56:01 +05:30
pussycat0x 606175701f
LVS Lean Value Management System Business - Directory Listing 2023-08-08 17:18:02 +05:30
pussycat0x c17723bc25
TamronOS IPTV - Arbitrary User Creation 2023-08-08 14:06:34 +05:30
Ritik Chaddha 9b201bbbfd
updated matcher 2023-08-08 13:42:25 +05:30
pussycat0x 40b47eaeee
Update and rename crawlab-file-lfi.yaml to crawlab-lfi.yaml 2023-08-08 13:06:38 +05:30
pussycat0x c12e663fc9
Crawlab File - Arbitrary File Read 2023-08-08 13:04:14 +05:30
Dhiyaneshwaran 169269e15c
Merge pull request #7876 from projectdiscovery/joomla-department-sqli-1
Create joomla-department-sqli.yaml
2023-08-08 00:00:05 +05:30
Dhiyaneshwaran 73035f4726
minor update 2023-08-07 23:57:13 +05:30
Dhiyaneshwaran 9c468a44b5
Merge pull request #7873 from projectdiscovery/zzzcms-ssrf
Create zzzcms-ssrf.yaml
2023-08-07 23:52:25 +05:30
Dhiyaneshwaran 503076c09c
Merge pull request #7875 from projectdiscovery/zzzcms-info-disclosure
Create zzzcms-info-disclosure.yaml
2023-08-07 23:51:38 +05:30
Dhiyaneshwaran 8fa9719b7e
added randstr value and tag update 2023-08-07 23:49:51 +05:30
Dhiyaneshwaran da08f10b64
Merge pull request #7874 from projectdiscovery/zzzcms-xss
Create zzzcms-xss.yaml
2023-08-07 23:43:52 +05:30
Ritik Chaddha 439044c85d
Merge pull request #7855 from projectdiscovery/avcon6-org-execl-download-lfi
Create avcon6-org-execl-download-lfi.yaml
2023-08-07 23:43:40 +05:30
Ritik Chaddha f42b808a8d
Merge pull request #7827 from projectdiscovery/acti-video-lfi
Create acti-video-lfi.yaml
2023-08-07 23:40:58 +05:30
Dhiyaneshwaran 7ca836f403
added reference 2023-08-07 23:40:55 +05:30
Ritik Chaddha e7a233e9ff
Update and rename avcon6-org-execl-download-lfi.yaml to avcon6-execl-lfi.yaml 2023-08-07 23:40:53 +05:30
Ritik Chaddha 013d3eb0d3
Update acti-video-lfi.yaml 2023-08-07 23:37:29 +05:30
Ritik Chaddha ada6daf244
Create joomla-department-sqli.yaml 2023-08-07 23:32:13 +05:30
Ritik Chaddha cf6628114b
Create zzzcms-xss.yaml 2023-08-07 23:26:47 +05:30
Ritik Chaddha 3bce348601
Create zzzcms-info-disclosure.yaml 2023-08-07 23:26:29 +05:30
Ritik Chaddha 75159ca8e2
Create zzzcms-ssrf.yaml 2023-08-07 23:26:09 +05:30
Ritik Chaddha 355444dc49
Merge pull request #7835 from projectdiscovery/kodak-network-lfi
Create kedacom-network-lfi.yaml
2023-08-07 23:14:23 +05:30
Ritik Chaddha 1dc8fe0088
Merge pull request #7839 from projectdiscovery/sangfor-cphp-rce
Create sangfor-cphp-rce.yaml
2023-08-07 23:14:06 +05:30
Ritik Chaddha 5652e6cb9a
Merge pull request #7854 from projectdiscovery/avcon6-download-action-lfi
Create avcon6-download-action-lfi.yaml
2023-08-07 23:12:13 +05:30
Ritik Chaddha 5f4dfcab5d
