Commit Graph

7678 Commits (a5a2c8a54537e2e936607b531b4e04f4cbfb2dcb)

Author SHA1 Message Date
Aman Rawat f9ffbd2c38
Update CVE-2022-0870.yaml 2023-03-12 16:03:49 +05:30
sullo b0c9406fbe Manual enhancement
dos2unix
2023-03-10 16:37:55 -05:00
sullo 7562704a8c Replace securityfocus.com link with archive.org 2023-03-10 15:30:20 -05:00
sullo 976539bffd Cleanups.
rename fuzzing/adminer-panel-fuzz.yaml -> exposed-panels/adminer-panel-detect.yaml as it's just guessing file names, not fuzzing.
2023-03-10 15:24:54 -05:00
MostInterestingBotInTheWorld 828d1b3ba6
Merge branch 'main' into dashboard 2023-03-10 15:03:33 -05:00
sullo ede2183e8e spacing and other cleanups 2023-03-10 15:00:55 -05:00
PikPikcU 03484c4386
Create CVE-2023-26256.yaml 2023-03-10 22:35:00 +07:00
pussycat0x ca5b30f77d
Merge pull request #6869 from projectdiscovery/CVE-2021-40438-fn-fix
CVE-2021-40438 false positive / negative fix
2023-03-09 23:56:21 +05:30
Ritik Chaddha f68e0c2ea9 updated url 2023-03-09 20:18:32 +05:30
GitHub Action f1b3af1752 Auto Generated CVE annotations [Thu Mar 9 13:45:25 UTC 2023] 🤖 2023-03-09 13:45:25 +00:00
sandeep b2d21d7250 replaced with placeholder 2023-03-09 19:09:16 +05:30
pussycat0x 8f34999e25
Merge pull request #6864 from projectdiscovery/CVE-2019-5434
Create CVE-2019-5434.yaml
2023-03-09 18:58:13 +05:30
sandeep f236bcf451 CVE-2021-40438 false negative fix 2023-03-09 18:49:32 +05:30
pussycat0x 036b93da79
Merge pull request #6830 from pwnhxl/main
discuz-downremoteimg-ssrf
2023-03-09 18:34:19 +05:30
GitHub Action 65b3bddf8d Auto Generated CVE annotations [Thu Mar 9 07:50:01 UTC 2023] 🤖 2023-03-09 07:50:01 +00:00
QAQ 61b547781c
Merge branch 'projectdiscovery:main' into main 2023-03-09 15:06:19 +08:00
Dhiyaneshwaran 6b5c355a12
Create CVE-2019-5434.yaml 2023-03-09 05:50:00 +05:30
Dhiyaneshwaran c9e4d3cea3 Fixed Issue #6850 2023-03-09 05:23:36 +05:30
MostInterestingBotInTheWorld 2db34f1f1c Enhancement: cves/2023/CVE-2023-24322.yaml by md 2023-03-07 17:04:11 -05:00
MostInterestingBotInTheWorld ec6a60fde5 Enhancement: cves/2023/CVE-2023-23489.yaml by md 2023-03-07 16:55:46 -05:00
MostInterestingBotInTheWorld 8e42a015b8 Enhancement: cves/2023/CVE-2023-23489.yaml by md 2023-03-07 16:54:58 -05:00
MostInterestingBotInTheWorld fdbe49059b Enhancement: cves/2023/CVE-2023-23488.yaml by md 2023-03-07 16:52:58 -05:00
MostInterestingBotInTheWorld 2cf4e167a2 Enhancement: cves/2022/CVE-2022-28923.yaml by md 2023-03-07 16:35:13 -05:00
MostInterestingBotInTheWorld cb21abe1d7 Enhancement: cves/2022/CVE-2022-2599.yaml by md 2023-03-07 16:30:36 -05:00
MostInterestingBotInTheWorld e17ed6c9b6 Enhancement: cves/2021/CVE-2021-30134.yaml by md 2023-03-07 16:27:38 -05:00
MostInterestingBotInTheWorld 6e463b59d6 Enhancement: cves/2021/CVE-2021-25299.yaml by md 2023-03-07 16:24:46 -05:00
MostInterestingBotInTheWorld 0c08a12deb Enhancement: cves/2018/CVE-2018-6184.yaml by md 2023-03-07 16:18:20 -05:00
GitHub Action db57ae8692 Auto Generated CVE annotations [Mon Mar 6 13:37:50 UTC 2023] 🤖 2023-03-06 13:37:50 +00:00
Ritik Chaddha 8c0e4201b2
removed takeover tag 2023-03-06 18:50:40 +05:30
GitHub Action 4792f4f440 Auto Generated CVE annotations [Sun Mar 5 14:19:20 UTC 2023] 🤖 2023-03-05 14:19:20 +00:00
Dhiyaneshwaran f84410e00d fix trailling space 2023-03-05 19:22:34 +05:30
Prince Chaddha 2b01c631a4 templates added 2023-03-05 19:12:10 +05:30
QAQ ffaec1abd9
Update CVE-2021-21311.yaml 2023-03-05 16:39:21 +08:00
QAQ 37d23242ce
Merge branch 'projectdiscovery:main' into main 2023-03-05 15:43:25 +08:00
GitHub Action 615e4e531d Auto Generated CVE annotations [Sat Mar 4 08:22:19 UTC 2023] 🤖 2023-03-04 08:22:19 +00:00
QAQ 3dfd9e3915
Fix cve-2021-21311 (#6821)
* update zip-backup-files

