Commit Graph

378 Commits (17d836b2c412fbfd6b1f9a51a26112f17987f288)

Author SHA1 Message Date
sandeep 17d836b2c4 Adding moodle-xss 2021-04-12 23:55:06 +05:30
PD-Team 020fdc5e0a
Merge pull request #1253 from pikpikcu/patch-141
Create turbocrm-xss.yaml
2021-04-11 17:25:49 +05:30
sandeep d96746d193 minor update 2021-04-11 17:24:54 +05:30
LuskaBol b0595790cb
Rename vulnerabilities/rockethcat/unauth-message-read.yaml to vulnerabilities/rocketchat/unauth-message-read.yaml 2021-04-10 22:27:51 -03:00
PikPikcU cdac8b34a6
Create turbocrm-xss.yaml 2021-04-11 00:22:56 +00:00
sandeep b36ec072d6 template update 2021-04-10 13:10:29 +05:30
Gal Nagli ab46a9b2f0
Update basic-cors.yaml
Severity should be info.
2021-04-10 01:01:09 +03:00
Prince Chaddha 03c6126f60
Create etouch-v2-sqli.yaml 2021-04-07 22:03:17 +05:30
sandeep 0c243d188a tags improvements 2021-04-06 13:45:46 +05:30
sandeep e4b9397b06 Adding missing wordpress tags 2021-04-06 13:19:32 +05:30
sandeep 8fdfc64e54 misc tag updates 2021-04-06 12:16:11 +05:30
sandeep d34ca6773b misc changes 2021-04-05 23:55:18 +05:30
sandeep e934241101 Update empirecms-xss.yaml 2021-04-05 22:13:16 +05:30
PikPikcU d789177b06
Create empirecms-xss.yaml 2021-04-05 08:16:27 +00:00
sandeep 40fb0066c3 more reference 2021-04-02 21:38:35 +05:30
sandeep 3daa03c799 Update cache-poisoning.yaml 2021-04-02 19:19:50 +05:30
Mohamed Elbadry 5eb1e78503
Create cache-poisoning.yaml 2021-04-02 15:14:09 +02:00
sandeep 532dc4cf0c Added more info and strict matcher 2021-03-29 17:05:11 +05:30
Rojan Rijal 82fbfcf962
Create unauth-message-read.yaml 2021-03-28 23:42:11 -07:00
PD-Team 59574cc701
Revert "Create apache-spark-rce" 2021-03-26 00:16:29 +05:30
sandeep 28bf41830f Merge branch 'patch-104' of https://github.com/pikpikcu/nuclei-templates into pikpikcu-patch-104 2021-03-25 22:37:34 +05:30
Prince Chaddha 2aa7c97e40
Update apache-spark-rce.yaml 2021-03-25 21:25:59 +05:30
sandeep b5c4ed0e2e Update wordpress-rce-simplefilelist.yaml 2021-03-25 19:21:30 +05:30
Mzack9999 351167e91f removing redundant boolean check 2021-03-25 00:28:50 +01:00
Prince Chaddha 9a750ba944
Merge pull request #1136 from pikpikcu/patch-134
Create thinkcmf-arbitrary-code-execution.yaml
2021-03-24 17:22:58 +05:30
Prince Chaddha 915aeb93bb Update thinkcmf-arbitrary-code-execution.yaml 2021-03-24 17:21:31 +05:30
PikPikcU 356856a983
Create thinkcmf-arbitrary-code-execution.yaml 2021-03-24 01:10:20 +00:00
PikPikcU 568a795319
Update thinkcmf-lfi.yaml 2021-03-24 00:42:53 +00:00
PD-Team 1e541d324f
Merge pull request #1116 from pikpikcu/patch-127
Create tpshop-directory-traversal.yaml
2021-03-21 21:04:43 +05:30
sandeep 7af81a3ce8 Update tpshop-directory-traversal.yaml 2021-03-21 21:04:33 +05:30
PD-Team 0c20bbf8b5
Merge pull request #1119 from pikpikcu/patch-130
Create xdcms-sqli
2021-03-21 20:43:51 +05:30
sandeep 8fd55de534 Update error-based-sql-injection.yaml 2021-03-21 20:28:22 +05:30
PikPikcU 7674824c98
Create xdcms-sqli.yaml 2021-03-21 10:15:44 +00:00
PikPikcU ce51bfee06
Create tpshop-directory-traversal.yaml 2021-03-21 02:53:52 +00:00
Geeknik Labs a3d7047521
Update error-based-sql-injection.yaml
Reverting back to raw http request. Sending encoded requests using net/http were missing blatant SQL injections. 

Before:

[INF] Loading templates...
[INF] [error-based-sql-injection] Error based SQL injection (@geeknik) [high]
[INF] Loading workflows...
[INF] Using 1 rules (1 templates, 0 workflows)
[INF] No results found. Better luck next time!

After:

[INF] Loading templates...
[INF] [error-based-sql-injection] Error based SQL injection (@geeknik) [high]
[INF] Loading workflows...
[INF] Using 1 rules (1 templates, 0 workflows)
[2021-03-20 14:48:59] [error-based-sql-injection:MariaDB] [http] [high] https://REDACTED/') [check the manual that corresponds to your MariaDB server version]
2021-03-20 19:52:48 +00:00
Prince Chaddha c04d699985 wordpress-infinitewp-auth-bypass 2021-03-19 02:10:02 +05:30
PD-Team 75cd16f667
Merge pull request #1100 from geeknik/patch-51
Create error-based-sql-injection.yaml
2021-03-18 14:06:56 +05:30
sandeep 0c602a56e7 Update error-based-sql-injection.yaml 2021-03-18 14:05:19 +05:30
sandeep ad84ecb792 tag improvements 2021-03-18 13:24:36 +05:30
Geeknik Labs 988d0c75c9
Update error-based-sql-injection.yaml 2021-03-17 20:39:57 +00:00
Geeknik Labs 019a193aec
Update error-based-sql-injection.yaml 2021-03-17 19:31:08 +00:00
Geeknik Labs be020357e8
Update error-based-sql-injection.yaml 2021-03-17 19:25:02 +00:00
Geeknik Labs 99bb91c255
Update error-based-sql-injection.yaml 2021-03-17 19:19:27 +00:00
Geeknik Labs 8fe5f4e1ff
Create error-based-sql-injection.yaml
🎉  OMG 🎉 
Detect Error Based SQL Injection
Includes regex matchers + extractors for 29 Database Engines
💥 https://buymeacoffee.com/geeknik 💥
2021-03-17 17:30:53 +00:00
sandeep 3c8432686c Update viewlinc-crlf-injection.yaml 2021-03-16 14:05:20 +05:30
Geeknik Labs e951c75c59
Update viewlinc-crlf-injection.yaml 2021-03-15 20:04:37 +00:00
Geeknik Labs 0068d7ae0c
Create viewlinc-crlf-injection.yaml
This was discovered whilst participating in a private Hacker0x01 bug bounty program.
2021-03-15 20:00:56 +00:00
PD-Team fb65d9341b
Merge branch 'master' into patch-4 2021-03-15 00:30:30 +05:30
sandeep ffae74a6a8 Updated to openam-detection 2021-03-15 00:27:59 +05:30
PD-Team 47a7ea85e0
Merge pull request #1066 from r3naissance/master
Add teacherease-xss and parentlink-xss to /vulnerabilities/other/
2021-03-14 17:12:05 +05:30