Commit Graph

469 Commits (84fba7b93267a582a10c7f8c19c8e4646d5175ab)

Author SHA1 Message Date
pussycat0x 983915d4bc
Rename CVE-2020-11547.yaml to CVE-2020-11547.yaml 2023-05-05 19:02:53 +05:30
pussycat0x ed67d0b943
Update smtp-commands-enum.yaml 2023-05-05 18:58:03 +05:30
pussycat0x d17a0c1246
SMTP Commands Enumeration 2023-05-05 18:56:49 +05:30
Ritik Chaddha 561b42ebe7 Merge branch 'main' into add-cpe-epss 2023-05-05 00:00:13 +05:30
sandeep e5ae45127e Merge remote-tracking branch 'origin' into add-cpe-epss 2023-05-02 18:21:24 +05:30
sandeep 1f5b1f2c47 Added max request counter of each template 2023-04-28 13:41:21 +05:30
Prince Chaddha e0af666e1c
Refactoring the directory structure based on protocols (#7137)
* moving http templates

* updated cves.json

* moved network CVEs

* updated scripts

* updated workflows

* updated requests to http

* replaced network to tcp

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-04-27 09:58:59 +05:30
Dhiyaneshwaran c6718f1499
Update beanstalk-service.yaml 2023-04-21 17:12:11 +05:30
Dhiyaneshwaran 799f713b8c
Update msmq-detect.yaml 2023-04-21 17:11:37 +05:30
pussycat0x bf126b24c8
Protocol update network -> tcp 2023-04-20 02:46:20 +05:30
Ritik Chaddha 5dc6036a9a
Update msmq-detect.yaml 2023-04-20 02:28:15 +05:30
Ritik Chaddha d4b490195d
indentation fix 2023-04-19 23:17:04 +05:30
Brandon Hutchinson e34e263509 Added network/detection/msmq-detect.yaml 2023-04-19 15:34:10 +00:00
pussycat0x a623589fcc
Beanstalk Service - Detect 2023-04-12 17:26:45 +05:30
Prince Chaddha 899029a1aa
updated to host 2023-04-09 08:17:24 +05:30
pussycat0x 40465c769c
minor -update 2023-04-08 22:42:10 +05:30
pussycat0x 5fa705e717
Update kafka-topics-list.yaml 2023-04-05 13:16:13 +05:30
pussycat0x db1f466f51
fix -FP 2023-04-05 10:28:38 +05:30
Ritik Chaddha dec264a418
Merge pull request #7009 from MostInterestingBotInTheWorld/dashboard
Dashboard Content Enhancements
2023-03-31 21:19:24 +05:30
pussycat0x e53386d074
Update kafka-topics-list.yaml 2023-03-30 20:02:42 +05:30
pussycat0x 7ea625bf1f
Kafka Topics List 2023-03-30 17:10:37 +05:30
MostInterestingBotInTheWorld 455f69376f Enhancement: network/detection/rtsp-detect.yaml by md 2023-03-29 15:24:51 -04:00
MostInterestingBotInTheWorld 3e2df9f3cd Enhancement: network/detection/imap-detect.yaml by md 2023-03-29 15:22:47 -04:00
MostInterestingBotInTheWorld c8ed0959c9 Enhancement: network/detection/esmtp-detect.yaml by md 2023-03-29 15:21:25 -04:00
MostInterestingBotInTheWorld 400886032e Enhancement: network/detection/dotnet-remoting-service-detect.yaml by md 2023-03-29 15:15:20 -04:00
Notealot 4d524fd178
Update CVE-2011-2523.yaml (#6975) 2023-03-28 16:52:10 +05:30
MostInterestingBotInTheWorld 186745475b
dos2unix conversions (#6969)
* Add description and enhance one where the UI failed to save properly.
dos2unix on a template

* Change cvedetails link to nvd

* make severities match

* Enhancement: cves/2015/CVE-2015-2863.yaml by md

* Enhancement: cves/2017/CVE-2017-14524.yaml by md

* Enhancement: cves/2017/CVE-2017-5638.yaml by md

* Enhancement: cves/2019/CVE-2019-16759.yaml by md

* Enhancement: cves/2021/CVE-2021-22986.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24155.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24347.yaml by md

