Commit Graph

1145 Commits (165b2c74747b08ddea58be5f38ba14324f9cc149)

Author SHA1 Message Date
Ritik Chaddha 751a53c45c
Create CVE-2021-24956.yaml 2023-08-23 23:12:32 +05:30
Dhiyaneshwaran 9c64056ccf
Create CVE-2022-47615.yaml 2023-08-23 23:02:09 +05:30
Ritik Chaddha 7e53eed7dc
updated protocol 2023-08-23 22:47:11 +05:30
Ritik Chaddha 61f960a3bf
Update CVE-2023-3936.yaml 2023-08-23 22:39:04 +05:30
Dhiyaneshwaran 6372949eee
remove hardcoded 2023-08-23 22:38:12 +05:30
Ritik Chaddha 8ef36715e3
updated matcher/req/path&info 2023-08-23 22:36:12 +05:30
Dhiyaneshwaran 091f576f6b
added matchers-condition 2023-08-23 12:32:23 +05:30
Dhiyaneshwaran af7eca0d3e
Create CVE-2023-39141.yaml 2023-08-23 12:30:27 +05:30
Ritik Chaddha 842de5f2fc
Merge pull request #7915 from j4vaovo/main-1
fix CVE-2022-31879 (false-positive)
2023-08-22 16:51:20 +05:30
Ritik Chaddha b44c76cad5
Merge pull request #8041 from projectdiscovery/princechaddha-patch-3
Fixed FP - CVE-2020-28185
2023-08-22 16:51:01 +05:30
Ritik Chaddha 458de8e58d
Update CVE-2022-31879.yaml 2023-08-22 16:48:17 +05:30
pussycat0x e4ff5ea75e
Merge pull request #8051 from projectdiscovery/CVE-2021-41460
Create CVE-2021-41460.yaml
2023-08-22 13:59:16 +05:30
pussycat0x 4a87140662
Merge pull request #8039 from projectdiscovery/CVE-2019-1898
Create CVE-2019-1898.yaml
2023-08-22 13:32:12 +05:30
Ritik Chaddha 1d03cfdde5
added and condition 2023-08-22 12:13:25 +05:30
Ritik Chaddha 65e4f75100
Create CVE-2021-41460.yaml 2023-08-22 10:38:38 +05:30
Prince Chaddha 91339e0177
Fixed FP - CVE-2020-28185 2023-08-21 21:43:48 +05:30
Dhiyaneshwaran 05ba671508
Create CVE-2019-1898.yaml 2023-08-21 21:18:36 +05:30
Dhiyaneshwaran fdec38604c
remove kev 2023-08-21 19:13:44 +05:30
Dhiyaneshwaran cf698f7907
Update CVE-2023-35082.yaml 2023-08-21 19:13:19 +05:30
Dhiyaneshwaran ce775b4722
Update CVE-2023-39143.yaml 2023-08-21 19:12:47 +05:30
Prince Chaddha b45bd30dde
Create CVE-2023-20073.yaml 2023-08-21 08:31:17 +05:30
pussycat0x e6bf205cdf
Merge pull request #8009 from adrlsx/main
fix: templates with generic tag should not depend on specific tech
2023-08-19 13:57:28 +05:30
pussycat0x f2b8e85198
Merge pull request #7947 from harsh2403/main-4
Create CVE-2022-1756.yaml
2023-08-19 13:57:11 +05:30
pussycat0x e431b55d95 minor - update 2023-08-19 13:48:57 +05:30
pussycat0x fc81c11a0f
Merge pull request #8003 from projectdiscovery/CVE-2022-39986
Create CVE-2022-39986.yaml (RaspAP 2.8.7 - RCE)
2023-08-19 13:23:12 +05:30
mastercho 020f397cad Fixed naming of apmarketplace, fixed old CVE from medium to lowand added another sqli prestashop 2023-08-19 02:19:47 +03:00
mastercho cb8cbac9df Revert "Added/Fixed/Updated XXX Template"
This reverts commit dd08abe04e.

