
git-scan
This tool is designed to scan and identify whether a website has an exposed ".git" directory, which may contain sensitive information such as source…

This tool is designed to scan and identify whether a website has an exposed ".git" directory, which may contain sensitive information such as source…

The dashboard gadgets preference resource of the Atlassian gadgets plugin used in Jira Server and Jira Data Center before version 8.13.5, and from…

A critical access control vulnerability in locally deployed Pro-Bit application in versions less than v1.77.4 allows unauthenticated attackers to…

CasaOS expose multiple unauthenticated API endpoints that allow remote disclosure of sensitive configuration files and system debug information

It is possible to view the MD5 hash of the admin password and other attributes without authentication, even after initial setup and password change.…

SKYWORTH GN542VF Hardware Version 2.0 and Software Version 2.0.0.16 does not set the Secure flag for the session cookie in an HTTPS session

Nginxpwner is a simple tool to look for common Nginx misconfigurations and vulnerabilities.

🔪 :octocat: Leak git repositories from misconfigured websites

Multithreaded Plugin based vulnerability scanner for mass detection of web-based applications vulnerabilities

Fingerprints servers, finds exploits, scans WebDAV. May or may not also make coffee.

ActionScript Proof of Concept to perform cross-domain reads

Service-Now Article Bruteforcer

TEM FLEX-1080/FLEX-1085 1.6.0 log log.cgi Information Disclosure


Privilege Escalation in Teachers Record Management System using CodeIgnitor

CVE-2020-25747


BeHat Configuration file leaking