Update kodak-network-lfi.yaml 2023-08-07 23:00:41 +05:30
Ritik Chaddha e94b33a1a1
updated info 2023-08-07 22:59:22 +05:30
Ritik Chaddha bafa348fb6
updated info & path 2023-08-07 22:41:41 +05:30
pussycat0x 23d6e469e4
Merge pull request #7856 from projectdiscovery/easyimage-downphp-lfi
Create easyimage-downphp-lfi.yaml
2023-08-07 19:56:43 +05:30
pussycat0x 8492381e4e
Update easyimage-downphp-lfi.yaml 2023-08-07 19:53:09 +05:30
pussycat0x 3327cda4d2
Merge pull request #7850 from projectdiscovery/clodop-printer-lfi
Create clodop-printer-lfi.yaml
2023-08-07 19:49:30 +05:30
pussycat0x b25760e2d5
Merge pull request #7844 from projectdiscovery/netmizer
Netmizer (netmizer-cmd-rce) , (netmizer-data-listing)
2023-08-07 19:32:33 +05:30
pussycat0x e233b549bb
Merge pull request #7840 from projectdiscovery/sangfor-sysuser-conf
Create sangfor-sysuser-conf.yaml
2023-08-07 19:31:25 +05:30
pussycat0x a4684edaf4
Update sangfor-sysuser-conf.yaml 2023-08-07 19:27:05 +05:30
pussycat0x 220acc4386
Merge pull request #7838 from projectdiscovery/sangfor-download-lfi
Create sangfor-download-lfi.yaml
2023-08-07 19:25:31 +05:30
Dhiyaneshwaran 7b07a767c9
Merge pull request #7862 from projectdiscovery/discuz-path-disclosure
Create  discuz-path-disclosure.yaml
2023-08-07 19:10:37 +05:30
Dhiyaneshwaran 7eccb7e528
Update and rename http/vulnerabilities/discuz-path-disclosure.yaml to http/vulnerabilities/discuz/discuz-api-pathinfo.yaml 2023-08-07 19:07:18 +05:30
Dhiyaneshwaran 878cab60d5
added reference 2023-08-07 18:59:36 +05:30
Ritik Chaddha 6a35f1e9bc
misc fix 2023-08-07 18:28:15 +05:30
Ritik Chaddha 3c377343bd
Create bsphp-info.yaml 2023-08-07 18:26:48 +05:30
Ritik Chaddha 06da76fee9
Create discuz-path-disclosure.yaml 2023-08-07 18:24:55 +05:30
Dhiyaneshwaran 6df7691c38
Create easyimage-downphp-lfi.yaml 2023-08-06 12:51:26 +05:30
Dhiyaneshwaran 53f7fa277b
trail space fix 2023-08-06 12:29:15 +05:30
Dhiyaneshwaran 790c2db6e4
trail space fix 2023-08-06 12:28:46 +05:30
Dhiyaneshwaran 7b68b5ad8c
Create avcon6-org-execl-download-lfi.yaml 2023-08-06 12:26:54 +05:30
Dhiyaneshwaran 99b939b164
Create avcon6-download-action-lfi.yaml 2023-08-06 12:21:48 +05:30
Dhiyaneshwaran b6c95b8e43
Fix FP 2023-08-05 18:50:53 +05:30
Dhiyaneshwaran 0c2f14009f
Create clodop-printer-lfi.yaml 2023-08-05 17:50:55 +05:30
Dhiyaneshwaran f34e4b61f3
Create netmizer-data-listing.yaml 2023-08-05 13:56:07 +05:30
Dhiyaneshwaran 7b5737ee27
Create netmizer-cmd-rce.yaml 2023-08-05 13:54:54 +05:30
Dhiyaneshwaran bdb0873a91
Create sangfor-sysuser-conf.yaml 2023-08-05 12:48:29 +05:30
Dhiyaneshwaran d558bbb976
Create sangfor-cphp-rce.yaml 2023-08-05 12:18:28 +05:30
Dhiyaneshwaran 587197f9b5
