Commit Graph

618 Commits (f0ce199db49c1f7d82a85969f6c8b0a621f272a1)

Author SHA1 Message Date
Prince Chaddha 2c6feda7f8
Update jolokia-info-disclosure.yaml 2022-03-24 16:52:03 +05:30
pussycat0x c6e264a04e
New Templates added (#3913)
* Add files via upload

* Auto Generated CVE annotations [Wed Mar 16 11:29:14 UTC 2022] 🤖

* Auto Generated New Template Addition List [Wed Mar 16 13:48:01 UTC 2022] 🤖

* moving templates into jolokia directory

* duplicate of jolokia-unauthenticated-lfi

* merged similar templates into one with updated matchers

* Auto Generated New Template Addition List [Wed Mar 23 10:21:57 UTC 2022] 🤖

* Delete .new-additions

* Auto Generated New Template Addition List [Wed Mar 23 10:22:29 UTC 2022] 🤖

* conflict update

* Auto Generated New Template Addition List [Wed Mar 23 10:23:39 UTC 2022] 🤖

Co-authored-by: GitHub Action <action@github.com>
Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-03-23 15:56:30 +05:30
sandeep ec99241f0e Updated "/etc/passwd" regex to avoid possible false positive results. 2022-03-22 13:31:31 +05:30
MostInterestingBotInTheWorld 9663595dd1
Dashboard Text Enhancements (#3948)
Dashboard content enhancements
2022-03-21 23:48:47 -04:00
Xeldax 10b23118aa
add airflow cve-2022-24288 (#3873)
* add airflow cve-2022-24288

* lint update

* template request + matcher + metadata update

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-03-19 15:59:17 +05:30
Dhiyaneshwaran f60ea48e4c
AEM XSS - Childlist (#3916)
* Create xss-childlist-selector.yaml

* Update xss-childlist-selector.yaml

* Rename xss-childlist-selector.yaml to aem-xss-childlist-selector.yaml

* adding metadata

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-03-17 14:23:26 +05:30
Sandeep Singh cca29dd553
Merge pull request #3866 from dolevf/master
GraphQL Nuclei Templates
2022-03-15 19:13:28 +05:30
sandeep 1df275d0ae update: more matchers + description + reference 2022-03-15 18:43:35 +05:30
Sandeep Singh 2877624443
Merge pull request #3888 from DhiyaneshGeek/master
Additional Paths Added
2022-03-14 20:56:22 +05:30
Dhiyaneshwaran 8301e80261
Update aem-login-status.yaml 2022-03-12 14:26:52 +05:30
Dhiyaneshwaran e910091f08
Update aem-login-status.yaml 2022-03-12 14:26:27 +05:30
Dhiyaneshwaran 32bcbecd43
Update aem-querybuilder-json-servlet.yaml 2022-03-12 14:23:17 +05:30
Dhiyaneshwaran f767a6d027
Update aem-default-get-servlet.yaml 2022-03-12 14:10:53 +05:30
sandeep a2fa2d60d4 added stop at first match support 2022-03-11 21:53:23 +05:30
aaditya rengarajan 2b876bb213
added more URLs to scrape 2022-03-11 19:28:52 +05:30
sandeep a003e24add moving templates around 2022-03-09 18:27:29 +05:30
sandeep 9f5cc1ca80 added gitlab metadata 2022-03-04 19:20:03 +05:30
sandeep a874d9ff02 template updates
- moved template to misconfiguration directory
2022-03-04 18:52:23 +05:30
MostInterestingBotInTheWorld 66f1023114
Merge branch 'projectdiscovery:master' into dashboard 2022-03-03 08:52:54 -05:00
MostInterestingBotInTheWorld d5556d3a75 Enhancement: default-logins/cobbler/cobbler-default-login.yaml by mp 2022-03-03 08:27:48 -05:00
sandeep 6d32b81b2a GitLab metadata update 2022-03-02 13:05:29 +05:30
MostInterestingBotInTheWorld da31d88a9f Enhancement: misconfiguration/proxy/metadata-openstack.yaml by cs 2022-02-28 13:38:21 -05:00
MostInterestingBotInTheWorld 25938bc625
Dashboard (#3706)
* Enhancement: cves/2010/CVE-2010-1353.yaml by mp