* Enhancement: cves/2021/CVE-2021-25003.yaml by md

* Enhancement: cves/2021/CVE-2021-25296.yaml by md

* Enhancement: cves/2021/CVE-2021-25297.yaml by md

* Enhancement: cves/2021/CVE-2021-25296.yaml by md

* Enhancement: cves/2021/CVE-2021-25297.yaml by md

* Enhancement: cves/2021/CVE-2021-25298.yaml by md

* Enhancement: cves/2021/CVE-2021-25297.yaml by md

* Enhancement: cves/2021/CVE-2021-28151.yaml by md

* Enhancement: cves/2021/CVE-2021-30128.yaml by md

* Enhancement: cves/2022/CVE-2022-0824.yaml by md

* Enhancement: cves/2022/CVE-2022-0824.yaml by md

* Enhancement: cves/2022/CVE-2022-0885.yaml by md

* Enhancement: cves/2022/CVE-2022-21587.yaml by md

* Enhancement: cves/2022/CVE-2022-2314.yaml by md

* Enhancement: cves/2022/CVE-2022-24816.yaml by md

* Enhancement: cves/2022/CVE-2022-31499.yaml by md

* Enhancement: cves/2022/CVE-2022-21587.yaml by md

* Enhancement: cves/2021/CVE-2021-24155.yaml by md

* Enhancement: cves/2017/CVE-2017-5638.yaml by md

* Enhancement: cves/2015/CVE-2015-2863.yaml by md

* Enhancement: cves/2022/CVE-2022-33901.yaml by md

* Enhancement: cves/2022/CVE-2022-2314.yaml by md

* Enhancement: cves/2022/CVE-2022-33901.yaml by md

* Enhancement: cves/2022/CVE-2022-34753.yaml by md

* Enhancement: cves/2022/CVE-2022-39952.yaml by md

* Enhancement: cves/2022/CVE-2022-4060.yaml by md

* Enhancement: cves/2022/CVE-2022-44877.yaml by md

* Enhancement: cves/2023/CVE-2023-0669.yaml by md

* Enhancement: cves/2023/CVE-2023-26255.yaml by md

* Enhancement: cves/2023/CVE-2023-26256.yaml by md

* Enhancement: exposures/files/salesforce-credentials.yaml by md

* Enhancement: misconfiguration/hadoop-unauth-rce.yaml by md

* Enhancement: misconfiguration/installer/nopcommerce-installer.yaml by md

* Enhancement: network/backdoor/backdoored-zte.yaml by md

* Enhancement: network/detection/ibm-d2b-database-server.yaml by md

* Enhancement: network/detection/ibm-d2b-database-server.yaml by md

* Enhancement: technologies/oracle/oracle-atg-commerce.yaml by md

* Enhancement: token-spray/api-abuseipdb.yaml by md

* Enhancement: token-spray/api-abuseipdb.yaml by md

* Enhancement: token-spray/api-dbt.yaml by md

* Enhancement: vulnerabilities/avaya/avaya-aura-rce.yaml by md

* Enhancement: vulnerabilities/avaya/avaya-aura-xss.yaml by md

* Enhancement: vulnerabilities/cisco/cisco-cloudcenter-suite-rce.yaml by md

* Enhancement: vulnerabilities/froxlor-xss.yaml by md

* Enhancement: vulnerabilities/jamf/jamf-log4j-jndi-rce.yaml by md

* Enhancement: vulnerabilities/mobileiron/mobileiron-log4j-jndi-rce.yaml by md

* Enhancement: vulnerabilities/jamf/jamf-log4j-jndi-rce.yaml by md

* Enhancement: vulnerabilities/opencpu/opencpu-rce.yaml by md

* Enhancement: vulnerabilities/other/academy-lms-xss.yaml by md

* Enhancement: vulnerabilities/other/caucho-resin-info-disclosure.yaml by md

* Enhancement: vulnerabilities/other/ckan-dom-based-xss.yaml by md

* Enhancement: vulnerabilities/other/couchdb-adminparty.yaml by md

* Enhancement: vulnerabilities/other/graylog-log4j.yaml by md

* Enhancement: vulnerabilities/mobileiron/mobileiron-log4j-jndi-rce.yaml by md

* Initial cleanups for syntax errors

* dashboard gremlins

* Add log4j back to name

* Enhancement: exposures/files/salesforce-credentials.yaml by cs

* Enhancement: misconfiguration/installer/nopcommerce-installer.yaml by cs

* Enhancement: network/backdoor/backdoored-zte.yaml by cs

* Enhancement: vulnerabilities/other/couchdb-adminparty.yaml by cs

* Sev and other info tweaks

* Merge conflict

* Run dos2unix against all templates

* too many newlines error

* Fix too many blank lines error

* Fix severity mismatches
Cleanup language on a new test

---------

Co-authored-by: sullo <sullo@cirt.net>
2023-03-27 14:22:40 -04:00
sullo 96d0b8f950 Run dos2unix against all templates 2023-03-27 13:56:52 -04:00
MostInterestingBotInTheWorld 301fddaeb0
Dashboard Content Enhancements (#6965)
* Add description and enhance one where the UI failed to save properly.
dos2unix on a template

* Change cvedetails link to nvd

* make severities match

* Enhancement: cves/2015/CVE-2015-2863.yaml by md

* Enhancement: cves/2017/CVE-2017-14524.yaml by md

* Enhancement: cves/2017/CVE-2017-5638.yaml by md

* Enhancement: cves/2019/CVE-2019-16759.yaml by md

* Enhancement: cves/2021/CVE-2021-22986.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24155.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24145.yaml by md

