Commit Graph

7808 Commits (515d4695061cb104d4820a0f0a9c473fa05ea7d5)

Author SHA1 Message Date
sandeep 515d469506 strict matchers 2021-08-04 12:10:24 +05:30
Sandeep Singh 5965a3e44c
Merge pull request #2319 from dwisiswant0/add/CVE-2021-37216
Add CVE-2021-37216
2021-08-03 20:40:52 +05:30
Prince Chaddha a4628d1f58
Merge pull request #2195 from daffainfo/patch-107
Create CVE-2016-1000153.yaml
2021-08-03 20:34:28 +05:30
Prince Chaddha cc715bd005
Merge pull request #2196 from daffainfo/patch-108
Create CVE-2016-1000155.yaml
2021-08-03 20:33:18 +05:30
Prince Chaddha a5f74e0484
Update CVE-2016-1000153.yaml 2021-08-03 20:33:02 +05:30
Prince Chaddha e6ea819b9c
Update CVE-2016-1000155.yaml 2021-08-03 20:31:20 +05:30
sandeep a3347504fe minor update 2021-08-03 20:18:40 +05:30
sandeep 1b5420bc4b updated matcher 2021-08-03 20:14:14 +05:30
Prince Chaddha 62bcd6932d
Merge pull request #2198 from gy741/rule-add-v43
Create CVE-2021-32305.yaml
2021-08-03 20:02:32 +05:30
Dwi Siswanto f59905ced2 Add CVE-2021-37216 2021-08-03 21:31:33 +07:00
sandeep 2e95c0a74f Revert "Auto Generated Templates Stats [Tue Jul 27 00:25:35 UTC 2021] 🤖"
This reverts commit 44c0757a23.
2021-08-03 19:59:39 +05:30
Prince Chaddha 3395eff8a0
Merge pull request #2316 from gy741/rule-add-v49
Create CVE-2020-7796.yaml
2021-08-03 19:57:45 +05:30
Prince Chaddha c581a94bf4
Merge pull request #2318 from gy741/rule-add-v50
Create longjing-technology-bems-api-lfi.yaml
2021-08-03 19:56:57 +05:30
Prince Chaddha 28d568b88c
Update and rename longjing-technology-bems-api-lfi.yaml to bems-api-lfi.yaml 2021-08-03 19:55:25 +05:30
Prince Chaddha 23bc448b1b
Merge pull request #2199 from pikpikcu/patch-208
Add OpenSIS POC
2021-08-03 19:53:32 +05:30
Prince Chaddha a4ad3b2d43
Update opensis-detect.yaml 2021-08-03 19:26:06 +05:30
Prince Chaddha b927288f30
Update CVE-2020-6637.yaml 2021-08-03 19:25:06 +05:30
GwanYeong Kim 5fb6332bd9 Create longjing-technology-bems-api-lfi.yaml
The application suffers from an unauthenticated arbitrary file download vulnerability. Input passed through the fileName parameter through downloads endpoint is not properly verified before being used to download files. This can be exploited to disclose the contents of arbitrary and sensitive files through directory traversal attacks.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-08-03 21:52:14 +09:00
Prince Chaddha 107c3594bf
Update CVE-2020-6637.yaml 2021-08-03 13:24:31 +05:30
Prince Chaddha 41b06a2ed7
Merge pull request #2216 from pikpikcu/patch-223
Add Zimbra XSS
2021-08-03 13:22:42 +05:30
Prince Chaddha c4acd62307
Update CVE-2018-14013.yaml 2021-08-03 13:13:57 +05:30
Prince Chaddha 1c83792023
Merge pull request #2314 from daffainfo/patch-126
Create CVE-2018-20470.yaml
2021-08-03 13:08:36 +05:30
Prince Chaddha ea1ae20a82
Create zimbra-preauth-ssrf.yaml 2021-08-03 12:52:56 +05:30
