👾KEYWORD SERVICE 🏷#sql_injection
Name: FlightBookingWebsite
Github: https://github.com/sumit2362000/FlightBookingWebsite
Name: FlightBookingWebsite
Github: https://github.com/sumit2362000/FlightBookingWebsite
GitHub
GitHub - sumit2362000/FlightBookingWebsite: ✈️ An enterprise level Flight Booking System for Turkish Airlines (web-application)…
✈️ An enterprise level Flight Booking System for Turkish Airlines (web-application) based on the Model View Controller (MVC) Architecture made using Java Servlets, Java Server Pages (JSPs). Moreove...
👾KEYWORD SERVICE 🏷#sql_injection
Name: TAMI-hacknight-1
Github: https://github.com/Wissotsky/TAMI-hacknight-1
Name: TAMI-hacknight-1
Github: https://github.com/Wissotsky/TAMI-hacknight-1
GitHub
GitHub - Wissotsky/TAMI-hacknight-1: 1st tami hacknight about sql injection
1st tami hacknight about sql injection. Contribute to Wissotsky/TAMI-hacknight-1 development by creating an account on GitHub.
** fscan ** 🔧Tool update
Tools name:fscan
Tools url:https://github.com/shadow1ng/fscan/commit/abd2ba094762e0edeb883554e6fe19e4a50df267
commitUpdate log:
update readme
Tools name:fscan
Tools url:https://github.com/shadow1ng/fscan/commit/abd2ba094762e0edeb883554e6fe19e4a50df267
commitUpdate log:
update readme
GitHub
update readme · shadow1ng/fscan@abd2ba0
一款内网综合扫描工具,方便一键自动化、全方位漏扫扫描。. Contribute to shadow1ng/fscan development by creating an account on GitHub.
👾KEYWORD SERVICE 🏷#exploit
Name: Silent-DOC-Exploit-2023-Luxury-Shield
Github: https://github.com/gfgdfgfdgfdgfdgfdgfd4/Silent-DOC-Exploit-2023-Luxury-Shield
Name: Silent-DOC-Exploit-2023-Luxury-Shield
Github: https://github.com/gfgdfgfdgfdgfdgfdgfd4/Silent-DOC-Exploit-2023-Luxury-Shield
GitHub
GitHub - gfgdfgfdgfdgfdgfdgfd4/Silent-DOC-Exploit-2023-Luxury-Shield
Contribute to gfgdfgfdgfdgfdgfdgfd4/Silent-DOC-Exploit-2023-Luxury-Shield development by creating an account on GitHub.
👾KEYWORD SERVICE 🏷#exploit
Name: hentai-exploit
Github: https://github.com/SuckyBuckyYT/hentai-exploit
Name: hentai-exploit
Github: https://github.com/SuckyBuckyYT/hentai-exploit
GitHub
GitHub - SuckyBuckyYT/hentai-exploit: hentai exploit for roblox, minecraft and other games made by Ryann#3112
hentai exploit for roblox, minecraft and other games made by Ryann#3112 - GitHub - SuckyBuckyYT/hentai-exploit: hentai exploit for roblox, minecraft and other games made by Ryann#3112
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-3786
Github: https://github.com/plharraud/cve-2022-3786
Describe:
A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed a malicious certificate or for an application to continue certificate verification despite failure to construct a path to a trusted issuer. An attacker can craft a malicious email address in a certificate to overflow an arbitrary number of bytes containing the `.' character (decimal 46) on the stack. This buffer overflow could result in a crash (causing a denial of service). In a TLS client, this can be triggered by connecting to a malicious server. In a TLS server, this can be triggered if the server requests client authentication and a malicious client connects.
Mumber: CVE-2022-3786
Github: https://github.com/plharraud/cve-2022-3786
Describe:
A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed a malicious certificate or for an application to continue certificate verification despite failure to construct a path to a trusted issuer. An attacker can craft a malicious email address in a certificate to overflow an arbitrary number of bytes containing the `.' character (decimal 46) on the stack. This buffer overflow could result in a crash (causing a denial of service). In a TLS client, this can be triggered by connecting to a malicious server. In a TLS server, this can be triggered if the server requests client authentication and a malicious client connects.
👾KEYWORD SERVICE 🏷#sql_injection
Name: php-mysql-class
Github: https://github.com/almhdy24/php-mysql-class
Name: php-mysql-class
Github: https://github.com/almhdy24/php-mysql-class
GitHub
GitHub - almhdy24/php-mysql-class: This lightweight database class is written with PHP and uses the MySQLi extension, it uses prepared…
This lightweight database class is written with PHP and uses the MySQLi extension, it uses prepared statements to properly secure your queries, no need to worry about SQL injection attacks. - GitHu...