wrong commit message
2023-08-19 02:15:25 +03:00
mastercho dd08abe04e Added/Fixed/Updated XXX Template 2023-08-19 02:14:45 +03:00
adrlsx 7258c81775 fix: templates with generic tag should not depend on specific tech 2023-08-18 18:23:19 +02:00
Dhiyaneshwaran 29a2bb4471
body_2 2023-08-18 21:39:23 +05:30
Dhiyaneshwaran 93ff151bb9
revert changes 2023-08-18 21:36:49 +05:30
pentesttools-com 38eafd33a2
Modified reference format from string to list to match the remaining cve modules (#8006) 2023-08-18 17:48:01 +05:30
Dhiyaneshwaran 1cf8f26c6f
Create CVE-2022-39986.yaml 2023-08-18 16:01:22 +05:30
Dhiyaneshwaran f8931e8381 nvd description updated 2023-08-18 13:30:45 +05:30
pentesttools-com daba6e2efb
Merge branch 'projectdiscovery:main' into add-missing-descriptions-cves 2023-08-18 10:47:36 +03:00
pentesttools-com 3edf136ea4
Added description fields for CVE-2021-44139 CVE-2023-38205 CVE-2023-34960 2023-08-18 10:46:53 +03:00
Dhiyaneshwaran 56780f8f72
spacing 2023-08-18 10:33:49 +05:30
momika233 592d9d1a4b
Merge branch 'projectdiscovery:main' into main 2023-08-18 13:03:42 +08:00
Dhiyaneshwaran b04b1de4d0
Update CVE-2021-41773.yaml 2023-08-17 18:38:41 +05:30
Dhiyaneshwaran 3ed60c2d8c
changes 2023-08-17 18:37:35 +05:30
Dhiyaneshwaran 0a51273b76 fix template 2023-08-17 18:36:07 +05:30
Yoyoda75 6529cfe9de
Move back CVE-2015-9323.yaml to the 2015 directory 2023-08-17 14:57:09 +02:00
Dhiyaneshwaran b60230b423
fix template with remediation 2023-08-17 14:42:24 +05:30
Harsh Yadav d61d1513d1
Create CVE-2022-1756.yaml 2023-08-17 13:19:11 +05:30
Dhiyaneshwaran 2dea3f4a44 remove version detection templates 2023-08-17 12:30:13 +05:30
Dhiyaneshwaran 59407bc0cd
Merge branch 'main' into cve-2022-46463 2023-08-16 21:52:30 +05:30
Dhiyaneshwaran da721be768
trail space fix 2023-08-16 15:18:48 +05:30
Dhiyaneshwaran de378a520a
fix it bro 2023-08-16 15:14:58 +05:30
Dhiyaneshwaran f2e033df45
trailspace fix please 2023-08-16 15:07:30 +05:30
Dhiyaneshwaran 0907a448be
classification added 2023-08-16 14:58:32 +05:30
Dhiyaneshwaran 83e0faedc1
fix trailspace and metadata 2023-08-16 14:52:52 +05:30
Dhiyaneshwaran c424ca1c83
Rename CVE-2021-25065 to CVE-2021-25065.yaml 2023-08-16 14:47:39 +05:30
Arm!tage 94a06bd2fe add cve-2022-46463 2023-08-16 16:57:23 +08:00
Arm!tage ff554bd551 add cve-2022-46463.yaml 2023-08-16 16:46:20 +08:00
pussycat0x 2dbbc20a53
Merge pull request #7927 from harsh2403/CVE-2015-9323
Create CVE-2015-9323.yaml
2023-08-16 11:36:31 +05:30
pussycat0x 5d6d00a53e
Merge pull request #7929 from harsh2403/main-2
Create CVE-2021-25065
2023-08-16 11:25:06 +05:30
pussycat0x 75d104dca2 Update CVE-2021-25065 2023-08-16 11:22:57 +05:30
pussycat0x 26a4991b30
Merge pull request #7931 from johnk3r/main
Update CVE-2021-36260.yaml :: Suggestion to avoid FN
2023-08-16 11:19:32 +05:30
Dhiyaneshwaran 4847c5e616
added remediation and matcher fix 2023-08-16 10:42:57 +05:30
Dhiyaneshwaran e42ab01dbf
rewrote template and matcher update 2023-08-16 10:35:23 +05:30
Dhiyaneshwaran 2d601c36d4
added metadata 2023-08-16 09:43:54 +05:30
momika233 aba8f08315
Add files via upload 2023-08-16 00:50:26 +08:00
momika233 d3affcfbfa
Add files via upload 2023-08-16 00:37:28 +08:00
Ritik Chaddha 8ab24a01b5
updated matcher 2023-08-15 21:09:25 +05:30
johnk3r 7db62fb59d
Update CVE-2021-36260.yaml 2023-08-14 22:57:12 -03:00
Harsh Yadav cf8a208fe7
Create CVE-2021-25065 2023-08-14 17:59:50 +05:30
Ritik Chaddha 779dd20417
lint fix 2023-08-14 17:24:30 +05:30
Ritik Chaddha de738633ef
lint fix 2023-08-14 17:23:35 +05:30
Harsh Yadav 6e325b7fc7
Create CVE-2021-24409.yaml 2023-08-14 17:00:37 +05:30
Harsh Yadav 9dbf7f288c
Create CVE-2015-9323.yaml 2023-08-14 16:39:55 +05:30
Dhiyaneshwaran f786c1b2ae
added and condition for status code 2023-08-14 10:39:29 +05:30
J4vaovo a0eaa1db71
Update CVE-2022-31879.yaml 2023-08-13 10:04:23 +08:00
Prince Chaddha 9ef2b2a9c6
Update CVE-2019-15642.yaml 2023-08-13 06:03:31 +05:30
Dhiyaneshwaran f6c1088240
Lexmark Command Injection ZDI-CAN-19470 Pwn2Own Toronto 2022 🔥 (#7910)
* Create CVE-2023-26067.yaml