* fix cve-2021-21311

* Update CVE-2021-21311.yaml

* Update php-backup-files

* add exposed-ds_store.yaml

* lint fixes

* added more matchers!

* removed duplicate template

* misc formatting update

* added fuzz tags

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-03-04 13:35:35 +05:30
sandeep eafc69520b lint fixes 2023-03-04 12:39:43 +05:30
sullo 0b5a4228af Typo fixes 2023-03-03 11:00:02 -05:00
GitHub Action cf0e050cc5 Auto Generated CVE annotations [Fri Mar 3 12:09:16 UTC 2023] 🤖 2023-03-03 12:09:16 +00:00
Dhiyaneshwaran 8c235dcae8
Merge pull request #6820 from sullo/cvedetails-removal
Replace cvedetails.com links with nist links
2023-03-03 17:26:31 +05:30
Dhiyaneshwaran 73bdedf50a
Merge pull request #6815 from JorianWoltjer/main
Reduce false-positives in Open Redirect regexes
2023-03-03 17:19:14 +05:30
QAQ e07f16d18e
Update CVE-2021-21311.yaml 2023-03-03 15:53:41 +08:00
pwnhxl b1b658f8e2 fix cve-2021-21311 2023-03-03 15:28:31 +08:00
sullo f40ef458b0 Remove cvedetails.com links where nist link already existed 2023-03-02 17:27:36 -05:00
sullo 5486b3444a Replace all cvedeails.com links with nist 2023-03-02 17:00:10 -05:00
sullo 735db8c320 Fix duplicate sections 2023-03-02 16:11:29 -05:00
MostInterestingBotInTheWorld 9a8397c2f3
Merge branch 'projectdiscovery:main' into dashboard 2023-03-02 16:08:27 -05:00
sullo f42443a761 Add missing cves
Cleanup a poor quality template
Rename/relocate ruijie from password leak to RCE
2023-03-02 16:07:26 -05:00
GitHub Action 670062997f Auto Generated CVE annotations [Thu Mar 2 10:57:29 UTC 2023] 🤖 2023-03-02 10:57:29 +00:00
Dhiyaneshwaran 4241b82305
Merge pull request #6680 from For3stCo1d/CVE-2022-48165
Create CVE-2022-48165.yaml
2023-03-02 16:10:58 +05:30
Jorian Woltjer 06e9e06961 Add open-directed improvement to more templates 2023-03-01 19:22:21 +01:00
Jorian Woltjer 71fd3bf973 Reduce false-positives in open-redirect regexes 2023-03-01 09:39:14 +01:00
Tarunkant Gupta d0768063f5
Update CVE-2022-39952.yaml 2023-02-24 16:07:41 +05:30
Dhiyaneshwaran d50af6f34b
Fixed Formatting and Reference 2023-02-24 11:37:50 +05:30
GitHub Action d8d3641dbe Auto Generated CVE annotations [Fri Feb 24 05:24:03 UTC 2023] 🤖 2023-02-24 05:24:03 +00:00
Dhiyaneshwaran 0e9d57090f
Merge pull request #6690 from S0obi/feature/improve-cve-2017-12149-template
Improve CVE-2017-12149 template
2023-02-24 10:40:02 +05:30
Dhiyaneshwaran a17a2e40c8
Merge pull request #6780 from dwisiswant0/add/CVE-2022-39952
add CVE-2022-39952
2023-02-24 10:37:38 +05:30
Dwi Siswanto 86a67544c4
cve(CVE-2022-39952): update misc
Co-authored-by: DhiyaneshGeek <DhiyaneshGeek@users.noreply.github.com>
2023-02-24 12:01:33 +07:00
