Commit Graph

3723 Commits (203a15c6dc32c2b410afb49e516e0db1e5d49cb2)

Author SHA1 Message Date
sullo a459b22355 Duplicate comment 2022-02-08 17:03:36 -05:00
Prince Chaddha c19dcd5c2a
Merge pull request #3683 from cckuailong/master
add some wp plugins cves
2022-02-09 01:39:00 +05:30
sullo db88cd41e9 Remove duplicate enchanced tag 2022-02-08 14:39:21 -05:00
Prince Chaddha ba7c71e081
Update CVE-2021-24488.yaml 2022-02-09 00:57:33 +05:30
Prince Chaddha ce903c73f2
Update CVE-2021-24947.yaml 2022-02-09 00:55:00 +05:30
Prince Chaddha b64401ab02
Update CVE-2021-25052.yaml 2022-02-09 00:53:44 +05:30
Prince Chaddha 4fe9243d9d
Update CVE-2021-25008.yaml 2022-02-09 00:49:53 +05:30
Prince Chaddha 4fea6b14f4
Update CVE-2021-24991.yaml 2022-02-09 00:42:32 +05:30
Prince Chaddha 81a4316d2e
Update CVE-2021-24947.yaml 2022-02-09 00:38:33 +05:30
Prince Chaddha 2d3240a98f
Update CVE-2021-24926.yaml 2022-02-09 00:36:16 +05:30
Prince Chaddha a167a69be6
Update CVE-2021-24488.yaml 2022-02-09 00:32:39 +05:30
Prince Chaddha 1dc5ff098a
Update CVE-2021-24300.yaml 2022-02-09 00:19:44 +05:30
Prince Chaddha 8664885b45
Update CVE-2020-35749.yaml 2022-02-09 00:13:40 +05:30
Prince Chaddha a657179cf2
Merge pull request #3667 from projectdiscovery/wp-templates
Moving authenticated wp templates from issues
2022-02-09 00:07:52 +05:30
Prince Chaddha ce2d45b355
Update CVE-2021-24510.yaml 2022-02-08 23:59:45 +05:30
Prince Chaddha 49c2f2816a
Update CVE-2021-34640.yaml 2022-02-08 23:59:30 +05:30
Prince Chaddha 495ca9dc6c
Update CVE-2021-20792.yaml 2022-02-08 23:56:17 +05:30
Prince Chaddha 5519bd7d67
Update CVE-2021-34643.yaml 2022-02-08 23:50:44 +05:30
Prince Chaddha eb324d24f4
Update CVE-2021-39322.yaml 2022-02-08 23:46:35 +05:30
MostInterestingBotInTheWorld 9f550a29ef Enhancement: cves/2021/CVE-2021-37538.yaml by mp 2022-02-08 11:46:14 -05:00
MostInterestingBotInTheWorld be25d5139e Enhancement: cves/2018/CVE-2018-17254.yaml by mp 2022-02-08 11:43:22 -05:00
MostInterestingBotInTheWorld 35bcf2e361 Enhancement: cves/2021/CVE-2021-42237.yaml by mp 2022-02-08 11:40:30 -05:00
MostInterestingBotInTheWorld 2ab1c4cacc Enhancement: cves/2020/CVE-2020-14882.yaml by mp 2022-02-08 11:36:43 -05:00
cckuailong f29d2b20df add some wp plugins cves 2022-02-08 09:07:19 +08:00
Prince Chaddha 389089d63c
Merge pull request #3668 from Akokonunes/patch-113
Create CVE-2020-12447.yaml
2022-02-08 00:37:11 +05:30
Prince Chaddha 4e00ba83f3
Update and rename CVE-2020-12447.yaml to cves/2020/CVE-2020-12447.yaml 2022-02-08 00:35:52 +05:30
GitHub Action 5ac042a7e5 Auto Generated CVE annotations [Mon Feb 7 18:59:32 UTC 2022] 🤖 2022-02-07 18:59:32 +00:00
Prince Chaddha c7c1b73838
Merge pull request #3666 from projectdiscovery/CVE-2018-7602
Create CVE-2018-7602.yaml
2022-02-08 00:28:09 +05:30
Prince Chaddha 9d08d34ccc
Merge pull request #3653 from cckuailong/master
add CVE-2016-10940 (The zm-gallery plugin 1.0 for WordPress SQLI)
