Commit Graph

6868 Commits (450c6b36900818a2c17da00cdcd53c20883f9fe3)

Author SHA1 Message Date
Prince Chaddha fb1f67ce26
Rename CVE-2016-10960.yaml to cves/2016/CVE-2016-10960.yaml 2021-07-15 14:21:17 +05:30
Prince Chaddha c20a208c4a
Update CVE-2019-9618.yaml 2021-07-15 14:20:42 +05:30
Prince Chaddha 5cab7d67e4
Update CVE-2011-1669.yaml 2021-07-15 14:20:03 +05:30
Prince Chaddha caa5ceecca
Update CVE-2015-9480.yaml 2021-07-15 14:16:52 +05:30
Prince Chaddha 2f41c4de62
Update CVE-2021-24298.yaml 2021-07-15 14:15:49 +05:30
Prince Chaddha 22ecd2a192
Merge pull request #2016 from DhiyaneshGeek/master
Severity Update
2021-07-15 14:14:38 +05:30
Prince Chaddha 887e7bcfab
Update wordpress-updraftplus-pem-key.yaml 2021-07-15 14:13:25 +05:30
Dhiyaneshwaran 525ffdefcc
Update unauthenticated-popup-upload.yaml 2021-07-15 13:52:06 +05:30
Dhiyaneshwaran 69b04c8a98
Update wordpress-updraftplus-pem-key.yaml 2021-07-15 13:51:19 +05:30
GwanYeong Kim 1c729ab1ea Create CVE-2021-31755.yaml
Vulnerabilities in the web-based management interface of enda Router AC11 could allow an unauthenticated, remote attacker to perform command injection attacks against an affected device.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 15:09:26 +09:00
GwanYeong Kim 1eb999ce02 Create optiLink-ont1gew-gpon-rce.yaml
vulnerabilities in the web-based management interface of OptiLink could allow an authenticated, remote attacker to perform command injection attacks against an affected device.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 14:57:34 +09:00
GwanYeong Kim a3699d912a Create CVE-2020-25506.yaml
The exploit targets a command injection vulnerability in a system_mgr.cgi component. The component does not successfully sanitize the value of the HTTP parameters f_ntp_server, which in turn leads to arbitrary command execution.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 14:28:14 +09:00
Muhammad Daffa 031cd24480
Create CVE-2021-24298.yaml 2021-07-15 10:52:21 +07:00
Muhammad Daffa ca75afe52c
Create CVE-2021-24320.yaml 2021-07-15 10:38:35 +07:00
Geeknik Labs 0d24b0c671
Update selea-ip-camera.yaml 2021-07-14 22:24:13 -05:00
Muhammad Daffa 3c2a1cd727
Create CVE-2011-1669.yaml 2021-07-15 10:01:50 +07:00
Muhammad Daffa 3fa2bf156a
Create CVE-2019-9618.yaml 2021-07-15 09:48:59 +07:00
Muhammad Daffa 1af27d9260
Create CVE-2016-10960.yaml 2021-07-15 09:41:14 +07:00
GwanYeong Kim 67ae44be04 Create CVE-2020-26919.yaml
it was found that every section of the web could be used as a valid endpoint to submit POST requests being the action defined by the submitId argument. The problem was located in the login.html webpage, that has to be publicly available to perform login requests but does not implement any restriction for executing debug actions. This will allow users execute system commands.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-07-15 10:54:56 +09:00
Muhammad Daffa e34ec6c05c
Create CVE-2021-24335.yaml 2021-07-15 07:06:50 +07:00
Muhammad Daffa 1dedb2aee5
