Commit Graph

10145 Commits (a21cec63625b1bc4392d67e432f54f1453f91c94)

Author SHA1 Message Date
Prince Chaddha 02ee424c29
Merge pull request #2924 from pdelteil/patch-77
Update zenphoto-sensitive-info.yaml
2021-10-19 17:48:16 +05:30
Prince Chaddha 3b6e3ba39a
Merge pull request #2925 from gy741/rule-add-v66
Create CVE-2021-33044.yaml
2021-10-19 17:48:01 +05:30
Prince Chaddha 075b840dad
Merge pull request #2923 from pdelteil/patch-76
Update sensitive-storage-exposure.yaml
2021-10-19 17:46:19 +05:30
Prince Chaddha 52e498506e
Update zenphoto-sensitive-info.yaml 2021-10-19 17:45:19 +05:30
Prince Chaddha 181dda73ec
Update CVE-2021-33044.yaml 2021-10-19 17:44:06 +05:30
GwanYeong Kim 02655a9f22 Create CVE-2021-33044.yaml
The identity authentication bypass vulnerability found in some Dahua products during the login process. Attackers can bypass device identity authentication by constructing malicious data packets.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-10-19 12:50:07 +09:00
Philippe Delteil 69953cf73e
Update zenphoto-sensitive-info.yaml 2021-10-18 23:18:31 -03:00
Philippe Delteil 667ee78cb5
Update sensitive-storage-exposure.yaml 2021-10-18 23:09:27 -03:00
Geeknik Labs c9f2ef68ed
Update prometheus-config-endpoint.yaml 2021-10-18 17:28:10 -05:00
sandeep 3175b12b22 Additional matcher 2021-10-19 03:19:32 +05:30
Sandeep Singh 47371415d2
Merge pull request #2922 from projectdiscovery/workflow-fix
workflow fix to run on release / create tag only
2021-10-19 02:25:13 +05:30
GitHub Action e6cd0981c1 Auto README Update [Mon Oct 18 20:53:35 UTC 2021] 🤖 2021-10-18 20:53:36 +00:00
sandeep db8a1bda6f workflow fix to run on release / create tag only 2021-10-19 02:23:08 +05:30
Sandeep Singh 7fbbf8610a
Merge pull request #2921 from projectdiscovery/oob-tags-update
oob tags update
2021-10-19 02:15:16 +05:30
GitHub Action e10c3ff7da Auto README Update [Mon Oct 18 20:41:34 UTC 2021] 🤖 2021-10-18 20:41:34 +00:00
GitHub Action ecf4ed15f7 Auto Generated Templates Stats [Mon Oct 18 20:41:11 UTC 2021] 🤖 2021-10-18 20:41:11 +00:00
sandeep 33badb66d1 oob tags update 2021-10-19 02:10:26 +05:30
Geeknik Labs eac799774d
Update prometheus-flags-endpoint.yaml 2021-10-18 14:36:49 -05:00
Geeknik Labs 86a8332187
Update prometheus-flags-endpoint.yaml
adding regex extractor to alert if `optional` Prometheus management API is enabled as per the linked reference article. 👍🏻
2021-10-18 13:51:11 -05:00
Geeknik Labs 72805491d0
Create prometheus-targets-endpoint.yaml 2021-10-18 13:44:55 -05:00
Geeknik Labs 0f20469e96
Update prometheus-flags-endpoint.yaml 2021-10-18 13:43:36 -05:00
Geeknik Labs a8a063d14c
Create prometheus-flags-endpoint.yaml 2021-10-18 13:36:27 -05:00
Geeknik Labs c7efad4b58
Create prometheus-config-endpoint.yaml 2021-10-18 13:35:04 -05:00
Sandeep Singh b9392d5a3e
Merge pull request #2916 from oppsec/patch-13
add more tags to keycloak json file template
2021-10-18 22:43:27 +05:30
opp? aec00d0d11
add more tags to keycloak json file template 2021-10-18 13:38:04 -03:00
Prince Chaddha 2d83f055b4
Merge pull request #2908 from DhiyaneshGeek/master
CVE-2020-10770
2021-10-18 21:06:32 +05:30
Prince Chaddha fc81dd3b24
