Commit Graph

2674 Commits (0b3dac9a9da7b1418c8fa107be21eaeecb37783c)

Author SHA1 Message Date
Dhiyaneshwaran ed200ecad8
fixed-formatting 2023-01-23 09:52:06 +05:30
Cryptoc0nman e0c253202e
Create sound4-disclosure.yaml 2023-01-23 01:54:11 +05:30
Cryptoc0nman 86c69575b3
Create tikiwiki-xss.yaml 2023-01-23 00:58:22 +05:30
Cryptoc0nman 7480a83529
Create slims-xss.yaml 2023-01-23 00:30:48 +05:30
Cryptoc0nman ea6e61448d
Create alms-xss 2023-01-23 00:02:57 +05:30
Prince Chaddha a071c03a22 Merge branch 'patch-360' of https://github.com/pikpikcu/nuclei-templates 2023-01-20 18:47:21 +05:30
Ritik Chaddha c10f665af5
updated id, name, path and description 2023-01-18 12:48:27 +05:30
MostInterestingBotInTheWorld 643700ca28
Dashboard Content Enhancements (#6526)
Dashboard Content Enhancements
2023-01-16 12:41:15 -05:00
PikPikcU 63b54672b0
Update and rename vulnerabilities/thinkphp/thinkphp6-lang-lfi.yaml to cves/2022/CVE-2022-47945.yaml 2023-01-16 00:19:02 +07:00
GitHub Action c3bc305f3f Auto Generated CVE annotations [Sun Jan 15 06:48:30 UTC 2023] 🤖 2023-01-15 06:48:30 +00:00
Ritik Chaddha 4f22547b0f
Merge pull request #6511 from projectdiscovery/elastic-log4j-fix-fp
Update elasticsearch5-log4j-rce.yaml
2023-01-15 11:58:55 +05:30
Dhiyaneshwaran 8f99b72676
Update apache-solr-log4j-rce.yaml 2023-01-11 12:04:21 +05:30
Dhiyaneshwaran 60ecd5c167
Update elasticsearch5-log4j-rce.yaml 2023-01-11 11:53:35 +05:30
Ritik Chaddha 6a0fc2e6c8
Merge pull request #6421 from projectdiscovery/sni-addition
Sni Addition
2023-01-10 17:25:52 +05:30
Emre Kara 09504ab427
Wrong part name (#6482)
Part name should be "header" instead "location"
2023-01-08 00:30:41 +05:30
MostInterestingBotInTheWorld a89d7e99ba
Dashboard Content Enhancements (#6469)
Dashboard Content Enhancements
2023-01-05 09:57:06 -05:00
GitHub Action 997d941552 Auto Generated CVE annotations [Thu Jan 5 11:21:19 UTC 2023] 🤖 2023-01-05 11:21:19 +00:00
Dhiyaneshwaran 8d0acc447a
Update digital-ocean-ssrf.yaml 2022-12-23 23:27:17 +05:30
Dhiyaneshwaran a9d8abe0ec
Update amazon-ec2-ssrf.yaml 2022-12-23 23:26:07 +05:30
Dhiyaneshwaran ed26f07765
minor-update 2022-12-23 15:00:52 +05:30
Ritik Chaddha b0ca4271d7
Create thinkphp6-lang-lfi.yaml 2022-12-23 12:55:38 +05:30
Ritik Chaddha 4f99d40e0e
Merge pull request #6393 from projectdiscovery/digital-ocean-ssrf
Create digital-ocean-ssrf.yaml
2022-12-22 11:15:54 +05:30
Ritik Chaddha 2ed7357a2a
Merge pull request #6385 from projectdiscovery/amazon-ec2-ssrf
Create amazon-ec2-ssrf.yaml (IWCON)
2022-12-22 11:09:23 +05:30
Ritik Chaddha 916d86ecb5
Update digital-ocean-ssrf.yaml 2022-12-22 11:06:01 +05:30
Ritik Chaddha cacf0ef565
Update amazon-ec2-ssrf.yaml 2022-12-22 11:03:37 +05:30
Dhiyaneshwaran ab7f19491b
Create digital-ocean-ssrf.yaml 2022-12-20 10:51:20 +05:30
Dhiyaneshwaran dece342c21
Update amazon-ec2-ssrf.yaml 2022-12-18 22:23:05 +05:30
Dhiyaneshwaran 6b45d0be7a
Create amazon-ec2-ssrf.yaml 2022-12-18 19:53:30 +05:30
Prince Chaddha 1b4413709e
updated-tag 2022-12-16 23:18:35 +05:30
Ritik Chaddha d668920669
Update unauth-lfd-zhttpd.yaml 2022-12-16 08:41:31 +05:30
Dhiyaneshwaran 87d7bde9df
Update unauth-lfd-zhttpd.yaml 2022-12-16 00:42:12 +05:30
Dhiyaneshwaran 13f9a338d3
minor-update-fix-fp 2022-12-16 00:31:01 +05:30
EvergreenCartoons 33afc71bb2
fucking yamllint doing me over 2022-12-15 13:40:38 +00:00
EvergreenCartoons ee562e420d
Create zyxel-exportlog-lfd.yaml 2022-12-15 13:32:26 +00:00
MostInterestingBotInTheWorld 03c2ef2391
Dashboard Content Enhancements (#6358)
Dashboard Content Enhancements
2022-12-13 15:36:48 -05:00
Dhiyaneshwaran 4cfacf2028
Merge pull request #6337 from pect0ral/master
Added Profile header for additional WAP coverage on CJServer hosts
2022-12-12 23:16:01 +05:30
Dhiyaneshwaran 74eba669f3
Update qibocms-file-download.yaml 2022-12-12 22:48:05 +05:30
Ritik Chaddha 27a5c1b9c1
Update qibocms-file-download.yaml 2022-12-12 22:42:18 +05:30
Ritik Chaddha e5398d06d1
Update qibocms-file-download.yaml 2022-12-12 22:40:15 +05:30
Abhinav Gaur 221b253406
Create qibocms-file-download.yaml 2022-12-12 21:06:09 +05:30
M4rtin Hsu 1574d7d589
VMware NSX Manager XStream Pre-authenticated RCE (#6295)
* Added CVE-2022-37042 Template

