Commit Graph

1107 Commits (e2778058fbd7fe81313395b1e73f2bc58562ac2a)

Author SHA1 Message Date
Ritik Chaddha a73b7924f0
Update omnia-mpx-lfi.yaml 2022-08-04 23:53:04 +05:30
Ritik Chaddha 5d7f87b2ab Revert "Update omnia-mpx-lfi.yaml"
This reverts commit 03ae109555.
2022-08-04 23:52:03 +05:30
Ritik Chaddha 03ae109555
Update omnia-mpx-lfi.yaml 2022-08-04 23:47:18 +05:30
Prince Chaddha 3c7f0847aa
Merge pull request #4913 from Akokonunes/patch-170
Create crystal-live-http-server-lfi.yaml
2022-08-04 20:27:25 +05:30
Prince Chaddha eee45f4897
Update and rename crystal-live-http-server-lfi.yaml to crystal-live-server-lfi.yaml 2022-08-04 18:55:57 +04:00
Prince Chaddha 53a2f6b0f9
Merge pull request #4979 from arafatansari/patch-37
Create mpx-lfi.yaml
2022-08-03 19:03:32 +05:30
Prince Chaddha fe631c7d8b
Merge pull request #4982 from projectdiscovery/solarview-compact-xss
Create solarview-compact-xss.yaml
2022-08-03 19:03:21 +05:30
Dhiyaneshwaran 2e17f180a9
Create rundeck-log4j.yaml 2022-08-03 18:45:34 +05:30
Dhiyaneshwaran 8c3f59485a
Create metabase-log4j.yaml 2022-08-03 18:44:49 +05:30
Dhiyaneshwaran cdde4d5053
Create jamf-pro-log4j.yaml 2022-08-03 18:44:10 +05:30
Dhiyaneshwaran 111e9319f1
Create graylog-log4j.yaml 2022-08-03 18:43:22 +05:30
Prince Chaddha 78e60a784f
Rename vulnerabilities/other/royalevent/royalevent-stored-xss.yaml to vulnerabilities/royalevent/royalevent-stored-xss.yaml 2022-08-03 18:35:05 +05:30
Prince Chaddha cfeb72ac56
Rename vulnerabilities/other/royalevent/royalevent-management-xss.yaml to vulnerabilities/royalevent/royalevent-management-xss.yaml 2022-08-03 18:34:58 +05:30
Ritik Chaddha 2253fdcdab
Create solarview-compact-xss.yaml 2022-08-02 20:47:11 +05:30
Ritik Chaddha 3a75420965
Update and rename mpx-lfi.yaml to omnia-mpx-lfi.yaml 2022-08-02 18:31:57 +05:30
Arafat Ansari b74d093f74
Create mpx-lfi.yaml 2022-08-02 18:19:05 +05:30
Dhiyaneshwaran cacc097e08
Update crystal-live-http-server-lfi.yaml 2022-08-02 15:51:33 +05:30
Dhiyaneshwaran a7ffb8182b
Update crystal-live-http-server-lfi.yaml 2022-08-02 15:49:21 +05:30
Dhiyaneshwaran c729e73abe
Update and rename crystal-live-http-server-lfi.yaml to vulnerabilities/other/crystal-live-http-server-lfi.yaml 2022-08-02 15:40:20 +05:30
Prince Chaddha 4a37bf0a2d
Merge pull request #4881 from arafatansari/patch-19
Create ems-sqli.yaml
2022-08-01 11:13:23 +05:30
Prince Chaddha 4c51fe5c08
Update carrental-xss.yaml 2022-08-01 10:51:34 +05:30
Dhiyaneshwaran 0f182e5102
Update carrental-xss.yaml 2022-08-01 05:40:27 +05:30
Arafat Ansari 4397a352f8
Create carrental-xss.yaml 2022-08-01 02:39:55 +05:30
Prince Chaddha 3916a596b5
Merge pull request #4890 from projectdiscovery/goanywhere-log4j-rce
Added goanywhere-log4j-rce
2022-07-30 13:58:47 +05:30
Ritik Chaddha b78a6b9a85
Update ems-sqli.yaml 2022-07-30 12:16:47 +05:30
Prince Chaddha 92e61df0e6
Update goanywhere-mft-log4j-rce.yaml 2022-07-30 11:05:23 +05:30
MostInterestingBotInTheWorld 690da7dd94
Dashboard Content Enhancements (#4927)
Dashboard Content Enhancements
2022-07-27 16:17:31 -04:00
Ritik Chaddha c28e6fa3ea
Update and rename goanywhere-log4j-rce.yaml to goanywhere-mft-log4j-rce.yaml 2022-07-27 14:21:59 +05:30
MostInterestingBotInTheWorld c5a7d79f5a
Dashboard Content Enhancements (#4819)
Dashboard Content Enhancements
2022-07-26 09:45:11 -04:00
PikPikcU 731c02429a
Create weiphp-sql-injection (#941)
* Create weiphp-sql-injection.yaml

