Commit Graph

2430 Commits (44cbfbf277ab0ab6a9f471e598927a58bd4f8ca4)

Author SHA1 Message Date
0x08 0ea1df844a
fix: Update the template to avoid false positives
While testing I got a false positive. The `phpinfo();` was one `index.php` and any parameter appended did not affect the output. So I got a false positive because the template tests for `phpinfo();`. So I propose that the test string is updated to something random and if there is execution the string will show on the output.
2022-08-31 00:03:36 +03:00
MostInterestingBotInTheWorld 36cf9b2f61
Dashboard Enhancements + Severity Matching (#5245)
Dashboard Enhancements + Severity Matching
2022-08-29 16:21:30 -04:00
GitHub Action bc21497f99 Auto Generated CVE annotations [Sat Aug 27 04:41:18 UTC 2022] 🤖 2022-08-27 04:41:18 +00:00
Prince Chaddha 9838347cc3
Merge pull request #5027 from akincibor/wp-enhancement
Update Wordpress templates: typo, cve-id, ref & remove dupe
2022-08-25 14:12:13 +05:30
Prince Chaddha 15dbade56b
Merge pull request #5191 from arafatansari/patch-70
Create gnuboard5-rxss.yaml
2022-08-25 12:39:34 +05:30
Prince Chaddha ff82f4311d
Rename vulnerabilities/other/gnuboard5-rxss.yaml to vulnerabilities/gnuboard/gnuboard5-rxss.yaml 2022-08-25 12:27:51 +05:30
Prince Chaddha 409b655062
Rename vulnerabilities/other/gnuboard-sms-xss.yaml to vulnerabilities/gnuboard/gnuboard-sms-xss.yaml 2022-08-25 11:58:06 +05:30
Prince Chaddha 080906ab35
Update and rename vulnerabilities/other/gnuboard5-xss.yaml to vulnerabilities/gnuboard/gnuboard5-xss.yaml 2022-08-25 11:57:28 +05:30
Ritik Chaddha 3497197092
Update gnuboard5-rxss.yaml 2022-08-24 12:29:34 +05:30
Ritik Chaddha f7e6c4d03d
Update gnuboard5-xss.yaml 2022-08-24 12:23:48 +05:30
Arafat Ansari f5a80bcfe3
Create gnuboard5-rxss.yaml 2022-08-24 00:36:54 +05:30
Arafat Ansari 7dfd3a4edd
Create gnuboard5-xss.yaml 2022-08-24 00:21:46 +05:30
HJLee 660e8d3214 Modify spacing between id and info 2022-08-22 16:17:05 +09:00
Prince Chaddha 6bded3407c
Merge pull request #5117 from projectdiscovery/thruk-xss
Update thruk-xss.yaml
2022-08-16 18:03:41 -07:00
Prince Chaddha 486845f91f
Update thruk-xss.yaml 2022-08-17 05:00:25 +04:00
Prince Chaddha d90538043f
Merge pull request #5104 from djoevanka/patch-1
Added concrete-xss
2022-08-15 15:23:44 -07:00
Prince Chaddha 7269960168
Delete concrete-xss.yaml 2022-08-15 15:05:45 -07:00
Prince Chaddha 9f5ebd2182
Update concrete-xss.yaml 2022-08-15 14:55:19 -07:00
Ritik Chaddha 962bd2a744
Update thruk-xss.yaml 2022-08-15 14:27:04 +05:30
djojoe 5a3a34e4e2
Create concrete-xss.yaml 2022-08-14 20:18:48 +07:00
Prince Chaddha 0bdb85d570
Merge pull request #5091 from arafatansari/patch-52