* cmd exec check + better matchers

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-08-12 23:15:00 +05:30
J4vaovo 9571447984
Update CVE-2022-31879.yaml 2023-08-12 16:18:49 +08:00
Walter Sagehorn 6687a699f1
Fixes incorrect tag in CVE-2020-28185
TerraMaster TOS < 4.2.06 - User Enumeration
2023-08-11 11:54:13 -05:00
Ritik Chaddha 474db1293e
Create CVE-2021-22707.yaml 2023-08-10 12:00:57 +05:30
GitHub Action 23203f762e TemplateMan Update [Thu Aug 10 06:15:29 UTC 2023] 🤖 2023-08-10 06:15:29 +00:00
Dhiyaneshwaran de6be72170
Merge pull request #7577 from harsh2403/patch-13
Create CVE-2022-46443.yaml
2023-08-10 11:43:36 +05:30
pussycat0x 864154f8a5
Merge pull request #7889 from momika233/main
CVE-2023-4174/CVE-2023-4173/TerraMaster-RCE/panabit-ixcache-date-config-rce
2023-08-10 11:27:53 +05:30
Dhiyaneshwaran 4e03d0623b
Merge pull request #7903 from projectdiscovery/pussycat0x-patch-2
CVE-2017-8229
2023-08-10 11:26:50 +05:30
Dhiyaneshwaran 7316145d48
fix template 2023-08-10 11:23:25 +05:30
GitHub Action 898e10e861 TemplateMan Update [Thu Aug 10 05:39:25 UTC 2023] 🤖 2023-08-10 05:39:26 +00:00
Dhiyaneshwaran ba4d8d7a92
Merge pull request #7894 from projectdiscovery/pussycat0x-patch-4
Webmin < 1.920 - Authenticated Remote Code Execution
2023-08-10 11:07:29 +05:30
Dhiyaneshwaran eac5ff1e58
added stop-at-first match 2023-08-10 11:03:58 +05:30
pussycat0x 286322049d
Add files via upload 2023-08-10 10:48:14 +05:30
pussycat0x e58f84bf60
Update CVE-2019-15642.yaml 2023-08-10 10:15:43 +05:30
GitHub Action 44b57daf35 TemplateMan Update [Wed Aug 9 20:42:51 UTC 2023] 🤖 2023-08-09 20:42:52 +00:00
E1A 16d188bc0d
CVE-2022-24384.yaml (#7900)
* CVE-2017-7925.yaml

Research done and updated template after issue: https://github.com/projectdiscovery/nuclei-templates/issues/5639

* Update CVE-2017-7925.yaml

* Update CVE-2017-7925.yaml

* improved matcher + metadata + extractor

* removing duplicate template

* Add files via upload

* misc update

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-08-10 02:10:58 +05:30
pussycat0x dfcb2fbfdc
Update CVE-2019-15642.yaml 2023-08-09 18:59:21 +05:30
pussycat0x 09dd6dd409
Webmin < 1.920 - Authenticated Remote Code Execution 2023-08-09 17:28:16 +05:30
Ritik Chaddha f1be164d40
updated matcher 2023-08-09 14:00:30 +05:30
GitHub Action 9a1cc98726 TemplateMan Update [Wed Aug 9 07:49:29 UTC 2023] 🤖 2023-08-09 07:49:30 +00:00
Ritik Chaddha 968a843e20
updated matcher 2023-08-09 13:10:41 +05:30
Dhiyaneshwaran d836e594ad
fix template 2023-08-09 13:08:58 +05:30
Dhiyaneshwaran cbffe81504 re-wrote template 2023-08-09 02:32:42 +05:30
pussycat0x ec72aec7f6
TerraMaster TOS - User Enumeration 2023-08-08 15:05:46 +05:30
Prince Chaddha 6bb83d5e60
Update CVE-2021-1497.yaml 2023-08-08 04:02:14 +05:30
Dhiyaneshwaran eafd9a63f0
minor update 2023-08-07 23:54:36 +05:30
Ritik Chaddha e182b29424
Create CVE-2018-7653.yaml 2023-08-07 23:25:47 +05:30
Ritik Chaddha 130a619ce5
Merge pull request #7823 from projectdiscovery/CVE-2019-7192
Create CVE-2019-7192.yaml (KEV) 🔥
2023-08-07 23:15:14 +05:30
Ritik Chaddha c5910c4472
Merge pull request #7821 from projectdiscovery/CVE-2018-18809
Create CVE-2018-18809.yaml (KEV) 🔥
2023-08-07 23:15:01 +05:30
Ritik Chaddha 69176f6a5b
Merge pull request #7841 from projectdiscovery/CVE-2018-12909
Create CVE-2018-12909.yaml
2023-08-07 23:13:32 +05:30
Ritik Chaddha 29669603b3
Merge pull request #7845 from projectdiscovery/CVE-2023-22480
Create CVE-2023-22480.yaml (KubeOperator Foreground kubeconfig Download) 🔥
2023-08-07 23:13:23 +05:30
Ritik Chaddha e29eb31846
updated info 2023-08-07 23:11:05 +05:30
Ritik Chaddha 7110eed3a7
Update CVE-2019-7192.yaml 2023-08-07 23:07:30 +05:30
Ritik Chaddha b382f7691c
updated matcher & info 2023-08-07 22:55:27 +05:30
Ritik Chaddha c281a1dc55
updated info 2023-08-07 22:53:08 +05:30
Dhiyaneshwaran ff474e87f5
fix headers -> header 2023-08-07 21:27:41 +05:30
pussycat0x f6c6e23235
Merge pull request #7824 from projectdiscovery/CVE-2019-16057
Create CVE-2019-16057.yaml (KEV) 🔥
2023-08-07 20:06:55 +05:30
pussycat0x 59d0d4f488
Merge pull request #7848 from projectdiscovery/CVE-2022-2414
Create CVE-2022-2414.yaml (FreeIPA XXE) 🔥
2023-08-07 19:41:16 +05:30
pussycat0x 6dd47c914d
Merge pull request #7847 from projectdiscovery/CVE-2023-22478
Create CVE-2023-22478.yaml (KubePi <= v1.6.4 LoginLogsSearch)
2023-08-07 19:35:43 +05:30
Dhiyaneshwaran 7e13f06c1f
Merge pull request #7861 from projectdiscovery/reference-fix
reference fix
2023-08-07 16:09:18 +05:30
Dhiyaneshwaran 1e8df323d2
Merge pull request #7846 from numanturle/CVE-2023-39120
Create CVE-2023-39120.yaml
2023-08-07 16:07:53 +05:30
Dhiyaneshwaran 7c2776114f
reference fix
83bf20510f (diff-4ac5b144d339b0b2e)[…]de2f270e0b84a65a120712 ctrl+ f search for CVE-2020-10199
2023-08-07 15:37:30 +05:30
Dhiyaneshwaran b58932e9c4
updated matcher and added metadata 2023-08-07 13:49:40 +05:30
Dhiyaneshwaran 3793c853fd
Create CVE-2023-39143.yaml (PaperCut Path Traversal Detection) KEV 🔥 (#7857)
* Create CVE-2023-39143.yaml

