Commit Graph

11761 Commits (5ea92bcb0f023ab12c04020125d2a3d6560a3fe5)

Author SHA1 Message Date
Sandeep Singh de7bef1300
Added CVE-2021-42567 (Apereo CAS Reflected XSS) (#3450)
* Added CVE-2021-42567 (Apereo CAS Reflected XSS)

* Added login panel detection
2021-12-30 17:09:29 +05:30
alph4byt3 3364d16799
Added R-SeeNet Detection and Default login template (#3441)
* Create CVE-2021-21804.yaml

* Added Advantech R-SeeNet Detection Template

* added shodan dork

* Update rseenet-detect.yaml

* Create rseenet-default-login.yaml

* Update CVE-2021-21804.yaml

* payload update

* Requires guest or any user to be logged in

> To trigger the described above vulnerability the attacker must be logged-in into the R-SeeNet website

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
Co-authored-by: Prince Chaddha <prince@projectdiscovery.io>
2021-12-30 14:29:45 +05:30
ImNightmaree 9923e91348
Create glpi-directory-listing.yaml (#3439)
* Create glpi-directory-listing.yaml

* Linting

* Linting

Adds ``part: header``

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
Co-authored-by: Prince Chaddha <prince@projectdiscovery.io>
2021-12-30 14:05:45 +05:30
Prince Chaddha 99741d1e5f
Merge pull request #3443 from DhiyaneshGeek/master
Vmware
2021-12-30 12:24:44 +05:30
Prince Chaddha 046629b709
Merge pull request #3448 from pussycat0x/master
New Templates Added
2021-12-30 12:16:51 +05:30
Prince Chaddha c069352d11
Update vmware-site-recovery-manager.yaml 2021-12-30 12:16:47 +05:30
Prince Chaddha a94c5d62a1
Update CVE-2021-40859.yaml 2021-12-30 12:15:22 +05:30
Prince Chaddha f3deec4325
Update CVE-2021-40859.yaml 2021-12-30 12:15:02 +05:30
Prince Chaddha a0bdd14786
Update securepoint-utm.yaml 2021-12-30 10:54:33 +05:30
Prince Chaddha c32237112e
Update and rename tableau-python-server.yaml to tableau-panel.yaml 2021-12-30 10:42:41 +05:30
Sandeep Singh 99c9a962bb
Update and rename tableau-python-server-defaultpage-detect.yaml to tableau-python-server.yaml 2021-12-29 22:13:21 +05:30
Sandeep Singh 279e0bef1e
Update and rename securepoint-utm-detect.yaml to securepoint-utm.yaml 2021-12-29 22:09:04 +05:30
Exid 80489bce76
Added wordpress-xmlrpc-brute-force.yaml (#3445)
* wp-xmlrpc-brute-force.yaml file was added

A Nuclei template for bruteforcing username and password through XMLRPC.

* wp-xmlrpc-brute-force.yaml file added

A Nuclei template for wordpress username and password Bruteforcing throught xmlrpc.php

* wp-xmlrpc-brute-force.yaml file added

A Nuclei template for wordpress username and password Bruteforcing throught xmlrpc.php

* Revert "wp-xmlrpc-brute-force.yaml file was added"

This reverts commit c0e4ca75a6ddbcf65e9443849a05c7b8f2625af9.

* few fixes

* Added wordpress user and pass list

* improved matcher

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-29 22:04:23 +05:30
Sandeep Singh a10aff06e5
Merge branch 'master' into master 2021-12-29 21:28:30 +05:30
pussycat0x bb89d0a7d9
Add files via upload 2021-12-29 21:20:19 +05:30
Gabriel Barros ce97393f95
Adding permission-policy header (#3447)
* Adding permission-policy header

* lint fix

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-29 20:06:58 +05:30
Pathtaga 5b8fc874fe
Added tomcat workflow (#3444) 2021-12-29 19:11:32 +05:30
Sandeep Singh de9c4d605c
Apache Tomcat Template improvements (#3446)
* Improved Tomcat matchers / extractors / paths

* removed duplicate detections / matchers

* removed duplicate template

* Added missing tomcat tags
2021-12-29 19:10:59 +05:30
Sandeep Singh d6da741663
IBM WebSphere Portal SSRF (#3442)
* Added IBM WebSphere Portal SSRF Detection

* Added IBM WebSphere Panel detection

* moving templates around
2021-12-29 17:32:10 +05:30
sandeep 8744282d5b removing matcher to avoid false negative result. 2021-12-29 12:10:51 +05:30
Prince Chaddha cb9fdbd7cc
Update and rename sofneta-mecdream-pacs-server-lfi.yaml to vulnerabilities/other/sofneta-mecdream-pacs-server-lfi.yaml 2021-12-29 11:28:09 +05:30
Prince Chaddha 8157e6428d
Merge pull request #3434 from Akokonunes/patch-98
Create sl-studio-lfi.yaml
2021-12-29 09:21:56 +05:30
Prince Chaddha 4ba5e931cc
Update sl-studio-lfi.yaml 2021-12-29 09:20:13 +05:30
Prince Chaddha b7974b288e
Update and rename sl-studio-lfi.yaml to vulnerabilities/other/sl-studio-lfi.yaml 2021-12-29 09:16:32 +05:30
ImNightmaree 34b07e01ab
Create adminset-panel.yaml (#3438)
* Create adminset-panel.yaml

