Commit Graph

3197 Commits (80db01c68cf6d0a84025124eb9279a0367420cf8)

Author SHA1 Message Date
GitHub Action 206b056506 Auto Generated CVE annotations [Thu Nov 11 05:29:39 UTC 2021] 🤖 2021-11-11 05:29:39 +00:00
ImNightmaree 8f8888481d
Linting 2021-11-10 18:14:05 +00:00
ImNightmaree 40e6c30e0d
Linting 2021-11-10 18:08:18 +00:00
ImNightmaree 3852eedb46
Linting 2021-11-10 18:05:59 +00:00
ImNightmaree 03c24bd12d
Linting 2021-11-10 18:02:59 +00:00
ImNightmaree 90c265672f
Linting 2021-11-10 18:00:26 +00:00
Sandeep Singh 866bcfa0f6
Rename CVE-2018-15961 to CVE-2018-15961.yaml 2021-11-10 23:23:11 +05:30
ImNightmaree 136fd744c9
Missed a space on author. 2021-11-10 17:51:54 +00:00
ImNightmaree 9017c8af45
Merge branch 'projectdiscovery:master' into master 2021-11-10 17:48:17 +00:00
ImNightmaree 7e10c6eb42
Creates CVE-2018-15961
Closes #3119 with minor updates to ensure the file isn't accessible predictably
2021-11-10 17:46:34 +00:00
GitHub Action 2cfad99d03 Auto Generated CVE annotations [Wed Nov 10 16:04:38 UTC 2021] 🤖 2021-11-10 16:04:38 +00:00
GitHub Action 33fccd20b3 Auto Generated CVE annotations [Tue Nov 9 16:55:13 UTC 2021] 🤖 2021-11-09 16:55:13 +00:00
Prince Chaddha fa2cad22f0
Merge pull request #3097 from projectdiscovery/CVE-2019-1821
Create CVE-2019-1821.yaml
2021-11-09 22:23:45 +05:30
Prince Chaddha 58d84e7557
Merge pull request #3112 from Akokonunes/patch-68
Create CVE-2017-15363.yaml
2021-11-09 22:21:49 +05:30
Prince Chaddha d165a9fe33
Update and rename CVE-2017-15363.yaml to cves/2017/CVE-2017-15363.yaml 2021-11-09 22:20:29 +05:30
Prince Chaddha 0328b4bd5d
Update and rename CVE-2017-10974.yaml to cves/2017/CVE-2017-10974.yaml 2021-11-09 22:13:59 +05:30
sandeep cb74944f43 misc updates 2021-11-08 15:45:54 +05:30
Prince Chaddha 23b9517674
Update CVE-2019-1821.yaml 2021-11-08 12:54:34 +05:30
Prince Chaddha bde7d5243b
Update CVE-2019-1821.yaml 2021-11-08 12:45:04 +05:30
GitHub Action 268f6c7c86 Auto Generated CVE annotations [Mon Nov 8 06:51:55 UTC 2021] 🤖 2021-11-08 06:51:55 +00:00
GitHub Action 2f7b3d7e00 Auto Generated CVE annotations [Sat Nov 6 22:43:41 UTC 2021] 🤖 2021-11-06 22:43:41 +00:00
sandeep 2beb8767ff Added CVE-2021-41174 2021-11-07 04:08:43 +05:30
GitHub Action 56c9fb7a7b Auto Generated CVE annotations [Sat Nov 6 17:09:47 UTC 2021] 🤖 2021-11-06 17:09:47 +00:00
Sandeep Singh 037d974e8b
Merge pull request #3095 from projectdiscovery/CVE-2020-26413
Create CVE-2020-26413.yaml
2021-11-06 22:38:14 +05:30
sandeep dbbb08e40c misc updates 2021-11-06 22:36:37 +05:30
Prince Chaddha 57b4425e52
Create CVE-2019-1821.yaml 2021-11-06 20:34:10 +05:30
Prince Chaddha 0e27f24138
Update CVE-2020-26413.yaml 2021-11-06 20:18:27 +05:30
Prince Chaddha b1d7f6087c
Update CVE-2016-3088.yaml 2021-11-06 20:08:10 +05:30
Prince Chaddha 5aeb4de8c8
Create CVE-2020-26413.yaml 2021-11-06 18:22:50 +05:30
GitHub Action ca57c815da Auto Generated CVE annotations [Sat Nov 6 12:47:58 UTC 2021] 🤖 2021-11-06 12:47:58 +00:00
Prince Chaddha 070628000c
Merge pull request #3088 from projectdiscovery/CVE-2016-3088
Create CVE-2016-3088.yaml
2021-11-06 18:16:10 +05:30
Sandeep Singh cd59d38e3d
Merge pull request #3083 from pussycat0x/master