* added kev reference

* Fix FP and Match only against PaperCut

* updated to use dsl matchers

* classification update

* updated name

* misc update

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
Co-authored-by: Ritik Chaddha <44563978+ritikchaddha@users.noreply.github.com>
2023-08-06 22:51:19 +05:30
numan 6ae1c5e514
Update CVE-2023-39120.yaml
fix typo
2023-08-05 13:38:40 +03:00
Dhiyaneshwaran 7510a36c1c
trail space fix 2023-08-05 15:37:45 +05:30
Dhiyaneshwaran 91fe10fa9d
Create CVE-2022-2414.yaml 2023-08-05 15:26:39 +05:30
Dhiyaneshwaran fda5981960
Create CVE-2023-22478.yaml 2023-08-05 14:33:01 +05:30
numan eee628ac8a
Create CVE-2023-39120.yaml 2023-08-05 11:48:31 +03:00
Dhiyaneshwaran 4d1578d6e7
Create CVE-2023-22480.yaml 2023-08-05 14:16:12 +05:30
Dhiyaneshwaran 2e5d01e24d
Create CVE-2018-12909.yaml 2023-08-05 12:59:56 +05:30
Dhiyaneshwaran 5cfac72c37
fix false positive 2023-08-05 11:19:00 +05:30
Dhiyaneshwaran 8071fc93ca
fix update matcher 2023-08-04 13:38:10 +05:30
Ritik Chaddha cedff9d874
Update FP CVE-2021-24472.yaml 2023-08-04 12:14:56 +05:30
Dhiyaneshwaran 8a19066596
trail space fix 2023-08-04 11:54:37 +05:30
Dhiyaneshwaran 779ac108c3
Create CVE-2019-16057.yaml 2023-08-04 11:50:51 +05:30
Dhiyaneshwaran b737085039
fix mapping values 2023-08-04 11:11:07 +05:30
Dhiyaneshwaran 554ec6d543
Create CVE-2019-7192.yaml 2023-08-04 11:00:54 +05:30
Dhiyaneshwaran 555b2c97b7
Create CVE-2018-18809.yaml 2023-08-04 04:54:34 +05:30
Dhiyaneshwaran eba1d1ce83
Create CVE-2023-35082.yaml 2023-08-03 21:50:05 +05:30
Ritik Chaddha f31286d8f7
lint fix 2023-08-02 14:12:07 +05:30
Ritik Chaddha 247ac7624b
Create CVE-2022-0169.yaml 2023-08-02 14:09:49 +05:30
Ritik Chaddha 133f18eca9
Merge pull request #7789 from projectdiscovery/CVE-2023-1698
Create CVE-2023-1698.yaml
2023-08-02 13:50:28 +05:30
Ritik Chaddha 580c51dbc2
updated matcher 2023-08-02 13:47:13 +05:30
pussycat0x 85ce257f9f
Merge pull request #7787 from projectdiscovery/CVE-2023-32117
Create CVE-2023-32117.yaml
2023-08-02 12:02:14 +05:30
pussycat0x 873bd7c3cc
Update CVE-2023-32117.yaml 2023-08-02 11:14:25 +05:30
pussycat0x 4d4d008de0
lint - fix 2023-08-02 11:08:15 +05:30
pussycat0x ffd867ba2f
Update CVE-2023-32117.yaml 2023-08-02 11:05:02 +05:30
Dhiyaneshwaran a532e32079
Merge pull request #5277 from TenBird-1/Create-CVE-2019-14750
Create CVE 2019 14750
2023-08-02 10:57:08 +05:30
Dhiyaneshwaran 8fab7c9881
Merge pull request #5959 from gy741/rule-add-v136
Create CVE-2022-40843
2023-08-02 10:56:33 +05:30
Dhiyaneshwaran 71e3b20a07
Update CVE-2019-14750.yaml 2023-08-02 10:02:11 +05:30
Dhiyaneshwaran fab7db909a
http update 2023-08-02 10:00:36 +05:30
Dhiyaneshwaran 9c7db20eb4
Update CVE-2019-14750.yaml 2023-08-02 09:57:22 +05:30
Dhiyaneshwaran 0474e6d202
added variable and http attribute 2023-08-02 09:56:41 +05:30
Dhiyaneshwaran f82cf5b7ca fix matcher for sqli template 2023-08-02 09:23:57 +05:30
Dhiyaneshwaran 5c66e70568
remove name 2023-08-01 15:04:14 +05:30
GitHub Action 69bed45657 TemplateMan Update [Tue Aug 1 07:02:52 UTC 2023] 🤖 2023-08-01 07:02:52 +00:00
Ritik Chaddha 5698c2f45a
Rename cves/2022/CVE-2022-40843.yaml to http/cves/2022/CVE-2022-40843.yaml 2023-08-01 11:44:50 +05:30
Ritik Chaddha ddd0a02fbf
updated quote and space 2023-08-01 11:28:24 +05:30
Ritik Chaddha a11bdf1681
updated path,matcher,info 2023-08-01 11:18:01 +05:30
Ritik Chaddha 69fb2db5c1
Create CVE-2023-37580.yaml (Zimbra XSS) 2023-08-01 10:56:17 +05:30
Dhiyaneshwaran c615ced4f8
fix-template 2023-08-01 09:53:40 +05:30
J4vaovo ef89c8637f
Update CVE-2020-2036.yaml 2023-08-01 08:03:49 +08:00
J4vaovo bfc27c95d8
Update CVE-2020-2036.yaml 2023-08-01 07:56:42 +08:00
Ritik Chaddha 042ef1eba2
updated matcher 2023-07-31 18:56:35 +05:30
Ritik Chaddha 5b57ab4e93
Metadata update CVE-2023-35078.yaml 2023-07-31 18:52:18 +05:30
Dhiyaneshwaran ca576f0407
Create CVE-2023-1698.yaml 2023-07-30 22:11:33 +05:30
Dhiyaneshwaran e7dd8eaee5
Create CVE-2023-32117.yaml 2023-07-30 20:42:56 +05:30
GitHub Action 2a0775df9b TemplateMan Update [Fri Jul 28 21:41:00 UTC 2023] 🤖 2023-07-28 21:41:01 +00:00
Sandeep Singh 455c23dc36
Ivanti Endpoint Manager Mobile (EPMM) - Authentication Bypass (CVE-2023-35078) (#7785)
* Added CVE-2023-35078 - Ivanti Endpoint Manager Mobile (EPMM) - Authentication Bypass