* misc updates

* Added vmware-nsx-stream-rce Template

* Update vmware-nsx-stream-rce.yaml

* misc update

* added fofa query

* Update and rename vulnerabilities/vmware/vmware-nsx-stream-rce.yaml to cves/2021/CVE-2021-39144.yaml

* Update CVE-2021-39144.yaml

* Update CVE-2021-39144.yaml

* Update and rename cves/2021/CVE-2021-39144.yaml to vulnerabilities/vmware/vmware-nsx-stream-rce.yaml

* Update vmware-nsx-stream-rce.yaml

* Update vmware-nsx-stream-rce.yaml

* format update

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
Co-authored-by: Dhiyaneshwaran <leedhiyanesh@gmail.com>
Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2022-12-11 15:49:35 +05:30
Mike Piekarski 2e9ba680a7 Added Profile header for additional WAP coverage on CJServer hosts 2022-12-10 17:42:58 -05:00
Sandeep Singh ec5168def8
fix: redirect template update (#6329) 2022-12-10 20:12:59 +05:30
Ritik Chaddha e1965b05b2
Merge pull request #6258 from SleepingBag945/new-template-nps-auth-bypass
Added nps-auth-bypass
2022-12-09 14:35:35 +05:30
Ritik Chaddha 4de98de0c2
Update nps-auth-bypass.yaml 2022-12-09 14:33:49 +05:30
Ritik Chaddha f29e0c8c4b
Merge pull request #6201 from pdelteil/patch-117
Update apache-solr-file-read.yaml
2022-12-08 14:53:37 +05:30
Ritik Chaddha c5d280b359
Update apache-solr-file-read.yaml 2022-12-08 14:42:36 +05:30
Dhiyaneshwaran e2429ca6a4
Merge pull request #6256 from c3l3si4n/master
added Reflected XSS for ZendFramework1
2022-12-07 23:02:48 +05:30
Ritik Chaddha a033b96ceb
Update zend-v1-xss.yaml 2022-12-07 19:22:26 +05:30
Ritik Chaddha f417ca8a2b
Update zend-v1-xss.yaml 2022-12-07 18:23:56 +05:30
GitHub Action 972bafe93e Auto Generated CVE annotations [Wed Dec 7 09:42:26 UTC 2022] 🤖 2022-12-07 09:42:26 +00:00
Sandeep Singh b48c05dc27
Added Template Checksum generator (#6283)
* Added Template Checksum generator

