Commit Graph

723 Commits (ec59bf6768c36fb12306618c97713406324be0dc)

Author SHA1 Message Date
E1A b5947d069f
CVE-2017-7925.yaml (#7687)
* CVE-2017-7925.yaml

Research done and updated template after issue: https://github.com/projectdiscovery/nuclei-templates/issues/5639

* Update CVE-2017-7925.yaml

* Update CVE-2017-7925.yaml

* improved matcher + metadata + extractor

* removing duplicate template

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-14 03:26:00 +05:30
Dhiyaneshwaran a082d33481
typo 2023-07-13 13:39:02 +05:30
Dhiyaneshwaran c77ec55fbb
added possible user enum endpoints 2023-07-13 13:37:51 +05:30
Ritik Chaddha e47db87042
Update CVE-2023-37270.yaml 2023-07-13 13:27:33 +05:30
Ritik Chaddha 92675d0756
Update CVE-2023-37270.yaml 2023-07-13 13:24:44 +05:30
pussycat0x b5789d2c1a
Merge pull request #7673 from projectdiscovery/CVE-2023-37270
Create CVE-2023-37270.yaml
2023-07-13 13:15:41 +05:30
pussycat0x 414b21ffb2
dsl matchers - update 2023-07-13 13:12:01 +05:30
pussycat0x 2b03e2782d
Update CVE-2023-37270.yaml 2023-07-13 13:01:44 +05:30
Ritik Chaddha b4b1c6ded0
Update CVE-2023-37270.yaml 2023-07-13 12:57:00 +05:30
pussycat0x 32ff78d0bc
minor -changes 2023-07-13 12:48:08 +05:30
Sandeep Singh f6cd430e59
Added CVE-2023-29300 (Adobe ColdFusion - Pre-Auth Remote Code Execution) (#7682) 2023-07-13 03:59:28 +05:30
Prince Chaddha a20611fe5d
Create CVE-2023-29298.yaml (#7677)
* Create CVE-2023-29298.yaml

* fixed lint error

* matcher + misc updates

* strict matcher

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-13 03:38:33 +05:30
Sandeep Singh fd675eaba3
Merge branch 'main' into cve_enrichment 2023-07-12 21:27:27 +05:30
sandeep 98a618353e fixed typo 2023-07-12 19:20:08 +05:30
Ritik Chaddha 603b52e01b
Merge pull request #7656 from aringo-bf/main
Fixed 2021-40822
2023-07-12 17:33:34 +05:30
Ritik Chaddha ed22f507dd
Update CVE-2021-40822.yaml 2023-07-12 17:29:22 +05:30
sandeep b5a88ad386 tags update 2023-07-12 17:26:50 +05:30
Ritik Chaddha d0e462ca5f
Merge pull request #7678 from projectdiscovery/CVE-2023-29298
Create CVE-2022-4057.yaml
2023-07-12 17:17:11 +05:30
Ritik Chaddha 709fde5fd1
updated info 2023-07-12 17:12:54 +05:30
Ritik Chaddha cae1137e65
updated info 2023-07-12 17:09:01 +05:30
Dhiyaneshwaran 8339bcff3e
Update and rename CVE-2023-29298.yaml to CVE-2022-4057.yaml 2023-07-12 14:48:02 +05:30
Dhiyaneshwaran e00935e002
Create CVE-2019-17574.yaml 2023-07-12 14:43:01 +05:30
Dhiyaneshwaran 2247d3584c
Create CVE-2023-29298.yaml 2023-07-12 14:41:58 +05:30
pussycat0x d88787658b
Merge pull request #7671 from projectdiscovery/CVE-2022-45354
Create CVE-2022-45354.yaml
2023-07-12 11:56:27 +05:30
pussycat0x 7d70eaa50d
Update CVE-2022-45354.yaml 2023-07-12 11:47:34 +05:30
pussycat0x 1c1614b207
Merge pull request #7665 from projectdiscovery/CVE-2023-2796
Create CVE-2023-2796.yaml
2023-07-12 11:46:24 +05:30
Ritik Chaddha 18279f40b1
tag updated 2023-07-12 10:22:14 +05:30
Ritik Chaddha 1856bf9a8e
Create CVE-2023-37270.yaml 2023-07-12 10:21:18 +05:30
Dhiyaneshwaran 8f7c078997
CVE-2023-24489 🔥 Citrix ShareFile StorageZones Controller - RCE (#7664)
* Create CVE-2023-24489