2022-02-08 00:27:48 +05:30
sullo ee235ad8e6 Extraneous comment 2022-02-07 09:01:46 -05:00
sullo 9a48be8608 Merge branch 'dashboard' of https://github.com/MostInterestingBotInTheWorld/nuclei-templates into dashboard 2022-02-07 09:00:59 -05:00
sullo 929f8e0f64
Merge pull request #3665 from MostInterestingBotInTheWorld/dashboard
Enhancements: Various text cleanups
2022-02-07 09:00:27 -05:00
GitHub Action 94ac089ed7 Auto Generated CVE annotations [Sun Feb 6 18:32:16 UTC 2022] 🤖 2022-02-06 18:32:16 +00:00
sandeep 574acfaddc minor template update 2022-02-06 23:59:47 +05:30
PikPikcU 0d5e0e891d
Update CVE-2022-0378.yaml 2022-02-06 05:18:24 -05:00
PikPikcU 0d311a72c3
Update CVE-2022-0281.yaml 2022-02-06 05:17:40 -05:00
cckuailong 4ab6524b2b
Merge branch 'projectdiscovery:master' into master 2022-02-06 17:28:15 +08:00
PikPikcU 9e641734a3
Create CVE-2022-0432.yaml 2022-02-06 01:04:17 -05:00
PikPikcU 4f8a0ac62c
Create CVE-2022-0378.yaml 2022-02-06 00:41:20 -05:00
PikPikcU a12753c7fe
Create CVE-2022-0281.yaml 2022-02-06 00:28:32 -05:00
sullo 45cd5fe80d Merge branch 'dashboard' of https://github.com/MostInterestingBotInTheWorld/nuclei-templates into dashboard 2022-02-04 16:02:58 -05:00
MostInterestingBotInTheWorld 4f497cbd17 Enhancement: cves/2020/CVE-2020-9402.yaml by mp 2022-02-04 16:02:22 -05:00
MostInterestingBotInTheWorld e124b4333b Enhancement: cves/2020/CVE-2020-9402.yaml by mp 2022-02-04 16:01:13 -05:00
MostInterestingBotInTheWorld d7ac754156 Enhancement: cves/2020/CVE-2020-14882.yaml by mp 2022-02-04 15:55:59 -05:00
sullo ef4f6db363 Fix regular expression after bot change 2022-02-04 15:22:52 -05:00
Prince Chaddha fa45badbeb
Update CVE-2016-10940.yaml 2022-02-05 01:24:10 +05:30
Prince Chaddha bbd80d10d4
Update CVE-2016-10940.yaml 2022-02-05 01:20:21 +05:30
MostInterestingBotInTheWorld 50d9f0b4f1 Enhancement: cves/2019/CVE-2019-13462.yaml by mp 2022-02-04 14:39:08 -05:00
Prince Chaddha 71abfd0939
Update CVE-2021-24510.yaml 2022-02-05 01:05:57 +05:30
MostInterestingBotInTheWorld a3d83420ac Enhancement: cves/2020/CVE-2020-14882.yaml by mp 2022-02-04 14:29:39 -05:00
Prince Chaddha 1be67200cb
Create CVE-2021-39322.yaml 2022-02-05 00:51:50 +05:30
Prince Chaddha 96b7380c80
Create CVE-2021-34643.yaml 2022-02-05 00:50:43 +05:30
Prince Chaddha 9a702c2c16
Create CVE-2021-34640.yaml 2022-02-05 00:49:25 +05:30
Prince Chaddha d4b4e69752
Create CVE-2021-24510.yaml 2022-02-05 00:48:10 +05:30
Prince Chaddha dbfa7efae0
Create CVE-2021-20792.yaml 2022-02-05 00:46:00 +05:30
Prince Chaddha 0832f09ea7
Create CVE-2018-7602.yaml 2022-02-05 00:39:58 +05:30
sullo 8461d21658 Remove trailing spaces 2022-02-04 14:09:21 -05:00
sullo 111f7d9a88 Cleanup some dashboard artifacts 2022-02-04 14:02:53 -05:00
sullo e7bd6a2129 Remove space before EOL in CVE-2019-12725.yaml 2022-02-04 13:59:21 -05:00
Prince Chaddha 685495df91