* Enhancement: cves/2010/CVE-2010-1352.yaml by mp

* Enhancement: cves/2010/CVE-2010-1345.yaml by mp

* Enhancement: cves/2010/CVE-2010-1340.yaml by mp

* Enhancement: cves/2010/CVE-2010-1345.yaml by mp

* Enhancement: cves/2010/CVE-2010-1315.yaml by mp

* Enhancement: cves/2010/CVE-2010-1314.yaml by mp

* Enhancement: cves/2010/CVE-2010-1313.yaml by mp

* Enhancement: cves/2010/CVE-2010-1312.yaml by mp

* Enhancement: cves/2010/CVE-2010-1308.yaml by mp

* Enhancement: cves/2010/CVE-2010-1307.yaml by mp

* Enhancement: cves/2010/CVE-2010-1306.yaml by mp

* Enhancement: cves/2010/CVE-2010-1305.yaml by mp

* Enhancement: cves/2010/CVE-2010-1304.yaml by mp

* Enhancement: cves/2010/CVE-2010-1302.yaml by mp

* Enhancement: cves/2010/CVE-2010-1219.yaml by mp

* Enhancement: cves/2010/CVE-2010-1352.yaml by mp

* Enhancement: cves/2010/CVE-2010-1354.yaml by mp

* Enhancement: cves/2010/CVE-2010-1461.yaml by mp

* Enhancement: cves/2010/CVE-2010-1469.yaml by mp

* Enhancement: cves/2010/CVE-2010-1470.yaml by mp

* Enhancement: cves/2010/CVE-2010-1471.yaml by mp

* Enhancement: cves/2010/CVE-2010-1472.yaml by mp

* Enhancement: cves/2010/CVE-2010-1473.yaml by mp

* Enhancement: cves/2010/CVE-2010-1474.yaml by mp

* Enhancement: cves/2010/CVE-2010-1475.yaml by mp

* Enhancement: cves/2010/CVE-2010-1476.yaml by mp

* Enhancement: cves/2010/CVE-2010-1478.yaml by mp

* Enhancement: cves/2010/CVE-2010-1491.yaml by mp

* Enhancement: cves/2010/CVE-2010-1494.yaml by mp

* Enhancement: cves/2010/CVE-2010-1495.yaml by mp

* Enhancement: cves/2010/CVE-2010-1531.yaml by mp

* Enhancement: cves/2010/CVE-2010-1473.yaml by mp

* Enhancement: misconfiguration/proxy/metadata-alibaba.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-openstack.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-oracle.yaml by cs

* Enhancement: cves/2016/CVE-2016-4975.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-openstack.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-oracle.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-openstack.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-digitalocean.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-alibaba.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-hetzner.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-aws.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-google.yaml by cs

* Enhancement: misconfiguration/proxy/metadata-azure.yaml by cs

* Enhancement: misconfiguration/proxy/open-proxy-localhost.yaml by cs

* Enhancement: misconfiguration/proxy/open-proxy-internal.yaml by cs

* Enhancement: cves/2021/CVE-2021-1497.yaml by cs

* Spacing fixes and enhancement to CNVD-2019-01348.yaml

* Spacing fixes, and enhancement to CNVD-2019-01348.yaml

* Merge artifact

* Spacing

Co-authored-by: sullo <sullo@cirt.net>
2022-02-15 11:39:56 +05:30
sandeep fcec6a8a59 additional path for phpmyadmin setup page 2022-02-15 11:22:01 +05:30
Sandeep Singh 99c131b1a6
Added Cobbler provisioning server Templates (#3698)
Co-Authored-By: csh <25989137+c-sh0@users.noreply.github.com>

Co-authored-by: csh <25989137+c-sh0@users.noreply.github.com>
2022-02-14 22:50:32 +05:30
sullo 9891b971cb
Merge pull request #3604 from MostInterestingBotInTheWorld/master
Enhancement: Replace nonstandard ascii chars with chars we like better
2022-01-26 10:38:24 -05:00
Dhiyaneshwaran 7bd14d5cbc
OpenBMCS Info Disclosure & SSRF Unauth (#3603)
* Create gophish-login.yaml

* Create gophish-workflow.yaml

* Update gophish-workflow.yaml

* Create openbmcs-secret-disclosure.yaml

* Create openbmcs-ssrf.yaml

* Added additional matcher

* Added missing header + matcher update

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
Co-authored-by: root <root@3gzk.l.time4vps.cloud>
2022-01-26 16:56:40 +05:30
Sullo 9a8482172d Remove:
- various nonstandard ascii chars in favor of the standard ones (mostly quotes)
 - spaces after : in some files
2022-01-25 14:38:53 -05:00
edoardottt 78795e9a51 update Zipkin template 2022-01-24 10:13:09 +01:00
gilfoyle97 afd4f13580
Update unauthenticated-zippkin.yaml 2022-01-24 10:11:18 +01:00
sandeep e84a105f79 lint fix 2022-01-22 14:34:50 +05:30
sullo 0229c3f001 Enhancement: misconfiguration/proxy/open-proxy-portscan.yaml by Chris 2022-01-21 14:06:29 -05:00
Sandeep Singh fafd43e090
Added Misconfigured Concrete5 (#3563) 2022-01-19 16:28:00 +05:30
Sandeep Singh 05d78b896e
updated tags 2022-01-19 15:45:06 +05:30
Dhiyaneshwaran 0e8b34f776
New Templates & Workflow (#3556)
* Create secure-login-panel.yaml

* Create geo-webserver.yaml

* Create hp-virtual-connect-manager.yaml

* Create microsoft-azure-error.yaml

* Create microsoft-iis-8.yaml

* Create veeam-backup-azure-panel.yaml

* Create user-control-panel.yaml

* Create kafka-consumer-monitor.yaml

* Update kafka-consumer-monitor.yaml

* Create kafka-connect-ui-exposure.yaml

* misc updates

* duplicate template

existing one - `exposed-panels/kafka-connect-ui.yaml`

* Create kafka-cruise-control.yaml

* Create kafka-center-default-login.yaml

* Create kafka-center-login.yaml

* minor update

* Create azure-kubernetes-service.yaml

* Update azure-kubernetes-service.yaml

* Update azure-kubernetes-service.yaml

* Create barracuda-panel.yaml

* Update barracuda-panel.yaml

* Update barracuda-panel.yaml

* Create CVE-2021-24891.yaml

* template meta info update

* Delete CVE-2021-24891.yaml

* Create caddy-open-redirect.yaml

* Create concrete5-panel.yaml

* Create concrete-workflow.yaml

* updated matcher to avoid false negative results

* misc updates

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-19 13:21:15 +05:30
Sandeep Singh 6f84c96e5b
Add cloud metadata checks for reverse proxies (#3528)
* Add cloud metadata checks (proxied) for:
- Amazon AWS
- Alibaba Cloud
- Microsoft Azure
- DigitalOcean
- Hetzner Cloud
- OpenStack
- Oracle Cloud

