Commit Graph

1855 Commits (41df1d813615e45ae870ecc0ce96462a881795a1)

Author SHA1 Message Date
Muhammad Daffa 3830a7805a
Create CVE-2016-1000128.yaml 2021-07-17 00:49:06 +07:00
Muhammad Daffa 141993dafd
Create CVE-2009-1558.yaml 2021-07-17 00:40:24 +07:00
Prince Chaddha 28a0197945
Merge pull request #2048 from projectdiscovery/princechaddha-patch-1
Update CVE-2018-12031.yaml
2021-07-16 20:18:06 +05:30
Prince Chaddha 33a0ede229
Merge pull request #2009 from gy741/rule-add-v24
Create CVE-2020-26919, CVE-2020-25506, OptiLink ONT1GEW GPON RCE, CVE-2021-31755
2021-07-16 18:04:52 +05:30
Prince Chaddha 5d88f85f44
Merge pull request #2003 from daffainfo/patch-48
Create CVE-2012-1835.yaml
2021-07-16 18:00:24 +05:30
Prince Chaddha 015a073d38
Merge pull request #2049 from daffainfo/patch-75
Create CVE-2019-20085.yaml
2021-07-16 17:59:46 +05:30
Prince Chaddha 829507fd1e
Update CVE-2019-20085.yaml 2021-07-16 17:58:51 +05:30
Prince Chaddha 379345fc05
Update CVE-2019-20085.yaml 2021-07-16 17:57:49 +05:30
Prince Chaddha a599daf014
Merge pull request #2010 from daffainfo/patch-54
Create CVE-2016-10960.yaml
2021-07-16 17:56:25 +05:30
Prince Chaddha eaba7dc5de
Update CVE-2016-10960.yaml 2021-07-16 17:54:37 +05:30
Muhammad Daffa f857247e84
Create CVE-2019-20085.yaml 2021-07-16 19:17:49 +07:00
Prince Chaddha 429bb01311
Update CVE-2016-10960.yaml 2021-07-16 17:46:33 +05:30
Prince Chaddha 833306ad86
Merge pull request #2025 from daffainfo/patch-63
Create CVE-2019-16525.yaml
2021-07-16 17:44:09 +05:30
Prince Chaddha 9ab9617b95
Update CVE-2019-16525.yaml 2021-07-16 17:42:41 +05:30
Prince Chaddha 304ab07b28
Update CVE-2018-12031.yaml 2021-07-16 17:42:00 +05:30
Prince Chaddha 110a989ff1
Update CVE-2018-12031.yaml 2021-07-16 17:36:12 +05:30
Prince Chaddha 6686b39b75
Merge pull request #2047 from daffainfo/patch-74
Create CVE-2018-12031.yaml
2021-07-16 17:33:54 +05:30
Prince Chaddha 4238febae3
Update CVE-2018-12031.yaml 2021-07-16 17:33:02 +05:30
Prince Chaddha 4da4ebf224
Merge pull request #2020 from gy741/rule-add-v25
Create CVE-2020-35713.yaml
2021-07-16 17:31:26 +05:30
Prince Chaddha f4f05394e1
Update CVE-2020-35713.yaml 2021-07-16 17:30:35 +05:30
Muhammad Daffa 134031c9aa
Update and rename cves/2020/CVE-2020-14461.yaml to cves/2018/CVE-2018-12031.yaml 2021-07-16 18:56:28 +07:00
Muhammad Daffa 90776cea1c
Create CVE-2020-14461.yaml 2021-07-16 18:52:12 +07:00
Regala 6aef970258
Update CVE-2020-17362.yaml
Added "nova-lite" matcher; massively reduce false positives.