Pentaho <= 9.1 Authentication Bypass of Spring APIs
2021-11-06 16:52:44 +05:30
sandeep 0963b5f289 Added stop-at-first-match 2021-11-06 16:52:33 +05:30
sandeep 1d4ff44b88 misc update 2021-11-06 16:51:03 +05:30
GitHub Action 21cf51bea9 Auto Generated CVE annotations [Sat Nov 6 10:59:41 UTC 2021] 🤖 2021-11-06 10:59:41 +00:00
Sandeep Singh b52d878f9a
Update CVE-2016-3088.yaml 2021-11-06 16:13:58 +05:30
sandeep ce2212b6d4 Added CVE-2019-2579 2021-11-06 16:10:58 +05:30
GitHub Action 6f0c6a043b Auto Generated CVE annotations [Sat Nov 6 08:18:29 UTC 2021] 🤖 2021-11-06 08:18:29 +00:00
Sandeep Singh 4b3172c754
Merge pull request #3091 from Leovalcante/cve-2019-2578
create check for cve-2019-2578
2021-11-06 13:46:53 +05:30
GitHub Action 3a9fcc7cc0 Auto Generated CVE annotations [Sat Nov 6 08:15:35 UTC 2021] 🤖 2021-11-06 08:15:35 +00:00
Sandeep Singh 721f2fce99
Merge pull request #3090 from Leovalcante/cve-2018-3238
create check for cve-2018-3238
2021-11-06 13:43:56 +05:30
Sandeep Singh 55e21f68f7
Merge pull request #3089 from Leovalcante/fix-cve-2018-2791
improve cve-2018-2791 vulnerability check
2021-11-06 13:43:34 +05:30
sandeep e4cda81745 misc updates 2021-11-06 13:41:08 +05:30
sandeep c474434ab2 improved matchers 2021-11-06 13:17:42 +05:30
sandeep 2b38dce99c updated with improved matchers 2021-11-06 12:51:30 +05:30
sandeep 5fa10c4b64 cves update 2021-11-06 12:34:04 +05:30
Valerio Preti 41464ac737 create check for cve-2019-2578 2021-11-06 01:24:41 +01:00
Valerio Preti fe5385e932 create check for cve-2018-3238 2021-11-06 00:51:54 +01:00
Valerio Preti 69fc4c04c2 improve wcs cve-2018-2791 vulnerability check 2021-11-06 00:48:10 +01:00
sandeep 3e12441f6d matcher update 2021-11-06 03:56:14 +05:30
Prince Chaddha 371d3354b9
Create CVE-2016-3088.yaml 2021-11-06 00:42:00 +05:30
Prince Chaddha 46a1ecd36a
Merge pull request #3075 from Akokonunes/patch-67
Create CVE-2017-5982.yaml
2021-11-05 21:31:39 +05:30
Prince Chaddha e1cbedaaff
Rename CVE-2017-5982.yaml to cves/2017/CVE-2017-5982.yaml 2021-11-05 21:29:06 +05:30
Prince Chaddha 7558d674de
Merge pull request #3079 from pradeepch99/master
Update CVE-2021-36260.yaml
2021-11-05 21:28:35 +05:30
Prince Chaddha c1e8682918
Update CVE-2021-31602.yaml 2021-11-05 21:20:29 +05:30
GitHub Action c7baa07310 Auto Generated CVE annotations [Fri Nov 5 15:44:13 UTC 2021] 🤖 2021-11-05 15:44:13 +00:00
Prince Chaddha eef71d5cb8
Update CVE-2019-3929.yaml 2021-11-05 21:07:40 +05:30
Prince Chaddha 3c7d239415
Update CVE-2019-3929.yaml 2021-11-05 20:59:47 +05:30
Prince Chaddha 626b97e368
Create CVE-2019-3929.yaml 2021-11-05 20:58:18 +05:30
pussycat0x 70425f1be2
Update CVE-2021-31602.yaml 2021-11-05 14:11:44 +05:30
pussycat0x 802607241d
Update CVE-2021-31602.yaml 2021-11-05 13:59:09 +05:30
pussycat0x 153a00af52
Add files via upload 2021-11-05 13:45:21 +05:30
Pradeepch99 8c5987b2b2
Update CVE-2021-36260.yaml 2021-11-05 08:44:19 +05:30
sandeep 8eb67ca3f7 additional matcher 2021-11-05 04:48:10 +05:30
ImNightmaree 2fc9a1f850
Updates CVE-2017-10271
Partially resolves #609 - not all machines have HTTP connectivity, nslookup is native to Windows and Linux, and a good alternative.
