fscan/WebScan/pocs
shadow1ng ad1c53e3f4 更新poc 2021-06-18 10:30:01 +08:00
..
activemq-cve-2016-3088.yml commit message 2020-12-29 17:17:10 +08:00
activemq-default-password.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
alibaba-canal-info-leak.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
alibaba-nacos-api-unauth.yml 增加指纹识别功能,可识别尝试CMS、框架,如致远OA、通达OA等 2021-02-08 15:13:56 +08:00
alibaba-nacos.yml 增加指纹识别功能,可识别尝试CMS、框架,如致远OA、通达OA等 2021-02-08 15:13:56 +08:00
apache-flink-upload-rce.yml commit message 2020-12-29 17:17:10 +08:00
apache-ofbiz-cve-2020-9496-xml-deserialization.yml commit message 2020-12-29 17:17:10 +08:00
apache-solr-file-read.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
apacheofbiz-cve-2018-8033-xxe.yml commit message 2020-12-29 17:17:10 +08:00
bt742-pma-unauthorized-access.yml commit message 2020-12-29 17:17:10 +08:00
cisco-cve-2020-3452-readfile.yml commit message 2020-12-29 17:17:10 +08:00
coremail-cnvd-2019-16798.yml commit message 2020-12-29 17:17:10 +08:00
discuz-ml3x-cnvd-2019-22239.yml commit message 2020-12-29 17:17:10 +08:00
dlink-cve-2019-17506.yml commit message 2020-12-29 17:17:10 +08:00
dlink-cve-2020-9376-dump-credentials.yml commit message 2020-12-29 17:17:10 +08:00
dlink-cve-2020-25078-account-disclosure.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
dlink-dcs-info-leak.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
docker-api-unauthorized-rce.yml commit message 2020-12-29 17:17:10 +08:00
docker-registry-api-unauth.yml commit message 2020-12-29 17:17:10 +08:00
druid-monitor-unauth.yml commit message 2020-12-29 17:17:10 +08:00
drupal-cve-2014-3704-sqli.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
drupal-cve-2018-7600-rce.yml 加入 404星链 2021-04-22 12:06:03 +08:00
drupal-cve-2018-7600-rce2.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
drupal-cve-2019-6340.yml commit message 2020-12-29 17:17:10 +08:00
drupal-drupal7geddon2-rce.yml commit message 2020-12-29 17:17:10 +08:00
drupal-drupal8geddon2-rce.yml commit message 2020-12-29 17:17:10 +08:00
ecology-sqli.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
ecology-validate-sqli.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
ecology-workflowservicexml-2.yml 更新poc 2021-06-18 10:30:01 +08:00
ecology-workflowservicexml.yml 更新poc 2021-06-18 10:30:01 +08:00
ecshop-cnvd-2020-58823-sqli.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
ecshop-rce.yml 加入 404星链 2021-04-22 12:06:03 +08:00
ecshop-rce2.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
elasticsearch-unauth.yml commit message 2020-12-29 17:17:10 +08:00
exchange-cve-2021-26855-ssrf.yml 更新mod库、编码、poc等 2021-05-06 11:39:58 +08:00
eyou-rce.yml 更新poc 2021-04-18 10:48:54 +08:00
f5-tmui-cve-2020-5902-rce.yml commit message 2020-12-29 17:17:10 +08:00
fangweicms-sqli.yml commit message 2020-12-29 17:17:10 +08:00
finereport-v8-arbitrary-file-read.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
flir-ax8-file-read.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
gitlab-cnvd-2021-14193-infoleak.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
h3c-secparh-any-user-login.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
hikvision-cve-2017-7921.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
iis6.0-put.yml 修改、添加poc 2021-02-28 15:20:18 +08:00
jboss-cve-2010-1871.yml commit message 2020-12-29 17:17:10 +08:00
jboss-unauth.yml commit message 2020-12-29 17:17:10 +08:00
jenkins-cve-2018-1000861-rce.yml commit message 2020-12-29 17:17:10 +08:00
jenkins-unauthorized-access.yml commit message 2020-12-29 17:17:10 +08:00
jumpserver-unauth-rce.yml 加入 404星链 2021-04-22 12:06:03 +08:00
jumpserver-unauth-rce2.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
kingsoft-v8-default-password.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
kingsoft-v8-file-read.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
landray-oa-custom-jsp-fileread-2.yml 更新poc 2021-06-18 10:30:01 +08:00
landray-oa-custom-jsp-fileread.yml 更新poc 2021-06-18 10:30:01 +08:00
lanproxy-cve-2021-3019-lfi.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
laravel-debug-info-leak.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
laravel-improper-webdir.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
mongo-express-cve-2019-10758.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
netentsec-ngfw-rce.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
nexus-cve-2019-7238.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
nexus-cve-2020-10199.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
nexus-cve-2020-10204.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
nexus-default-password.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
phpmyadmin-cve-2018-12613-file-inclusion.yml commit message 2020-12-29 17:17:10 +08:00
phpmyadmin-setup-deserialization.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
phpstudy-backdoor-rce.yml commit message 2020-12-29 17:17:10 +08:00
qizhi-fortressaircraft-unauthorized.yml 更新mod库、编码、poc等 2021-05-06 11:39:58 +08:00
rockmongo-default-password.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
ruijie-eg-info-leak.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
ruijie-eg-rce.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
ruijie-nbr1300g-cli-password-leak.yml 加入fcgi协议未授权命令执行扫描,优化poc模块 2021-05-29 12:13:10 +08:00
ruijie-rce-cnvd-2021-09650.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
ruijie-uac-cnvd-2021-14536.yml 加入 404星链 2021-04-22 12:06:03 +08:00
