256 Commits

Author SHA1 Message Date
mr-xn
c15e2d248f add Linux sudo提权辅助工具—查找sudo权限配置漏洞 2020-02-21 13:23:46 +08:00
mr-xn
a9ce661abc add 在线扫描-网站基础信息获取|旁站|端口扫描|信息泄露 2020-02-21 13:17:23 +08:00
mr-xn
a21869bc5e add Java安全相关的漏洞和技术demo 2020-02-21 13:13:29 +08:00
mr-xn
60e36a0b82 add about CNVD-2020-10487(CVE-2020-1938), tomcat ajp 文件读取/包含漏洞poc 2020-02-21 13:10:38 +08:00
mr-xn
d233499215 add GitHub敏感信息泄露监控 2020-02-20 14:18:40 +08:00
mr-xn
de55e2877e add YzmCMS 5.4 后台getshell 2020-02-20 14:09:03 +08:00
mr-xn
0ad4e591a9 add 完整weblogic 漏洞扫描工具修复版 2020-02-19 18:03:44 +08:00
mr-xn
2e6052a44b add Shiro<=1.2.4反序列化,一键检测工具 2020-02-18 15:02:46 +08:00
mr-xn
41a015cbba add CVE-2019-17564 : Apache Dubbo反序列化漏洞 2020-02-16 22:28:29 +08:00
mr-xn
50f9012785 add CVE-2020-0618 SQL Server Reporting Services RCE 2020-02-16 22:26:04 +08:00
mr-xn
9a724a1421 add [CVE-2020-0618: 微软 SQL Server Reporting Services远程代码执行(RCE)漏洞](https://www.mdsec.co.uk/2020/02/cve-2020-0618-rce-in-sql-server-reporting-services-ssrs/) 2020-02-16 22:24:44 +08:00
mr-xn
63b2e5c088 add CVE-2020-0728-Windows Modules Installer Service 信息泄露漏洞 2020-02-16 22:20:14 +08:00
mr-xn
27d2891dad add 小米系列路由器远程命令执行漏洞(CVE-2019-18370,CVE-2019-18371) 2020-02-16 22:16:17 +08:00
mr-xn
cd3ff131a8 add CVE-2020-0683-利用Windows MSI “Installer service”提权 2020-02-12 14:31:19 +08:00
mr-xn
7d41e0595d add Zoomeye Tools-一款利用Zoomeye 获取有关当前网页IP地址的各种信息(需要登录) 2020-02-12 14:25:17 +08:00
mr-xn
65d1cb8df1 add CVE-2020-7471-django1.11-1.11.282.2-2.2.103.0-3.0.3 StringAgg(delimiter)使用了不安全的数据会造成SQL注入漏洞环境和POC 2020-02-12 14:10:01 +08:00
mr-xn
76a4ca3560 Merge branch 'temp' 2020-02-12 14:04:39 +08:00
mr-xn
a81f364fdd add Microsoft SharePoint - Deserialization Remote Code Execution 2020-02-12 13:54:13 +08:00
mr-xn
a3a0ac65a6 add https://twitter.com/7GYS4m1GiwJ8mkC 2020-02-12 13:50:52 +08:00
mr-xn
9543beba4e add OpenSMTPD 6.4.0 < 6.6.1 - Local Privilege Escalation + Remote Code Execution 2020-02-12 13:48:05 +08:00
mr-xn
38e4c232ee add 从 Interfaces.d 到 RCE:Mozilla WebThings IoT 网关漏洞挖掘 2020-02-12 13:44:58 +08:00
mr-xn
cb4cf4c0e3 add WordPress InfiniteWP - Client Authentication Bypass (Metasploit) 2020-02-12 13:42:40 +08:00
mr-xn
03a7d58f28 add D-Link Devices - Unauthenticated Remote Command Execution in ssdpcgi (Metasploit)CVE-2019-20215 2020-02-12 13:40:54 +08:00
mr-xn