Co-Authored-By: Parth Malhotra <28601533+parthmalhotra@users.noreply.github.com>

* added reference

---------

Co-authored-by: Parth Malhotra <28601533+parthmalhotra@users.noreply.github.com>
2023-07-29 03:08:50 +05:30
GitHub Action 6f4ca8977e TemplateMan Update [Fri Jul 28 21:08:22 UTC 2023] 🤖 2023-07-28 21:08:23 +00:00
Dhiyaneshwaran 2f2626a6b3
Create CVE-2023-35885.yaml (#7771)
* Create CVE-2023-35885.yaml

* using echo string instead of webshell

---------

Co-authored-by: Ritik Chaddha <44563978+ritikchaddha@users.noreply.github.com>
Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-29 02:36:02 +05:30
Sandeep Singh 92659332c3
Added CVE-2023-38646 (Metabase PreAuth RCE) (#7777)
* Added detection template for CVE-2023-38646

* payload update
2023-07-29 01:19:14 +05:30
GitHub Action 2d395626ea TemplateMan Update [Fri Jul 28 06:18:15 UTC 2023] 🤖 2023-07-28 06:18:16 +00:00
Dhiyaneshwaran 60de478c1d
Merge pull request #7756 from projectdiscovery/xss-false-positive
Update XSS - False positive
2023-07-28 11:46:11 +05:30
Ritik Chaddha f63771daae
Update CVE-2007-5728.yaml 2023-07-28 11:41:31 +05:30
GitHub Action 56316fa724 TemplateMan Update [Thu Jul 27 18:52:41 UTC 2023] 🤖 2023-07-27 18:52:42 +00:00
Ritik Chaddha 7c1cc02bb8
Merge pull request #7768 from HuTa0kj/dev/cve_2023_3836
Create CVE-2023-3836.yaml
2023-07-28 00:20:41 +05:30
Ritik Chaddha c1ada9f68d
updated info 2023-07-28 00:17:36 +05:30
Ritik Chaddha d06b81dfbe update nuclei-ignore & CVE-2014-9608 2023-07-27 23:36:32 +05:30
Ritik Chaddha 3dfaae84a4 Update CVE-2021-35265.yaml 2023-07-27 22:51:27 +05:30
pussycat0x a83b43697b
Merge pull request #7764 from projectdiscovery/use-headers_2
Update CVE-2023-2178.yaml
2023-07-27 14:48:19 +05:30
Dhiyaneshwaran fe443b2d6d
CasaOS Authentication Bypass (CVE-2023-37265, CVE-2023-37266) (#7766)
* Create CVE-2023-37265.yaml