Create sangfor-download-lfi.yaml 2023-08-05 11:39:16 +05:30
Dhiyaneshwaran 9ead50c6c4
typo name 2023-08-05 10:32:12 +05:30
Dhiyaneshwaran 7334dd614a
Create kodak-network-lfi.yaml 2023-08-04 22:26:25 +05:30
Dhiyaneshwaran e03fd49a3e
Create acti-video-lfi.yaml 2023-08-04 17:07:21 +05:30
rivers 16f4b9cc9b fix Hostname 2023-08-04 09:50:39 +08:00
Dhiyaneshwaran cad0db0445
fix 2023-08-03 17:38:33 +05:30
Ritik Chaddha 48c069dd39
Create photo-gallery-xss.yaml 2023-08-02 18:11:15 +05:30
Ritik Chaddha f46e827d9b
Merge pull request #7065 from j4vaovo/patch-16
Create apache-solr-91-rce.yaml
2023-08-02 13:49:40 +05:30
Ritik Chaddha 4470bfbb29
Update apache-solr-rce.yaml 2023-08-02 13:45:54 +05:30
pussycat0x eac2001901
Merge pull request #7800 from j4vaovo/patch-2
fix nginx-module-vts-xss false-positive
2023-08-02 11:11:18 +05:30
Dhiyaneshwaran f82cf5b7ca fix matcher for sqli template 2023-08-02 09:23:57 +05:30
Dhiyaneshwaran 278e2ec6e2
Update and rename vulnerabilities/apache-solr-91-rce.yaml to http/vulnerabilities/apache/apache-solr-rce.yaml 2023-08-01 10:57:33 +05:30
J4vaovo 90b269d88e
Update nginx-module-vts-xss.yaml 2023-08-01 07:22:00 +08:00
Prince Chaddha d8e8e447e3
Updated matcher alibaba-anyproxy-lfi 2023-07-31 21:48:02 +05:30
Prince Chaddha 43c87ba959 Revert "Updated matcher alibaba-anyproxy-lfi"
This reverts commit 71b5286495.
2023-07-31 21:46:10 +05:30
Prince Chaddha 71b5286495
Updated matcher alibaba-anyproxy-lfi 2023-07-31 21:45:27 +05:30
Dhiyaneshwaran 60de478c1d
Merge pull request #7756 from projectdiscovery/xss-false-positive
Update XSS - False positive
2023-07-28 11:46:11 +05:30
Ritik Chaddha 8c2072255b Update wp-socialfit-xss.yaml 2023-07-28 11:36:38 +05:30
pussycat0x 35581ff415
Merge pull request #7778 from projectdiscovery/nginxwebui-runcmd-rce
nginxWebUI ≤ 3.5.0 runCmd - Remote Command Execution
2023-07-28 11:02:11 +05:30
Ritik Chaddha bf0f98ef4f
update info 2023-07-28 00:10:06 +05:30
Dhiyaneshwaran c90b0463d1
Create alibaba-anyproxy-lfi.yaml 2023-07-27 17:59:29 +05:30
Dhiyaneshwaran 6e069a0025
Create nginxwebui-runcmd-rce.yaml 2023-07-27 16:55:44 +05:30
Ritik Chaddha 26f3235c5b
Merge pull request #7755 from projectdiscovery/booked-export-csv
Create booked-export-csv.yaml
2023-07-26 11:14:41 +05:30
Ritik Chaddha 8f6ae85e52
Merge pull request #7711 from daffainfo/patch-4
fix: FP joomla-com-fabrik-lfi.yaml
2023-07-26 11:14:00 +05:30
Ritik Chaddha 42d52b336b
updated info and req 2023-07-26 11:10:31 +05:30
GitHub Action 6d064e86c6 TemplateMan Update [Tue Jul 25 05:26:35 UTC 2023] 🤖 2023-07-25 05:26:35 +00:00
Dhiyaneshwaran 6bcf1a46e2
Merge pull request #7753 from atastycookie/patch-3