Create dzzoffice-xss.yaml
2022-08-13 21:45:36 -07:00
Prince Chaddha 3b5c473606
Merge pull request #5081 from arafatansari/patch-51
Create kavita-lfi.yaml
2022-08-12 16:33:40 -07:00
Prince Chaddha 000c7c42d6
Update kavita-lfi.yaml 2022-08-12 16:23:16 -07:00
Prince Chaddha 338271dd97
Update and rename reddittoprss-xss.yaml to reddittop-rss-xss.yaml 2022-08-12 16:16:37 -07:00
Ritik Chaddha 12a76141a2
Update dzzoffice-xss.yaml 2022-08-13 00:37:24 +05:30
Arafat Ansari dc778f626a
Create dzzoffice-xss.yaml 2022-08-12 23:41:26 +05:30
Ritik Chaddha 5c867517d0
Update kavita-lfi.yaml 2022-08-12 16:14:39 +05:30
Ritik Chaddha aa8da9ab43
Update reddittoprss-xss.yaml 2022-08-12 15:55:22 +05:30
Arafat Ansari 6b6e82d232
Create kavita-lfi.yaml 2022-08-12 12:41:00 +05:30
Arafat Ansari 4b007e87d2
Create reddittoprss-xss.yaml 2022-08-12 12:39:23 +05:30
Prince Chaddha 9f4e720ba5
Merge pull request #4991 from projectdiscovery/log4j
Log4j
2022-08-10 09:56:15 -07:00
Prince Chaddha b67e15d02e
Update vmware-operation-manager-log4j.yaml 2022-08-10 09:41:22 -07:00
Prince Chaddha 1623e617b9
Update vmware-nsx-log4j.yaml 2022-08-10 09:41:02 -07:00
Prince Chaddha 39b7f16853
Update vmware-hcx-log4j.yaml 2022-08-10 09:40:49 -07:00
Prince Chaddha ea0315c4f2
Update rundeck-log4j.yaml 2022-08-10 09:40:35 -07:00
Prince Chaddha df1984890a
Update metabase-log4j.yaml 2022-08-10 09:40:16 -07:00
Prince Chaddha 2836673718
Update jamf-pro-log4j.yaml 2022-08-10 09:40:00 -07:00
Prince Chaddha 8a17b91ddd
Update graylog-log4j.yaml 2022-08-10 09:39:30 -07:00
Prince Chaddha 064b49d115
Update cisco-vmanage-log4j.yaml 2022-08-10 09:39:00 -07:00
Prince Chaddha 66c68c63a4
Update cisco-unified-communications-log4j.yaml 2022-08-10 09:38:46 -07:00
Prince Chaddha c7b77ae818
Update vmware-operation-manager-log4j.yaml 2022-08-10 09:37:38 -07:00
Prince Chaddha fadf1ba975
Merge pull request #5005 from projectdiscovery/wp-blogroll-fun-xss
Create wp-blogroll-fun-xss.yaml
2022-08-10 09:35:43 -07:00
Prince Chaddha 6899066085
Update wp-blogroll-fun-xss.yaml 2022-08-10 09:32:23 -07:00
Ritik Chaddha 98f75b6390
Update and rename vulnerabilities/wordpress/wp-church-admin-xss.yaml to cves/2015/CVE-2015-4127.yaml 2022-08-10 15:01:50 +05:30
Ritik Chaddha 0ba0e74aa1
Update wp-ambience-xss.yaml 2022-08-10 14:50:05 +05:30
Ritik Chaddha 0bbe2ff881
Update wordpress-zebra-form-xss.yaml 2022-08-10 14:48:17 +05:30
Ritik Chaddha 9f0b259e75
Update wordpress-social-metrics-tracker.yaml 2022-08-10 14:45:01 +05:30
Ritik Chaddha 37c98909c9
Update w3c-total-cache-ssrf.yaml 2022-08-10 14:43:01 +05:30
Ritik Chaddha 0ebe9f0b8f
Update sassy-social-share.yaml 2022-08-10 14:38:35 +05:30