sandeep 3c03e28e55 Update CVE-2020-7796.yaml 2021-08-03 12:50:22 +05:30
sandeep d8007437ae Update CVE-2020-7796.yaml 2021-08-03 12:50:10 +05:30
Prince Chaddha b02ea3266b
Update CVE-2020-7796.yaml 2021-08-03 12:47:55 +05:30
Prince Chaddha 9620f4616e
Update CVE-2020-7796.yaml 2021-08-03 12:42:56 +05:30
Prince Chaddha 4076f1c08c
Merge pull request #2315 from daffainfo/patch-127
Create CVE-2018-19458.yaml
2021-08-03 12:39:22 +05:30
Sandeep Singh 9293c68189
Merge pull request #2317 from pikpikcu/patch-244
Update jellyfin-detect
2021-08-03 12:36:45 +05:30
PikPikcU e2a95c2a78
Update jellyfin-detect.yaml 2021-08-03 11:28:37 +07:00
GwanYeong Kim 9c16967fa5 Create CVE-2020-7796.yaml
Zimbra Collaboration Suite (ZCS) before 8.8.15 Patch 7 allows SSRF when WebEx zimlet is installed and zimlet JSP is enabled.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-08-03 09:31:23 +09:00
Muhammad Daffa 6e13d833ef
Create CVE-2018-19458.yaml 2021-08-03 06:20:58 +07:00
Muhammad Daffa 02d3258f2a
Create CVE-2018-20470.yaml 2021-08-03 06:19:42 +07:00
GitHub Action 4e026979a9 Auto Update README [Mon Aug 2 18:54:22 UTC 2021] 🤖 2021-08-02 18:54:22 +00:00
GitHub Action 4f123f0109 Auto Generated Templates Stats [Mon Aug 2 18:53:33 UTC 2021] 🤖 2021-08-02 18:53:33 +00:00
Sandeep Singh 27d7c7f41c
Merge pull request #2313 from toufik-airane/patch-3
Update CONTRIBUTING.md
2021-08-03 00:15:19 +05:30
sandeep ad7756317d Added missing condition 2021-08-03 00:14:33 +05:30
Toufik Airane b64e0323bf
Update CONTRIBUTING.md 2021-08-02 20:44:27 +02:00
sandeep e2b20b8f01 Adding metadata 2021-08-02 23:16:05 +05:30
Sandeep Singh 249c39af51
Merge pull request #2299 from httpvoid/master
Add CVE-2021-29484 - Ghost CMS DOM XSS
2021-08-02 23:13:22 +05:30
Sandeep Singh a8d92c4d5e
Merge pull request #2218 from pikpikcu/patch-224
Create dolibarr-detect
2021-08-02 23:12:21 +05:30
Sandeep Singh d5c79d6ee6
Merge pull request #2312 from geeknik/patch-2
Update general-tokens.yaml
2021-08-02 23:07:45 +05:30
Harsh Jaiswal 3f8e3ce2d0
Update cves/2021/CVE-2021-29484.yaml
Co-authored-by: Toufik Airane <toufik.airane@appsectribe.com>
2021-08-02 23:05:35 +05:30
Geeknik Labs a02ae7bef7
Update general-tokens.yaml 2021-08-02 12:27:07 -05:00
Geeknik Labs 61bb675add
Update general-tokens.yaml
squashing false positives
2021-08-02 12:25:54 -05:00
Prince Chaddha 1939842ab6
Merge pull request #2219 from pikpikcu/patch-225
Add Dolibarr xss
2021-08-02 22:32:24 +05:30
Prince Chaddha f924e58b8e
Update CVE-2018-10095.yaml 2021-08-02 22:31:01 +05:30
Prince Chaddha dca1dd56b1
Merge pull request #2220 from pikpikcu/patch-226
Add Grav CMS XSS
2021-08-02 22:26:37 +05:30
Prince Chaddha 2491a6a4b7
Merge pull request #2227 from Udyz/patch-5
Create hasura-graphql-sql-exec.yaml
2021-08-02 22:25:31 +05:30
Prince Chaddha e359b030f2
Update CVE-2018-5233.yaml 2021-08-02 22:25:21 +05:30