2021-07-16 12:19:30 +01:00
Prince Chaddha 0c4a223fa0
Update CVE-2016-10960.yaml 2021-07-16 11:13:17 +05:30
Prince Chaddha 900347eeb4
Merge pull request #2044 from daffainfo/patch-72
Create CVE-2017-17043.yaml
2021-07-16 11:07:52 +05:30
Prince Chaddha 84223eb0b8
Merge pull request #2033 from daffainfo/patch-67
Create CVE-2018-11709.yaml
2021-07-16 11:07:42 +05:30
Prince Chaddha 247c964e78
Merge pull request #2034 from daffainfo/patch-68
Create CVE-2018-5316.yaml
2021-07-16 11:07:32 +05:30
Prince Chaddha f977df559c
Update CVE-2018-11709.yaml 2021-07-16 11:05:11 +05:30
Prince Chaddha cbd0d293bd
Merge pull request #2031 from daffainfo/patch-65
Create CVE-2019-15713.yaml
2021-07-16 11:02:45 +05:30
Prince Chaddha 19820c14d9
Merge pull request #2032 from daffainfo/patch-66
Create CVE-2018-20462.yaml
2021-07-16 11:02:35 +05:30
Prince Chaddha da4b0d4da7
Update CVE-2018-20462.yaml 2021-07-16 11:01:29 +05:30
Prince Chaddha 39dbf2a36c
Merge pull request #2030 from daffainfo/patch-64
Create CVE-2019-16332.yaml
2021-07-16 11:00:34 +05:30
Prince Chaddha a08eed7ce8
Update CVE-2019-15713.yaml 2021-07-16 11:00:01 +05:30
Prince Chaddha a78e6caafc
Update CVE-2019-16332.yaml 2021-07-16 10:57:50 +05:30
Prince Chaddha a047cd77ff
Update CVE-2017-17043.yaml 2021-07-16 10:50:55 +05:30
Prince Chaddha ffb5edffd8
Merge pull request #2042 from daffainfo/patch-70
Create CVE-2017-17451.yaml
2021-07-16 10:49:33 +05:30
Prince Chaddha c7d0efa420
Merge pull request #2043 from daffainfo/patch-71
Create CVE-2017-17059.yaml
2021-07-16 10:49:20 +05:30
Prince Chaddha be7247bc77
Update CVE-2017-17059.yaml 2021-07-16 10:44:57 +05:30
Prince Chaddha 7ae1641822
Merge pull request #2041 from daffainfo/patch-69
Create CVE-2017-18536.yaml
2021-07-16 10:43:08 +05:30
Prince Chaddha f0d1da0d2e
Update CVE-2017-17451.yaml 2021-07-16 10:43:04 +05:30
Prince Chaddha a7f2472922
Update CVE-2017-18536.yaml 2021-07-16 10:41:33 +05:30
Prince Chaddha 4287359c29
Update CVE-2017-9288.yaml 2021-07-16 10:30:43 +05:30
Muhammad Daffa 03698a57ee
Create CVE-2017-9288.yaml 2021-07-16 11:28:40 +07:00
Muhammad Daffa 5be858f2d6
Create CVE-2017-17043.yaml 2021-07-16 11:27:01 +07:00
Muhammad Daffa 2a76b19a36
Create CVE-2017-17059.yaml 2021-07-16 11:25:24 +07:00
Muhammad Daffa d07faf8034
Create CVE-2017-17451.yaml 2021-07-16 11:22:53 +07:00
Muhammad Daffa e89607941c
Create CVE-2017-18536.yaml 2021-07-16 11:20:28 +07:00
sandeep 94ae6ea0bf Added tag 2021-07-15 23:47:05 +05:30
sandeep 97dfd43f1e Added tag and removed unsafe 2021-07-15 23:46:08 +05:30
Muhammad Daffa 5bee8dd716
Create CVE-2018-5316.yaml 2021-07-16 00:16:27 +07:00
Muhammad Daffa 9d84281202
Create CVE-2018-11709.yaml 2021-07-16 00:14:42 +07:00
Muhammad Daffa 367f5d225d
Create CVE-2018-20462.yaml 2021-07-16 00:12:52 +07:00
Muhammad Daffa bf68e5060d
Create CVE-2019-15713.yaml 2021-07-16 00:09:33 +07:00
Muhammad Daffa 28278b45a2
Create CVE-2019-16332.yaml 2021-07-16 00:06:33 +07:00
Muhammad Daffa 8a28dc1935
Create CVE-2019-16525.yaml 2021-07-15 19:30:44 +07:00
Prince Chaddha 56d5386c77
Merge pull request #1939 from daffainfo/patch-22
Create CVE-2012-4768.yaml
2021-07-15 17:45:48 +05:30
Prince Chaddha 05be6d517c
Merge pull request #2019 from Akokonunes/patch-22
Create CVE-2018-9118.yaml
2021-07-15 17:42:39 +05:30
Prince Chaddha f13d61c128
Update CVE-2018-9118.yaml 2021-07-15 17:41:16 +05:30
Prince Chaddha 42fd30dfd8
Update and rename CVE-2018-9118.yaml to cves/2018/CVE-2018-9118.yaml 2021-07-15 17:40:37 +05:30
Prince Chaddha 2081c6d259
Merge pull request #2024 from daffainfo/patch-62
Create CVE-2019-19134.yaml
2021-07-15 17:30:28 +05:30
Prince Chaddha b7d2ac2843
Merge pull request #2023 from daffainfo/patch-61
Create CVE-2020-12054.yaml
2021-07-15 17:27:05 +05:30
Prince Chaddha 22a16b4b17
Update CVE-2019-19134.yaml 2021-07-15 17:26:55 +05:30
Prince Chaddha 89112a18d6
Update CVE-2020-12054.yaml 2021-07-15 17:25:22 +05:30
Prince Chaddha 93293c986a
Update CVE-2020-17362.yaml 2021-07-15 17:22:49 +05:30
Muhammad Daffa f816c58bac
Create CVE-2019-19134.yaml 2021-07-15 18:40:17 +07:00
Muhammad Daffa cb364b16c5
Update CVE-2020-12054.yaml 2021-07-15 18:30:38 +07:00
Muhammad Daffa dc2cf528bd
Create CVE-2020-12054.yaml 2021-07-15 18:27:45 +07:00
Muhammad Daffa 6d3e02ddc1