Added path to config /wp-config.backup
2023-07-25 10:54:36 +05:30
mastercho f4dd3ccc9b Fixed space 2023-07-25 01:17:37 +03:00
mastercho 14847bef0c Added new SQLi 2023-07-25 01:10:33 +03:00
Dhiyaneshwaran 3310659264
fix trail space 2023-07-24 21:40:43 +05:30
Dhiyaneshwaran dbcc358142
Create booked-export-csv.yaml 2023-07-24 21:37:25 +05:30
Roman c2ca56f7f2
Added path to config /wp-config.backup
Added path to config /wp-config.backup. Have found on 4 projects for last week
2023-07-24 13:21:18 +04:00
Dwi Siswanto eae79b7f9d
fix(squirrelmail-vkeyboard-xss): adding vars, update payload & matcher 2023-07-24 15:45:56 +07:00
Dwi Siswanto 0b8402e068
fix: metadata typo (#7741) 2023-07-22 13:28:18 +05:30
Ritik Chaddha 0eb647310e
Merge pull request #7728 from projectdiscovery/remove-nuclei-keyword
Replaced Hardcoded Nuclei Keyword
2023-07-21 17:13:56 +05:30
Dhiyaneshwaran 949e3c56c5
Merge pull request #7716 from HuTa0kj/dev/jupyter-notebook-rce
Create jupyter-notebook-rce
2023-07-21 17:03:46 +05:30
Ritik Chaddha 5a1f9321be
updated matcher,metadata 2023-07-21 17:00:10 +05:30
Ritik Chaddha 11790458be
Updated tongda-auth-bypass.yaml with metadata & fuzz tag 2023-07-21 16:29:25 +05:30
pussycat0x 401de60148
Merge pull request #7726 from projectdiscovery/skype-blind-ssrf
Create skype-blind-ssrf.yaml
2023-07-21 15:29:12 +05:30
GitHub Action 28fe132191 TemplateMan Update [Fri Jul 21 08:58:14 UTC 2023] 🤖 2023-07-21 08:58:15 +00:00
pussycat0x f874188740
Merge pull request #7715 from HuTa0kj/dev/tongda-online-user-login
Create tongda-online-user-login
2023-07-21 14:26:09 +05:30
Ritik Chaddha a7e4e30a51
updated path,matchers,info 2023-07-20 22:24:32 +05:30
Dhiyaneshwaran f8d7275527 Replaced Hardcoded Nuclei Keyword 2023-07-20 13:13:09 +05:30
Dhiyaneshwaran e46d217a75
Create skype-blind-ssrf.yaml 2023-07-19 22:25:04 +05:30
Ritik Chaddha 02939ef1dc
payload update 2023-07-18 13:45:19 +05:30
Ritik Chaddha 8f46d8f4b8
lint fix and update format 2023-07-18 13:39:44 +05:30
Ritik Chaddha cd1414bedb
lint fix 2023-07-18 13:22:09 +05:30
TFDDZ f09c575037 Create:jupyter-notebook-rce 2023-07-18 14:48:18 +08:00
TFDDZ b088d3cc67 create: tongda-online-user-login 2023-07-18 14:09:44 +08:00
Prince Chaddha 3fa86304bd
Update code42-log4j-rce.yaml 2023-07-18 09:55:43 +05:30
Prince Chaddha 4cb2c37ad0
Update code42-log4j-rce.yaml 2023-07-18 09:55:10 +05:30
Muhammad Daffa ab5eb5d885
fix: FP joomla-com-fabrik-lfi.yaml 2023-07-17 21:29:31 +07:00
sandeep 8381c3428e vulnerabilities enrichment 2023-07-16 19:02:52 +05:30
GitHub Action c14d8deeab TemplateMan Update [Thu Jul 13 05:59:21 UTC 2023] 🤖 2023-07-13 05:59:21 +00:00
J4vaovo 94f55f8141
