jheysel-r7
87af327507
Merge branch 'master' into wp_ultimate_member_sorting_sqli
2024-10-29 16:34:10 -04:00
bcoles
e50767bb6f
data/wordlists: Add default passwords for common single-board computers
2024-10-19 00:49:14 +11:00
Chocapikk
668424a444
Add unauth SQLi exploit module for Ultimate Member plugin (CVE-2024-1071)
2024-10-14 18:14:10 +02:00
Chocapikk
8553f625a4
Add auxiliary/scanner/http/wp_fastest_cache_sqli
2024-10-14 18:03:46 +02:00
Chocapikk
bc7840ea7f
Add wp_givewp_rce exploit module
2024-08-27 19:50:35 +02:00
Chocapikk
bea708d24c
Add exploit module for CVE-2024-5084: WordPress Hash Form Plugin RCE
2024-05-28 18:27:02 +02:00
Jack Heysel
abb2eb7ffd
Land #18891 , Add RCE module for wp bricks builder
...
This PR adds the wp_bricks_builder_rce exploit module that targets a
known vulnerability in the WordPress Bricks Builder Theme, versions
prior to 1.9.6.
2024-03-26 14:46:35 -07:00
Balgogan
f04b66d6dd
Add wp_bricks_builder_rce
2024-02-26 22:09:38 +01:00
randomstr1ng
564c3f8e02
merge sap_icm_paths.txt with seclists sap.txt wordlist and add paths related to potential information leak
2024-02-15 16:03:31 +01:00
Jack Heysel
c895364675
Initial commit, files created
2023-12-18 19:26:14 -05:00
Balgogan
65ea1188e2
Add suggested changes
2023-11-23 18:22:36 +01:00
h00die
94657d317b
another round of review comments
2023-09-11 14:29:20 -04:00
h00die-gr3y
a3daab88e6
Added documentation and updated exploitable plugins list
2023-07-25 14:06:42 +01:00
h00die
375a315b3d
woocommerce payments auth bypass
2023-07-04 13:05:07 -04:00
Tod Beardsley
de58b96d2a
Add "a good example" of a LastPass password
...
When setting a new master password, LastPass helpfully suggests "r50$K28vaIFiYxaY" as a good example.
Sure, sounds good to me.
2023-03-07 13:32:50 -06:00
h00die
1888264d4d
wordpress paid membership pro
2023-01-14 08:34:10 -05:00
Grant Willcox
1fec75621c
Fix up documentation from review
2022-12-05 14:04:22 -06:00
h00die
4c958546b5
update wordpress plugins and themes lists
2022-11-11 10:37:26 -05:00
adfoster-r7
6a682f4fe6
Land #16982 , Update Dell iDRAC login scanner to work with v8 and v9
2022-10-14 01:40:35 +01:00
h00die
c6e18ee469
cve-2022-1329
2022-10-02 15:59:58 -04:00
h00die
0bcdc3fadb
idrac login updates
2022-09-20 16:20:24 -04:00
space-r7
7a9d30e5b1
Land #16227 , add wp masterstudy privesc module
2022-03-07 10:58:23 -06:00
space-r7
0d10409d67
Land #16131 , add modern events calendar sqli
2022-02-28 12:27:45 -06:00
h00die
9799d87ec9
update exploitable plugins
2022-02-25 17:00:34 -05:00
h00die
864ce9471f
wp_secure_copy sqli
2022-02-13 15:04:17 -05:00
h00die
5f45e40192
update wp-exploitable-plugins
2022-02-03 17:37:27 -05:00
h00die
4e0fc5a4e5
Wordpress Plugin Catch Themes Demo Import cve-2021-39352
2021-12-21 20:04:09 -05:00
bwatters
6727c1b344
Land #15954 , Add Grafana file read (CVE-2021-43798)
...
Merge branch 'land-15954' into upstream-master
2021-12-20 09:54:15 -06:00
bwatters
2705d6ae94
Land #15948 , Wordpress wp_popular_posts rce
...
Merge branch 'land-15948' into upstream-master
2021-12-20 09:28:23 -06:00
h00die
cb348f06c4
move grafana plugins out to data
2021-12-19 16:18:05 -05:00
Grant Willcox
304648ea2e
Land #15953 , wps_hide_login module CVE-2021-24917
2021-12-15 17:13:29 -06:00
Cristiano Maruti
0305983be2
Update tomcat_mgr_default_users.txt
2021-12-14 09:25:52 +01:00
Cristiano Maruti
d1fb2a7bde
Update tomcat_mgr_default_pass.txt
2021-12-14 09:25:00 +01:00
h00die
6c10ad460c
wps_hide_login module
2021-12-11 14:25:07 -05:00
Cristiano Maruti
0a4e2b7c90
Update tomcat_mgr_default_pass.txt
2021-12-09 21:21:19 +01:00
Cristiano Maruti
8709b92966
Update tomcat_mgr_default_users.txt
2021-12-09 21:19:39 +01:00
h00die
9d182e0994
update wordpress wordlists
2021-12-08 16:56:28 -05:00
Cristiano Maruti
6c52cc6402
Update tomcat_mgr_default_userpass.txt
2021-12-06 15:33:00 +01:00
Christophe De La Fuente
836422f9ac
Land #15776 , Wordpress automatic plugin aux module
2021-11-05 12:47:27 +01:00
space-r7
0681c8780e
Land #15761 , add pie-register code exec
2021-11-02 09:17:50 -05:00
h00die
46c2d343bd
duplicator add check_plugin line
2021-10-29 17:22:12 -04:00
h00die
165acca028
wp_automatic_plugin
2021-10-17 13:04:38 -04:00
h00die
b29bf9e499
update wp-exploitable-plugins
2021-10-12 18:47:30 -04:00
h00die
f6a024fc74
update wp-exploitable-plugins
2021-10-11 15:27:49 -04:00
h00die
3c82f43644
only scan exploitable wordpress things
2021-09-06 11:56:32 -04:00
h00die
b8d3fda3a6
update wordpress themes and plugins list
2021-08-22 09:07:18 -04:00
h00die
19df33ee78
update wordpress plugins and themes
2021-05-15 09:42:01 -04:00
h00die
60cf48c94b
move cve-2020-29583 to a better file
2021-02-05 17:43:34 -05:00
h00die
c3a58f93ec
cve-2020-29583
2021-01-18 09:52:09 -05:00
h00die
ea4cade5c8
cve-2020-29583
2021-01-18 09:49:53 -05:00