* Create CVE-2023-37266.yaml
2023-07-27 14:41:18 +05:30
GitHub Action 65849f63c4 TemplateMan Update [Thu Jul 27 07:54:39 UTC 2023] 🤖 2023-07-27 07:54:40 +00:00
Dhiyaneshwaran 939f3b3478
Merge pull request #7740 from j4vaovo/patch-6
Fix CVE-2021-22053.yaml false-positive
2023-07-27 13:22:12 +05:30
Dhiyaneshwaran a9ddf91b28
Merge pull request #7765 from projectdiscovery/CVE-2018-20608
Create CVE-2018-20608.yaml
2023-07-27 13:20:00 +05:30
Dhiyaneshwaran 877af18592
metadata 2023-07-26 14:55:27 +05:30
HuTa0 333233c53d
Fix Blank line 2023-07-26 17:10:21 +08:00
TFDDZ 5e9480eb49 Create CVE-2023-3836.yaml 2023-07-26 17:01:22 +08:00
Dhiyaneshwaran 9aa5690bd5
Merge pull request #7742 from ctflearner/CVE-2023-23161
Create CVE-2023-23161.yaml
2023-07-26 13:09:04 +05:30
Ritik Chaddha bbfe200d91 Update CVE-2014-4592.yaml 2023-07-26 12:29:21 +05:30
Ritik Chaddha 5fe0dfef0f Update CVE-2020-9344.yaml 2023-07-26 11:56:52 +05:30
Ritik Chaddha f5ff8753de
updated matcher & info 2023-07-26 11:25:48 +05:30
Ritik Chaddha 51aad75fff
Create CVE-2018-20608.yaml 2023-07-25 23:13:09 +05:30
Ritik Chaddha f0fa5c00f9 Update CVE-2020-19295.yaml 2023-07-25 18:13:43 +05:30
Dhiyaneshwaran 6807ab9492
Update CVE-2023-2178.yaml 2023-07-25 17:57:42 +05:30
Ritik Chaddha e9ac583f2c Update CVE-2020-11930.yaml 2023-07-25 16:51:15 +05:30
Ritik Chaddha 3d8c22e811
Create CVE-2021-27670.yaml 2023-07-25 14:37:18 +05:30
GitHub Action 9633a4f8d7 TemplateMan Update [Tue Jul 25 06:56:17 UTC 2023] 🤖 2023-07-25 06:56:17 +00:00
Ritik Chaddha cd4831d909
Update CVE-2023-2178.yaml 2023-07-25 11:29:28 +05:30
Ritik Chaddha 2ccb307cbd
Create CVE-2023-2178.yaml 2023-07-25 11:28:16 +05:30
pussycat0x 63eb4eefbc
Merge pull request #7759 from projectdiscovery/CVE-2021-44139
Create CVE-2021-44139.yaml
2023-07-25 11:04:51 +05:30
pussycat0x 0fe681cec2
Update CVE-2021-44139.yaml 2023-07-25 10:39:50 +05:30
pussycat0x cf0ea0b28b
Merge pull request #7752 from dwisiswant0/fix/7544
fix(CVE-2019-0221): add vars, update payload & matcher
2023-07-25 10:35:28 +05:30
Dhiyaneshwaran d792465c55
Create CVE-2021-44139.yaml 2023-07-25 10:28:07 +05:30
Ritik Chaddha bdcfa73023 Update CVE-2018-5233.yaml 2023-07-25 00:17:36 +05:30
Ritik Chaddha 76a0b17d32 Update CVE-2018-5316.yaml 2023-07-25 00:02:08 +05:30
Ritik Chaddha 1e7670e69d Merge branch 'xss-false-positive' of https://github.com/projectdiscovery/nuclei-templates into xss-false-positive 2023-07-24 23:51:58 +05:30
Ritik Chaddha 1b4c1b2148 Update CVE-2011-4618.yaml 2023-07-24 23:51:42 +05:30
Ritik Chaddha b58a6dd51c
lint fix 2023-07-24 23:28:28 +05:30
Ritik Chaddha 7bfc2c4b69
Update XSS - False positive 2023-07-24 23:25:03 +05:30
Dwi Siswanto 71f71c7652
fix(CVE-2019-0221): add vars, update payload & matcher 2023-07-24 16:11:30 +07:00
Dhiyaneshwaran d201fcada6
metadata update 2023-07-22 21:34:47 +05:30
sandeep e4cd8422ef lint fix 2023-07-22 13:32:10 +05:30
ctflearner d11708fead
Create CVE-2023-23161.yaml 2023-07-22 11:37:25 +05:30
J4vaovo eac8054abb
Fix CVE-2021-22053.yaml false-positive 2023-07-22 01:53:36 +08:00
sandeep 09d3e3facc lint fix 2023-07-21 20:47:31 +05:30
Parth Malhotra 02b36239f5
Update CVE-2023-37462.yaml 2023-07-21 20:03:11 +05:30
Parth Malhotra ae14c1dc03
Create CVE-2023-37462.yaml 2023-07-21 20:01:16 +05:30
pussycat0x 4420b75054
Merge pull request #7435 from ctflearner/CVE-2012-4032
Create CVE-2012-4032.yaml
2023-07-21 19:37:18 +05:30
Ritik Chaddha 8d41b50daf
Update CVE-2012-4032.yaml 2023-07-21 19:28:38 +05:30
Ritik Chaddha 079d75303c
updated req & metadata 2023-07-21 19:05:21 +05:30
GitHub Action 3d89aaa7d1 TemplateMan Update [Fri Jul 21 13:22:02 UTC 2023] 🤖 2023-07-21 13:22:05 +00:00
Dhiyaneshwaran 51d1eebb3d
Merge pull request #7449 from ctflearner/CVE-2022-23102
Create CVE-2022-23102.yaml
2023-07-21 18:50:00 +05:30
Dhiyaneshwaran bd1099b8d4
minor update 2023-07-21 18:44:54 +05:30
Ritik Chaddha 7717133cf9
re-write template
Added additional req, matchers and info
2023-07-21 18:40:36 +05:30
Ritik Chaddha 49981b5a86
Merge pull request #7727 from projectdiscovery/CVE-2023-38205