* fixup! Add cloud metadata checks (proxied) for: - Amazon AWS - Alibaba Cloud - Microsoft Azure - DigitalOcean - Hetzner Cloud - OpenStack - Oracle Cloud

* Fix URL

* Remove unnecessary Flavor header

* Add cgi as a file type

* syntax fix

* syntax update

* moving files around

* tags update

* matchers update

* * Added CVSS scores
* Updated metadata tests to latest versions
* Added generic proxy tests

* * Update to latest versions
* Remove empty lines to pass lint

* removing sniper to use default attacktype

* minor syntax fix

* minor updates

Co-authored-by: sullo <sullo@ziggy.local>
Co-authored-by: sullo <sullo@cirt.net>
2022-01-16 17:55:28 +05:30
Guillaume Granjus 2070860a50
Add Browserless Debugger Template (#3537)
* "Add Browserless Debugger Template"

* minor update

* lint fixes

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-14 11:55:08 +05:30
Pathtaga e281e5bf88
Updated all templates tags with technologies (#3478)
* Updated tags for template sonicwall-email-security-detect.yaml

* Updated tags for template detect-sentry.yaml

* Updated tags for template kong-detect.yaml

* Updated tags for template openam-detect.yaml

* Updated tags for template shiro-detect.yaml

* Updated tags for template iplanet-web-server.yaml

* Updated tags for template graylog-api-browser.yaml

* Updated tags for template prtg-detect.yaml

* Updated tags for template node-red-detect.yaml

* Updated tags for template abyss-web-server.yaml

* Updated tags for template geo-webserver.yaml

* Updated tags for template autobahn-python-detect.yaml

* Updated tags for template default-lighttpd-page.yaml

* Updated tags for template microsoft-iis-8.yaml

* Updated tags for template lucee-detect.yaml

* Updated tags for template php-proxy-detect.yaml

* Updated tags for template jenkins-detect.yaml

* Updated tags for template cockpit-detect.yaml

* Updated tags for template csrfguard-detect.yaml

* Updated tags for template dwr-index-detect.yaml

* Updated tags for template netsweeper-webadmin-detect.yaml

* Updated tags for template weblogic-detect.yaml

* Updated tags for template s3-detect.yaml

* Updated tags for template tileserver-gl.yaml

* Updated tags for template springboot-actuator.yaml

* Updated tags for template terraform-detect.yaml

* Updated tags for template redmine-cli-detect.yaml

* Updated tags for template mrtg-detect.yaml

* Updated tags for template tableau-server-detect.yaml

* Updated tags for template magmi-detect.yaml

* Updated tags for template oidc-detect.yaml

* Updated tags for template tor-socks-proxy.yaml

* Updated tags for template synology-web-station.yaml

* Updated tags for template herokuapp-detect.yaml

* Updated tags for template gunicorn-detect.yaml

* Updated tags for template sql-server-reporting.yaml

* Updated tags for template google-bucket-service.yaml

* Updated tags for template kubernetes-mirantis.yaml

* Updated tags for template kubernetes-enterprise-manager.yaml

* Updated tags for template oracle-iplanet-web-server.yaml

* Updated tags for template dell-idrac7-detect.yaml

* Updated tags for template dell-idrac6-detect.yaml

* Updated tags for template dell-idrac9-detect.yaml

* Updated tags for template dell-idrac8-detect.yaml

* Updated tags for template apache-guacamole.yaml

* Updated tags for template aws-cloudfront-service.yaml

* Updated tags for template aws-bucket-service.yaml

* Updated tags for template nginx-linux-page.yaml

* Updated tags for template telerik-fileupload-detect.yaml

* Updated tags for template telerik-dialoghandler-detect.yaml

* Updated tags for template htaccess-config.yaml

* Updated tags for template microsoft-azure-error.yaml

* Updated tags for template detect-options-method.yaml

* Updated tags for template unpatched-coldfusion.yaml

* Updated tags for template moodle-changelog.yaml

* Updated tags for template detect-dns-over-https.yaml

* Updated tags for template CVE-2019-19134.yaml

* Updated tags for template CVE-2019-3929.yaml

* Updated tags for template CVE-2019-19908.yaml

* Updated tags for template CVE-2019-10475.yaml

* Updated tags for template CVE-2019-17382.yaml

* Updated tags for template CVE-2019-16332.yaml

* Updated tags for template CVE-2019-14974.yaml

* Updated tags for template CVE-2019-19368.yaml

* Updated tags for template CVE-2019-12725.yaml

* Updated tags for template CVE-2019-15501.yaml

* Updated tags for template CVE-2019-9733.yaml

* Updated tags for template CVE-2019-14322.yaml

* Updated tags for template CVE-2019-9955.yaml