2021-11-04 13:44:56 +00:00
Huy Nguyen 78189af295
Fix for potential false positives
See also following issue: https://github.com/projectdiscovery/nuclei-templates/issues/3065
2021-11-04 12:07:38 +01:00
ImNightmaree acc8d46849
Updates "whoami" regex
Fixes #3060
2021-11-03 17:43:48 +00:00
GitHub Action e70531ebca Auto Generated CVE annotations [Wed Nov 3 06:21:45 UTC 2021] 🤖 2021-11-03 06:21:45 +00:00
Prince Chaddha fd9e89e0db
Create CVE-2018-18570.yaml 2021-11-03 11:36:30 +05:30
GitHub Action ba5d199dbb Auto Generated CVE annotations [Tue Nov 2 20:23:01 UTC 2021] 🤖 2021-11-02 20:23:01 +00:00
sandeep 36bda42c27 misc update 2021-11-03 01:49:51 +05:30
Prince Chaddha 94c49907ce
Update CVE-2021-38704.yaml 2021-11-02 23:35:14 +05:30
Prince Chaddha 3541fb5754
Update CVE-2021-38704.yaml 2021-11-02 23:25:17 +05:30
Prince Chaddha 19ca42a3d6
Update CVE-2021-38704.yaml 2021-11-02 23:23:11 +05:30
Prince Chaddha 5e774b4e9b
Create CVE-2021-38704.yaml 2021-11-02 23:16:22 +05:30
forgedhallpass 5c3bbbb740 Update SSH user enum templates
SSH header structure:
SSH-protoversion-softwareversion[SPcomments]CRLF

see: https://datatracker.ietf.org/doc/html/rfc4253#section-4.2
2021-11-01 20:34:47 +02:00
Prince Chaddha c26924f7d8
Merge pull request #3037 from Akokonunes/patch-65
Create CVE-2019-16123.yaml
2021-11-01 14:34:18 +05:30
Prince Chaddha 95b6237e37
Update and rename CVE-2019-16123.yaml to cves/2019/CVE-2019-16123.yaml 2021-11-01 14:28:28 +05:30
Sandeep Singh c2a167939e
Merge pull request #3031 from gy741/rule-add-v70
Create CVE-2021-31682.yaml
2021-10-31 17:09:29 +05:30
sandeep fe6dbc8b4d misc update 2021-10-31 16:56:16 +05:30
sandeep 107679bd9a matcher + added version extractors 2021-10-30 19:26:12 +05:30
GitHub Action 4cc2a7a205 Auto Generated CVE annotations [Sat Oct 30 11:41:59 UTC 2021] 🤖 2021-10-30 11:41:59 +00:00
sandeep 8c3f98c767 fixed invalid template syntax 2021-10-30 16:47:35 +05:30
GwanYeong Kim 43629d5f49 Create CVE-2021-31682.yaml
The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the operatorlocale GET parameter not being sanitized. This issue impacts versions 6.5 and below. This issue works by passing in a basic XSS payload to a vulnerable GET parameter that is reflected in the output without sanitization.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-10-30 19:36:29 +09:00
sandeep 9a7111c936 updating author details 2021-10-29 22:16:25 +05:30
sandeep 1fdf1ce10a name update 2021-10-29 21:36:05 +05:30
sandeep d6fbf8b35c misc updates 2021-10-29 21:33:59 +05:30
GitHub Action 4236ca70b5 Auto Generated CVE annotations [Fri Oct 29 12:45:06 UTC 2021] 🤖 2021-10-29 12:45:07 +00:00
Dhiyaneshwaran afbd8f0448
Create CVE-2021-20837.yaml 2021-10-29 18:13:32 +05:30
Sandeep Singh ba04bc0d3a
Merge pull request #3022 from projectdiscovery/CVE-2021-36260
Added Hikvision RCE (CVE-2021-36260)
2021-10-29 17:09:01 +05:30
GitHub Action b46d572636 Auto Generated CVE annotations [Fri Oct 29 10:29:18 UTC 2021] 🤖 2021-10-29 10:29:18 +00:00
Sandeep Singh fe19393cb0
Merge pull request #3011 from meme-lord/master
Added CVE-2017-0929 (DNN SSRF)
2021-10-29 15:57:35 +05:30
sandeep 4024822ddf misc updates 2021-10-29 15:56:24 +05:30
sandeep f635c80512 Adding metadata 2021-10-29 14:49:58 +05:30
sandeep a451cfb48a misc update 2021-10-29 14:24:20 +05:30
sandeep 8f4a90f33a Added Hikvision RCE (CVE-2021-36260) 2021-10-29 13:47:09 +05:30
Prince Chaddha 3aadf53a95
Merge pull request #3014 from Mad-robot/patch-2
Create CVE-2021-42566.yaml
2021-10-29 00:29:05 +05:30
Prince Chaddha e58e1ef96d
Update CVE-2021-42566.yaml 2021-10-29 00:25:45 +05:30
Prince Chaddha 7f9490d762
Update CVE-2021-42565.yaml 2021-10-29 00:25:12 +05:30
Prince Chaddha 263fb400e9
Update CVE-2021-42566.yaml 2021-10-29 00:22:29 +05:30