* fixed lint errors
2022-12-07 14:54:33 +05:30
Dhiyaneshwaran 4500d5e374
Rename wp-related-post-xss to wp-related-post-xss.yaml 2022-12-07 14:41:03 +05:30
Dhiyaneshwaran 948f05204c
Update nps-auth-bypass.yaml 2022-12-07 10:55:13 +05:30
Dhiyaneshwaran 9cfebe489b
Update nps-auth-bypass.yaml 2022-12-07 10:49:50 +05:30
Ritik Chaddha b04feae9ca
Update zend-v1-xss.yaml 2022-12-06 14:31:05 +05:30
SleepingBag945 af11412622 Added nps-auth-bypass 2022-12-06 16:52:23 +08:00
Celesian 84a48a61ad added XSS for ZendFramework1 2022-12-06 05:13:46 -03:00
Prince Chaddha 61d8f37cca
Update open-redirect.yaml 2022-12-02 13:03:13 +05:30
Dhiyaneshwaran 11b94a1f5a
Update apache-solr-file-read.yaml 2022-12-02 09:32:17 +05:30
Dhiyaneshwaran fd270d85f6
Update apache-solr-file-read.yaml 2022-12-02 09:31:15 +05:30
Dhiyaneshwaran c8b5033ccc
Update apache-solr-file-read.yaml 2022-12-02 09:21:51 +05:30
Dhiyaneshwaran 0384b0d51d
Update apache-solr-file-read.yaml 2022-12-02 09:13:23 +05:30
Dhiyaneshwaran a37abb4401
Update apache-solr-file-read.yaml 2022-12-02 09:12:05 +05:30
Philippe Delteil 843264155b
Update apache-solr-file-read.yaml
1. The added GET request triggers a file local read on Windows OS. 
2. Matcher added to the Response trigger by 1. 
3. Matcher for other cases (Errors, ie. not found path)
2022-12-01 18:51:21 -05:00
Dhiyaneshwaran a7dfed84ef
Merge pull request #6159 from arafatansari/patch-112
Create wp-related-post-xss
2022-12-01 12:53:45 +05:30
Ritik Chaddha 46dcb9ee92
Update wp-related-post-xss 2022-11-29 19:09:35 +05:30
Dhiyaneshwaran e5a63cf26a
Merge pull request #6174 from pdelteil/patch-111
Rename tikiwiki-json-rpc.yaml to kiwitcms-json-rpc.yaml
2022-11-29 11:32:03 +05:30
Dhiyaneshwaran 0cc2b7b562
Merge pull request #6173 from pdelteil/patch-110
Update nuuo-nvrmini2-rce.yaml
2022-11-29 11:28:26 +05:30
Dhiyaneshwaran 8dfea46220
Merge pull request #6176 from pdelteil/patch-113
Rename vulnerabilities/other/devalcms-xss.yaml to cves/2008/CVE-2008-…
2022-11-29 11:25:35 +05:30
Dhiyaneshwaran 516f3fc0c0
Merge pull request #6172 from pdelteil/patch-109
Rename icewarp-openredirects.yaml to icewarp-open-redirect.yaml
2022-11-29 11:16:40 +05:30
Philippe Delteil 688b56b5df
Rename vulnerabilities/other/devalcms-xss.yaml to cves/2008/CVE-2008-6982.yaml 2022-11-29 00:38:16 -05:00
Philippe Delteil 8b4e280c02
Rename tikiwiki-json-rpc.yaml to kiwitcms-json-rpc.yaml
- Incorrect file name (tikiwiki vs Kiwi TCMS). 
- Matching filename + id.
2022-11-29 00:28:22 -05:00
Philippe Delteil 9c2c3d964b
Update nuuo-nvrmini2-rce.yaml
filename + id matching
2022-11-29 00:24:14 -05:00
Philippe Delteil 3458bcabd9
Rename icewarp-openredirects.yaml to icewarp-open-redirect.yaml
id + filename matching
2022-11-29 00:22:34 -05:00
Philippe Delteil 5bdb492bac
Update comtrend-password-exposure.yaml
Corrected typo -> match id with filename.
2022-11-29 00:16:28 -05:00
GitHub Action 9f60094d84 Auto Generated CVE annotations [Mon Nov 28 08:04:24 UTC 2022] 🤖 2022-11-28 08:04:24 +00:00
Arafat Ansari e93a5a87f6
Create wp-related-post-xss 2022-11-27 12:41:16 +05:30
Prince Chaddha 335f78adc0
Merge pull request #6137 from projectdiscovery/wptouch-xss