Update sitemap-sql-injection.yaml 2023-07-13 13:53:05 +08:00
J4vaovo a068bf6283
Update sitemap-sql-injection.yaml 2023-07-09 16:17:26 +08:00
Prince Chaddha 18f1702db0
Rename sitemap-sql-injection.yaml to sitemap-sql-injection.yaml 2023-07-08 11:55:13 +05:30
Prince Chaddha b316cc936f
Merge pull request #7618 from projectdiscovery/remove-comments
removed enhanced by comments
2023-07-07 17:00:46 +05:30
Prince Chaddha 0a681ec0bb removed empty lines 2023-07-07 16:56:27 +05:30
GitHub Action cb26083079 TemplateMan Update [Fri Jul 7 11:17:58 UTC 2023] 🤖 2023-07-07 11:17:59 +00:00
pussycat0x cb6eaf95a2
Merge pull request #7637 from projectdiscovery/cve-templates4
CVEs added
2023-07-07 16:46:09 +05:30
Ritik Chaddha 1565dc6517
Rename universal-media-xss.yaml to universal-media-xss.yaml 2023-07-07 16:40:25 +05:30
Prince Chaddha 7d7e4f43ac updated stored tags 2023-07-07 15:34:00 +05:30
Prince Chaddha 332e19282e templates added 2023-07-07 15:08:49 +05:30
Prince Chaddha 75ed275328 removed enhanced by comments 2023-07-05 13:37:58 +05:30
German d60ab4e5d0
Update cacti-weathermap-file-write.yaml removing broken reference
Reference does not exist on website anymore, no cached version found and I also couldn't find a good replacement reference.
2023-07-03 17:59:02 +02:00
Arm!tage 5603a4344d
fix CVE-2022-46934.yaml (#7505)
* fix CVE-2022-46934.yaml

* add tags

* add kkfileview-ssrf.yaml

* misc fixes

* Update kkfileview-ssrf.yaml

* misc fixes

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-01 22:09:12 +05:30
Dhiyaneshwaran 956ef19f42
Merge pull request #7526 from mastercho/arcadephp
Added ardace.php SQL Inj template
2023-06-29 11:43:33 +05:30
Ritik Chaddha 84380cffbd
reverted back with updates 2023-06-28 17:18:50 +05:30
Sandeep Singh 62f0c160d8
Added Hikvision iVMS-8700 - File Upload Remote Code Execution (#7536)
Co-authored-by: brucelsone <101378596+brucelsone@users.noreply.github.com>
2023-06-25 14:32:37 +05:30
Ritik Chaddha 19610568a3
lint and format fix 2023-06-24 23:52:39 +05:30
mastercho 724e350077 Added ardace.php SQL Inj template 2023-06-24 02:25:56 +03:00
GitHub Action 41277637c0 TemplateMan Update [Wed Jun 21 21:03:53 UTC 2023] 🤖 2023-06-21 21:03:54 +00:00
Dhiyaneshwaran 6d1b1368a0
Merge pull request #7486 from projectdiscovery/fix-fp-avaya-rce
Fix FP - avaya-aura-rce.yaml
2023-06-21 12:33:19 +05:30
Prince Chaddha 38fc2440ce
Update epp-server-lfi.yaml 2023-06-21 09:15:12 +05:30
sandeep c90fa30096 removed deprecated header syntax with latest one 2023-06-20 02:40:30 +05:30
Dhiyaneshwaran 56f9bc7156
Fix FP - avaya-aura-rce.yaml 2023-06-19 17:56:23 +05:30
pussycat0x ab5a846742