Ritik Chaddha d817811a58
Update nativechurch-wp-theme-lfd.yaml 2022-08-10 14:36:49 +05:30
Ritik Chaddha 61f94b90d8
Update eatery-restaurant-open-redirect.yaml 2022-08-10 14:32:39 +05:30
Ritik Chaddha 62f10760af
Update brandfolder-open-redirect.yaml 2022-08-10 14:27:59 +05:30
Ritik Chaddha 33d108ee76
Update advanced-access-manager-lfi.yaml 2022-08-10 14:19:57 +05:30
Ritik Chaddha 4c9182c73e
Update ad-widget-lfi.yaml 2022-08-10 14:18:06 +05:30
Ritik Chaddha 88f642a48a
Update wp-woocommerce-email-verification.yaml 2022-08-10 14:00:37 +05:30
Ritik Chaddha 8377f56550
Update wp-woocommerce-file-download.yaml 2022-08-10 13:58:11 +05:30
Prince Chaddha 518d92e567
Rename vulnerabilities/wordpress/wp-install.yaml to exposed-panels/wordpress/wp-install.yaml 2022-08-09 14:39:07 -07:00
Prince Chaddha 19b9eae7fe
Merge pull request #5018 from scent2d/CVE-2020-8772
Create CVE-2020-8772.yaml
2022-08-09 12:18:44 -07:00
Prince Chaddha 5dff73aec8
Merge pull request #5059 from pikpikcu/patch-335
Added webp server LFI
2022-08-09 12:02:17 -07:00
Prince Chaddha 60406e102f
Merge pull request #5055 from arafatansari/patch-48
Create yeswiki-sql.yaml
2022-08-09 11:47:41 -07:00
Prince Chaddha c69d94c158
Update yeswiki-sql.yaml 2022-08-09 11:43:33 -07:00
Prince Chaddha 473dbce6e6
Update yeswiki-sql.yaml 2022-08-09 11:41:09 -07:00
Prince Chaddha 6acbc4ed00
Merge pull request #5054 from arafatansari/patch-47
Create yeswiki-xss2.yaml
2022-08-09 11:38:41 -07:00
Prince Chaddha 8cf741bc67
Update yeswiki-stored-xss.yaml 2022-08-09 11:36:59 -07:00
Ritik Chaddha 9cde49ec96
Update webp-server-go-lfi.yaml 2022-08-09 16:25:59 +05:30
PikPikcU 9328ba3ee4
Create webp-server-go-lfi.yaml 2022-08-09 06:15:24 -04:00
Prince Chaddha b3e8664e2c
Merge pull request #5053 from arafatansari/patch-46
Create yeswiki-xss.yaml
2022-08-09 02:50:21 -07:00
Prince Chaddha 9ec1e497b3
Update yeswiki-xss.yaml 2022-08-09 02:47:08 -07:00
Prince Chaddha 7129ad3f4a
Update generic-j2ee-lfi.yaml 2022-08-09 02:36:13 -07:00
Prince Chaddha ef71f15309
Merge pull request #5050 from pussycat0x/master
CVE-2019-10692
2022-08-09 02:20:37 -07:00
Prince Chaddha c03b7f8448
Merge pull request #5038 from davidfegyver/j2ee-generic-lfi
Added generic J2EE LFI scan
2022-08-09 02:12:01 -07:00
Prince Chaddha 9dc980ad64
Update generic-j2ee-lfi.yaml 2022-08-09 02:09:46 -07:00
Ritik Chaddha 0590cc3c23
Update and rename yeswiki-xss2.yaml to yeswiki-stored-xss.yaml 2022-08-09 12:57:50 +05:30
Ritik Chaddha ca6611c9cf
Update yeswiki-sql.yaml 2022-08-09 12:02:17 +05:30
Dhiyaneshwaran 5c8f9cfdcf
Update yeswiki-xss.yaml 2022-08-09 07:40:54 +05:30
Arafat Ansari c0374e5993