* Updated tags for template CVE-2019-0230.yaml

* Updated tags for template CVE-2019-10232.yaml

* Updated tags for template CVE-2019-17506.yaml

* Updated tags for template CVE-2019-8449.yaml

* Updated tags for template CVE-2019-12593.yaml

* Updated tags for template CVE-2019-10092.yaml

* Updated tags for template CVE-2019-1821.yaml

* Updated tags for template CVE-2019-3401.yaml

* Updated tags for template CVE-2019-16662.yaml

* Updated tags for template CVE-2019-5418.yaml

* Updated tags for template CVE-2016-4975.yaml

* Updated tags for template CVE-2016-1000137.yaml

* Updated tags for template CVE-2016-7552.yaml

* Updated tags for template CVE-2016-10956.yaml

* Updated tags for template CVE-2016-1000146.yaml

* Updated tags for template CVE-2013-2251.yaml

* Updated tags for template CVE-2013-1965.yaml

* Updated tags for template CVE-2014-2323.yaml

* Updated tags for template CVE-2014-5111.yaml

* Updated tags for template CVE-2014-2962.yaml

* Updated tags for template CVE-2014-4561.yaml

* Updated tags for template CVE-2014-4558.yaml

* Updated tags for template CVE-2014-3120.yaml

* Updated tags for template CVE-2007-5728.yaml

* Updated tags for template CVE-2009-4679.yaml

* Updated tags for template CVE-2009-1558.yaml

* Updated tags for template CVE-2009-4202.yaml

* Updated tags for template CVE-2009-0932.yaml

* Updated tags for template CVE-2015-2068.yaml

* Updated tags for template CVE-2015-8813.yaml

* Updated tags for template CVE-2015-7450.yaml

* Updated tags for template CVE-2015-2067.yaml

* Updated tags for template CVE-2015-3306.yaml

* Updated tags for template CVE-2015-3337.yaml

* Updated tags for template CVE-2015-1427.yaml

* Updated tags for template CVE-2015-1503.yaml

* Updated tags for template CVE-2015-1880.yaml

* Updated tags for template CVE-2018-3810.yaml

* Updated tags for template CVE-2018-18069.yaml

* Updated tags for template CVE-2018-17246.yaml

* Updated tags for template CVE-2018-10141.yaml

* Updated tags for template CVE-2018-16341.yaml

* Updated tags for template CVE-2018-18777.yaml

* Updated tags for template CVE-2018-15138.yaml

* Updated tags for template CVE-2018-11784.yaml

* Updated tags for template CVE-2018-16299.yaml

* Updated tags for template CVE-2018-7251.yaml

* Updated tags for template CVE-2018-1273.yaml

* Updated tags for template CVE-2018-1271.yaml

* Updated tags for template CVE-2018-11759.yaml

* Updated tags for template CVE-2018-3167.yaml

* Updated tags for template CVE-2018-7490.yaml

* Updated tags for template CVE-2018-2628.yaml

* Updated tags for template CVE-2018-13380.yaml

* Updated tags for template CVE-2018-2893.yaml

* Updated tags for template CVE-2018-5316.yaml

* Updated tags for template CVE-2018-20985.yaml

* Updated tags for template CVE-2018-10818.yaml

* Updated tags for template CVE-2018-1000861.yaml

* Updated tags for template CVE-2018-0296.yaml

* Updated tags for template CVE-2018-19458.yaml

* Updated tags for template CVE-2018-3760.yaml

* Updated tags for template CVE-2018-12998.yaml

* Updated tags for template CVE-2018-9118.yaml

* Updated tags for template CVE-2018-1000130.yaml

* Updated tags for template CVE-2008-6668.yaml

* Updated tags for template CVE-2017-7269.yaml

* Updated tags for template CVE-2017-1000170.yaml

* Updated tags for template CVE-2017-16877.yaml

* Updated tags for template CVE-2017-1000486.yaml

* Updated tags for template CVE-2017-9822.yaml

* Updated tags for template CVE-2017-0929.yaml

* Updated tags for template CVE-2017-7921.yaml

* Updated tags for template CVE-2017-14535.yaml

* Updated tags for template CVE-2017-5521.yaml

* Updated tags for template CVE-2017-12637.yaml

* Updated tags for template CVE-2017-12635.yaml

* Updated tags for template CVE-2017-11610.yaml

* Updated tags for template CVE-2021-20114.yaml

* Updated tags for template CVE-2021-40856.yaml

* Updated tags for template CVE-2021-21972.yaml

* Updated tags for template CVE-2021-31602.yaml

* Updated tags for template CVE-2021-41773.yaml

* Updated tags for template CVE-2021-37704.yaml

* Updated tags for template CVE-2021-45046.yaml

* Updated tags for template CVE-2021-26084.yaml

* Updated tags for template CVE-2021-27931.yaml

* Updated tags for template CVE-2021-24291.yaml

* Updated tags for template CVE-2021-41648.yaml

* Updated tags for template CVE-2021-37216.yaml

* Updated tags for template CVE-2021-22005.yaml

* Updated tags for template CVE-2021-37573.yaml

* Updated tags for template CVE-2021-31755.yaml

* Updated tags for template CVE-2021-43287.yaml