* Add files via upload

* fuzz tag updation

* Rename CVE-2023-24489 to CVE-2023-24489.yaml

* Update http/cves/2023/CVE-2023-24489.yaml

Co-authored-by: Dwi Siswanto <me@dw1.io>

* changes as per review

* misc update

* variable update

* more strict matcher

---------

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
Co-authored-by: Dwi Siswanto <me@dw1.io>
Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-12 01:53:18 +05:30
Dhiyaneshwaran 836fb614d5
fix-template 2023-07-12 01:27:47 +05:30
Dhiyaneshwaran 5a2cd2b88a
Create CVE-2022-45354.yaml 2023-07-12 01:24:50 +05:30
sandeep dd83af0228 CVE Enrichment 🎉 2023-07-12 01:19:27 +05:30
Ritik Chaddha 2bc852f3d1
Update CVE-2023-2796.yaml 2023-07-11 23:32:39 +05:30
Dhiyaneshwaran 918e0b0891
Create CVE-2023-2796.yaml 2023-07-11 18:02:11 +05:30
Dhiyaneshwaran 87bc41c418
fix matcher 2023-07-11 12:14:55 +05:30
sandeep 8dcd4dded7 moving files around 2023-07-11 02:24:59 +05:30
Aaron Ringo 058e02cd68
Update CVE-2021-40822.yaml 2023-07-10 13:05:51 -05:00
aringo 2cf1d043b7 Fixed CVE-2021-40822 2023-07-10 13:01:34 -05:00
E1A 93bf747773
Update CVE-2023-27524.yaml 2023-07-10 17:21:35 +02:00
Dhiyaneshwaran c8626872ee
fix-lines 2023-07-10 20:51:19 +05:30
Ritik Chaddha 167d0e267d
Merge pull request #7649 from edoardottt/main
Add CVE-2023-3479
2023-07-10 20:44:47 +05:30
Ritik Chaddha f942b15400
updated matcher 2023-07-10 20:41:27 +05:30
Dhiyaneshwaran 685850abae
fix-matcher 2023-07-10 20:34:42 +05:30
GitHub Action 04800ddd75 TemplateMan Update [Mon Jul 10 12:43:00 UTC 2023] 🤖 2023-07-10 12:43:01 +00:00
Dhiyaneshwaran b15ab9f3ae
Merge pull request #7539 from harsh2403/patch-7
Create CVE-2023-33440.yaml
2023-07-10 18:11:05 +05:30
Dhiyaneshwaran 942bb169ca
fix 2023-07-10 18:07:31 +05:30
GitHub Action 674cbf611f TemplateMan Update [Mon Jul 10 12:35:12 UTC 2023] 🤖 2023-07-10 12:35:13 +00:00
GitHub Action 02599a324a TemplateMan Update [Mon Jul 10 12:34:24 UTC 2023] 🤖 2023-07-10 12:34:24 +00:00
Dhiyaneshwaran da29099005
Merge pull request #7570 from harsh2403/patch-12
Create CVE-2023-33338.yaml
2023-07-10 18:03:25 +05:30
Dhiyaneshwaran 091fb42570
Merge pull request #7579 from harsh2403/patch-14
Create CVE-2022-46071.yaml
2023-07-10 18:02:31 +05:30
Ritik Chaddha dd6be10dc8
updated info 2023-07-10 17:59:22 +05:30
Ritik Chaddha 7a21bb6f23
matcher and req updated 2023-07-10 17:55:32 +05:30
Ritik Chaddha 33fdee9c77
matchers and req update 2023-07-10 17:40:18 +05:30
Dhiyaneshwaran f371951eca
Merge branch 'main' into patch-36 2023-07-10 16:24:00 +05:30
Dhiyaneshwaran 4ca99ac8f0
Merge pull request #7576 from projectdiscovery/CVE-2023-2982
Create CVE-2023-2982.yaml
2023-07-10 13:38:57 +05:30
Dhiyaneshwaran 1f3a891f5c
Merge pull request #7537 from harsh2403/patch-6
Create CVE-2016-10973.yaml
2023-07-10 12:29:19 +05:30
Ritik Chaddha a11f62317d
updated req,matchers 2023-07-10 10:38:33 +05:30
GitHub Action 0dd1d1c36e TemplateMan Update [Sun Jul 9 09:50:07 UTC 2023] 🤖 2023-07-09 09:50:08 +00:00
Sandeep Singh 616e1ec5b0
Added CVE-2023-36934 (MOVEit Transfer - SQL Injection) (#7650) 2023-07-09 15:17:35 +05:30
edoardottt 6dc7cbafe6 add CVE-2023-3479 2023-07-09 11:02:02 +02:00
GitHub Action fdb634b5ae TemplateMan Update [Sat Jul 8 19:17:12 UTC 2023] 🤖 2023-07-08 19:17:13 +00:00
pussycat0x 9bb0d73588
Merge pull request #7580 from harsh2403/patch-15
Create CVE-2022-46073.yaml
2023-07-09 00:44:46 +05:30
Prince Chaddha 79203dca0e
Update CVE-2023-36346.yaml 2023-07-08 12:13:35 +05:30
Prince Chaddha cd1b7781db
Update CVE-2023-36346.yaml 2023-07-08 11:53:21 +05:30
Prince Chaddha c8d7286f77
Updated protocol syntax 2023-07-08 11:52:35 +05:30
Dhiyaneshwaran 4bc6ae766b
base url update and reference 2023-07-07 18:24:25 +05:30
GitHub Action 646ffaf0b8 TemplateMan Update [Fri Jul 7 11:37:24 UTC 2023] 🤖 2023-07-07 11:37:25 +00:00
Prince Chaddha f00f0b0488
Merge pull request #7552 from harsh2403/patch-10
Create CVE-2023-33439.yaml
2023-07-07 17:05:10 +05:30
Prince Chaddha b316cc936f
Merge pull request #7618 from projectdiscovery/remove-comments