Create yeswiki-sql.yaml 2022-08-09 02:41:34 +05:30
Arafat Ansari 8ec7755930
Create yeswiki-xss2.yaml 2022-08-09 02:40:20 +05:30
Arafat Ansari 0af2f4de1c
Create yeswiki-xss.yaml 2022-08-09 02:38:54 +05:30
Prince Chaddha 02e7097db5
Merge pull request #5041 from projectdiscovery/liferay-resource-leak
Create liferay-resource-leak.yaml
2022-08-08 13:08:22 -07:00
Prince Chaddha a7d1ffbefd
Update and rename misconfiguration/liferay-resource-leak.yaml to vulnerabilities/j2ee/liferay-resource-leak.yaml 2022-08-08 13:05:34 -07:00
Prince Chaddha bfaf4f5b6d Merge branch 'master' of https://github.com/projectdiscovery/nuclei-templates into pr/4738 2022-08-08 11:28:46 -07:00
Ritik Chaddha 3ca2ec0945
Update CVE-2019-10692.yaml 2022-08-08 19:11:01 +05:30
Ritik Chaddha 3964e22f69
Update CVE-2019-10692.yaml 2022-08-08 19:08:44 +05:30
pussycat0x 383ed21913
Add files via upload 2022-08-08 18:36:30 +05:30
Ritik Chaddha 6106342ddf
Update generic-j2ee-lfi.yaml 2022-08-08 12:05:51 +05:30
Dhiyaneshwaran 6d7316db73
Update generic-j2ee-lfi.yaml 2022-08-07 20:50:32 +05:30
Dhiyaneshwaran d02893bba3
Update generic-j2ee-lfi.yaml 2022-08-07 20:47:49 +05:30
David Fegyver 8590b47416
Added generic J2EE LFI scan 2022-08-07 15:31:31 +02:00
Prince Chaddha 3950e8304c
Update wp-blogroll-fun-xss.yaml 2022-08-06 10:36:51 -07:00
Akincibor db12feeead Update Wordpress templates: typo, cve-id, ref & remove dupe 2022-08-06 19:19:49 +02:00
Akincibor db692605d4 Update Wordpress templates: typo, cve-id, ref & remove dupe 2022-08-06 18:54:58 +02:00
Prince Chaddha 9e4645961c
Delete wordpress-infinitewp-auth-bypass.yaml 2022-08-06 00:09:02 -07:00
MostInterestingBotInTheWorld b2e886f09b
Dashboard Content Enhancements (#5009)
Dashboard Content Enhancements
2022-08-05 09:57:51 -04:00
pussycat0x e9974fe5ad
Delete wp-revslider-release-log-detect.yaml 2022-08-05 18:46:53 +05:30
Prince Chaddha 708649c943
Merge pull request #5008 from projectdiscovery/omnia-mpx-lfi
Update omnia-mpx-lfi.yaml
2022-08-05 07:58:42 +04:00
Prince Chaddha 3ef2eea48f
Merge pull request #5004 from projectdiscovery/wp-avchat-3-xss
Create wp-avchat-3-xss.yaml
2022-08-05 07:57:58 +04:00
Prince Chaddha ae02b5bb2b
Update omnia-mpx-lfi.yaml 2022-08-05 07:57:03 +04:00
Prince Chaddha e2d0cfed57
Update and rename wp-avchat-3-xss.yaml to avchat-video-chat-xss.yaml 2022-08-05 07:54:15 +04:00
Prince Chaddha 5538c251dd
Update and rename wp-athlon-manage-calameo-publications-xss.yaml to calameo-publications-xss.yaml 2022-08-05 07:48:41 +04:00
Ritik Chaddha a73b7924f0
Update omnia-mpx-lfi.yaml 2022-08-04 23:53:04 +05:30
Ritik Chaddha 5d7f87b2ab Revert "Update omnia-mpx-lfi.yaml"
This reverts commit 03ae109555.