Update CVE-2021-20158.yaml 2022-02-04 23:31:10 +05:30
GwanYeong Kim fcc39f52ee Create CVE-2021-20158.yaml
Trendnet AC2600 TEW-827DRU version 2.08B01 contains an authentication bypass vulnerability. It is possible for an unauthenticated, malicous actor to force the change of the admin password due to a hidden administrative command.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2022-02-05 01:29:16 +09:00
MostInterestingBotInTheWorld d13fbad151 Enhancement: cves/2019/CVE-2019-12725.yaml by mp 2022-02-04 11:27:18 -05:00
MostInterestingBotInTheWorld 421460c87e Enhancement: cves/2019/CVE-2019-12725.yaml by mp 2022-02-04 11:25:37 -05:00
MostInterestingBotInTheWorld 811dc2d70e Enhancement: cves/2021/CVE-2021-26855.yaml by mp 2022-02-04 11:13:25 -05:00
sullo b25b0448a5 Remove blank lines 2022-02-04 10:27:24 -05:00
MostInterestingBotInTheWorld ac6002f149 Enhancement: cves/2014/CVE-2014-8682.yaml by mp 2022-02-04 10:18:35 -05:00
MostInterestingBotInTheWorld bea2ce4d24 Enhancement: cves/2017/CVE-2017-9805.yaml by mp 2022-02-04 10:15:15 -05:00
MostInterestingBotInTheWorld 163ae2f24e
Merge branch 'projectdiscovery:master' into dashboard 2022-02-04 09:19:12 -05:00
cckuailong 3bc20d0d12
Merge branch 'projectdiscovery:master' into master 2022-02-04 10:50:34 +08:00
Prince Chaddha 480dea094b
Update CVE-2021-20150.yaml 2022-02-04 01:20:39 +05:30
Prince Chaddha f846faa127
Update CVE-2021-20150.yaml 2022-02-04 01:13:30 +05:30
Prince Chaddha d2e4be88e6
Update CVE-2021-20150.yaml 2022-02-04 01:13:00 +05:30
GwanYeong Kim bc87c82d9b Create CVE-2021-20150.yaml
Trendnet AC2600 TEW-827DRU version 2.08B01 improperly discloses information via redirection from the setup wizard. Authentication can be bypassed and a user may view information as Admin by manually browsing to the setup wizard and forcing it to redirect to the desired page.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2022-02-03 18:06:04 +09:00
Prince Chaddha ac371405bd
Merge pull request #3650 from Akokonunes/patch-112
Create CVE-2020-36365.yaml
2022-02-03 02:45:07 +05:30
Prince Chaddha 42bc941827
Update and rename CVE-2020-36365.yaml to cves/2020/CVE-2020-36365.yaml 2022-02-03 02:39:33 +05:30
Prince Chaddha 99931f2e0b
Merge pull request #3651 from dwisiswant0/add/CVE-2021-32853
Add CVE-2021-32853
2022-02-03 02:16:08 +05:30
Prince Chaddha b023c8206e
Update CVE-2021-32853.yaml 2022-02-03 02:14:21 +05:30
Prince Chaddha 9f63a2f4fb
Update CVE-2021-32853.yaml 2022-02-03 02:06:26 +05:30
Prince Chaddha 110704dd3e
Update CVE-2021-32853.yaml 2022-02-03 02:01:24 +05:30
Prince Chaddha 61ba3a55e4
Update CVE-2016-10940.yaml 2022-02-03 01:24:10 +05:30
Prince Chaddha 9d1782ab06
Merge pull request #3645 from DhiyaneshGeek/master
CVE-2021-32818 , CVE-2021-26247
2022-02-03 01:16:38 +05:30
Prince Chaddha 6c39177ddc
Delete CVE-2021-32818.yaml 2022-02-03 01:11:45 +05:30