Create wptouch-xss.yaml
2022-11-26 22:16:14 +05:30
Prince Chaddha 2b411ebf9d
Merge pull request #4292 from ritikchaddha/patch-40
Create inspur-clusterengine-v4-sysshell-rce.yaml
2022-11-25 13:25:49 +05:30
Prince Chaddha 66681f4dae
Update and rename inspur-clusterengine-v4-sysshell-rce.yaml to inspur-clusterengine-rce.yaml 2022-11-25 13:03:26 +05:30
Ritik Chaddha e4d91857c9
Update wptouch-xss.yaml 2022-11-24 10:01:36 +05:30
Ritik Chaddha 2292877e42
Create wptouch-xss.yaml 2022-11-24 10:00:35 +05:30
GitHub Action 8297d3d8b4 Auto Generated CVE annotations [Tue Nov 22 04:51:59 UTC 2022] 🤖 2022-11-22 04:51:59 +00:00
Philippe Delteil 1028e0f889
Update crlf-injection.yaml
added hackerone report as reference.
2022-11-21 23:14:21 -05:00
Ritik Chaddha b3500789fe
Update wuzhicms-sqli.yaml 2022-11-17 17:08:30 +05:30
Ritik Chaddha a5af14982f
Update wuzhicms-sqli.yaml 2022-11-17 17:02:33 +05:30
Y4er 478db30e9f
Update wuzhicms-sqli.yaml
fix bug
2022-11-17 14:25:13 +08:00
Dhiyaneshwaran 76f4201b95
Update vmware-hcx-log4j.yaml 2022-11-15 15:18:17 +05:30
Thibault Soubiran 331394d36c Fix jenkin typos 2022-11-13 21:54:52 +01:00
sandeep ebe7268c3f Added OpenCPU RCE Template
Co-Authored-By: wa1tf0r.me <92214233+euro-phd@users.noreply.github.com>
2022-11-13 21:36:32 +05:30
GitHub Action 961ee225f5 Auto Generated CVE annotations [Fri Nov 11 16:43:11 UTC 2022] 🤖 2022-11-11 16:43:11 +00:00
Prince Chaddha 3847203748
Merge pull request #5939 from projectdiscovery/generic-phpinfo-matchers
generic phpinfo matchers
2022-11-11 20:25:48 +05:30
MostInterestingBotInTheWorld 942f8fc305
Dashboard Content Enhancements (#5943)
Dashboard Content Enhancements
2022-11-08 15:55:31 -05:00
Prince Chaddha f62d4f09aa
Update core-chuangtian-cloud-rce.yaml 2022-11-02 18:54:27 +05:30
Prince Chaddha 69596d5341
Update seacms-rce.yaml 2022-11-02 18:52:01 +05:30
Prince Chaddha 81123b89ea
Update seacms-rce.yaml 2022-11-02 18:50:37 +05:30
Prince Chaddha 2a580638a3
Update thinkphp-501-rce.yaml 2022-11-02 18:47:41 +05:30
Prince Chaddha 2496b86eea
Update thinkphp-509-information-disclosure.yaml 2022-11-02 18:39:28 +05:30
Prince Chaddha a3f01fc9a3
Delete ruijie-networks-rce.yaml 2022-11-01 18:55:12 +05:30
Prince Chaddha c0a00cde10
Update steve-xss.yaml 2022-10-28 19:44:06 +05:30
Ritik Chaddha 09a119584e
Rename steve-xss-noauth.yaml to steve-xss.yaml 2022-10-27 00:20:39 +05:30
Ritik Chaddha f554be63b5
Update steve-xss-noauth.yaml 2022-10-26 22:29:39 +05:30
clem9669 2a20e69976
Create steve-xss-noauth.yaml 2022-10-26 16:09:38 +00:00
GitHub Action 2bc756b7e1 Auto Generated CVE annotations [Tue Oct 25 14:05:39 UTC 2022] 🤖 2022-10-25 14:05:39 +00:00
Prince Chaddha 9ed84adaa6 fix-conflict 2022-10-25 19:10:49 +05:30
Prince Chaddha dc21ca4bce
Merge pull request #5494 from projectdiscovery/xenmobile-server-log4j
Create xenmobile-server-log4j.yaml
2022-10-21 16:12:02 +05:30
GitHub Action ef50a5c534 Auto Generated CVE annotations [Fri Oct 21 10:28:44 UTC 2022] 🤖 2022-10-21 10:28:44 +00:00
Prince Chaddha c586ccf80b
Merge pull request #5750 from shivampand3y/patch-1
Create aerocms-sqli.yaml
2022-10-21 15:39:50 +05:30
Dhiyaneshwaran fd196d9159