Update CVE-2020-10770.yaml 2021-10-18 21:03:29 +05:30
Prince Chaddha 1886d466c8
Merge pull request #2915 from projectdiscovery/sonicwall-analyzer-login
Create sonicwall-analyzer-login.yaml
2021-10-18 21:01:18 +05:30
GitHub Action 7bf2b83778 Auto README Update [Mon Oct 18 15:30:47 UTC 2021] 🤖 2021-10-18 15:30:47 +00:00
GitHub Action 2d50e768ce Auto Generated Templates Stats [Mon Oct 18 15:30:13 UTC 2021] 🤖 2021-10-18 15:30:13 +00:00
Prince Chaddha b14da30973
Create sonicwall-analyzer-login.yaml 2021-10-18 20:59:17 +05:30
Prince Chaddha 199add7f53 Revert "Create sonicwall-analyzer-login.yaml"
This reverts commit 9d0685ec24.
2021-10-18 20:59:05 +05:30
Prince Chaddha 9d0685ec24
Create sonicwall-analyzer-login.yaml 2021-10-18 20:58:18 +05:30
Prince Chaddha 9e37e202bd
Update CVE-2021-20031.yaml 2021-10-18 20:55:47 +05:30
Prince Chaddha 6346c6e93a
Update CVE-2021-20031.yaml 2021-10-18 20:52:36 +05:30
GitHub Action d2d4d01846 Auto Generated CVE annotations [Mon Oct 18 15:19:41 UTC 2021] 🤖 2021-10-18 15:19:41 +00:00
Prince Chaddha 09d4e1ea28
Merge pull request #2912 from wisnupramoedya/patch-2
Create CVE-2018-10823.yaml
2021-10-18 20:48:20 +05:30
Prince Chaddha 1753507a39
Merge pull request #2911 from wisnupramoedya/patch-1
Create CVE-2018-10093.yaml
2021-10-18 20:47:51 +05:30
GitHub Action 0762d645fb Auto Generated CVE annotations [Mon Oct 18 15:16:57 UTC 2021] 🤖 2021-10-18 15:16:57 +00:00
Prince Chaddha 868264f839
Update CVE-2018-10823.yaml 2021-10-18 20:46:01 +05:30
Prince Chaddha 9f30aa203b
Merge pull request #2913 from wisnupramoedya/patch-3
Create CVE-2018-13980.yaml
2021-10-18 20:45:06 +05:30
GitHub Action 79656346cd Auto Generated CVE annotations [Mon Oct 18 15:14:58 UTC 2021] 🤖 2021-10-18 15:14:58 +00:00
Prince Chaddha da25bc38f7
Merge pull request #2914 from wisnupramoedya/patch-4
Create CVE-2018-12054.yaml
2021-10-18 20:43:33 +05:30
Wisnu Pramoedya cf1b818d5b
Create CVE-2018-12054.yaml 2021-10-18 20:04:38 +07:00
Wisnu Pramoedya 89f9d65d7d
Create CVE-2018-13980.yaml 2021-10-18 20:00:57 +07:00
Wisnu Pramoedya 7d007d29f0
Create CVE-2018-10823.yaml 2021-10-18 19:56:22 +07:00
Wisnu Pramoedya 98d8a15123
Create CVE-2018-10093.yaml 2021-10-18 19:44:09 +07:00
GwanYeong Kim c7fc202ef1 Create CVE-2021-20031.yaml
A Host Header Injection vulnerability may allow an attacker to spoof a particular Host header, allowing the attacker to render arbitrary links that point to a malicious website with poisoned Host header webpages. An issue was discovered in Sonicwall NAS, SonicWall Analyzer version 8.5.0 (may be affected on other versions too). The values of the 'Host' headers are implicitly set as trusted while this should be forbidden, leading to potential host header injection attack and also the affected hosts can be used for domain fronting. This means affected hosts can be used by attackers to hide behind during various other attack

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-10-18 08:24:29 +09:00
sandeep a614391d3f Merge branch 'master' of https://github.com/projectdiscovery/nuclei-templates into more-fixes 2021-10-18 03:14:44 +05:30
sandeep 3d6a079b42 workflow update 2021-10-18 03:14:23 +05:30