* Enhancement: cves/2021/CVE-2021-24347.yaml by md

* Enhancement: cves/2021/CVE-2021-25003.yaml by md

* Enhancement: cves/2021/CVE-2021-25296.yaml by md

* Enhancement: cves/2021/CVE-2021-25297.yaml by md

* Enhancement: cves/2021/CVE-2021-25296.yaml by md

* Enhancement: cves/2021/CVE-2021-25297.yaml by md

* Enhancement: cves/2021/CVE-2021-25298.yaml by md

* Enhancement: cves/2021/CVE-2021-25297.yaml by md

* Enhancement: cves/2021/CVE-2021-28151.yaml by md

* Enhancement: cves/2021/CVE-2021-30128.yaml by md

* Enhancement: cves/2022/CVE-2022-0824.yaml by md

* Enhancement: cves/2022/CVE-2022-0824.yaml by md

* Enhancement: cves/2022/CVE-2022-0885.yaml by md

* Enhancement: cves/2022/CVE-2022-21587.yaml by md

* Enhancement: cves/2022/CVE-2022-2314.yaml by md

* Enhancement: cves/2022/CVE-2022-24816.yaml by md

* Enhancement: cves/2022/CVE-2022-31499.yaml by md

* Enhancement: cves/2022/CVE-2022-21587.yaml by md

* Enhancement: cves/2021/CVE-2021-24155.yaml by md

* Enhancement: cves/2017/CVE-2017-5638.yaml by md

* Enhancement: cves/2015/CVE-2015-2863.yaml by md

* Enhancement: cves/2022/CVE-2022-33901.yaml by md

* Enhancement: cves/2022/CVE-2022-2314.yaml by md

* Enhancement: cves/2022/CVE-2022-33901.yaml by md

* Enhancement: cves/2022/CVE-2022-34753.yaml by md

* Enhancement: cves/2022/CVE-2022-39952.yaml by md

* Enhancement: cves/2022/CVE-2022-4060.yaml by md

* Enhancement: cves/2022/CVE-2022-44877.yaml by md

* Enhancement: cves/2023/CVE-2023-0669.yaml by md

* Enhancement: cves/2023/CVE-2023-26255.yaml by md

* Enhancement: cves/2023/CVE-2023-26256.yaml by md

* Enhancement: exposures/files/salesforce-credentials.yaml by md

* Enhancement: misconfiguration/hadoop-unauth-rce.yaml by md

* Enhancement: misconfiguration/installer/nopcommerce-installer.yaml by md

* Enhancement: network/backdoor/backdoored-zte.yaml by md

* Enhancement: network/detection/ibm-d2b-database-server.yaml by md

* Enhancement: network/detection/ibm-d2b-database-server.yaml by md

* Enhancement: technologies/oracle/oracle-atg-commerce.yaml by md

* Enhancement: token-spray/api-abuseipdb.yaml by md

* Enhancement: token-spray/api-abuseipdb.yaml by md

* Enhancement: token-spray/api-dbt.yaml by md

* Enhancement: vulnerabilities/avaya/avaya-aura-rce.yaml by md

* Enhancement: vulnerabilities/avaya/avaya-aura-xss.yaml by md

* Enhancement: vulnerabilities/cisco/cisco-cloudcenter-suite-rce.yaml by md

* Enhancement: vulnerabilities/froxlor-xss.yaml by md

* Enhancement: vulnerabilities/jamf/jamf-log4j-jndi-rce.yaml by md

* Enhancement: vulnerabilities/mobileiron/mobileiron-log4j-jndi-rce.yaml by md

* Enhancement: vulnerabilities/jamf/jamf-log4j-jndi-rce.yaml by md