Create CVE-2014-4513.yaml 2021-07-15 06:59:13 +07:00
Muhammad Daffa 6a0d2d2b90
Create CVE-2021-24389.yaml 2021-07-15 06:54:35 +07:00
Muhammad Daffa ad69ef25cb
Create CVE-2012-4273.yaml 2021-07-15 06:51:46 +07:00
Muhammad Daffa ad3f81bc95
Create wp-custom-tables-xss.yaml 2021-07-15 06:21:50 +07:00
Muhammad Daffa b3766162cc
Create CVE-2012-1835.yaml 2021-07-15 06:19:57 +07:00
Muhammad Daffa 65166046e7
Create CVE-2011-5106.yaml 2021-07-15 06:17:43 +07:00
pussycat0x 6501f8ef45
Add files via upload 2021-07-14 23:38:45 +05:30
Sandeep Singh 11dc9db49e
Merge pull request #1997 from skar4444/sassy-update
Update-sassy-social-share-xss
2021-07-14 20:56:57 +05:30
sandeep 117b0558a9 Update sassy-social-share.yaml 2021-07-14 20:55:05 +05:30
Sandeep Singh bfa2d8ce1a
Merge pull request #2000 from shelld3v/patch-4
File name correction
2021-07-14 20:50:48 +05:30
Pham Sy Minh afe9dc69bf
File name correction 2021-07-14 21:54:46 +07:00
Muhammad Daffa e43c3befdf
Create CVE-2015-9480.yaml 2021-07-14 21:13:26 +07:00
Prince Chaddha f218ea12ee
Update CVE-2012-4768.yaml 2021-07-14 19:28:30 +05:30
GitHub Action 508a104728 Auto Update README [Wed Jul 14 13:58:04 UTC 2021] 🤖 2021-07-14 13:58:04 +00:00
Prince Chaddha 5182b88b54
Merge pull request #1871 from projectdiscovery/huijietong-cloud-fileread
Create huijietong-cloud-fileread.yaml
2021-07-14 19:27:43 +05:30
Prince Chaddha 85a6271c20
Merge pull request #1996 from daffainfo/patch-45
Create CVE-2015-1000012.yaml
2021-07-14 19:27:29 +05:30
Prince Chaddha e904f97937
Update CVE-2015-1000012.yaml 2021-07-14 19:26:20 +05:30
GitHub Action 930abafc4d Auto Update README [Wed Jul 14 13:54:23 UTC 2021] 🤖 2021-07-14 13:54:23 +00:00
Prince Chaddha 6559a49a8e
Merge pull request #1972 from daffainfo/patch-33
Create CVE-2013-4625.yaml
2021-07-14 19:24:05 +05:30
Prince Chaddha 127b66c546
Merge pull request #1995 from daffainfo/patch-44
Create CVE-2016-10956.yaml
2021-07-14 19:23:54 +05:30
GitHub Action 61cc2d3d40 Auto Update README [Wed Jul 14 13:52:59 UTC 2021] 🤖 2021-07-14 13:52:59 +00:00
Prince Chaddha ecdb1b3204
Merge pull request #1977 from daffainfo/patch-36
Create CVE-2011-4618.yaml
2021-07-14 19:22:35 +05:30
Prince Chaddha 336ea26181
Update CVE-2013-4625.yaml 2021-07-14 19:22:11 +05:30
GitHub Action bad21d54b4 Auto Update README [Wed Jul 14 13:46:13 UTC 2021] 🤖 2021-07-14 13:46:13 +00:00
Prince Chaddha 57e03632d0
Merge pull request #1971 from daffainfo/patch-32
Create CVE-2013-4117.yaml
2021-07-14 19:15:55 +05:30
GitHub Action 2dbf5488ac Auto Update README [Wed Jul 14 13:45:24 UTC 2021] 🤖 2021-07-14 13:45:24 +00:00
Prince Chaddha ecd98c6403
Merge pull request #1967 from daffainfo/patch-31
Create wp-slideshow-xss.yaml
2021-07-14 19:15:07 +05:30
Prince Chaddha 3f5a32b61c
Update CVE-2013-4117.yaml 2021-07-14 19:14:56 +05:30
Prince Chaddha 55ea2242b7
Rename vulnerabilities/wp-slideshow-xss.yaml to vulnerabilities/wordpress/wp-slideshow-xss.yaml 2021-07-14 19:14:06 +05:30
GitHub Action 5260e4ba18 Auto Update README [Wed Jul 14 13:40:46 UTC 2021] 🤖 2021-07-14 13:40:46 +00:00