Create CVE-2023-38205.yaml
2023-07-21 17:27:23 +05:30
Ritik Chaddha 14b1ec2fd9
updated metadata 2023-07-21 17:21:37 +05:30
Ritik Chaddha 0eb647310e
Merge pull request #7728 from projectdiscovery/remove-nuclei-keyword
Replaced Hardcoded Nuclei Keyword
2023-07-21 17:13:56 +05:30
Dhiyaneshwaran b8383cbac0
Create CVE-2023-3765.yaml 2023-07-21 01:35:45 +05:30
Ritik Chaddha e3ffead64f
Create CVE-2023-34192.yaml (Zimbra XSS) 2023-07-20 23:57:03 +05:30
sandeep dd0c565377 misc update 2023-07-20 14:52:46 +05:30
Dhiyaneshwaran 75aa40e597 fix lint 2023-07-20 13:21:40 +05:30
Dhiyaneshwaran f8d7275527 Replaced Hardcoded Nuclei Keyword 2023-07-20 13:13:09 +05:30
Dhiyaneshwaran 0033cf148a
Create CVE-2023-38205.yaml 2023-07-20 02:55:31 +05:30
Ritik Chaddha 1db5b5016a
Merge branch 'main' into patch-36 2023-07-18 15:19:32 +05:30
sandeep 190eeeec51 updated templates with outdated syntax 2023-07-18 14:50:20 +05:30
Dhiyaneshwaran 95353a02d5
Merge pull request #7714 from projectdiscovery/princechaddha-patch-2
Update CVE-2021-21087.yaml
2023-07-18 14:35:27 +05:30
Dhiyaneshwaran 2504eb8ea9
Merge pull request #7718 from projectdiscovery/princechaddha-patch-3
Fixed FP -  CVE-2020-13167
2023-07-18 14:35:06 +05:30
Prince Chaddha 249ad821ec
Fixed FP - CVE-2020-13167 2023-07-18 14:05:45 +05:30
Dhiyaneshwaran 6ad751081f
Merge pull request #7701 from harsh2403/patch-16
Create CVE-2023-1546.yaml
2023-07-18 13:30:20 +05:30
Dhiyaneshwaran 7535168054
Merge branch 'main' into patch-16 2023-07-18 13:24:10 +05:30
Dhiyaneshwaran b485eaaf50
Merge branch 'main' into Thirukrishnan-patch-1 2023-07-18 13:21:56 +05:30
Dhiyaneshwaran ab1a450b80
Merge pull request #7712 from projectdiscovery/CVE-2023-23491
Create CVE-2023-23491.yaml
2023-07-18 13:21:37 +05:30
Ritik Chaddha a4deb58410
updated description 2023-07-18 13:20:37 +05:30
Dhiyaneshwaran 35de9a4ee8
Merge pull request #7713 from projectdiscovery/CVE-2023-0448
Create CVE-2023-0448.yaml
2023-07-18 13:19:42 +05:30
Dhiyaneshwaran 2791b323e6
Merge pull request #7707 from harsh2403/patch-17
Create CVE-2023-28665.yaml
2023-07-18 13:10:55 +05:30
Dhiyaneshwaran 6eb7489dd4
added metadata 2023-07-18 13:05:20 +05:30
GitHub Action 0d4a5d9a66 TemplateMan Update [Tue Jul 18 06:03:59 UTC 2023] 🤖 2023-07-18 06:04:01 +00:00
GitHub Action c877dacbfc TemplateMan Update [Tue Jul 18 06:02:36 UTC 2023] 🤖 2023-07-18 06:02:36 +00:00
Prince Chaddha 3e4f912f0e
Merge pull request #7602 from bob-the-builder-v/main
Modified http/cves/2023/CVE-2023-32243.yaml for better detection
2023-07-18 11:31:50 +05:30
pussycat0x 0216f4ecc5
Merge pull request #7700 from projectdiscovery/CVE-2023-3345
Create CVE-2023-3345.yaml
2023-07-18 11:30:50 +05:30
Prince Chaddha e7b1b5d82f
Update CVE-2023-32243.yaml 2023-07-18 11:26:19 +05:30
Dhiyaneshwaran 1d54849488
adding matcher - 1st request 2023-07-18 11:25:12 +05:30
Dhiyaneshwaran 640215564a
Merge branch 'main' into main 2023-07-18 11:21:17 +05:30
Dhiyaneshwaran 054b260f0b
lower case tags and remediation 2023-07-18 11:19:43 +05:30
Prince Chaddha dfb2c77996
Update CVE-2021-21087.yaml 2023-07-18 09:39:26 +05:30
Ritik Chaddha bf2a342699
url encode payload 2023-07-17 23:51:46 +05:30
Ritik Chaddha 088dc6b284
Create CVE-2023-0448.yaml 2023-07-17 23:48:03 +05:30
Ritik Chaddha 979684b27c
Create CVE-2023-23491.yaml 2023-07-17 23:36:18 +05:30
Ritik Chaddha d71733a489
updated req,matchers,info 2023-07-17 23:01:00 +05:30
Harsh Yadav d9d543bb0d
Create CVE-2023-28665.yaml 2023-07-16 23:36:40 +05:30
Ritik Chaddha ea472731da
updated payload,matcher,info 2023-07-16 22:58:45 +05:30
pussycat0x 62fea9f47a
Update CVE-2020-17463.yaml 2023-07-16 21:01:00 +05:30
Prince Chaddha b04a740cfa
Merge pull request #7670 from projectdiscovery/cve_enrichment
CVE Enrichment 🎉
2023-07-16 17:16:51 +05:30
pussycat0x f8d7f3a427
Update CVE-2020-17463.yaml 2023-07-16 15:35:17 +05:30
pussycat0x ac05fd9232
minor -changes 2023-07-16 15:26:13 +05:30
Dhiyaneshwaran 6426507ae8
Create CVE-2023-3460.yaml (#7704)
* Create CVE-2023-3460.yaml