GitHub Action 7be705366f Auto Generated CVE annotations [Thu Feb 23 18:30:27 UTC 2023] 🤖 2023-02-23 18:30:27 +00:00
Dhiyaneshwaran b58937a437
Merge pull request #6777 from projectdiscovery/CVE-2021-25299
Create CVE-2021-25299.yaml
2023-02-23 23:43:56 +05:30
Dhiyaneshwaran a9cdfee978
metadata added 2023-02-23 23:40:46 +05:30
Ritik Chaddha 48ca51a739
Update CVE-2017-12149.yaml 2023-02-23 22:46:13 +05:30
GitHub Action 8d9b5a373e Auto Generated CVE annotations [Thu Feb 23 11:59:48 UTC 2023] 🤖 2023-02-23 11:59:48 +00:00
Ritik Chaddha 07dd13a051
Update CVE-2022-2599.yaml 2023-02-23 17:09:33 +05:30
pussycat0x 1a4a915641
Merge pull request #6788 from projectdiscovery/CVE-2022-2599
Create CVE-2022-2599.yaml
2023-02-23 17:03:49 +05:30
pussycat0x f105b20b87
minor -update 2023-02-23 17:00:54 +05:30
GitHub Action d119253d69 Auto Generated CVE annotations [Thu Feb 23 10:12:47 UTC 2023] 🤖 2023-02-23 10:12:47 +00:00
pussycat0x 644b940699
Merge pull request #6615 from k0pak4/CVE-2021-25296
Add templates for CVE-2021-25296, CVE-2021-25297, CVE-2021-25298
2023-02-23 15:21:50 +05:30
Ritik Chaddha 67073fb02d
Create CVE-2022-2599.yaml 2023-02-23 14:32:08 +05:30
Ritik Chaddha 253e4a2b9a added timeout annotation 2023-02-23 13:18:53 +05:30
Matthew Dunn 54ea0c5f89 URL encode semicolon, add closing quote for cve-2021-25297 2023-02-22 15:51:51 -05:00
MostInterestingBotInTheWorld 95566195b0 Enhancement: cves/2022/CVE-2022-4447.yaml by md 2023-02-22 14:18:35 -05:00
MostInterestingBotInTheWorld 80333c9e9e Enhancement: cves/2022/CVE-2022-36446.yaml by md 2023-02-22 14:15:14 -05:00
MostInterestingBotInTheWorld f9647c5732 Enhancement: cves/2021/CVE-2021-25899.yaml by md 2023-02-22 14:10:17 -05:00
MostInterestingBotInTheWorld a15a11ebd2 Enhancement: cves/2021/CVE-2021-25114.yaml by md 2023-02-22 14:06:10 -05:00
MostInterestingBotInTheWorld 840dc0f794 Enhancement: cves/2020/CVE-2020-15895.yaml by md 2023-02-22 14:01:17 -05:00
MostInterestingBotInTheWorld 43d1f3979d Enhancement: cves/2015/CVE-2015-2996.yaml by md 2023-02-22 13:56:39 -05:00
MostInterestingBotInTheWorld bc0844999b Enhancement: cves/2015/CVE-2015-2996.yaml by md 2023-02-22 13:53:47 -05:00
Ritik Chaddha 5a114fb68a
added parameters 2023-02-22 19:01:52 +05:30
Ritik Chaddha 52d17e2a35
updated matcher,request,metadata 2023-02-22 17:37:21 +05:30
Ritik Chaddha 34da1c5074
updated matchers,request,metadata 2023-02-22 17:09:31 +05:30
Ritik Chaddha 0f31a754b1
updated parameters 2023-02-22 16:19:46 +05:30
Ritik Chaddha a7cb6815e1
updated severity 2023-02-22 16:10:37 +05:30
Ritik Chaddha b6fad5ea01
udpated matchers,payload,metadata 2023-02-22 16:07:00 +05:30
MostInterestingBotInTheWorld 81d61de200 Enhancement: cves/2015/CVE-2015-2996.yaml by cs 2023-02-21 17:02:03 -05:00