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-41272
Github: https://github.com/redrays-io/CVE-2022-41272
Describe:
An unauthenticated attacker over the network can attach to an open interface exposed through JNDI by the User Defined Search (UDS) of SAP NetWeaver Process Integration (PI) - version 7.50 and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and data across the entire system. This allows the attacker to have full read access to user data, make limited modifications to user data, and degrade the performance of the system, leading to a high impact on confidentiality and a limited impact on the availability and integrity of the application.
Mumber: CVE-2022-41272
Github: https://github.com/redrays-io/CVE-2022-41272
Describe:
An unauthenticated attacker over the network can attach to an open interface exposed through JNDI by the User Defined Search (UDS) of SAP NetWeaver Process Integration (PI) - version 7.50 and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting users and data across the entire system. This allows the attacker to have full read access to user data, make limited modifications to user data, and degrade the performance of the system, leading to a high impact on confidentiality and a limited impact on the availability and integrity of the application.
GitHub
GitHub - redrays-io/CVE-2022-41272: Improper access control in SAP NetWeaver Process Integration
Improper access control in SAP NetWeaver Process Integration - redrays-io/CVE-2022-41272
👾KEYWORD SERVICE 🏷#exploit
Name: school-computer-exploits
Github: https://github.com/iAmSpace/school-computer-exploits
Name: school-computer-exploits
Github: https://github.com/iAmSpace/school-computer-exploits
GitHub
GitHub - iAmSpace/school-computer-exploits
Contribute to iAmSpace/school-computer-exploits development by creating an account on GitHub.
👾KEYWORD SERVICE 🏷#webshell
Name: Simple-Webshell-PHP
Github: https://github.com/TheoM83/Simple-Webshell-PHP
Name: Simple-Webshell-PHP
Github: https://github.com/TheoM83/Simple-Webshell-PHP
GitHub
GitHub - TheoM83/Simple-Webshell-PHP
Contribute to TheoM83/Simple-Webshell-PHP development by creating an account on GitHub.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-45771
Github: https://github.com/p0dalirius/CVE-2022-45771-Pwndoc-LFI-to-RCE
Describe:
An issue in the /api/audits component of Pwndoc v0.5.3 allows attackers to escalate privileges and execute arbitrary code via uploading a crafted audit file.
Mumber: CVE-2022-45771
Github: https://github.com/p0dalirius/CVE-2022-45771-Pwndoc-LFI-to-RCE
Describe:
An issue in the /api/audits component of Pwndoc v0.5.3 allows attackers to escalate privileges and execute arbitrary code via uploading a crafted audit file.
GitHub
GitHub - p0dalirius/CVE-2022-45771-Pwndoc-LFI-to-RCE: Pwndoc local file inclusion to remote code execution of Node.js code on the…
Pwndoc local file inclusion to remote code execution of Node.js code on the server - p0dalirius/CVE-2022-45771-Pwndoc-LFI-to-RCE
👾KEYWORD SERVICE 🏷#exploit
Name: Et-exploits-Multitool-v2
Github: https://github.com/etxnight/Et-exploits-Multitool-v2
Name: Et-exploits-Multitool-v2
Github: https://github.com/etxnight/Et-exploits-Multitool-v2
GitHub
GitHub - etxnight/Et-exploits-Multitool-v2: V2 | has multitools built inside of it. | has tools that people sell. |
V2 | has multitools built inside of it. | has tools that people sell. | - GitHub - etxnight/Et-exploits-Multitool-v2: V2 | has multitools built inside of it. | has tools that people sell. |
** fscan ** 🔧Tool update
Tools name:fscan
Tools url:https://github.com/shadow1ng/fscan/commit/79d44e00b3c906327ec15964d07ad9f8ba6b4089
commitUpdate log:
Merge pull request #254 from ruishawn/dev5
Doc: add English Readme
Tools name:fscan
Tools url:https://github.com/shadow1ng/fscan/commit/79d44e00b3c906327ec15964d07ad9f8ba6b4089
commitUpdate log:
Merge pull request #254 from ruishawn/dev5
Doc: add English Readme
GitHub
Merge pull request #254 from ruishawn/dev5 · shadow1ng/fscan@79d44e0
Doc: add English Readme