* Update weiphp-sql-injection.yaml

* Update weiphp-sql-injection.yaml

Co-authored-by: Ritik Chaddha <44563978+ritikchaddha@users.noreply.github.com>
2022-07-26 17:28:08 +05:30
Prince Chaddha d07b944d90
Merge pull request #4882 from arafatansari/patch-20
Create cvms-sqli.yaml
2022-07-26 10:43:07 +05:30
Prince Chaddha 6c8e1772fa
Update cvms-sqli.yaml 2022-07-26 10:19:24 +05:30
Prince Chaddha 3ef173ca7f
Update zms-sqli.yaml 2022-07-26 10:16:30 +05:30
Ritik Chaddha d73f42e715
Update zms-sqli.yaml 2022-07-26 10:05:07 +05:30
Ritik Chaddha e4e2f4cf00
Update zms-sqli.yaml 2022-07-25 23:55:18 +05:30
Arafat Ansari f5295fa474
Update zms-sqli.yaml 2022-07-25 23:50:46 +05:30
Arafat Ansari 2e6ea14451
Create zms-sqli.yaml 2022-07-25 23:47:14 +05:30
Ritik Chaddha 0831a9d488
Update cvms-sqli.yaml 2022-07-25 23:41:06 +05:30
Ritik Chaddha 43c389c42a
Update cvms-sqli.yaml 2022-07-25 23:39:57 +05:30
Prince Chaddha f0b5e19833
Merge pull request #4163 from ritikchaddha/patch-34
Create zzcms-xss.yaml
2022-07-24 21:26:23 +05:30
Prince Chaddha ac96218aae
Update zzcms-xss.yaml 2022-07-24 21:16:05 +05:30
Ritik Chaddha 8c6cc9b9eb
Update zzcms-xss.yaml 2022-07-24 19:13:49 +05:30
Ritik Chaddha 9d8af2ac47
Update goanywhere-log4j-rce.yaml 2022-07-22 23:41:57 +05:30
Prince Chaddha 53ca3cf256
Merge pull request #4870 from arafatansari/patch-16
Create loancms-sqli.yaml
2022-07-22 12:40:16 +05:30
Ritik Chaddha e79fa7e245
Update loancms-sqli.yaml 2022-07-22 12:15:21 +05:30
sandeep 1ea058b576 added goanywhere-log4j-rce 2022-07-22 07:12:43 +05:30
Ritik Chaddha 42470ac90c
Update loancms-sqli.yaml 2022-07-21 16:36:05 +05:30
Prince Chaddha de5b654312
Merge pull request #4883 from arafatansari/patch-21
Create alumni-sqli.yaml
2022-07-21 16:29:38 +05:30
Prince Chaddha daf917a751
Update alumni-management-sqli.yaml 2022-07-21 16:20:17 +05:30
Ritik Chaddha 268a9f0a39
Update and rename alumni-sqli.yaml to alumni-management-sqli.yaml 2022-07-21 16:17:53 +05:30
Prince Chaddha 3035ea903c
Merge pull request #4868 from arafatansari/patch-15
Create devalcms-xss.yaml
2022-07-21 15:20:18 +05:30
Prince Chaddha 47c8fdd8fc
Update loancms-sqli.yaml 2022-07-21 15:17:40 +05:30
Prince Chaddha b4be125f85
Merge pull request #4872 from arafatansari/patch-17
Create onlinecms-xss.yaml
2022-07-21 15:10:36 +05:30
Prince Chaddha 04a0949573
Update and rename onlinecms-xss.yaml to onlinefarm-management-xss.yaml 2022-07-21 15:06:42 +05:30
Prince Chaddha 66786b8aaa
Merge pull request #4874 from arafatansari/patch-18
Create surrealtodo-lfi.yaml
2022-07-21 14:17:03 +05:30
Prince Chaddha 5baf2a4bf2
Update and rename opencti-lfi.yaml to vulnerabilities/other/opencti-lfi.yaml 2022-07-21 13:18:27 +05:30
Arafat Ansari 467d8ecc6a
Create alumni-sqli.yaml 2022-07-21 13:16:42 +05:30
Arafat Ansari 91f907e3b1
Create cvms-sqli.yaml 2022-07-21 12:57:46 +05:30
Arafat Ansari 2fd7baf1bf
Create ems-sqli.yaml 2022-07-21 12:39:06 +05:30
Ritik Chaddha 9e829668a4
Update onlinecms-xss.yaml 2022-07-20 23:52:19 +05:30
Arafat Ansari acc357f591
Update onlinecms-xss.yaml 2022-07-20 23:43:48 +05:30
Ritik Chaddha d88160b8d5
Update surrealtodo-lfi.yaml 2022-07-20 23:21:03 +05:30
Ritik Chaddha 14e430b3df
Update surrealtodo-lfi.yaml 2022-07-20 23:20:37 +05:30
Arafat Ansari 9f28a9c8e3
Create surrealtodo-lfi.yaml 2022-07-20 23:14:17 +05:30
Arafat Ansari ef1a1f0f44
Create onlinecms-xss.yaml 2022-07-20 22:14:07 +05:30
Ritik Chaddha bd0c9a9163
Update loancms-sqli.yaml 2022-07-20 18:11:03 +05:30
Ritik Chaddha 8bca76cf6d
Update loancms-sqli.yaml 2022-07-20 18:08:25 +05:30
Arafat Ansari 2d71d7a288
Create loancms-sqli.yaml 2022-07-20 16:37:42 +05:30
