Commit Graph

1125 Commits (d0b755c0e340f5738bfc666be803a434a692ddb4)

Author SHA1 Message Date
PikPikcU d0b755c0e3
Create CVE-2019-12593.yaml 2020-09-05 06:49:58 +00:00
bauthard 798dbf01a4
Merge pull request #412 from geeknik/patch-2
Create CVE-2019-11043.yaml
2020-09-05 12:18:04 +05:30
bauthard df82826b82
Merge pull request #415 from StreetOfHackerR007/patch-1
Added request to default port of traefik instance.
2020-09-05 12:12:35 +05:30
bauthard 4450dec23c
Merge pull request #410 from pikpikcu/patch-13
Add CVE-2019-14696 Open-Scool 3.0 - Cross Site Scripting
2020-09-05 12:11:01 +05:30
bauthard 4b828d3a06 Update CVE-2019-14696.yaml 2020-09-05 12:10:16 +05:30
bauthard a5da5abd03
Merge pull request #409 from dwisiswant0/tpl/magmi-multiple-vulns
Add Magmi Multiple Vulnerabilities
2020-09-05 12:07:14 +05:30
bauthard 6dd5f429d9 updates 2020-09-05 12:04:18 +05:30
STREET_OF_HACKER - R007 28379f0fdf
Added request to default port of traefik instance. 2020-09-05 11:41:42 +05:30
Geeknik Labs f663a946c6
Update CVE-2019-11043.yaml 2020-09-04 22:30:54 +00:00
Geeknik Labs b773cc9f0f
Create CVE-2019-11043.yaml
PHP-FPM & nginx RCE (CVE-2019-11043)
2020-09-04 22:28:41 +00:00
bauthard ff76d6a1c8
Merge pull request #411 from pikpikcu/patch-14
Solved Escape Character -GLPI v.9.4.6 - Open redirect
2020-09-04 23:36:09 +05:30
PikPikcU 6b64e78280
Solved escape character 2020-09-04 18:02:18 +00:00
PikPikcU 301135ad74
Update URL Encoding 2020-09-04 15:51:55 +00:00
PikPikcU cc1e0a3fef
Create CVE-2019-14696.yaml 2020-09-04 15:46:07 +00:00
Dwi Siswanto dcf8399522 🔥 Add MAGMI Workflow 2020-09-04 20:35:05 +07:00
Dwi Siswanto 8cce587aa8 📝 Remove trailing spaces 2020-09-04 20:34:53 +07:00
Dwi Siswanto 3446569f93 🔨 Add MAGMI detect 2020-09-04 20:31:05 +07:00
Dwi Siswanto 9036d1bdc9 ✏️ Update CVEs name 2020-09-04 20:25:30 +07:00
Dwi Siswanto 7ca0a7471d 🔨 Add CVE-2020-5776 payload 2020-09-04 20:19:30 +07:00
Dwi Siswanto 196cb1691b 🔥 Add CVE-2020-5776 2020-09-04 20:19:13 +07:00
Dwi Siswanto 5ce8c21fa1 🔥 Add CVE-2020-5777 2020-09-04 20:02:17 +07:00
bauthard da02a01794
Merge pull request #402 from eschultze/master
Weavescope, Polycom and Iomega panel detection
2020-09-04 17:51:19 +05:30
bauthard 39cac25d95 Update iomega-lenovo-emc-shared-nas-detect.yaml 2020-09-04 17:49:35 +05:30
bauthard 9fd85c7bba
Merge pull request #407 from pikpikcu/patch-12
Add CVE-2019-1010287 Timesheet  Cross Site Scripting
2020-09-04 17:25:11 +05:30
bauthard 243eb9b04e
Merge pull request #405 from pikpikcu/patch-11
Add CVE-2020-11034 - GLPI v.9.4.6 - Open redirect
2020-09-04 17:15:34 +05:30
bauthard 6f3992305e
Merge pull request #403 from pikpikcu/patch-10
Add CVE-2017-14537 trixbox 2.8.0 - directory-traversal
2020-09-04 17:10:36 +05:30
bauthard 4547aeb6bb Update CVE-2017-14537.yaml 2020-09-04 17:09:45 +05:30
bauthard 60b5016f0d
Merge pull request #404 from un-fmunozs/cve-encode-xss
Fix encoding for XSS payloads
2020-09-04 17:06:46 +05:30
bauthard 0708e1a6bd
Merge pull request #406 from un-fmunozs/top15xss
Update top-15-xss.yaml
2020-09-04 17:05:22 +05:30
PikPikcU 089cf671eb
Create CVE-2019-1010287.yaml 2020-09-04 10:01:06 +00:00
un-fmunozs a3f5b133a0 Update top-15-xss.yaml
spaces again.
2020-09-04 02:49:39 -05:00
un-fmunozs 1b3ab5b5ea Update top-15-xss.yaml 2020-09-04 02:46:30 -05:00
un-fmunozs 829812e4da Update top-15-xss.yaml
All the parameters were sent as a big "unique" parameter.  Try it against  https://httpbin.org/get? with -debug and compare the output.
2020-09-04 02:29:18 -05:00
PikPikcU 216def75b4
Update CVE-2020-11034.yaml 2020-09-04 07:25:27 +00:00
PikPikcU 26aeaaa5a4
GLPI v.9.4.6 - Open redirect Detection 2020-09-04 07:16:47 +00:00
un-fmunozs 07d10d6e50 Fix encoding for XSS payloads
Prevent false positives encoding the xss payloads, and remove from the match data that was not injected.
2020-09-04 00:55:13 -05:00
PikPikcU de779e3de1
Create CVE-2017-14537.yaml 2020-09-04 04:26:20 +00:00
eschultze 5c80b79396
Create iomega-lenovo-emc-shared-nas-detect.yaml 2020-09-03 20:08:29 -03:00
eschultze 8218f0375c
Create polycom-admin-detect.yaml 2020-09-03 20:06:23 -03:00
eschultze 0150331d32
Create weave-scope-dashboard-detect.yaml 2020-09-03 20:04:48 -03:00
bauthard 9ef6f7f029
Merge pull request #400 from projectdiscovery/readme-update
Readme update
2020-09-04 01:34:21 +05:30
bauthard ce32c12a2b readme update 2020-09-04 01:32:06 +05:30
bauthard 39cfec87ae Update CVE-2019-17558.yaml 2020-09-03 22:44:42 +05:30
PikPikcU 6d1789ff76
Create CVE-2019-17558.yaml 2020-09-03 16:13:34 +00:00
bauthard 8bff9cfbc6
Merge pull request #398 from un-fmunozs/encode-xss
False positive on XSS templates
2020-09-03 21:39:13 +05:30
un-fmunozs 21c8656c12 False positive on XSS templates
Encode XSS payload to prevent false positives when the Query string is returned AS IS by the server. Recent browsers will always send the parameters encoded.
2020-09-03 10:56:31 -05:00
bauthard c7676dbca1
Merge pull request #397 from pikpikcu/patch-8
Add CVE-2019-12461 WebPort 1.19.1 - Reflected Cross-Site Scripting
2020-09-03 18:56:21 +05:30
PikPikcU d78a56514a
Create CVE-2019-12461.yaml 2020-09-03 12:37:18 +00:00
bauthard c574e48f1e
Merge pull request #395 from pikpikcu/patch-7
Add Old  CVE-2017-7391 Magmi – Cross-Site Scripting
2020-09-03 09:13:28 +05:30
bauthard a3f96907fe Update CVE-2017-7391.yaml 2020-09-03 09:12:43 +05:30