Merge pull request #7475 from projectdiscovery/nuxt-js-lfi
Create nuxt-js-lfi.yaml
2023-06-17 12:12:13 +05:30
pussycat0x 77a41f5163
Merge pull request #7476 from projectdiscovery/nuxt-js-semi-lfi
Create nuxt-js-semi-lfi.yaml
2023-06-17 12:11:38 +05:30
Dhiyaneshwaran 81ca5507a0
fix FP 2023-06-17 11:07:34 +05:30
Dhiyaneshwaran 33344bd676
Create nuxt-js-xss.yaml 2023-06-17 10:47:59 +05:30
Dhiyaneshwaran b24934f4c0
Create nuxt-js-semi-lfi.yaml 2023-06-17 10:46:30 +05:30
Dhiyaneshwaran d2c173d91b
Create nuxt-js-lfi.yaml 2023-06-17 10:44:18 +05:30
pussycat0x 73f7e49c9a
Merge pull request #7398 from projectdiscovery/epp-server-lfi
Create epp-server-lfi.yaml
2023-06-16 13:25:47 +05:30
Ritik Chaddha 06a3ae4604
Merge pull request #7455 from j4vaovo/patch-65
Update avaya-aura-rce.yaml
2023-06-16 10:17:48 +05:30
Ritik Chaddha b6debd17b7
Update avaya-aura-rce.yaml 2023-06-16 10:14:46 +05:30
Ritik Chaddha 6f883ac17b
Update avaya-aura-rce.yaml 2023-06-16 10:13:11 +05:30
Dhiyaneshwaran 3f13ff9e76
Merge pull request #7392 from projectdiscovery/princechaddha-patch-2
Fixing tags
2023-06-16 09:48:34 +05:30
J4vaovo 67338b772a
Update avaya-aura-rce.yaml 2023-06-15 19:24:13 +08:00
Dhiyaneshwaran 788e8c1a2b
Merge pull request #7314 from ruben-condor/add-cve-id-to-joomla-jvehicles-lfi
Updated joomla-jvehicles-lfi.yaml
2023-06-14 12:59:19 +05:30
Dhiyaneshwaran f8210e87d2
Create epp-server-lfi.yaml 2023-06-13 13:03:41 +05:30
Prince Chaddha f9fd870fbb misc changes 2023-06-12 18:54:55 +05:30
Prince Chaddha 6494cd33a0 Update sponip-network-system-ping-rce.yaml 2023-06-12 18:48:47 +05:30
Ruben Condor 610683658a
remove cve-id and cve tags from joomla-jvehicles-lfi.yaml 2023-06-12 13:23:45 +03:00
Dhiyaneshwaran 75541d494d
Update jenkins-script.yaml 2023-06-12 10:57:03 +05:30
Ritik Chaddha 19dd0c11a8
Update open-redirect.yaml 2023-06-08 09:40:40 +05:30
Paul McCarty 4c73436286
Updated open-redirect.yaml Template 2023-06-08 10:03:21 +10:00
Ritik Chaddha 7b68cb0130
updated matcher 2023-06-05 15:59:01 +05:30
Dhiyaneshwaran 93826c209c
Create sitecore-xml-xss.yaml 2023-06-05 15:31:33 +05:30
Ritik Chaddha a736eaf0c9
Merge pull request #7308 from j4vaovo/patch-40
fix vmware-vcenter-ssrf-false positive
2023-06-05 13:32:04 +05:30
sandeep e53d19f583 boolean format update 2023-06-04 13:43:42 +05:30
J4vaovo 93fd9f737a
Update vmware-vcenter-ssrf.yaml 2023-06-04 07:17:40 +08:00
GitHub Action df5a969b80 Auto Generated CVE annotations [Sat Jun 3 18:56:35 UTC 2023] 🤖 2023-06-03 18:56:35 +00:00
Ritik Chaddha 12e3a86986 updated metadata 2023-06-01 23:09:07 +05:30
Ritik Chaddha bc3dd3c0d4 Revert "update max-req => max-request"
This reverts commit d82143eacc.