* Updated tags for template CVE-2021-24274.yaml

* Updated tags for template CVE-2021-33564.yaml

* Updated tags for template CVE-2021-22145.yaml

* Updated tags for template CVE-2021-24237.yaml

* Updated tags for template CVE-2021-44848.yaml

* Updated tags for template CVE-2021-25646.yaml

* Updated tags for template CVE-2021-21816.yaml

* Updated tags for template CVE-2021-41649.yaml

* Updated tags for template CVE-2021-41291.yaml

* Updated tags for template CVE-2021-41293.yaml

* Updated tags for template CVE-2021-21801.yaml

* Updated tags for template CVE-2021-29156.yaml

* Updated tags for template CVE-2021-34370.yaml

* Updated tags for template CVE-2021-27132.yaml

* Updated tags for template CVE-2021-28151.yaml

* Updated tags for template CVE-2021-26812.yaml

* Updated tags for template CVE-2021-21985.yaml

* Updated tags for template CVE-2021-43778.yaml

* Updated tags for template CVE-2021-25281.yaml

* Updated tags for template CVE-2021-40539.yaml

* Updated tags for template CVE-2021-36749.yaml

* Updated tags for template CVE-2021-21234.yaml

* Updated tags for template CVE-2021-33221.yaml

* Updated tags for template CVE-2021-42013.yaml

* Updated tags for template CVE-2021-33807.yaml

* Updated tags for template CVE-2021-44228.yaml

* Updated tags for template CVE-2012-0896.yaml

* Updated tags for template CVE-2012-0991.yaml

* Updated tags for template CVE-2012-0392.yaml

* Updated tags for template CVE-2012-4940.yaml

* Updated tags for template CVE-2012-1226.yaml

* Updated tags for template CVE-2012-4878.yaml

* Updated tags for template CVE-2010-1304.yaml

* Updated tags for template CVE-2010-1217.yaml

* Updated tags for template CVE-2010-0759.yaml

* Updated tags for template CVE-2010-2307.yaml

* Updated tags for template CVE-2010-4231.yaml

* Updated tags for template CVE-2010-2861.yaml

* Updated tags for template CVE-2010-4282.yaml

* Updated tags for template CVE-2010-1302.yaml

* Updated tags for template CVE-2010-1461.yaml

* Updated tags for template CVE-2020-4463.yaml

* Updated tags for template CVE-2020-1943.yaml

* Updated tags for template CVE-2020-36289.yaml

* Updated tags for template CVE-2020-17518.yaml

* Updated tags for template CVE-2020-12800.yaml

* Updated tags for template CVE-2020-10770.yaml

* Updated tags for template CVE-2020-17506.yaml

* Updated tags for template CVE-2020-11547.yaml

* Updated tags for template CVE-2020-11034.yaml

* Updated tags for template CVE-2020-24589.yaml

* Updated tags for template CVE-2020-9054.yaml

* Updated tags for template CVE-2020-28976.yaml

* Updated tags for template CVE-2020-16952.yaml

* Updated tags for template CVE-2020-24312.yaml

* Updated tags for template CVE-2020-8512.yaml

* Updated tags for template CVE-2020-14179.yaml

* Updated tags for template CVE-2020-6308.yaml

* Updated tags for template CVE-2020-35846.yaml

* Updated tags for template CVE-2020-7318.yaml

* Updated tags for template CVE-2020-2140.yaml

* Updated tags for template CVE-2020-5410.yaml

* Updated tags for template CVE-2020-5777.yaml

* Updated tags for template CVE-2020-13700.yaml

* Updated tags for template CVE-2020-5775.yaml

* Updated tags for template CVE-2020-13167.yaml

* Updated tags for template CVE-2020-35848.yaml

* Updated tags for template CVE-2020-9484.yaml

* Updated tags for template CVE-2020-15505.yaml

* Updated tags for template CVE-2020-9047.yaml

* Updated tags for template CVE-2020-17519.yaml

* Updated tags for template CVE-2020-17505.yaml

* Updated tags for template CVE-2020-9376.yaml

* Updated tags for template CVE-2020-8497.yaml

* Updated tags for template CVE-2020-14092.yaml

* Updated tags for template CVE-2020-10148.yaml

* Updated tags for template CVE-2020-35847.yaml

* Updated tags for template CVE-2020-12116.yaml

* Updated tags for template CVE-2020-11930.yaml

* Updated tags for template CVE-2020-24186.yaml

* Updated tags for template CVE-2020-9496.yaml

* Updated tags for template CVE-2020-35489.yaml

* Updated tags for template CVE-2020-26413.yaml

* Updated tags for template CVE-2020-2096.yaml

* misc updates

* misc update

* more updates

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-05 01:04:16 +05:30
PR3R00T 1110c6095f
Update solr-query-dashboard.yaml (#3475)
changed to lower case "high" to be in line with all other templates case sensitivity.
2022-01-04 16:02:45 +05:30
Dhiyaneshwaran eb2624580d
Kafka Center Default Login , Panel , Kafka Cruise Control UI Dashboard (#3472)
* Create secure-login-panel.yaml