removed enhanced by comments
2023-07-07 17:00:46 +05:30
Prince Chaddha 0a681ec0bb removed empty lines 2023-07-07 16:56:27 +05:30
GitHub Action cb26083079 TemplateMan Update [Fri Jul 7 11:17:58 UTC 2023] 🤖 2023-07-07 11:17:59 +00:00
pussycat0x cb6eaf95a2
Merge pull request #7637 from projectdiscovery/cve-templates4
CVEs added
2023-07-07 16:46:09 +05:30
pussycat0x 0ccffd229a
Merge branch 'main' into remove-comments 2023-07-07 16:38:46 +05:30
Dhiyaneshwaran d89c2dcec4
Merge pull request #7635 from projectdiscovery/princechaddha-patch-2
Fixed FP - CVE-2022-40083
2023-07-07 16:27:23 +05:30
Dhiyaneshwaran 6c7678fcec Merge branch 'cve-templates4' of https://github.com/projectdiscovery/nuclei-templates into cve-templates4 2023-07-07 16:21:19 +05:30
Dhiyaneshwaran c77309373b fix payload and directory 2023-07-07 16:21:07 +05:30
pussycat0x 993541f0aa tag - update 2023-07-07 16:18:49 +05:30
pussycat0x 6469c023c4
Update CVE-2022-44948.yaml 2023-07-07 16:03:56 +05:30
GitHub Action 3bd014d6be TemplateMan Update [Fri Jul 7 10:30:15 UTC 2023] 🤖 2023-07-07 10:30:16 +00:00
Ritik Chaddha 2a12e74319
Merge pull request #7434 from ctflearner/CVE-2012-5321
Create CVE-2012-5321.yaml
2023-07-07 15:58:05 +05:30
Prince Chaddha 7d7e4f43ac updated stored tags 2023-07-07 15:34:00 +05:30
Prince Chaddha 7b99d90f26 updated tags 2023-07-07 15:32:52 +05:30
Ritik Chaddha d389ef4754
Update CVE-2023-33439.yaml 2023-07-07 15:30:05 +05:30
Prince Chaddha 332e19282e templates added 2023-07-07 15:08:49 +05:30
pussycat0x a8503c567d
Merge pull request #7616 from projectdiscovery/CVE-2023-2822
Create CVE-2023-2822.yaml
2023-07-07 15:04:52 +05:30
pussycat0x b6cf46dc02
Merge pull request #7613 from MrHarshvardhan/patch-6
CVE-2023-0297.yaml
2023-07-07 10:41:27 +05:30
pussycat0x 0a0525fa67
Update CVE-2023-0297.yaml 2023-07-07 10:38:10 +05:30
Prince Chaddha 2a82723e63
Update CVE-2022-40083.yaml 2023-07-07 10:33:56 +05:30
Ritik Chaddha 743cbaa246
Update CVE-2020-24186.yaml 2023-07-07 10:15:45 +05:30
Ritik Chaddha 8a705ef08d
updated req & info 2023-07-06 22:49:11 +05:30
Dhiyaneshwaran 03b1f956c8
trail space fix 2023-07-06 16:04:40 +05:30
Dhiyaneshwaran def35f6b48
re-wrote template 2023-07-06 16:00:31 +05:30
pussycat0x 0c11eb2a14
minor -changes 2023-07-06 14:18:51 +05:30
Prince Chaddha 75ed275328 removed enhanced by comments 2023-07-05 13:37:58 +05:30
Prince Chaddha ba7ec9a05f updates 2023-07-05 13:20:14 +05:30
Dhiyaneshwaran 2a2c309d6c
Create CVE-2023-2822.yaml 2023-07-05 12:21:44 +05:30
alert('0-0') 276497b314
CVE-2023-0297.yaml 2023-07-04 18:28:32 +05:30
alert('0-0') ac84955ae6
CVE-2023-0297.yaml 2023-07-04 18:21:35 +05:30
Ritik Chaddha ea1d247bf4
Merge pull request #7610 from projectdiscovery/princechaddha-patch-5
Fixed FN - CVE-2023-28432
2023-07-04 16:17:31 +05:30
Ritik Chaddha ff1fcc7735
Update CVE-2023-28432.yaml 2023-07-04 15:11:55 +05:30
Prince Chaddha cba4d7ede8
Merge pull request #7608 from projectdiscovery/princechaddha-patch-2
Updated tags
2023-07-04 14:50:45 +05:30
Prince Chaddha 8f529c8ca7
Update CVE-2023-28432.yaml 2023-07-04 14:46:26 +05:30
GitHub Action 61343fba51 TemplateMan Update [Tue Jul 4 09:06:45 UTC 2023] 🤖 2023-07-04 09:06:46 +00:00
Prince Chaddha e3eaeafcce
Merge pull request #7606 from projectdiscovery/citrix-akamai-waf-bypass
Update CVE-2023-24488.yaml
2023-07-04 14:34:28 +05:30
Prince Chaddha 6ac87ba526
Update CVE-2023-24488.yaml 2023-07-04 14:24:43 +05:30
Prince Chaddha fb4fec8c92
Updated tags 2023-07-04 13:58:03 +05:30
GitHub Action 7313d259f0 TemplateMan Update [Tue Jul 4 06:06:54 UTC 2023] 🤖 2023-07-04 06:06:54 +00:00
Prince Chaddha 6848ab0e70
Merge pull request #5545 from gy741/rule-add-v129
Create CVE-2018-6530
2023-07-04 11:35:10 +05:30
Prince Chaddha 3e3bc2e768
Update CVE-2018-6530.yaml 2023-07-04 11:15:03 +05:30
Dhiyaneshwaran a3702ab23c
fix lint 2023-07-04 11:00:39 +05:30
Dhiyaneshwaran 29984cf2de
Update CVE-2023-24488.yaml 2023-07-04 09:59:56 +05:30
Dhiyaneshwaran ac390d4f9a
Create CVE-2023-28121.yaml (#7605)
* Create CVE-2023-28121.yaml