MostInterestingBotInTheWorld fb84327f3c Enhancement: cves/2005/CVE-2005-2428.yaml by mp 2022-02-02 13:15:44 -05:00
MostInterestingBotInTheWorld 8c22a7f11a Enhancement: cves/2005/CVE-2005-2428.yaml by cs 2022-02-02 13:08:10 -05:00
6d616461 0c1fb1e697 Updated CVE-2016-10956 Template 2022-02-02 18:36:24 +01:00
MostInterestingBotInTheWorld 0d1f876866 Enhancement: cves/2021/CVE-2021-37538.yaml by mp 2022-02-02 12:15:24 -05:00
6d616461 83bb5912fe Updated CVE-2019-9618 Template 2022-02-02 17:47:13 +01:00
cckuailong 7c9b7017d2 Merge branch 'master' of github.com:cckuailong/nuclei-templates 2022-02-02 23:28:26 +08:00
cckuailong 58282f56f1 add CVE-2016-10940 2022-02-02 23:27:47 +08:00
Sandeep Singh 633205a001
Update CVE-2021-32853.yaml 2022-02-02 13:56:12 +05:30
Dwi Siswanto 940db2f928 Add CVE-2021-32853 2022-02-02 13:27:36 +07:00
sullo 09558de213 Adding classification 2022-02-01 16:52:18 -05:00
MostInterestingBotInTheWorld 141392e683 Enhancement: cves/2018/CVE-2018-17254.yaml by cs 2022-02-01 16:47:16 -05:00
Prince Chaddha cf9821e3b1
Update CVE-2021-26247.yaml 2022-02-02 00:48:29 +05:30
MostInterestingBotInTheWorld c052b84ffc Enhancement: cves/2014/CVE-2014-8682.yaml by mp 2022-02-01 13:09:32 -05:00
GitHub Action 8868b0f56b Auto Generated CVE annotations [Tue Feb 1 06:10:46 UTC 2022] 🤖 2022-02-01 06:10:46 +00:00
Dhiyaneshwaran a5bd8630c8
Create CVE-2021-32818.yaml 2022-02-01 11:39:12 +05:30
GitHub Action a18a19ff3c Auto Generated CVE annotations [Tue Feb 1 06:06:15 UTC 2022] 🤖 2022-02-01 06:06:15 +00:00
Dhiyaneshwaran bcc7113677
Create CVE-2021-26247.yaml 2022-02-01 11:34:51 +05:30
Prince Chaddha dca4cdc12f
Update CVE-2020-35489.yaml 2022-02-01 01:28:32 +05:30
Prince Chaddha ee95110be4
Merge pull request #3614 from Akokonunes/patch-109
Create CVE-2020-18268.yaml
2022-02-01 00:45:53 +05:30
Prince Chaddha fdddc48c2f
Update CVE-2020-18268.yaml 2022-02-01 00:42:58 +05:30
Prince Chaddha 992687329c
Update CVE-2020-18268.yaml 2022-02-01 00:41:58 +05:30
GitHub Action 606e9b09e5 Auto Generated CVE annotations [Mon Jan 31 18:38:32 UTC 2022] 🤖 2022-01-31 18:38:32 +00:00
Prince Chaddha 961873521f
Merge pull request #3630 from Akokonunes/patch-110
Added CVE-2016-3978
2022-02-01 00:07:07 +05:30
Prince Chaddha 812d76a1b8
Merge pull request #3514 from Akokonunes/patch-103
Create CVE-2019-13396.yaml
2022-02-01 00:06:48 +05:30
Prince Chaddha a9734d712b
Update CVE-2019-13396.yaml 2022-02-01 00:05:35 +05:30
Prince Chaddha cc40d47cf7
Update CVE-2016-3978.yaml 2022-01-31 23:41:51 +05:30
Prince Chaddha 8efaa0754e
Merge pull request #3633 from cckuailong/master
add CVE-2021-46005 (Sourcecodester Car Rental Management System 1.0 - Stored XSS)
2022-01-31 23:38:53 +05:30
Prince Chaddha cd221355ee
Update CVE-2021-46005.yaml 2022-01-31 23:34:34 +05:30
Prince Chaddha fb48b67f39
Update CVE-2021-46005.yaml 2022-01-31 23:29:36 +05:30
Roberto Nunes 9c4df9e91a
Create CVE-2021-25864.yaml (#3631)
* Create CVE-2021-25864.yaml