* Create geo-webserver.yaml

* Create hp-virtual-connect-manager.yaml

* Create microsoft-azure-error.yaml

* Create microsoft-iis-8.yaml

* Create veeam-backup-azure-panel.yaml

* Create user-control-panel.yaml

* Create kafka-consumer-monitor.yaml

* Update kafka-consumer-monitor.yaml

* Create kafka-connect-ui-exposure.yaml

* misc updates

* duplicate template

existing one - `exposed-panels/kafka-connect-ui.yaml`

* Create kafka-cruise-control.yaml

* Create kafka-center-default-login.yaml

* Create kafka-center-login.yaml

* minor update

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2022-01-03 23:52:26 +05:30
ImNightmaree 9923e91348
Create glpi-directory-listing.yaml (#3439)
* Create glpi-directory-listing.yaml

* Linting

* Linting

Adds ``part: header``

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

* Update glpi-directory-listing.yaml

Co-authored-by: Sandeep Singh <sandeep@projectdiscovery.io>
Co-authored-by: Prince Chaddha <prince@projectdiscovery.io>
2021-12-30 14:05:45 +05:30
Gabriel Barros ce97393f95
Adding permission-policy header (#3447)
* Adding permission-policy header

* lint fix

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-29 20:06:58 +05:30
Sandeep Singh de9c4d605c
Apache Tomcat Template improvements (#3446)
* Improved Tomcat matchers / extractors / paths

* removed duplicate detections / matchers

* removed duplicate template

* Added missing tomcat tags
2021-12-29 19:10:59 +05:30
Prince Chaddha 015f19a596
Merge pull request #3389 from DhiyaneshGeek/master
New 4 Templates
2021-12-22 13:54:30 +05:30
Prince Chaddha cbe73160de
Update dgraph-dashboard-exposure.yaml 2021-12-22 13:01:22 +05:30
Prince Chaddha a7b70eb953
Update dgraph-dashboard-exposure.yaml 2021-12-22 12:44:35 +05:30
pussycat0x 8a77db7919
unauthorized Puppet Node Manager (#3388)
* Add files via upload

* Update unauthorized-puppet-node-manager-detect.yaml

* Add files via upload

* Add files via upload

* Update CVE-2021-40859.yaml

* misc updates

* minor updates

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-22 12:16:05 +05:30
Dhiyaneshwaran b23e95abe8
Create dgraph-dashboard-exposure.yaml 2021-12-21 21:50:43 +05:30
Wyatt Dahlenburg 1619ee4566
Spring Boot Gateway Actuator (#3384)
* Adding the springboot gateway actuator

* minor update

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-21 10:54:13 +05:30
Prince Chaddha 7aafd1741a
Create formalms-install.yaml 2021-12-13 14:22:46 +05:30
sandeep b4b6d9a220 update: added additional path 2021-12-05 16:48:49 +05:30
Dhiyaneshwaran 7b7d6e1654
jolokia-unauthenticated-lfi (#3268)
* Create jolokia-unauthenticated-lfi.yaml

* update: added more reference to template

Co-authored-by: sandeep <sandeep@projectdiscovery.io>
2021-12-05 16:12:46 +05:30
ImNightmaree 3efb8332f9
Change ID to match filename (#3267) 2021-12-05 12:02:46 +05:30
Sandeep Singh 9057161fa5
Added AEM setPreferences XSS (#3264)
* Added AEM setPreferences XSS