2022-08-04 23:52:03 +05:30
Ritik Chaddha 03ae109555
Update omnia-mpx-lfi.yaml 2022-08-04 23:47:18 +05:30
Dhiyaneshwaran 738df35bfc
Create wp-blogroll-fun-xss.yaml 2022-08-04 22:23:16 +05:30
Dhiyaneshwaran 9128955363
Delete wp-blogroll-fun-xss.yaml 2022-08-04 22:22:52 +05:30
Dhiyaneshwaran aa4bec9d62
Create wp-blogroll-fun-xss.yaml 2022-08-04 22:21:53 +05:30
Dhiyaneshwaran 404f1d56eb
Create wp-avchat-3-xss.yaml 2022-08-04 22:10:29 +05:30
Dhiyaneshwaran 94dcb8f006
Create wp-athlon-manage-calameo-publications-xss.yaml 2022-08-04 22:01:49 +05:30
Dhiyaneshwaran 4bc8d0fa91
Delete wp-athlon-manage-calameo-publications-xss.yaml 2022-08-04 22:01:14 +05:30
Dhiyaneshwaran a02733dcbc
Create wp-athlon-manage-calameo-publications-xss.yaml 2022-08-04 21:55:50 +05:30
Prince Chaddha 3c7f0847aa
Merge pull request #4913 from Akokonunes/patch-170
Create crystal-live-http-server-lfi.yaml
2022-08-04 20:27:25 +05:30
Prince Chaddha eee45f4897
Update and rename crystal-live-http-server-lfi.yaml to crystal-live-server-lfi.yaml 2022-08-04 18:55:57 +04:00
Prince Chaddha 64f3b3aac5
Merge pull request #4992 from projectdiscovery/microweber-stored-xss
Delete microweber-stored-xss.yaml
2022-08-04 19:52:29 +05:30
Prince Chaddha 53a2f6b0f9
Merge pull request #4979 from arafatansari/patch-37
Create mpx-lfi.yaml
2022-08-03 19:03:32 +05:30
Prince Chaddha fe631c7d8b
Merge pull request #4982 from projectdiscovery/solarview-compact-xss
Create solarview-compact-xss.yaml
2022-08-03 19:03:21 +05:30
Dhiyaneshwaran b548f03918
Create vmware-operation-manager-log4j.yaml 2022-08-03 18:47:13 +05:30
Dhiyaneshwaran 6d8a1762da
Create vmware-nsx-log4j.yaml 2022-08-03 18:46:40 +05:30
Dhiyaneshwaran b91aa0fb7c
Create vmware-hcx-log4j.yaml 2022-08-03 18:46:12 +05:30
Dhiyaneshwaran 2e17f180a9
Create rundeck-log4j.yaml 2022-08-03 18:45:34 +05:30
Dhiyaneshwaran 8c3f59485a
Create metabase-log4j.yaml 2022-08-03 18:44:49 +05:30
Dhiyaneshwaran cdde4d5053
Create jamf-pro-log4j.yaml 2022-08-03 18:44:10 +05:30
Dhiyaneshwaran 111e9319f1
Create graylog-log4j.yaml 2022-08-03 18:43:22 +05:30
Dhiyaneshwaran ad5c44ee6a
Create cisco-vmanage-log4j.yaml 2022-08-03 18:42:29 +05:30
Ritik Chaddha 82a0ff9b0b
Delete microweber-stored-xss.yaml 2022-08-03 18:42:24 +05:30
Dhiyaneshwaran 21340d3862
Create cisco-unified-communications-log4j.yaml 2022-08-03 18:40:21 +05:30
Prince Chaddha 78e60a784f
Rename vulnerabilities/other/royalevent/royalevent-stored-xss.yaml to vulnerabilities/royalevent/royalevent-stored-xss.yaml 2022-08-03 18:35:05 +05:30
Prince Chaddha cfeb72ac56