* Enhancement: vulnerabilities/opencpu/opencpu-rce.yaml by md

* Enhancement: vulnerabilities/other/academy-lms-xss.yaml by md

* Enhancement: vulnerabilities/other/caucho-resin-info-disclosure.yaml by md

* Enhancement: vulnerabilities/other/ckan-dom-based-xss.yaml by md

* Enhancement: vulnerabilities/other/couchdb-adminparty.yaml by md

* Enhancement: vulnerabilities/other/graylog-log4j.yaml by md

* Enhancement: vulnerabilities/mobileiron/mobileiron-log4j-jndi-rce.yaml by md

* Initial cleanups for syntax errors

* dashboard gremlins

* Add log4j back to name

* Enhancement: exposures/files/salesforce-credentials.yaml by cs

* Enhancement: misconfiguration/installer/nopcommerce-installer.yaml by cs

* Enhancement: network/backdoor/backdoored-zte.yaml by cs

* Enhancement: vulnerabilities/other/couchdb-adminparty.yaml by cs

* Sev and other info tweaks

* Merge conflict

---------

Co-authored-by: sullo <sullo@cirt.net>
2023-03-27 23:16:47 +05:30
MostInterestingBotInTheWorld 6df60bcdbc Enhancement: network/backdoor/backdoored-zte.yaml by cs 2023-03-27 10:21:11 -04:00
MostInterestingBotInTheWorld 061159686a Enhancement: network/detection/ibm-d2b-database-server.yaml by md 2023-03-22 14:32:23 -04:00
MostInterestingBotInTheWorld 56ffd6e01a Enhancement: network/backdoor/backdoored-zte.yaml by md 2023-03-22 14:28:53 -04:00
sullo d69d4c45ca Add description and enhance one where the UI failed to save properly.
dos2unix on a template
2023-03-17 15:01:01 -04:00
MostInterestingBotInTheWorld 7677e07dec
Merge branch 'main' into dashboard 2023-03-17 11:24:28 -04:00
Ritik Chaddha 2b5c3c48cc
Merge pull request #6823 from sullo/severity-matching
Match severity with CVSS
2023-03-15 20:48:33 +05:30
MostInterestingBotInTheWorld b5383637ac Enhancement: network/detection/pgsql-detect.yaml by md 2023-03-15 11:07:42 -04:00
MostInterestingBotInTheWorld 64ae188a74 Enhancement: network/enumeration/mongodb-info-enum.yaml by md 2023-03-15 10:40:16 -04:00
MostInterestingBotInTheWorld 5774cb2bbb Enhancement: network/detection/pgsql-detect.yaml by md 2023-03-15 10:33:12 -04:00
MostInterestingBotInTheWorld 10545d4959 Enhancement: network/detection/mysql-detect.yaml by md 2023-03-15 10:23:13 -04:00
sullo b0c9406fbe Manual enhancement
dos2unix
2023-03-10 16:37:55 -05:00
sullo b349a35aa5 Add space after # 2023-03-10 15:27:26 -05:00
sullo 2a7b69bab3 Match severity with CVSS 2023-03-03 10:27:54 -05:00
Ritik Chaddha b0a48d26bb
updated matcher and cmd 2023-03-03 15:09:15 +05:30
pussycat0x 4355ce32d1
Create CVE-2011-2523.yaml 2023-03-03 15:00:28 +05:30
Dhiyaneshwaran 81dff9d12f
fix indentation 2023-02-15 00:18:28 +05:30
pussycat0x bb864a4454