MostInterestingBotInTheWorld 0d14344256 Enhancement: cves/2015/CVE-2015-2996.yaml by mp 2023-02-21 17:01:07 -05:00
MostInterestingBotInTheWorld 33510d2ad7
Merge branch 'projectdiscovery:main' into dashboard 2023-02-21 17:00:20 -05:00
MostInterestingBotInTheWorld 7e7f9119d9 Enhancement: cves/2015/CVE-2015-2996.yaml by mp 2023-02-21 17:00:15 -05:00
MostInterestingBotInTheWorld 9d2ff13062 Enhancement: cves/2015/CVE-2015-2996.yaml by cs 2023-02-21 16:57:50 -05:00
Dwi Siswanto 8f6f8895fd
add CVE-2022-39952 2023-02-21 22:47:52 +07:00
Ritik Chaddha 5382591df0
Create CVE-2021-25299.yaml 2023-02-21 14:14:36 +05:30
GitHub Action 380836a4a7 Auto Generated CVE annotations [Tue Feb 21 08:41:59 UTC 2023] 🤖 2023-02-21 08:41:59 +00:00
Dhiyaneshwaran 92b40c4121
Merge pull request #6775 from pikpikcu/patch-366
Added Mojoportal XSS
2023-02-21 13:53:23 +05:30
Ritik Chaddha fb5c0fc8ee
Merge pull request #6753 from projectdiscovery/CVE-2021-36580
Create CVE-2021-36580.yaml
2023-02-20 23:32:51 +05:30
Dhiyaneshwaran ff3f1fa05d
fixed matcher 2023-02-20 21:52:58 +05:30
Jon Cagan a26ce9f9f2 Removed trailing spaces and added ending newline. 2023-02-20 11:12:58 -05:00
Dhiyaneshwaran 7755325f09
fixed spacing and added stop at first match 2023-02-20 19:49:51 +05:30
PikPikcU 497a6669f6
Create CVE-2023-24322.yaml 2023-02-20 20:20:07 +07:00
Sascha Brendel b2a3300357
Added additional path for vulnerability. 2023-02-20 14:03:55 +01:00
GitHub Action 5a4b9c2893 Auto Generated CVE annotations [Mon Feb 20 10:25:25 UTC 2023] 🤖 2023-02-20 10:25:25 +00:00
pussycat0x 9d47f0ff59
Merge pull request #6773 from projectdiscovery/fix-cve2023-23488
added verified tag
2023-02-20 15:33:53 +05:30
GitHub Action b86fab6f54 Auto Generated CVE annotations [Mon Feb 20 10:02:27 UTC 2023] 🤖 2023-02-20 10:02:27 +00:00
Dhiyaneshwaran bc7eb48cb4
added verified tag 2023-02-20 15:26:40 +05:30
pussycat0x 48beeaff9a
Merge pull request #6771 from dwisiswant0/add/CVE-2023-23488
add CVE-2023-23488
2023-02-20 15:23:29 +05:30
pussycat0x 8099bf122f
Merge pull request #6763 from projectdiscovery/CVE-2023-23752
Create CVE-2023-23752.yaml
2023-02-20 15:15:52 +05:30
Dwi Siswanto aa304651de
update(CVE-2023-23488): extend timeout value to 30s 2023-02-20 02:37:27 +07:00
Jon Cagan a5ffcef441 Added CVE-2022-3800 Template 2023-02-19 14:36:38 -05:00
Dwi Siswanto fe99251f3c
add CVE-2023-23488 2023-02-20 02:09:46 +07:00
Dhiyaneshwaran 52d6dbdfeb
fixing header 2023-02-18 20:28:21 +05:30
Dhiyaneshwaran 3b705a6c7f
fix false positive 2023-02-18 13:06:17 +05:30
GitHub Action b222a91b41 Auto Generated CVE annotations [Fri Feb 17 11:50:17 UTC 2023] 🤖 2023-02-17 11:50:17 +00:00
pussycat0x 523be4ad26
Merge pull request #6751 from projectdiscovery/CVE-2018-6184
Create CVE-2018-6184.yaml
2023-02-17 17:03:49 +05:30