Ritik Chaddha 4b6aa7df81
Update devalcms-xss.yaml 2022-07-20 14:42:25 +05:30
Arafat Ansari 289f1731bb
Update devalcms-xss.yaml 2022-07-20 14:37:43 +05:30
Arafat Ansari 0f209ca08c
Update devalcms-xss.yaml 2022-07-20 14:31:44 +05:30
Arafat Ansari 9304c58b2c
Create devalcms-xss.yaml 2022-07-20 14:26:54 +05:30
Prince Chaddha 8279d7b4e7
Merge pull request #4854 from arafatansari/patch-14
Create eris-xss.yaml
2022-07-19 14:58:37 +05:30
Ritik Chaddha cba12fe78d
Update eris-xss.yaml 2022-07-19 14:25:14 +05:30
Arafat Ansari 920ee7ea97
Update eris-xss.yaml 2022-07-18 21:59:07 +05:30
Prince Chaddha b7b317dc02
Merge pull request #4461 from gy741/rule-add-v113
Create cisco-rv-series-rce.yaml
2022-07-18 20:52:16 +05:30
Prince Chaddha 099e9ede6e
Update cisco-rv-series-rce.yaml 2022-07-18 20:49:58 +05:30
Arafat Ansari d004cb9b65
Create eris-xss.yaml 2022-07-18 18:14:09 +05:30
Prince Chaddha 38b1247fcf
Update cisco-rv-series-rce.yaml 2022-07-18 15:22:26 +05:30
Prince Chaddha 279a418e17
Merge pull request #4836 from gy741/v119
Create carel-bacnet-gateway-directory-traversal.yaml
2022-07-18 14:15:54 +05:30
Prince Chaddha 1318dbbae8
Update and rename carel-bacnet-gateway-directory-traversal.yaml to carel-bacnet-gateway-traversal.yaml 2022-07-18 13:47:02 +05:30
Prince Chaddha 22e47c889b
Merge pull request #4847 from ritikchaddha/Update-metadata-query
Log4j templates enhancement
2022-07-18 12:15:49 +05:30
Ritik Chaddha a1409f1f2a Update unifi-network-log4j-rce.yaml 2022-07-18 12:04:32 +05:30
Ritik Chaddha 928abe95cc Update unifi-network-log4j-rce.yaml 2022-07-16 22:37:16 +05:30
Prince Chaddha c7b482532d
Update elasticsearch5-log4j-rce.yaml 2022-07-16 18:04:04 +05:30
Ritik Chaddha 236912a8fa
Create elasticsearch5-log4j-rce.yaml 2022-07-16 12:21:07 +05:30
GwanYeong Kim 549c969d5f Create carel-bacnet-gateway-directory-traversal.yaml
The device suffers from an unauthenticated arbitrary file disclosure vulnerability. Input passed through the 'file' GET parameter through the 'logdownload.cgi' Bash script is not properly verified before being used to download log files. This can be exploited to disclose the contents of arbitrary and sensitive files via directory traversal attacks.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2022-07-16 10:59:44 +09:00
Prince Chaddha 67df84f78a
Update vmware-siterecovery-log4j-rce.yaml 2022-07-15 17:09:23 +05:30
Prince Chaddha 8d163b4730
Merge pull request #4832 from projectdiscovery/vmware-log4j-rce
Create vmware-log4j-rce.yaml
2022-07-15 16:09:14 +05:30
Prince Chaddha 7670b03504
Update and rename vmware-log4j-rce.yaml to vmware-siterecovery-log4j-rce.yaml 2022-07-15 16:04:49 +05:30
Prince Chaddha 9241b0d568
Update opennms-log4j-jndi-rce.yaml 2022-07-15 15:46:29 +05:30
Prince Chaddha 69f0e7675a
Update opennms-log4j-jndi-rce.yaml 2022-07-15 10:23:51 +05:30
Ritik Chaddha a508c28178
Create vmware-log4j-rce.yaml 2022-07-14 23:00:42 +05:30
Ritik Chaddha 918a56d516
Update opennms-log4j-jndi-rce.yaml 2022-07-14 19:48:13 +05:30
Ritik Chaddha 1c66b826b3
Update opennms-log4j-jndi-rce.yaml 2022-07-14 19:46:46 +05:30
johnk3r 35d13abbb0
Create opennms-log4j-jndi-rce.yaml 2022-07-14 10:31:10 -03:00
Ritik Chaddha cf2d464bee Update icewarp-webclient-rce.yaml 2022-07-10 15:07:19 +05:30
Ritik Chaddha 2863e385a3 Update opensis-lfi.yaml 2022-07-10 15:07:18 +05:30
Prince Chaddha 0f7699ef22
Merge pull request #4783 from uomogrande/icewarp-openredirects
Added icewarp-openredirects Template
2022-07-09 22:20:56 +05:30
Prince Chaddha 7789261fce
Update icewarp-openredirects.yaml 2022-07-09 22:11:36 +05:30