Update xenmobile-server-log4j.yaml 2022-10-21 14:04:41 +05:30
Prince Chaddha b88af7cb01
Delete jamf-pro-log4j.yaml 2022-10-21 14:01:53 +05:30
Prince Chaddha db9c08e2d5
Rename vulnerabilities/log4j/jamf-pro-log4j-rce.yaml to vulnerabilities/apache/log4j/jamf-pro-log4j-rce.yaml 2022-10-21 14:01:23 +05:30
Prince Chaddha e6029be860
Create jamf-pro-log4j-rce.yaml 2022-10-21 13:59:33 +05:30
Prince Chaddha bb066bd79f
Merge pull request #5744 from projectdiscovery/fix-fp-vmware-siterecovery-log4j-rce
Update vmware-siterecovery-log4j-rce.yaml
2022-10-21 13:42:23 +05:30
Prince Chaddha f3021b97af
Merge pull request #5743 from projectdiscovery/fix-fp-vmware-operation-manager-log4j
Update vmware-operation-manager-log4j.yaml
2022-10-21 13:39:56 +05:30
Prince Chaddha a3c81d7df1
Merge pull request #5742 from projectdiscovery/fix-fp-graylog-log4j
Update graylog-log4j.yaml
2022-10-21 13:38:38 +05:30
Prince Chaddha 47e2557bbd
Merge pull request #5741 from projectdiscovery/fix-fp-jamf-log4j-jndi-rce
Update jamf-log4j-jndi-rce.yaml
2022-10-21 13:36:55 +05:30
Prince Chaddha 2cc6587ba9
Merge pull request #5740 from projectdiscovery/fix-fp-mobileiron-log4j-jndi-rce
Update mobileiron-log4j-jndi-rce.yaml
2022-10-21 13:35:31 +05:30
Prince Chaddha 7d0ede17b3
Merge pull request #5739 from projectdiscovery/fix-fp-cisco-vmanage-log4j
Update cisco-vmanage-log4j.yaml
2022-10-21 13:31:13 +05:30
Ritik Chaddha 054f0c4872
Update aerocms-sqli.yaml 2022-10-20 12:59:46 +05:30
Ritik Chaddha dced04fd39
Update aerocms-sqli.yaml 2022-10-20 12:45:34 +05:30
shivampand3y 9fe5faac71
Create aerocms-sqli.yaml 2022-10-20 12:23:03 +05:30
Dhiyaneshwaran fcc232c77d
Update vmware-siterecovery-log4j-rce.yaml 2022-10-20 03:13:37 +05:30
Dhiyaneshwaran 851ecc1685
Update vmware-operation-manager-log4j.yaml 2022-10-20 03:08:41 +05:30
GitHub Action 3e72210539 Auto Generated CVE annotations [Wed Oct 19 21:30:41 UTC 2022] 🤖 2022-10-19 21:30:41 +00:00
Dhiyaneshwaran 8a8cc79de1
Update graylog-log4j.yaml 2022-10-20 02:59:52 +05:30
Dhiyaneshwaran 214d2c50ed
Update jamf-log4j-jndi-rce.yaml 2022-10-20 02:55:05 +05:30
MostInterestingBotInTheWorld 0b1a79f39d
Dashboard Content Enhancements (#5704)
Dashboard Content Enhancements
2022-10-19 17:11:27 -04:00
Dhiyaneshwaran 4eff79955e
Update mobileiron-log4j-jndi-rce.yaml 2022-10-20 02:38:01 +05:30
Dhiyaneshwaran 00acbe2bbb
Update cisco-vmanage-log4j.yaml 2022-10-20 02:30:56 +05:30
Prince Chaddha 2a411bef99
Merge pull request #5734 from projectdiscovery/fix-fp-rundeck-log4j
Update rundeck-log4j.yaml
2022-10-19 22:48:46 +05:30
Prince Chaddha 1e62e0720b
Merge pull request #5733 from projectdiscovery/fix-fp-metabase-log4j
Update metabase-log4j.yaml
2022-10-19 22:44:00 +05:30
Dhiyaneshwaran 499432b36a
Update rundeck-log4j.yaml 2022-10-19 17:43:25 +05:30
Dhiyaneshwaran 0b345ce6c7
Update metabase-log4j.yaml 2022-10-19 16:44:22 +05:30
Prince Chaddha 04846d28d2
Update vmware-nsx-log4j.yaml 2022-10-19 16:30:06 +05:30
Dhiyaneshwaran 6d591d01c4
Update vmware-nsx-log4j.yaml 2022-10-19 16:15:30 +05:30
Joshua Rogers 86bb38b96d
Fix typo in unaunthenticated-jenkin.yaml (#5724)
* Fix typo in unaunthenticated-jenkin.yaml