* Added shodan query
2021-12-04 17:32:37 +05:30
sandeep 0425b36e10 moving templates around 2021-11-28 03:39:10 +05:30
Sandeep Singh 3fb2bf4644
Merge pull request #3174 from DhiyaneshGeek/master
Version Control Templates
2021-11-21 14:55:24 +05:30
sandeep d16fb02b21 minor updates to template 2021-11-21 14:53:15 +05:30
sandeep b7682eda16 Added condition in matchers 2021-11-21 14:30:09 +05:30
sandeep 54a182518a Added reference 2021-11-21 14:29:10 +05:30
sandeep 80db01c68c moving apache templates to apache directory 2021-11-21 14:26:39 +05:30
Dhiyaneshwaran 5dd998395f
Create git-web-interface.yaml 2021-11-20 17:46:52 +05:30
Dhiyaneshwaran f79c4bf7f9
Create gitlist-disclosure.yaml 2021-11-20 17:35:54 +05:30
PikPikcU 45073c7b88
Create apache-hbase-unauth.yaml 2021-11-20 07:27:56 +07:00
PikPikcU 03999c42cd
Create apache-storm-unauth.yaml 2021-11-20 06:40:32 +07:00
Prince Chaddha 8198ba6711
Merge pull request #3140 from deFr0ggy/master
AMPPS - Directory Listing Misconfiguration
2021-11-17 23:03:11 +05:30
Frog Man 0a27557981
Update ampps-dirlisting.yaml 2021-11-17 22:24:40 +05:00
Prince Chaddha 887872dab2
Update ampps-dirlisting.yaml 2021-11-17 13:57:51 +05:30
Kamran Saifullah (Frog Man) f046a10576
AMPPS - Directory Listing Misconfiguration 2021-11-14 14:33:51 +05:00
Sandeep Singh 7b1cc1bcd7
Merge pull request #3134 from pussycat0x/master
Unauthentication InfluxDB Detection
2021-11-13 14:18:20 +05:30
sandeep 6dbf6233be lint fix 2021-11-13 14:16:19 +05:30
sandeep 5981681f65 misc updates 2021-11-13 14:14:06 +05:30
pussycat0x 2051ea65ea
Add files via upload 2021-11-13 12:26:47 +05:30
sandeep 878a74647c misc updates 2021-11-11 22:04:45 +05:30
Sullo e43e20880d Move miscellaneous/phpmyadmin-setup.yaml to misconfiguration/phpmyadmin/phpmyadmin-setup.yaml 2021-11-11 11:14:21 -05:00
Sullo 02ad4e81b0 Removing misconfiguration/phpmyadmin/phpmyadmin-setup.yaml
in favor of miscellaneous/phpmyadmin-setup.yaml
2021-11-11 11:13:45 -05:00
Prince Chaddha d19093dcc8
Merge pull request #3117 from pussycat0x/master
unauthorized hp officepro printer
2021-11-11 12:51:25 +05:30
Prince Chaddha 58c224e3a5
Update unauthorized-hp-officepro-printer.yaml 2021-11-11 11:14:52 +05:30
Prince Chaddha 1a15d91764
Update and rename misconfiguration/unauthorized-hp-officepro-printer.yaml to misconfiguration/hp/unauthorized-hp-officepro-printer.yaml 2021-11-11 11:10:36 +05:30
pussycat0x f9263c047a
Update unauthorized-hp-officepro-printer.yaml 2021-11-10 17:58:59 +05:30
pussycat0x cb0b495fe0
Add files via upload 2021-11-10 17:46:34 +05:30
Sandeep Singh 037d974e8b
Merge pull request #3095 from projectdiscovery/CVE-2020-26413
Create CVE-2020-26413.yaml
2021-11-06 22:38:14 +05:30
sandeep dbbb08e40c misc updates 2021-11-06 22:36:37 +05:30
Sandeep Singh 199d7061f7
Update gocd-encryption-key.yaml 2021-11-06 18:45:55 +05:30
Pradeepch99 32e666d1f0
Update gocd-encryption-key.yaml 2021-11-06 18:24:24 +05:30
sandeep a6d228ad50 misc updates 2021-11-06 16:27:38 +05:30
sandeep 5fa10c4b64 cves update 2021-11-06 12:34:04 +05:30
sandeep b2eceeff1a syntax update 2021-11-05 02:56:16 +05:30
Dhiyaneshwaran 3736a5ccc9
Update gocd-unauth-dashboard.yaml 2021-11-05 02:51:56 +05:30
Dhiyaneshwaran 2e4ca64ca7
Update gocd-server-configuration.yaml 2021-11-05 02:51:48 +05:30
Dhiyaneshwaran 2e4e27cb69
Update gocd-encryption-key.yaml 2021-11-05 02:51:39 +05:30
Dhiyaneshwaran 134c27219d
Update gocd-arbitrary-file.yaml 2021-11-05 02:51:18 +05:30
sandeep 99ba23f9af misc update 2021-11-05 02:29:38 +05:30
Dhiyaneshwaran 62a629cda9
Create gocd-unauth-dashboard.yaml 2021-11-05 02:27:08 +05:30
Dhiyaneshwaran bb2e3b1d38
Create gocd-encryption-key.yaml 2021-11-05 02:22:06 +05:30
Dhiyaneshwaran fd9ffceacd
Update and rename go-cd-arbitrary-file.yaml to gocd-arbitrary-file.yaml 2021-11-05 02:13:15 +05:30
Dhiyaneshwaran 5d7e8f72de
Update gocd-server-configuration.yaml 2021-11-05 02:12:33 +05:30
Dhiyaneshwaran 2e7ab374eb
Create gocd-server-configuration.yaml 2021-11-05 01:54:26 +05:30
Dhiyaneshwaran db91642c3d
Rename pre-auth-rce-gocd.yaml to go-cd-arbitrary-file.yaml 2021-11-05 01:48:25 +05:30
Dhiyaneshwaran 7a60f45431
Update pre-auth-rce-gocd.yaml 2021-11-05 01:46:11 +05:30
Dhiyaneshwaran 0ac7e92ac9
Update pre-auth-rce-gocd.yaml 2021-11-05 01:41:25 +05:30
Dhiyaneshwaran 3eff5e541d
Create pre-auth-rce-gocd.yaml 2021-11-05 01:30:11 +05:30
sandeep 421624d732 Added missing tags 2021-11-04 15:13:32 +05:30
Dhiyaneshwaran be871b155c
Create sitecore-debug-page.yaml 2021-11-03 23:16:23 +05:30
sandeep b83e79a8fe moving files around 2021-11-01 19:36:21 +05:30
sandeep f650961021 Merge branch 'master' of https://github.com/projectdiscovery/nuclei-templates into gitlab-updates 2021-11-01 19:21:55 +05:30
Prince Chaddha a229a2e822
Merge pull request #2986 from projectdiscovery/wildcard-postmessage
Added Wildcard postMessage detection
2021-11-01 15:46:00 +05:30
Prince Chaddha ec2907e6b0
Update wildcard-postmessage.yaml 2021-11-01 14:54:51 +05:30
Prince Chaddha 4d58562095
Update umbraco-base-ssrf.yaml 2021-10-30 22:06:04 +05:30
Prince Chaddha 40340c89c6
Update and rename misconfiguration/umbraco-base-ssrf.yaml to misconfiguration/vulnerabilities/other/umbraco-base-ssrf.yaml 2021-10-30 17:33:53 +05:30
Dhiyaneshwaran 9e1f9859d8
Create umbraco-base-ssrf.yaml 2021-10-30 11:03:14 +05:30
sandeep e91e2e6e27 Added missing tag 2021-10-28 17:44:58 +05:30
Prince Chaddha cd9195b7e4
Update wildcard-postmessage.yaml 2021-10-26 23:48:28 +05:30
Prince Chaddha d43c694da7
Delete docker-version-detect.yaml 2021-10-26 23:41:28 +05:30
sandeep 0de8bc19f8 misc template updates 2021-10-26 17:39:26 +05:30
Prince Chaddha e4a646f9d4
Update and rename misconfiguration/unauth-securityspy-camera-detect.yaml to exposed-panels/securityspy-detect.yaml 2021-10-25 15:00:32 +05:30
pussycat0x a7c02f99dc
Update unauth-securityspy-camera-detect.yaml 2021-10-25 10:34:24 +05:30
pussycat0x 2b4356dcc1
Add files via upload 2021-10-25 08:34:17 +05:30
pussycat0x 854016684c
Add files via upload 2021-10-24 18:05:09 +05:30
sandeep 80301e3f63 Added Wildcard postMessage detection 2021-10-23 23:34:49 +05:30
sandeep c849b7d51a metadata update 2021-10-22 23:22:36 +05:30
Sandeep Singh fc1b7a658c
Merge pull request #2956 from CristiVlad25/misconfig
Created app.yaml Template
2021-10-22 22:38:45 +05:30
sandeep 62dc0c0c31 misc update 2021-10-22 22:19:12 +05:30
Dhiyaneshwaran 444fa88b24
Create jaeger-ui-dashboard.yaml 2021-10-22 22:15:57 +05:30
Cristi Vlad 8632760893 Created app.yaml Template 2021-10-22 12:17:44 +03:00
Sufijen Bani ac9f713d97 Merge PHP Errors Templates
There was an extra error template for PHP warnings although there was
another template holding that already.