* Update adminset-panel.yaml

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
2021-12-28 22:04:01 +05:30
东方有鱼名为咸 7a05f1b538
add CVE-2021-45232.yaml (#3437)
* Create CVE-2021-45232.yaml

* matcher fixes

* more reference

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-28 19:43:00 +05:30
sandeep 85956018f8 Added metadata 2021-12-28 18:16:23 +05:30
Sandeep Singh 5d7d4409a0
Added CVE-2020-11546 (#3436)
Co-Authored-By: 0fficial_BlackHat13 <58517369+Official-BlackHat13@users.noreply.github.com>

Co-authored-by: 0fficial_BlackHat13 <58517369+Official-BlackHat13@users.noreply.github.com>
2021-12-28 18:13:04 +05:30
ImNightmaree 65334f9ecd
Create acrolinx-dashboard.yaml (#3431)
* Create acrolinx-dashboard

* Update and rename acrolinx-dashboard to acrolinx-dashboard.yaml

* Add further metadata

* Update acrolinx-dashboard.yaml

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
2021-12-28 17:14:45 +05:30
Sandeep Singh 949fad8c30
Update sl-studio-lfi.yaml 2021-12-28 17:11:18 +05:30
Shivang Trivedi b6bf668da3
Changes in dnsmadeeasy (#3435)
Check this out https://github.com/indianajson/can-i-take-over-dns/issues/6
2021-12-28 17:09:50 +05:30
Dhiyaneshwaran 30b41d5607
Create vmware-site-recovery-manager.yaml 2021-12-28 14:26:30 +05:30
Dhiyaneshwaran a11b53fc1d
Merge pull request #2 from projectdiscovery/master
Updation
2021-12-28 14:11:51 +05:30
Roberto Nunes 3c5058b7ec
Create sl-studio-lfi.yaml 2021-12-28 17:23:04 +09:00
Muhammad Daffa 5c800a4ef7
Seperate technologies and exposed-panels templates (#3424)
* Edit magmi workflow

* Add some workflow template + edit some template

* Changing some templates

* minor update

* workflow matcher fixes

* tech update

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-27 10:31:53 +05:30
Emad Youssef ce7b60d79c
Update open-redirect.yaml (#3404)
* Update open-redirect.yaml

add new payloads

* minor update

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-26 20:53:11 +05:30
Dwi Siswanto e8f240d296
update(workflow): Missing templates directory (#3423) 2021-12-26 10:17:37 +05:30
Roberto Nunes 60c7746f76
Create sofneta-mecdream-pacs-server-lfi.yaml 2021-12-26 09:41:53 +09:00
Roberto Nunes 79ea1bae63
Create accent-microcomputers-lfi.yaml 2021-12-26 09:39:20 +09:00
Dwi Siswanto 057d48eb1a
Add cache-poisoning-fuzz (#3413) 2021-12-25 13:26:35 +05:30
Dwi Siswanto 405162f41f
update(workflow): Reduce wasting time installing via binary instead for template-validate (#3422) 2021-12-25 13:13:56 +05:30
Prince Chaddha 955c71fa50
Update sponip-network-system-ping-rce.yaml 2021-12-24 20:24:40 +05:30
PikPikcU 51843e1e62
Create sponip-network-system-ping-rce.yaml 2021-12-24 09:30:31 -05:00
Prince Chaddha bd2407ab4c
Merge pull request #3419 from projectdiscovery/princechaddha-patch-4
Create panabit-pannel.yaml
2021-12-24 19:54:56 +05:30
Prince Chaddha 62f8d03afa
Merge pull request #3420 from projectdiscovery/princechaddha-patch-3
Create ixcache-panel.yaml
2021-12-24 19:54:11 +05:30
Prince Chaddha 634f3c02d1
Update ixcache-panel.yaml 2021-12-24 19:51:59 +05:30
Prince Chaddha daab04f550
Update and rename technologies/panabit-pannel.yaml to exposed-panels/panabit-panel.yaml 2021-12-24 19:51:36 +05:30
Prince Chaddha b5fbb148a9
Update ixcache-panel.yaml 2021-12-24 19:49:52 +05:30
Prince Chaddha 07f96b11af
Update panabit-pannel.yaml 2021-12-24 19:49:19 +05:30
Prince Chaddha 3a302c61ab
Create ixcache-panel.yaml 2021-12-24 19:48:25 +05:30