* Rename unaunthenticated-jenkin.yaml to unauthenticated-jenkins.yaml
2022-10-19 03:54:33 +05:30
Prince Chaddha c6cc78bcf1
Delete omnia-mpx-lfi.yaml 2022-10-17 13:03:17 +05:30
Prince Chaddha 75fdd023c5
Update flatpress-xss.yaml 2022-10-14 17:13:39 +05:30
Ritik Chaddha 2411426ed1
Update flatpress-xss.yaml 2022-10-14 11:41:59 +05:30
Ritik Chaddha 1878bae200
Update flatpress-xss.yaml 2022-10-13 16:26:36 +05:30
Arafat Ansari e4682184c2
Update flatpress-xss.yaml 2022-10-13 16:12:51 +05:30
Arafat Ansari ed83463ff3
Create flatpress-xss.yaml 2022-10-13 16:11:15 +05:30
GitHub Action 3fba7301e0 Auto Generated CVE annotations [Wed Oct 12 10:44:42 UTC 2022] 🤖 2022-10-12 10:44:42 +00:00
Prince Chaddha fa56e9eca9
Update vmware-operation-manager-log4j.yaml 2022-10-12 15:01:48 +05:30
Prince Chaddha 714813c445
Update vmware-hcx-log4j.yaml 2022-10-12 15:01:02 +05:30
Prince Chaddha 8be5694398
Update jamf-pro-log4j.yaml 2022-10-12 15:00:26 +05:30
Prince Chaddha fe3921231f
Update graylog-log4j.yaml 2022-10-12 14:59:44 +05:30
Prince Chaddha 9dccfb90ae
Update cisco-unified-communications-log4j.yaml 2022-10-12 14:59:13 +05:30
Prince Chaddha bf451ad15a
Update vmware-nsx-log4j.yaml 2022-10-12 14:58:33 +05:30