2023-06-01 22:48:38 +05:30
Ritik Chaddha d82143eacc update max-req => max-request 2023-06-01 22:46:25 +05:30
Ruben Condor d8c0b70793
Updated joomla-jvehicles-lfi.yaml 2023-05-30 12:01:27 +03:00
Ritik Chaddha 7e0eae2303
Merge pull request #7313 from ruben-condor/add-description-and-classification-to-xenmobile-server-log4j
Updated xenmobile-server-log4j.yaml
2023-05-30 14:31:06 +05:30
Ruben Condor 21cc1381f9
Updated xenmobile-server-log4j.yaml 2023-05-30 11:55:30 +03:00
J4vaovo 4306a9eb08
Update vmware-vcenter-ssrf.yaml 2023-05-30 05:46:56 +08:00
Ritik Chaddha 3fd9defc7c
Update yeswiki-xss.yaml 2023-05-29 23:25:05 +05:30
Ruben Condor b4e86356f5
Update yeswiki-xss.yaml 2023-05-29 14:09:34 +03:00
Prince Chaddha 9b21697dcd
Merge pull request #7285 from projectdiscovery/princechaddha-patch-5
Updated wordpress-rce-simplefilelist
2023-05-23 16:46:23 +05:30
Dhiyaneshwaran 24d1465ec4
Merge pull request #7174 from dm-ct/patch-1
Create unauth-ztp-ping.yaml
2023-05-23 13:48:59 +05:30
Prince Chaddha 60348d2e4a
updated tags 2023-05-23 13:36:55 +05:30
Prince Chaddha 12862393b6
Update wordpress-rce-simplefilelist.yaml 2023-05-23 13:35:51 +05:30
Walter Sagehorn a1226428e6
Adds 'tags' attribute to deadbolt-ransomware.yaml 2023-05-22 14:10:53 -05:00
pussycat0x f998a28e12
Update unauth-ztp-ping.yaml 2023-05-22 20:58:34 +05:30
Dhiyaneshwaran 48ef52b582
Merge pull request #7237 from projectdiscovery/avtech-verification-bypass
Create avtech-verification-bypass.yaml
2023-05-17 10:43:23 +05:30
Dhiyaneshwaran 6643107c90
added default username and password 2023-05-17 10:40:43 +05:30
Dhiyaneshwaran 7d21e9fc51
Merge pull request #7233 from projectdiscovery/avtech-unauth-file-download
Create avtech-unauth-file-download.yaml
2023-05-17 01:54:44 +05:30
Dhiyaneshwaran d602862a19
Merge pull request #7236 from projectdiscovery/avtech-dvr-ssrf
Create avtech-dvr-ssrf.yaml
2023-05-17 01:53:08 +05:30
Dhiyaneshwaran a612bc4c8b
Merge pull request #7234 from projectdiscovery/avtech-auth-bypass
Create avtech-auth-bypass.yaml
2023-05-17 01:29:25 +05:30
Ritik Chaddha 04196e0eb3
Create ecology-mysql-config.yaml 2023-05-16 12:07:50 +05:30
Ritik Chaddha d9e2a77566
Create avtech-verification-bypass.yaml 2023-05-16 01:52:39 +05:30
Ritik Chaddha a13cafd50a
Create avtech-dvr-ssrf.yaml 2023-05-16 01:12:10 +05:30
Ritik Chaddha a0a92bc170
Create avtech-auth-bypass.yaml 2023-05-15 23:33:12 +05:30
Ritik Chaddha a947db87a3
Create avtech-unauth-file-download.yaml 2023-05-15 23:31:22 +05:30
GitHub Action 1c5197c6f7 Auto Generated CVE annotations [Thu May 11 13:27:36 UTC 2023] 🤖 2023-05-11 13:27:36 +00:00
pussycat0x 627b495a89
Merge pull request #7119 from kazet/generic-env-detector
Generic .env detector
2023-05-11 15:04:42 +05:30
pussycat0x 128d1499a8
protocol -update 2023-05-11 14:49:23 +05:30
Ritik Chaddha 6ee69d03a1 Merge branch 'main' into update-log4j 2023-05-11 13:08:41 +05:30
Dhiyaneshwaran 6cf79c00d5
Update and rename exposures/configs/env.yaml to http/vulnerabilities/generic/generic-env.yaml 2023-05-10 16:47:21 +05:30
Dhiyaneshwaran 68828dd492
Merge pull request #7183 from projectdiscovery/cve-templates1
CVE templates added
2023-05-10 01:09:21 +05:30
Sandeep Singh 6addff3ac6
misc syntax fixes (#7201) 2023-05-09 18:13:13 +05:30
Ritik Chaddha f96e98052e payload update 2023-05-08 11:07:00 +05:30
Prince Chaddha 124b2230cf templates added 2023-05-06 17:42:20 +05:30
Prince Chaddha b08774126b
Merge pull request #7155 from projectdiscovery/add-max-request
Added `max-request` counter of each template
2023-05-04 17:55:42 +05:30
dm-ct f74e8bd714
Update unauth-ztp-ping.yaml
accidentally left a ?ref tag in a reference.