Dhiyaneshwaran b8b1e10279
Create CVE-2023-23752.yaml 2023-02-17 14:41:40 +05:30
GitHub Action 03dc7e19e1 Auto Generated CVE annotations [Fri Feb 17 03:41:43 UTC 2023] 🤖 2023-02-17 03:41:43 +00:00
Ritik Chaddha a82b0d84b0
Merge pull request #6731 from theamanrawat/CVE-2023-23489
Added template for CVE-2023-23489
2023-02-17 08:55:24 +05:30
Ritik Chaddha ab5aadd39b
added matcher and request 2023-02-17 08:40:18 +05:30
Dhiyaneshwaran 784c7a1bcf
Create CVE-2021-36580.yaml 2023-02-16 16:46:48 +05:30
Dhiyaneshwaran eb1850f009
Create CVE-2018-6184.yaml 2023-02-16 16:19:35 +05:30
GitHub Action bce8259fea Auto Generated CVE annotations [Thu Feb 16 08:30:30 UTC 2023] 🤖 2023-02-16 08:30:30 +00:00
Ritik Chaddha 818ab3692a
Merge pull request #6739 from MostInterestingBotInTheWorld/dashboard
Dashboard Content Enhancements
2023-02-16 13:44:03 +05:30
GitHub Action 6485ba53a9 Auto Generated CVE annotations [Thu Feb 16 05:47:13 UTC 2023] 🤖 2023-02-16 05:47:13 +00:00
Ritik Chaddha 1ecbc31b58
updated matcher, request type, metadata 2023-02-16 10:54:57 +05:30
Aman Rawat f443ccf848 Added template for CVE-2021-30134 2023-02-16 10:35:10 +05:30
Dhiyaneshwaran 025876b147
added remediation 2023-02-15 23:59:27 +05:30
Dhiyaneshwaran 07990cd205
remove / 2023-02-14 19:45:55 +05:30
Dhiyaneshwaran 5de22b7f55
fixed template 2023-02-14 19:40:38 +05:30
Sascha Brendel 192ae9c929
Fixed trailing spaces. 2023-02-13 23:19:34 +01:00
Sascha Brendel 2ade82ba4b
Added CVE-2022-28923 Caddy v.2.4.6 Open Redirect Vulnerability 2023-02-13 22:19:30 +01:00
MostInterestingBotInTheWorld b5b46e2a74
Merge branch 'projectdiscovery:main' into dashboard 2023-02-13 14:05:55 -05:00
GitHub Action 9d0a0f9c8e Auto Generated CVE annotations [Sun Feb 12 13:07:02 UTC 2023] 🤖 2023-02-12 13:07:02 +00:00
Ritik Chaddha b1e76ffa74
updated matcher 2023-02-12 18:17:16 +05:30
Aman Rawat e8ec09e27b Added template for CVE-2023-23489 2023-02-12 12:51:47 +05:30
东方有鱼名为咸 fbe0dac3e0
Update CVE-2020-14181.yaml
There are no prompts or modified hints in other languages in some environments, but they all exist `_user_hover`
2023-02-12 14:08:08 +08:00
Ritik Chaddha 031b9ba1b4
Update CVE-2020-10770.yaml 2023-02-11 10:29:02 +05:30
Thibault Soubiran 8d26b3fea5 Improve Keycloak templates 2023-02-10 22:01:43 +01:00
GitHub Action af906f6181 Auto Generated CVE annotations [Fri Feb 10 16:02:02 UTC 2023] 🤖 2023-02-10 16:02:02 +00:00
Prince Chaddha 4bc48992bc
Update CVE-2020-15895.yaml 2023-02-10 21:03:39 +05:30
GitHub Action 6bca5ee895 Auto Generated CVE annotations [Fri Feb 10 15:06:55 UTC 2023] 🤖 2023-02-10 15:06:55 +00:00
Sandeep Singh 128449c8ac
Added CVE-2023-0669 - GoAnywhere MFT - Remote Code Execution (ZeroDay) (#6701)
* Create CVE-2023-0669.yaml