Rename vulnerabilities/other/royalevent/royalevent-management-xss.yaml to vulnerabilities/royalevent/royalevent-management-xss.yaml 2022-08-03 18:34:58 +05:30
Ritik Chaddha 2253fdcdab
Create solarview-compact-xss.yaml 2022-08-02 20:47:11 +05:30
Ritik Chaddha 3a75420965
Update and rename mpx-lfi.yaml to omnia-mpx-lfi.yaml 2022-08-02 18:31:57 +05:30
Arafat Ansari b74d093f74
Create mpx-lfi.yaml 2022-08-02 18:19:05 +05:30
Dhiyaneshwaran cacc097e08
Update crystal-live-http-server-lfi.yaml 2022-08-02 15:51:33 +05:30
Dhiyaneshwaran a7ffb8182b
Update crystal-live-http-server-lfi.yaml 2022-08-02 15:49:21 +05:30
Dhiyaneshwaran c729e73abe
Update and rename crystal-live-http-server-lfi.yaml to vulnerabilities/other/crystal-live-http-server-lfi.yaml 2022-08-02 15:40:20 +05:30
Dhiyaneshwaran b103fb9ef0
Update wp-revslider-release-log-detect.yaml 2022-08-02 15:00:54 +05:30
Dhiyaneshwaran 0963069a3c
Update and rename wp-revslider-release_log-detect.yaml to wp-revslider-release-log-detect.yaml 2022-08-02 14:47:17 +05:30
pussycat0x 76a55fc884
Add files via upload 2022-08-02 11:48:19 +05:30
Prince Chaddha 4a37bf0a2d
Merge pull request #4881 from arafatansari/patch-19
Create ems-sqli.yaml
2022-08-01 11:13:23 +05:30
Prince Chaddha 4c51fe5c08
Update carrental-xss.yaml 2022-08-01 10:51:34 +05:30
Dhiyaneshwaran 0f182e5102
Update carrental-xss.yaml 2022-08-01 05:40:27 +05:30
Arafat Ansari 4397a352f8
Create carrental-xss.yaml 2022-08-01 02:39:55 +05:30
Prince Chaddha f5b3587750
Merge pull request #4917 from amit-jd/amit-patch-7
Create stored-xss-mwb
2022-07-31 10:02:34 +05:30
Prince Chaddha 8d4a74484c
Rename stored-xss-mwb.yaml to microweber-stored-xss.yaml 2022-07-30 14:02:12 +05:30
Prince Chaddha 3916a596b5
Merge pull request #4890 from projectdiscovery/goanywhere-log4j-rce
Added goanywhere-log4j-rce
2022-07-30 13:58:47 +05:30
Ritik Chaddha b78a6b9a85
Update ems-sqli.yaml 2022-07-30 12:16:47 +05:30
Prince Chaddha 92e61df0e6
Update goanywhere-mft-log4j-rce.yaml 2022-07-30 11:05:23 +05:30
MostInterestingBotInTheWorld 8c3ab6c654
Dashboard Content Enhancements (#4943)
Dashboard Content Enhancements
2022-07-29 10:04:23 -04:00
Ritik Chaddha 06adbe6447 Update springboot-actuators-jolokia-xxe.yaml 2022-07-28 14:05:26 +05:30
MostInterestingBotInTheWorld 690da7dd94
Dashboard Content Enhancements (#4927)
Dashboard Content Enhancements
2022-07-27 16:17:31 -04:00
Ritik Chaddha efcd51e82c
Create analytify-plugin-xss.yaml 2022-07-27 16:46:12 +05:30
Ritik Chaddha c28e6fa3ea
Update and rename goanywhere-log4j-rce.yaml to goanywhere-mft-log4j-rce.yaml 2022-07-27 14:21:59 +05:30
Ritik Chaddha a9afe92229
Update stored-xss-mwb.yaml 2022-07-27 13:18:58 +05:30