* misc updates

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-03 23:45:00 +05:30
Vikas 30df6e6ad7 Modified http/cves/2023/CVE-2023-32243.yaml for better detection 2023-07-03 15:09:42 +05:30
Dhiyaneshwaran 0e91a6154b
fix directory and matcher 2023-07-03 12:16:42 +05:30
GitHub Action c8865f547b TemplateMan Update [Sun Jul 2 17:00:35 UTC 2023] 🤖 2023-07-02 17:00:36 +00:00
sandeep 86657e1304 formatting update 2023-07-02 15:57:35 +05:30
sandeep 91b9e43339 added request to remove node created for test 2023-07-02 15:52:39 +05:30
sandeep e453b7c517 added non breaking redirect url 2023-07-02 15:51:33 +05:30
Arm!tage 5603a4344d
fix CVE-2022-46934.yaml (#7505)
* fix CVE-2022-46934.yaml

* add tags

* add kkfileview-ssrf.yaml

* misc fixes

* Update kkfileview-ssrf.yaml

* misc fixes

---------

Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-07-01 22:09:12 +05:30
GitHub Action f25faffb88 TemplateMan Update [Sat Jul 1 13:40:54 UTC 2023] 🤖 2023-07-01 13:40:55 +00:00
Dhiyaneshwaran ea5a03d3cc
Merge pull request #7553 from harsh2403/patch-11
Create CVE-2023-0527.yaml
2023-07-01 19:09:12 +05:30
GitHub Action 7edd63064f TemplateMan Update [Sat Jul 1 13:35:16 UTC 2023] 🤖 2023-07-01 13:35:17 +00:00
GitHub Action 512a6dca5b TemplateMan Update [Sat Jul 1 13:34:21 UTC 2023] 🤖 2023-07-01 13:34:22 +00:00
Dhiyaneshwaran 05ab11dd89
Merge pull request #7528 from harsh2403/patch-1
Create CVE-2023-34537.yaml
2023-07-01 19:03:05 +05:30
Dhiyaneshwaran 0b88bd0410
Merge pull request #7519 from projectdiscovery/CVE-2023-34659
Create CVE-2023-34659.yaml
2023-07-01 19:02:23 +05:30
Dhiyaneshwaran f6dca2de16
added metrics 2023-07-01 18:58:25 +05:30
Sandeep Singh 022b5d9754
Added CVE-2023-1496 (#7589)
* Create CVE-2023-1496.yaml