* misc update

* Update CVE-2023-3460.yaml

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-16 15:20:13 +05:30
Thirukrishnan e2f3a058d7
Update CVE-2020-17463.yaml 2023-07-16 13:15:08 +05:30
Thirukrishnan 28b8b179a0
Create CVE-2020-17463.yaml
Template for CVE-2020-17463 under defcon31 label
2023-07-16 13:05:32 +05:30
Harsh Yadav d14aaa69c0
Create CVE-2023-1546.yaml 2023-07-15 23:36:25 +05:30
pussycat0x 1de9011299
Update CVE-2023-3345.yaml 2023-07-15 22:03:45 +05:30
sandeep 83bf20510f more updates 2023-07-15 21:59:17 +05:30
Dhiyaneshwaran 703518f755
Create CVE-2023-3345.yaml 2023-07-15 18:02:13 +05:30
sandeep 1817fa71b3 format fix 2023-07-15 02:27:38 +05:30
E1A b5947d069f
CVE-2017-7925.yaml (#7687)
* CVE-2017-7925.yaml

Research done and updated template after issue: https://github.com/projectdiscovery/nuclei-templates/issues/5639

* Update CVE-2017-7925.yaml

* Update CVE-2017-7925.yaml

* improved matcher + metadata + extractor

* removing duplicate template

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-14 03:26:00 +05:30
mastercho 66e5c0af5b Fixed Spaces 2023-07-13 20:04:28 +03:00
mastercho 2c6aa8b152 Added Prestashop SQLi 2023-07-13 19:54:13 +03:00
Dhiyaneshwaran a082d33481
typo 2023-07-13 13:39:02 +05:30
Dhiyaneshwaran c77ec55fbb
added possible user enum endpoints 2023-07-13 13:37:51 +05:30
Ritik Chaddha e47db87042
Update CVE-2023-37270.yaml 2023-07-13 13:27:33 +05:30
Ritik Chaddha 92675d0756
Update CVE-2023-37270.yaml 2023-07-13 13:24:44 +05:30
pussycat0x b5789d2c1a
Merge pull request #7673 from projectdiscovery/CVE-2023-37270
Create CVE-2023-37270.yaml
2023-07-13 13:15:41 +05:30
pussycat0x 414b21ffb2
dsl matchers - update 2023-07-13 13:12:01 +05:30
pussycat0x 2b03e2782d
Update CVE-2023-37270.yaml 2023-07-13 13:01:44 +05:30
Ritik Chaddha b4b1c6ded0
Update CVE-2023-37270.yaml 2023-07-13 12:57:00 +05:30
pussycat0x 32ff78d0bc
minor -changes 2023-07-13 12:48:08 +05:30
Sandeep Singh f6cd430e59
Added CVE-2023-29300 (Adobe ColdFusion - Pre-Auth Remote Code Execution) (#7682) 2023-07-13 03:59:28 +05:30
Prince Chaddha a20611fe5d
Create CVE-2023-29298.yaml (#7677)
* Create CVE-2023-29298.yaml

* fixed lint error

* matcher + misc updates

* strict matcher

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-13 03:38:33 +05:30
Sandeep Singh fd675eaba3
Merge branch 'main' into cve_enrichment 2023-07-12 21:27:27 +05:30
sandeep 98a618353e fixed typo 2023-07-12 19:20:08 +05:30
Ritik Chaddha 603b52e01b
Merge pull request #7656 from aringo-bf/main
Fixed 2021-40822
2023-07-12 17:33:34 +05:30
Ritik Chaddha ed22f507dd
Update CVE-2021-40822.yaml 2023-07-12 17:29:22 +05:30
sandeep b5a88ad386 tags update 2023-07-12 17:26:50 +05:30
Ritik Chaddha d0e462ca5f
Merge pull request #7678 from projectdiscovery/CVE-2023-29298
Create CVE-2022-4057.yaml
2023-07-12 17:17:11 +05:30
Ritik Chaddha 709fde5fd1
updated info 2023-07-12 17:12:54 +05:30
Ritik Chaddha cae1137e65
updated info 2023-07-12 17:09:01 +05:30
Dhiyaneshwaran 8339bcff3e
Update and rename CVE-2023-29298.yaml to CVE-2022-4057.yaml 2023-07-12 14:48:02 +05:30
Dhiyaneshwaran e00935e002
Create CVE-2019-17574.yaml 2023-07-12 14:43:01 +05:30
Dhiyaneshwaran 2247d3584c
Create CVE-2023-29298.yaml 2023-07-12 14:41:58 +05:30
pussycat0x d88787658b
Merge pull request #7671 from projectdiscovery/CVE-2022-45354
Create CVE-2022-45354.yaml
2023-07-12 11:56:27 +05:30
pussycat0x 7d70eaa50d
Update CVE-2022-45354.yaml 2023-07-12 11:47:34 +05:30
pussycat0x 1c1614b207
Merge pull request #7665 from projectdiscovery/CVE-2023-2796
Create CVE-2023-2796.yaml
2023-07-12 11:46:24 +05:30
Ritik Chaddha 18279f40b1
tag updated 2023-07-12 10:22:14 +05:30
Ritik Chaddha 1856bf9a8e
Create CVE-2023-37270.yaml 2023-07-12 10:21:18 +05:30
Dhiyaneshwaran 8f7c078997
CVE-2023-24489 🔥 Citrix ShareFile StorageZones Controller - RCE (#7664)
* Create CVE-2023-24489

* Add files via upload

* fuzz tag updation

* Rename CVE-2023-24489 to CVE-2023-24489.yaml

* Update http/cves/2023/CVE-2023-24489.yaml

Co-authored-by: Dwi Siswanto <me@dw1.io>

* changes as per review

* misc update

* variable update

* more strict matcher

---------

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
Co-authored-by: Dwi Siswanto <me@dw1.io>
Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-12 01:53:18 +05:30
Dhiyaneshwaran 836fb614d5
fix-template 2023-07-12 01:27:47 +05:30