saltstack-cve-2021-25282-file-write.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
sangfor-edr-arbitrary-admin-login.yml commit message 2020-12-29 17:17:10 +08:00
sangfor-edr-cssp-rce.yml commit message 2020-12-29 17:17:10 +08:00
sangfor-edr-tool-rce.yml commit message 2020-12-29 17:17:10 +08:00
seeyon-a6-employee-info-leak.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
seeyon-a6-test-jsp-sql.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
seeyon-ajax-unauthorized-access.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
seeyon-cnvd-2020-62422-readfile.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
seeyon-session-leak.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
seeyon-setextno-jsp-sql.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
seeyon-unauthoried.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
showdoc-uploadfile.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
solr-cve-2019-0193.yml commit message 2020-12-29 17:17:10 +08:00
solr-fileread1.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
solr-fileread2.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
solr-velocity-template-rce.yml commit message 2020-12-29 17:17:10 +08:00
sonicwall-ssl-vpn-rce.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
spring-actuator-heapdump-file.yml 增加指纹识别功能,可识别尝试CMS、框架,如致远OA、通达OA等 2021-02-08 15:13:56 +08:00
spring-cloud-cve-2020-5405.yml commit message 2020-12-29 17:17:10 +08:00
spring-cloud-cve-2020-5410.yml commit message 2020-12-29 17:17:10 +08:00
spring-cve-2016-4977.yml commit message 2020-12-29 17:17:10 +08:00
spring-heapdump-file.yml 增加指纹识别功能,可识别尝试CMS、框架,如致远OA、通达OA等 2021-02-08 15:13:56 +08:00
springboot-env-unauth.yml 加入 404星链 2021-04-22 12:06:03 +08:00
springboot-env-unauth2.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
springcloud-cve-2019-3799.yml commit message 2020-12-29 17:17:10 +08:00
struts2-045-1.yml 更新mod库、编码、poc等 2021-05-06 11:39:58 +08:00
struts2-045-2.yml 修改、添加poc 2021-02-28 15:20:18 +08:00
struts2-046-1.yml 修改、添加poc 2021-02-28 15:20:18 +08:00
swagger-ui-unauth-No1.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No2.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No3.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No4.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No5.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No6.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No7.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
swagger-ui-unauth-No8.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
thinkadmin-v6-readfile.yml commit message 2020-12-29 17:17:10 +08:00
thinkcmf-lfi.yml commit message 2020-12-29 17:17:10 +08:00
thinkcmf-write-shell.yml commit message 2020-12-29 17:17:10 +08:00
thinkphp-v6-file-write.yml commit message 2020-12-29 17:17:10 +08:00
thinkphp5-controller-rce.yml commit message 2020-12-29 17:17:10 +08:00
thinkphp5023-method-rce.yml commit message 2020-12-29 17:17:10 +08:00
tianqing-info-leak.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
tomcat-cve-2017-12615-rce.yml commit message 2020-12-29 17:17:10 +08:00
tomcat-cve-2018-11759.yml commit message 2020-12-29 17:17:10 +08:00
tomcat-manager-week.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 17:53:35 +08:00
tongda-meeting-unauthorized-access.yml commit message 2020-12-29 17:17:10 +08:00
tongda-user-session-disclosure.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
ueditor-cnvd-2017-20077-file-upload.yml commit message 2020-12-29 17:17:10 +08:00
vengd-upload-rce.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
vmware-vcenter-arbitrary-file-read.yml 加入 404星链 2021-04-22 12:06:03 +08:00
vmware-vcenter-arbitrary-file-read2.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
vmware-vcenter-cve-2021-21985-rce.yml 更新poc 2021-06-18 10:30:01 +08:00
vmware-vcenter-unauthorized-rce-cve-2021-21972.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
vmware-vrealize-cve-2021-21975-ssrf.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
weaver-ebridge-file-read-linux.yml commit message 2020-12-29 17:17:10 +08:00
weaver-ebridge-file-read-windows.yml commit message 2020-12-29 17:17:10 +08:00
weaver-oa-arbitrary-file-upload.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
weblogic-cve-2020-14750.yml 支持-u url或者-uf url.txt,进行url批量扫描 2021-03-04 14:42:10 +08:00
weblogic-ssrf.yml commit message 2020-12-29 17:17:10 +08:00
weblogic-v10-cve-2017-10271.yml commit message 2020-12-29 17:17:10 +08:00
weblogic-v12-cve-2019-2725.yml commit message 2020-12-29 17:17:10 +08:00
webmin-cve-2019-15107-rce.yml commit message 2020-12-29 17:17:10 +08:00
wordpress-cve-2019-19985-infoleak.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
wordpress-ext-adaptive-images-lfi.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
wordpress-ext-mailpress-rce.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
yongyou-erp-nc-directory-traversal.yml 更新 CheckErrs 2021-04-18 10:38:46 +08:00
yongyou-u8-oa-sqli.yml 更新mod库、编码、poc等 2021-05-06 11:37:29 +08:00
yonyou-grp-u8-sqli-to-rce.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
yonyou-grp-u8-sqli.yml 修改yaml解析模块,支持密码爆破,如tomcat弱口令。yaml中新增sets参数,类型为数组,用于存放密码,具体看tomcat-manager-week.yaml 2021-02-25 19:53:58 +08:00
yonyou-nc6.5-arbitrary-file-upload.yml 增加指纹识别功能,可识别尝试CMS、框架,如致远OA、通达OA等 2021-02-08 15:13:56 +08:00
zabbix-authentication-bypass.yml commit message 2020-12-29 17:17:10 +08:00
zabbix-cve-2016-10134-sqli.yml commit message 2020-12-29 17:17:10 +08:00