RTSP detect -Enhancement 2023-02-08 13:05:41 +05:30
Dhiyaneshwaran 24401daad9
Merge pull request #6682 from projectdiscovery/pussycat0x-patch-2
RTSP Protocol Detection
2023-02-07 09:39:43 +05:30
Dhiyaneshwaran f0836729ea
fix name , spacing and tag 2023-02-07 09:25:38 +05:30
MostInterestingBotInTheWorld f2e530fa0e Enhancement: network/detect-jabber-xmpp.yaml by md 2023-02-06 17:15:22 -05:00
MostInterestingBotInTheWorld e3b26e37a5 Enhancement: network/detect-addpac-voip-gateway.yaml by md 2023-02-06 17:12:44 -05:00
Ritik Chaddha 0b5c0d6698
lint fix 2023-02-07 02:09:56 +05:30
Ritik Chaddha fee8ede5fa
Merge branch 'main' into dashboard 2023-02-07 02:04:58 +05:30
MostInterestingBotInTheWorld aec33ae228 Enhancement: network/detection/rsyncd-service-detect.yaml by md 2023-02-06 10:31:23 -05:00
MostInterestingBotInTheWorld b9036e080e Enhancement: network/detection/rpcbind-portmapper-detect.yaml by md 2023-02-06 10:29:04 -05:00
MostInterestingBotInTheWorld cd35c9dc5a Enhancement: network/detection/redis-detect.yaml by md 2023-02-06 10:25:10 -05:00
MostInterestingBotInTheWorld 2667af3112 Enhancement: network/detection/rdp-detect.yaml by md 2023-02-06 10:23:34 -05:00
MostInterestingBotInTheWorld f28b2aeb87 Enhancement: network/detection/iplanet-imap-detect.yaml by md 2023-02-06 10:20:23 -05:00
MostInterestingBotInTheWorld d7e18e05ee Enhancement: network/detection/pop3-detect.yaml by md 2023-02-06 10:18:42 -05:00
MostInterestingBotInTheWorld 139e64e18f Enhancement: network/detection/iplanet-imap-detect.yaml by md 2023-02-06 10:16:06 -05:00
MostInterestingBotInTheWorld 0393910b19 Enhancement: network/detection/openssh-detect.yaml by md 2023-02-06 10:15:39 -05:00
MostInterestingBotInTheWorld bbabfda562 Enhancement: network/detection/mongodb-detect.yaml by md 2023-02-06 10:13:24 -05:00
MostInterestingBotInTheWorld 2409e9944b Enhancement: network/detection/mikrotik-routeros-api.yaml by md 2023-02-06 10:11:15 -05:00
MostInterestingBotInTheWorld f35bb05764 Enhancement: network/detection/java-rmi-detect.yaml by md 2023-02-06 10:10:15 -05:00
MostInterestingBotInTheWorld 98bc7cb833 Enhancement: network/detection/iplanet-imap-detect.yaml by md 2023-02-06 10:07:55 -05:00
MostInterestingBotInTheWorld 04e0500de0 Enhancement: network/detection/gopher-detect.yaml by md 2023-02-06 10:03:45 -05:00
pussycat0x bcf5b7cb2a
reference -update 2023-02-06 19:34:58 +05:30
pussycat0x 00467ae2db
lint -update 2023-02-06 19:25:09 +05:30
pussycat0x 62e8b86313
RTSP Protocol Detection 2023-02-06 19:22:29 +05:30
pussycat0x 12f535557a
moving enumeration folder 2023-02-03 18:43:03 +05:30
Dhiyaneshwaran fd2faad782
Merge pull request #6474 from praetorian-matt-schneider/update_ftp-anonymous-login