7f43d54912 add D-Link Devices - Unauthenticated Remote Command Execution in ssdpcgi (Metasploit)CVE-2019-20215 2020-02-12 13:40:32 +08:00
mr-xn
8896d13f48 update readme.md 2020-02-12 12:52:54 +08:00
mr-xn
1dd450e50a add thinkphp6 session 任意文件创建漏洞复现 含POC.pdf 2020-01-28 21:01:54 +08:00
mr-xn
34dd079ebe add thinkphp6 session 任意文件创建漏洞复现 含POC.pdf 2020-01-28 21:01:13 +08:00
mr-xn
48e84e1338 add phpok 4.7 5.3 5.4getshell 2020-01-27 11:10:56 +08:00
mr-xn
7f8922bffa add Struts2漏洞扫描Golang版 2020-01-19 11:30:58 +08:00
mr-xn
05c7111240 add A script to scan for unsecured Laravel .env files 2020-01-18 19:28:49 +08:00
mr-xn
94d28a648c add Remote Desktop Gateway RCE bugs CVE-2020-0609 & CVE-2020-0610 2020-01-18 19:23:59 +08:00
mr-xn
085907b527 add IP/IP段资产扫描-->扫描开放端口识别运行服务部署网站-->自动化整理扫描结果-->输出可视化报表+整理结果 2020-01-17 20:58:35 +08:00
mr-xn
1b1df7ca3b add ew Weblogic RCE (CVE-2020-2546、CVE-2020-2551) CVE-2020-2546 2020-01-17 20:53:10 +08:00
mr-xn
1489d0a29b add CVE-2020-5398 - RFD(Reflected File Download) Attack for Spring MVC 2020-01-17 20:52:23 +08:00
mr-xn
283da0a380 add huaweihg255目录穿越漏洞检测脚本 2020-01-16 22:54:35 +08:00
mr-xn
5e3a873a38 add CryptoAPI PoC CVE-2020-0601 2020-01-16 22:52:17 +08:00
mr-xn
c8b994417c add CVE-2020-2696 – Local privilege escalation via CDE dtsession 2020-01-16 22:07:10 +08:00
mr-xn
c05efeeb7d add Huawei HG255 Directory Traversal 2020-01-16 22:05:20 +08:00
mr-xn
cddca81ffb add CVE-2020-5509-Car Rental Project 1.0版本中存在远程代码执行漏洞 2020-01-16 21:56:48 +08:00
mr-xn
16633bf06a add GitHacker---比GitHack更好用的git泄露利用工具 2020-01-15 17:59:05 +08:00
mr-xn
2dc828e1b5 add CVE-2020-5504-phpMyAdmin注入(需要登录) 2020-01-15 14:42:53 +08:00
mr-xn
bba0c818cf add CVE - CVE-2020-5504-phpMyAdmin注入(需要登录) 2020-01-15 14:42:14 +08:00
mr-xn
59207373ab add NATBypass,一款lcx在golang下的实现 2020-01-15 11:58:11 +08:00
mr-xn
060d346829 add Mysql Client 任意文件读取攻击链拓展 2020-01-14 22:00:38 +08:00
mr-xn
7734fc5127 add CVE-2019-19781.nse---use Nmap check Citrix ADC Remote Code Execution 2020-01-13 22:14:15 +08:00
mr-xn
1012ab6e6d add 小米系列路由器远程命令执行漏洞(CVE-2019-18370,CVE-2019-18371) 2020-01-13 22:10:56 +08:00
mr-xn
228372cb74 add CVE-2019-19781 2020-01-11 21:15:16 +08:00
mr-xn
4171eb2ad7 add 对密码已保存在 Windwos 系统上的部分程序进行解析,包括:Navicat,TeamViewer,FileZilla,WinSCP,Xmangager系列产品(Xshell,Xftp)。 2020-01-09 15:09:06 +08:00
mr-xn
5d9cf818b0 add apache后门模块 2020-01-09 14:24:31 +08:00
mr-xn
0c57a3a6da add Linxu权限提升一键检测工具 2020-01-09 14:02:24 +08:00