The status code check (500) is a step that would make sense for all of
the checks. This is not limited to warnings. Though I think that error
code 500 shrinks the result set too much in this case. That's why I
would leave it out.
2021-10-21 10:46:04 +02:00
Prince Chaddha 52e498506e
Update zenphoto-sensitive-info.yaml 2021-10-19 17:45:19 +05:30
Philippe Delteil 69953cf73e
Update zenphoto-sensitive-info.yaml 2021-10-18 23:18:31 -03:00
sandeep 33badb66d1 oob tags update 2021-10-19 02:10:26 +05:30
Prince Chaddha f86ef5382b
Merge pull request #2783 from pikpikcu/patch-295
Added skycaiji
2021-10-17 22:23:07 +05:30
sandeep acda6fdb53 added missing slash 2021-10-16 01:10:48 +05:30
sandeep 196cc292b8 adding tags 2021-10-16 01:09:19 +05:30
sandeep 5e2c52f803 Merge branch 'misconfiguration' of https://github.com/CristiVlad25/nuclei-templates into pr/2900 2021-10-16 01:07:50 +05:30
sandeep dd106dcb8f misc update and moving files around 2021-10-16 01:06:37 +05:30
sandeep 10b4076f88 misc update 2021-10-14 00:14:29 +05:30
Divya 0102fad1a9
Add hpe-system-management-anonymous.yaml
Detect anonymous HPE System Management instance
2021-10-12 18:11:25 -04:00
sandeep 673a9107c5 misc updates 2021-10-11 01:38:44 +05:30
Divya 3e3e64c20e
Add unauthenticated-lansweeper.yaml
Detect unauthenticated Lansweeper instance
2021-10-10 13:03:46 -04:00
Prince Chaddha 0ed37945d6
Update skycaiji-install.yaml 2021-10-08 12:06:44 +05:30
Roman Ananyev f1e4a2b15f
Added one more status page for NGINX 2021-10-06 12:12:13 +04:00
Prince Chaddha 179e265f8a
Update and rename misconfiguration/iotawatt-configuration-app.yaml to iot/iotawatt-app-exposure.yaml 2021-10-06 11:07:51 +05:30
pussycat0x a71096bcd8
Add files via upload 2021-10-05 22:28:16 +05:30
Prince Chaddha bfb3d70662
Update and rename misconfiguration/hp-switch-default-creds.yaml to default-logins/hp/hp-switch-default-login.yaml 2021-10-05 15:19:15 +05:30
pussycat0x 6a38a61321
Update hp-switch-default-creds.yaml 2021-10-05 01:56:47 +05:30
pussycat0x f0a572eae8
Update hp-switch-default-creds.yaml 2021-10-05 01:43:14 +05:30
pussycat0x 30c447d42b
Add files via upload 2021-10-05 01:25:35 +05:30
sandeep 55b0673d27 Added IBM Websphere Friendly Path Exposure
Co-Authored-By: clarkvoss <32307041+clarkvoss@users.noreply.github.com>
2021-10-03 16:49:06 +05:30
Sullo 3878138bfe * Added Host headers where needed (validated via disclosures/posts)
* Added CVE simple-employee-rce.yaml
2021-09-30 12:52:05 -04:00
PikPikcU 553772ab8a
Create skycaiji-install.yaml 2021-09-30 23:49:10 +07:00
Prince Chaddha 807920c0ac clean-up 2021-09-21 17:16:53 +05:30
sullo b57620cce2 Typo and language corrections 2021-09-20 15:25:11 -04:00