Update ftp-anonymous-login to reject HTTP false positives
2023-02-03 17:49:54 +05:30
pussycat0x f721102dad
negative: true -Update 2023-02-03 16:09:45 +05:30
pussycat0x 463563302a
condition -update 2023-02-03 15:54:16 +05:30
pussycat0x 366d903054
negative:true -update 2023-02-03 15:45:45 +05:30
Dhiyaneshwaran 369971585f
fix-lint 2023-02-03 13:18:58 +05:30
Dhiyaneshwaran 23b26ec95b
fix-formatting 2023-02-02 23:32:24 +05:30
Prince Chaddha a32baa88d0
moved to enumeration 2023-02-02 22:06:25 +05:30
pussycat0x 351c13864a
condition -update 2023-02-02 20:33:56 +05:30
pussycat0x dc23660d4f
MongoDB Information Enumeration 2023-02-02 20:31:26 +05:30
MostInterestingBotInTheWorld 693e1e3daa
Dashboard Content Enhancements (#6613)
Dashboard Content Enhancements
2023-01-24 08:21:18 -08:00
sullo d51bacf769
Merge branch 'main' into dashboard 2023-01-24 08:15:56 -08:00
Dhiyaneshwaran bdb0ec2e13
formatting 2023-01-24 18:44:32 +05:30
pussycat0x 54c908a65b
yaml lint -fix 2023-01-24 16:32:34 +05:30
pussycat0x 09b32e9ecf
TeamSpeak 3 ServerQuery Detection 2023-01-24 16:27:32 +05:30
sullo e9e29939f7 Fixing: severity mismatches, trailing spaces, other cleanups 2023-01-23 22:06:12 -08:00
MostInterestingBotInTheWorld 0d6fbd237f
Dashboard Content Enhancements (#6598)
Dashboard Content Enhancements
2023-01-23 14:14:23 -08:00
sullo 8a3eeea516 Fixing spelling, -dorks, and some severity mismatches 2023-01-23 15:11:25 -05:00
Dhiyaneshwaran 58a73d57cd
Merge pull request #6304 from lu4nx/fix-os-version-match
Fix matched OS version information
2023-01-15 22:23:06 +05:30
Matt Schneider 25fb048156 adds matcher to ftp anonymous login which checks for bad http responses (false positives) 2023-01-05 14:33:20 -06:00
Dhiyaneshwaran 8e38d02306
change-formatting 2023-01-04 12:55:04 +05:30
pussycat0x 1db046d4bd
matchers comments added 2022-12-30 15:51:06 +05:30
pussycat0x ed7f45fd03
condition -updated 2022-12-30 15:43:22 +05:30
nybble04 7869328bc6
Update matchers 2022-12-29 19:01:56 +04:00
nybble04 a9c2622572
Merge branch 'projectdiscovery:main' into pgsql_detect 2022-12-29 18:48:10 +04:00
Prince Chaddha 9a42ddb3d7
Update exposed-dockerd.yaml 2022-12-29 15:23:10 +05:30
pussycat0x 7e23fae3b4
metadata & description -update 2022-12-27 22:39:21 +05:30
nybble04 0f783f11a1 Add newline EOF 2022-12-27 18:15:09 +04:00
nybble04 cad9e85d7d Add a postgresql server detection template 2022-12-27 18:07:25 +04:00
pussycat0x 250c69ea79
Merge pull request #6335 from arafatansari/patch-117
Create exposed-dockerd.yaml
2022-12-20 15:19:56 +05:30
Dhiyaneshwaran 58c5340ee2
added case insensitive 2022-12-16 15:47:42 +05:30
Dhiyaneshwaran 363565e9e3
fix lint 2022-12-16 15:41:57 +05:30