Commit Graph

10545 Commits (a229a2e822ac1974e2d7fae6a42f71262e71c709)

Author SHA1 Message Date
Prince Chaddha a229a2e822
Merge pull request #2986 from projectdiscovery/wildcard-postmessage
Added Wildcard postMessage detection
2021-11-01 15:46:00 +05:30
Prince Chaddha c4b7bb3bd2
Merge pull request #3032 from r3dg33k/wordpress-rdf-user-enum
wordpress-rdf-user-enum
2021-11-01 15:43:00 +05:30
Prince Chaddha ab0cd5d3c0
Merge pull request #3042 from NagliNagli/patch-8
Update cacti-detect.yaml
2021-11-01 15:39:37 +05:30
Prince Chaddha 48aeff21e8 Revert "Update cacti-detect.yaml"
This reverts commit 0def30db7d.
2021-11-01 15:39:15 +05:30
Prince Chaddha 7b20a25fc6
Update and rename wordpress-rdf-user-enum.yaml to rdf-user-enumeration.yaml 2021-11-01 15:37:58 +05:30
Prince Chaddha a862dc3a6f
Update wordpress-rdf-user-enum.yaml 2021-11-01 15:33:06 +05:30
Prince Chaddha 0def30db7d
Update cacti-detect.yaml 2021-11-01 15:32:48 +05:30
Prince Chaddha ff5b68a343
Update wordpress-rdf-user-enum.yaml 2021-11-01 15:30:54 +05:30
Gal Nagli 388f60b6c8
Update cacti-detect.yaml 2021-11-01 11:50:57 +02:00
Prince Chaddha 3decaed012
Merge pull request #3036 from Akokonunes/patch-64
Create wp-theme-diarise-lfi.yaml
2021-11-01 14:54:58 +05:30
Prince Chaddha ec2907e6b0
Update wildcard-postmessage.yaml 2021-11-01 14:54:51 +05:30
Prince Chaddha 24d63c169b
Merge pull request #3030 from DhiyaneshGeek/master
Umbraco v8.14.1 - 'baseUrl' SSRF
2021-11-01 14:48:28 +05:30
Prince Chaddha 756ed2c443
Update and rename wp-theme-diarise-lfi.yaml to vulnerabilities/wordpress/diarise-theme-lfi.yaml 2021-11-01 14:37:16 +05:30
Prince Chaddha c26924f7d8
Merge pull request #3037 from Akokonunes/patch-65
Create CVE-2019-16123.yaml
2021-11-01 14:34:18 +05:30
Prince Chaddha 95b6237e37
Update and rename CVE-2019-16123.yaml to cves/2019/CVE-2019-16123.yaml 2021-11-01 14:28:28 +05:30
Sandeep Singh fe3d472898
Merge pull request #3039 from mahhari/Forcepoint-pem-login-panel
Forcepoint-pem-login-panel
2021-11-01 13:32:07 +05:30
sandeep c1f0fd02a4 misc update 2021-11-01 13:29:59 +05:30
Sandeep Singh aa497368ef
Merge pull request #3040 from nrathaus/master
Add descriptions
2021-11-01 13:28:06 +05:30
Sandeep Singh d4597d9990
Merge pull request #3041 from alifathi-h1/master
SeedDMS Default Login
2021-11-01 13:27:19 +05:30
sandeep 7662b17342 misc update 2021-11-01 13:26:01 +05:30
alifathi-h1 68646016b1 SeedDMS Default Login 2021-11-01 13:38:54 +08:00
sandeep 42cdba5692 moving file around + matcher update 2021-10-31 21:10:48 +05:30
Noam Rathaus 4381a462e2 Add description 2021-10-31 16:00:56 +02:00
Noam Rathaus d277d83c8e Add description 2021-10-31 15:58:17 +02:00
Sandeep Singh c2a167939e
Merge pull request #3031 from gy741/rule-add-v70
Create CVE-2021-31682.yaml
2021-10-31 17:09:29 +05:30
sandeep fe6dbc8b4d misc update 2021-10-31 16:56:16 +05:30
Sandeep Singh 036c6629b5
Merge pull request #3035 from geeknik/patch-41
Update top-xss-params.yaml
2021-10-31 16:25:44 +05:30
sandeep 8e27d69da4 misc update 2021-10-31 16:24:36 +05:30
mahhari 00df1b70ab
Add files via upload 2021-10-31 09:02:17 +03:00
Roberto Nunes c81b38ca40
Create CVE-2019-16123.yaml 2021-10-31 06:48:32 +09:00
Roberto Nunes 6bb885956e
Create wp-theme-diarise-lfi.yaml 2021-10-31 06:44:13 +09:00
Geeknik Labs 26c298ed03
Update top-xss-params.yaml
added an additional 23 parameters and matchers
2021-10-30 16:26:28 -05:00
Prince Chaddha 4d58562095
Update umbraco-base-ssrf.yaml 2021-10-30 22:06:04 +05:30
Sandeep Singh 035f829d69
Merge pull request #3034 from projectdiscovery/CVE-2018-15473-update
matcher + added version extractors
2021-10-30 19:30:01 +05:30
sandeep 107679bd9a matcher + added version extractors 2021-10-30 19:26:12 +05:30
Prince Chaddha 40340c89c6
Update and rename misconfiguration/umbraco-base-ssrf.yaml to misconfiguration/vulnerabilities/other/umbraco-base-ssrf.yaml 2021-10-30 17:33:53 +05:30
GitHub Action 4cc2a7a205 Auto Generated CVE annotations [Sat Oct 30 11:41:59 UTC 2021] 🤖 2021-10-30 11:41:59 +00:00
Sandeep Singh f5bef9d515
Merge pull request #3033 from projectdiscovery/template-fixes
Fixed invalid template syntax
2021-10-30 17:10:34 +05:30
sandeep 8c3f98c767 fixed invalid template syntax 2021-10-30 16:47:35 +05:30
r3dg33k 2925226122
Update wordpress-rdf-user-enum.yaml 2021-10-30 13:58:24 +03:00
r3dg33k f3a44a7f50
Update wordpress-rdf-user-enum.yaml 2021-10-30 13:57:53 +03:00
r3dg33k f75fcde7a9
Update wordpress-rdf-user-enum.yaml 2021-10-30 13:56:04 +03:00
r3dg33k 2d50cb52c6
Add files via upload 2021-10-30 13:46:56 +03:00
GwanYeong Kim 43629d5f49 Create CVE-2021-31682.yaml
The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the operatorlocale GET parameter not being sanitized. This issue impacts versions 6.5 and below. This issue works by passing in a basic XSS payload to a vulnerable GET parameter that is reflected in the output without sanitization.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2021-10-30 19:36:29 +09:00
Dhiyaneshwaran 9e1f9859d8
Create umbraco-base-ssrf.yaml 2021-10-30 11:03:14 +05:30
Dhiyaneshwaran 85060d26bd
Merge pull request #107 from projectdiscovery/master
Updation
2021-10-30 10:57:03 +05:30
Prince Chaddha 7e27db0348
Merge pull request #3023 from daffainfo/master
Add 10 token-spray templates
2021-10-30 10:39:30 +05:30
Sandeep Singh 19c592c174
Merge pull request #3027 from DhiyaneshGeek/master
Movable Additional Templates and Workflow
2021-10-30 00:33:16 +05:30
sandeep 78e0f016c7 matcher update 2021-10-30 00:31:57 +05:30
sandeep b646a7de9b improved workflow + syntax fix 2021-10-30 00:29:13 +05:30