2023-05-04 10:54:09 +01:00
dm-ct 9ec854c91e
Create unauth-ztp-ping.yaml
Creates a template that can detect ZyXEL ZTP (Zero Touch Provisioning) interfaces that lack any authentication checks.
Authentication checks were added in the fixes for CVE-2023-28771
2023-05-04 10:14:16 +01:00
Ritik Chaddha 05eb753985
Update apache-ofbiz-log4j-rce.yaml 2023-05-04 11:05:06 +05:30
Ritik Chaddha 0c049e028e updated templates 2023-05-04 00:16:17 +05:30
Ritik Chaddha 109d452109 Merge branch 'update-log4j' of https://github.com/projectdiscovery/nuclei-templates into update-log4j 2023-05-03 23:51:59 +05:30
Ritik Chaddha 82a8526978 updated templates 2023-05-03 23:51:23 +05:30
Ritik Chaddha 8da408f77c
name update=id 2023-05-03 23:42:07 +05:30
Ritik Chaddha 89185ad7fe
fix 2023-05-03 23:31:55 +05:30
Ritik Chaddha b50e22b7da updated log4j 2023-05-03 23:21:44 +05:30
Ritik Chaddha 3cf8d0bd94
Update All Existing Log4j Templates 2023-05-03 17:21:48 +05:30
sandeep a470c2a150 Merge remote-tracking branch 'origin' into add-max-request 2023-05-02 17:52:27 +05:30
Dhiyaneshwaran 1c1bc41ea2 added metadata 2023-05-02 11:03:28 +05:30
sandeep e762172422 Added WPML XSS 2023-05-01 21:18:57 +05:30
j4vaovo f5df1a74cb
Update vmware-siterecovery-log4j-rce.yaml (#7157) 2023-04-30 16:03:43 +05:30
Sandeep Singh 28f4302dcd
Merge branch 'main' into add-max-request 2023-04-29 13:32:16 +05:30
Dhiyaneshwaran bb63a4aeab
Merge pull request #7116 from j4vaovo/patch-28
Create apache-druid-kafka-connect-rce.yaml
2023-04-28 15:27:30 +05:30
Dhiyaneshwaran 5136c8f23c
Rename vulnerabilities/apache/apache-druid-kafka-connect-rce.yaml to http/vulnerabilities/apache/apache-druid-kafka-connect-rce.yaml 2023-04-28 15:25:03 +05:30
sandeep 1f5b1f2c47 Added max request counter of each template 2023-04-28 13:41:21 +05:30
Prince Chaddha e0af666e1c
Refactoring the directory structure based on protocols (#7137)
* moving http templates

* updated cves.json

* moved network CVEs

* updated scripts

* updated workflows

* updated requests to http

* replaced network to tcp

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-04-27 09:58:59 +05:30