* moving template to cves folder

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-31 14:36:37 +05:30
Sandeep Singh cfb6fff36d
removing trailing spaces 2022-01-29 19:24:58 +05:30
cckuailong 80b60ef829 add CVE-2021-46005 2022-01-29 21:22:44 +08:00
sandeep 39e41ce464 template name and ID update 2022-01-29 17:15:08 +05:30
sandeep 57d742bfb4 Removing temporarily due to limited information 2022-01-28 16:58:30 +05:30
sandeep 9fa97d4221 path update 2022-01-28 16:55:45 +05:30
Aaron Chen cb2f2a8721
Update CVE-2018-13380.yaml (#3623)
* Update CVE-2018-13380.yaml

* Fix payload and matcher
* Add reference

* misc updates

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-28 15:46:21 +05:30
GitHub Action 7ce2191287 Auto Generated CVE annotations [Fri Jan 28 09:01:49 UTC 2022] 🤖 2022-01-28 09:01:49 +00:00
Sandeep Singh d4136282cc
Merge pull request #3621 from MostInterestingBotInTheWorld/dashboard
Enhancement: Template Enhancements from Dashboard
2022-01-28 11:20:43 +05:30
Prince Chaddha dfdfc369d1
Merge pull request #3597 from paradessia/master
CVE-2022-21371
2022-01-28 11:14:44 +05:30
sandeep 6ee7b7c83b syntax update 2022-01-28 11:12:09 +05:30
sandeep 72f14d4d2e fix spaces 2022-01-28 11:08:17 +05:30
Prince Chaddha 850ae90f55
Update CVE-2021-45380.yaml 2022-01-28 10:59:21 +05:30
Sullo f3f320dc29 Spacing matters 2022-01-27 14:31:57 -05:00
Sullo 81bf8288b5 Syntax fixes 2022-01-27 14:23:33 -05:00
MostInterestingBotInTheWorld 4ed9d6221b
Merge branch 'projectdiscovery:master' into dashboard 2022-01-27 13:55:22 -05:00
MostInterestingBotInTheWorld 318c7a46c2 Enhancement: cves/2008/CVE-2008-6172.yaml by mp 2022-01-27 13:55:00 -05:00
MostInterestingBotInTheWorld 57d4afde0a Enhancement: cves/2004/CVE-2004-0519.yaml by mp 2022-01-27 13:48:06 -05:00
MostInterestingBotInTheWorld 6a6d272fdf Enhancement: cves/2004/CVE-2004-0519.yaml by mp 2022-01-27 13:45:09 -05:00
PikPikcU 4beabd88f9
Create CVE-2021-45380.yaml 2022-01-27 13:40:43 -05:00
MostInterestingBotInTheWorld 794febebef Enhancement: cves/2000/CVE-2000-0114.yaml by mp 2022-01-27 13:36:56 -05:00
MostInterestingBotInTheWorld 1d12645904 Enhancement: cves/2000/CVE-2000-0114.yaml by mp 2022-01-27 13:30:23 -05:00
cckuailong 5b424fafe1
add CVE-2022-23944 (#3605)
* add CVE-2022-23944

* fix CVE-2021-23944 matcher type

* Update CVE-2022-23944.yaml

* minor updates

Co-authored-by: Prince Chaddha <prince@projectdiscovery.io>
Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-27 15:59:26 +05:30
GitHub Action 4bd8b86a3e Auto Generated CVE annotations [Thu Jan 27 10:22:20 UTC 2022] 🤖 2022-01-27 10:22:20 +00:00
Sandeep Singh 53da8a8206
Added CVE-2021-21973 (#3615)
* Added CVE-2021-21973

* minor update
2022-01-27 15:50:44 +05:30
Prince Chaddha fd777fd0b6
Update and rename CVE-2020-18268.yaml to cves/2020/CVE-2020-18268.yaml 2022-01-27 14:18:01 +05:30
GitHub Action 3a1d847b57 Auto Generated CVE annotations [Wed Jan 26 17:59:10 UTC 2022] 🤖 2022-01-26 17:59:10 +00:00
Smaran Chand 0babc27b75
Added elFinder filemanger exposed (#3602)
* Added elFinder filemanger exposed

* Template name / id update + more reference

* template name update

* matcher update

* Modified the matcher.

* minor updates

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-26 23:27:45 +05:30
Sandeep Singh 21b7bd1547
Update CVE-2017-7391.yaml 2022-01-26 17:37:19 +05:30
Sullo 9a8482172d Remove:
- various nonstandard ascii chars in favor of the standard ones (mostly quotes)
 - spaces after : in some files
2022-01-25 14:38:53 -05:00
GitHub Action 173f0ef2d3 Auto Generated CVE annotations [Tue Jan 25 16:51:00 UTC 2022] 🤖 2022-01-25 16:51:00 +00:00
Sandeep Singh 4401b9ebe9
Merge pull request #3599 from projectdiscovery/CVE-2021-24838
Added CVE-2021-24838
2022-01-25 22:19:30 +05:30
Sandeep Singh 494a80799c
Merge pull request #3600 from MostInterestingBotInTheWorld/dashboard
Enhancement: cves/2021/CVE-2021-29156.yaml by cs
2022-01-25 22:09:27 +05:30
sandeep 8c7ec49185 lint fix 2022-01-25 22:08:01 +05:30
Prince Chaddha 97b38b98b4
Update CVE-2022-21371.yaml 2022-01-25 21:06:14 +05:30
Prince Chaddha 91d9b71864
Merge pull request #3596 from gy741/rule-add-v93
Create CVE-2021-39350.yaml
2022-01-25 17:16:12 +05:30
sandeep 47e34dba46 Added CVE-2021-24838 2022-01-25 17:14:00 +05:30
Prince Chaddha 6a2ff6f09e
Update CVE-2021-39350.yaml 2022-01-25 17:08:01 +05:30
GitHub Action 48add9c36b Auto Generated CVE annotations [Tue Jan 25 11:06:39 UTC 2022] 🤖 2022-01-25 11:06:39 +00:00