Co-Authored-By: Dhiyaneshwaran <24750220+DhiyaneshGeek@users.noreply.github.com>
Co-Authored-By: Harsh Jaiswal <21000421+rootxharsh@users.noreply.github.com>

* misc update

---------

Co-authored-by: Dhiyaneshwaran <24750220+DhiyaneshGeek@users.noreply.github.com>
Co-authored-by: Harsh Jaiswal <21000421+rootxharsh@users.noreply.github.com>
2023-02-10 20:20:32 +05:30
GitHub Action 8a02161996 Auto Generated CVE annotations [Fri Feb 10 14:40:38 UTC 2023] 🤖 2023-02-10 14:40:38 +00:00
Dhiyaneshwaran 8d117f4b5d
Merge pull request #4951 from gy741/rule-add-v119
Create CVE-2022-34753.yaml
2023-02-10 19:56:53 +05:30
Dhiyaneshwaran 88312b24ee
Merge pull request #5454 from pikpikcu/patch-341
Added CVE-2022-31499
2023-02-10 19:54:20 +05:30
GitHub Action 234282eaae Auto Generated CVE annotations [Fri Feb 10 11:39:25 UTC 2023] 🤖 2023-02-10 11:39:25 +00:00
Dhiyaneshwaran 7d5df5f621
Merge pull request #5173 from gy741/rule-add-v121
Create CVE-2022-36446.yaml
2023-02-10 16:53:05 +05:30
Ritik Chaddha c1e9db70ea
updated matcher, var input, added metadata 2023-02-10 16:06:27 +05:30
Ritik Chaddha dc99430f95
template updated 2023-02-10 15:13:10 +05:30
GitHub Action b0a9b87182 Auto Generated CVE annotations [Fri Feb 10 09:00:43 UTC 2023] 🤖 2023-02-10 09:00:43 +00:00
Ritik Chaddha 8bc122fb73
Merge pull request #6532 from theamanrawat/CVE-2022-4447
Added template for CVE-2022-4447
2023-02-10 14:12:16 +05:30
Ritik Chaddha fa8a9a0465
updated tags 2023-02-10 14:06:54 +05:30
Dhiyaneshwaran 29c84ec94f
metadata - update 2023-02-10 00:10:12 +05:30