Create CVE-2020-17362.yaml 2021-07-15 18:14:59 +07:00
Prince Chaddha ee1719ee26
Update CVE-2012-1835.yaml 2021-07-15 15:07:53 +05:30
Prince Chaddha 321fcfdac1
Update CVE-2012-1835.yaml 2021-07-15 15:05:55 +05:30
Prince Chaddha 217ae33414
Merge pull request #1999 from daffainfo/patch-46
Create CVE-2015-9480.yaml
2021-07-15 15:04:45 +05:30
Prince Chaddha 36e366f0e7
Merge pull request #2002 from daffainfo/patch-47
Create CVE-2011-5106.yaml
2021-07-15 15:04:17 +05:30
Prince Chaddha a13090dd4b
Update CVE-2012-1835.yaml 2021-07-15 15:01:21 +05:30
Prince Chaddha 6ba8600282
Update CVE-2011-5106.yaml 2021-07-15 14:54:35 +05:30
Prince Chaddha 7e9ba472a0
Merge pull request #2012 from daffainfo/patch-56
Create CVE-2011-1669.yaml
2021-07-15 14:53:20 +05:30
Prince Chaddha 456f5d6b15
Merge pull request #2014 from daffainfo/patch-57
Create CVE-2021-24320.yaml
2021-07-15 14:51:34 +05:30
Prince Chaddha d00d4f37f5
Update CVE-2021-24320.yaml 2021-07-15 14:43:35 +05:30
GwanYeong Kim f8f9f539ea Create CVE-2020-35713.yaml
Belkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to execute arbitrary commands or set a new password via shell metacharacters to the goform/setSysAdm page.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 18:10:11 +09:00
Prince Chaddha 39def9b6e1
Merge pull request #2008 from daffainfo/patch-53
Create CVE-2021-24335.yaml
2021-07-15 14:35:27 +05:30
Prince Chaddha e79277cef1
Merge pull request #2005 from daffainfo/patch-50
Create CVE-2012-4273.yaml
2021-07-15 14:35:12 +05:30
Prince Chaddha 96e8a1fb0a
Merge pull request #2011 from daffainfo/patch-55
Create CVE-2019-9618.yaml
2021-07-15 14:33:33 +05:30
Prince Chaddha 9e3fe02a38
Merge pull request #2007 from daffainfo/patch-52
Create CVE-2014-4513.yaml
2021-07-15 14:33:16 +05:30
Prince Chaddha d73599eb3c
Merge pull request #2006 from daffainfo/patch-51
Create CVE-2021-24389.yaml
2021-07-15 14:32:09 +05:30
Prince Chaddha a7b69d34f5
Update CVE-2012-4273.yaml 2021-07-15 14:31:25 +05:30
Prince Chaddha 799e7109c3
Update CVE-2021-24389.yaml 2021-07-15 14:30:23 +05:30
Prince Chaddha 75c7fa04e3
Update CVE-2014-4513.yaml 2021-07-15 14:28:58 +05:30
Prince Chaddha 7a1e276d7b
Update CVE-2021-24335.yaml 2021-07-15 14:27:55 +05:30
Prince Chaddha fb1f67ce26
Rename CVE-2016-10960.yaml to cves/2016/CVE-2016-10960.yaml 2021-07-15 14:21:17 +05:30
Prince Chaddha c20a208c4a
Update CVE-2019-9618.yaml 2021-07-15 14:20:42 +05:30
Prince Chaddha 5cab7d67e4
Update CVE-2011-1669.yaml 2021-07-15 14:20:03 +05:30
Prince Chaddha caa5ceecca
Update CVE-2015-9480.yaml 2021-07-15 14:16:52 +05:30
Prince Chaddha 2f41c4de62
Update CVE-2021-24298.yaml 2021-07-15 14:15:49 +05:30
GwanYeong Kim 1c729ab1ea Create CVE-2021-31755.yaml
Vulnerabilities in the web-based management interface of enda Router AC11 could allow an unauthenticated, remote attacker to perform command injection attacks against an affected device.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 15:09:26 +09:00
GwanYeong Kim a3699d912a Create CVE-2020-25506.yaml
The exploit targets a command injection vulnerability in a system_mgr.cgi component. The component does not successfully sanitize the value of the HTTP parameters f_ntp_server, which in turn leads to arbitrary command execution.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 14:28:14 +09:00
Muhammad Daffa 031cd24480
Create CVE-2021-24298.yaml 2021-07-15 10:52:21 +07:00
Muhammad Daffa ca75afe52c
Create CVE-2021-24320.yaml 2021-07-15 10:38:35 +07:00
Muhammad Daffa 3c2a1cd727
Create CVE-2011-1669.yaml 2021-07-15 10:01:50 +07:00
Muhammad Daffa 3fa2bf156a
Create CVE-2019-9618.yaml 2021-07-15 09:48:59 +07:00
GwanYeong Kim 67ae44be04 Create CVE-2020-26919.yaml
it was found that every section of the web could be used as a valid endpoint to submit POST requests being the action defined by the submitId argument. The problem was located in the login.html webpage, that has to be publicly available to perform login requests but does not implement any restriction for executing debug actions. This will allow users execute system commands.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 10:54:56 +09:00
Muhammad Daffa e34ec6c05c
Create CVE-2021-24335.yaml 2021-07-15 07:06:50 +07:00