Added Imgproxy < 3.14.0 - Cross-site Scripting (XSS) - CVE-2023-1496

* added xss payload

---------

Co-authored-by: Dhiyaneshwaran <leedhiyanesh@gmail.com>
2023-07-01 18:45:49 +05:30
GitHub Action 6c021afe10 TemplateMan Update [Sat Jul 1 12:35:32 UTC 2023] 🤖 2023-07-01 12:35:32 +00:00
Dhiyaneshwaran c3fca0d2a1
Merge pull request #7582 from projectdiscovery/CVE-2022-35405-update
removed request for diff ports
2023-07-01 18:03:28 +05:30
sandeep d371883e2c misc updates 2023-07-01 15:45:22 +05:30
Dhiyaneshwaran 47c431d855
Create CVE-2023-30019.yaml 2023-07-01 14:57:30 +05:30
pussycat0x 5b57c913b5
name -update 2023-07-01 14:00:50 +05:30
sandeep 4ae90399de removed request for diff ports
nuclei expect port scanned input for http templates
2023-06-30 23:57:26 +05:30
johnk3r 64a18eaa16
Create CVE-2023-24488.yaml (#7581)
* Create CVE-2023-24488.yaml

* Update CVE-2023-24488.yaml

* Update CVE-2023-24488.yaml

* added metadata

* fix matcher

* added fixed and strict matchers + classification

---------

Co-authored-by: Dhiyaneshwaran <leedhiyanesh@gmail.com>
Co-authored-by: sandeep <8293321+ehsandeep@users.noreply.github.com>
2023-06-30 23:28:56 +05:30
Harsh Yadav 736f62487c
Create CVE-2022-46073.yaml 2023-06-30 18:18:15 +05:30
Ritik Chaddha 7eac52e666
lint fix 2023-06-30 17:51:12 +05:30
Ritik Chaddha 64fcb1cf11
updated payload,matchers 2023-06-30 17:06:19 +05:30
Ritik Chaddha b741fabca7
updated req,matchers 2023-06-30 16:56:36 +05:30
Harsh Yadav 44da26c74c
Create CVE-2022-46071.yaml 2023-06-30 12:44:02 +05:30
Ritik Chaddha 955d244f99
Create CVE-2023-2982.yaml 2023-06-29 18:28:22 +05:30
Harsh Yadav 6d2b6f13c9
Create CVE-2023-33338.yaml 2023-06-29 12:47:34 +05:30
Ritik Chaddha fbbaaaf10f
Merge pull request #7548 from projectdiscovery/CVE-2023-34598
Create CVE-2023-34598.yaml
2023-06-29 11:14:14 +05:30
GitHub Action be0a237fe0 TemplateMan Update [Thu Jun 29 04:57:55 UTC 2023] 🤖 2023-06-29 04:57:55 +00:00
Ritik Chaddha cbf2e574e2
updated info and matcher 2023-06-29 10:27:30 +05:30
pussycat0x 962404af73
Merge pull request #7559 from projectdiscovery/CVE-2023-0126
Create CVE-2023-0126.yaml
2023-06-29 10:26:11 +05:30
Dhiyaneshwaran 057407ca4a
Create CVE-2023-34843.yaml 2023-06-28 22:47:53 +05:30
Dhiyaneshwaran 4ebbf04e3e
Merge pull request #7554 from projectdiscovery/CVE-2023-20888
Create CVE-2023-20888.yaml
2023-06-28 10:34:54 +05:30
Dhiyaneshwaran 5d6d23434c
Merge pull request #7565 from projectdiscovery/CVE-2023-34599
Create CVE-2023-34599.yaml
2023-06-28 10:33:15 +05:30
Dhiyaneshwaran 795f66904b
Merge pull request #7555 from projectdiscovery/CVE-2023-20889
Create CVE-2023-20889.yaml
2023-06-28 10:30:58 +05:30
Dhiyaneshwaran 33d94100c6
added metadata 2023-06-28 10:30:04 +05:30