Tool for helping in the exploitation of path traversal vulnerabilities in Java web applications
☆32Nov 4, 2022Updated 3 years ago
Alternatives and similar repositories for web-inf-path-trav
Users that are interested in web-inf-path-trav are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- JSBerg is a fast and efficient URL scraper that extracts links, JavaScript files, CSS files, images, and inline URLs from a list of websi…☆23Mar 19, 2025Updated last year
- Just simple log4j scanner☆12Dec 13, 2021Updated 4 years ago
- Apache APISIX Remote Code Execution (CVE-2022-24112) proof of concept exploit☆14Mar 16, 2022Updated 4 years ago
- Exploit for Symfony CVE-2024-50340 (forked eos)☆29Nov 22, 2024Updated last year
- ☆21Feb 10, 2026Updated last month
- Burp extension to increment a parameter in each active scan request☆12Jul 16, 2025Updated 8 months ago
- ☆26Mar 11, 2025Updated last year
- Host Header Vulnerability Scanner Automated Tool☆28Apr 18, 2025Updated 11 months ago
- Burp Suite Extensions☆12Oct 19, 2021Updated 4 years ago
- Proof of concept exploit for Ivanti EPM CVE-2024-13159 and others☆13Feb 19, 2025Updated last year
- Prototype Pollution exploits collection☆37Aug 8, 2021Updated 4 years ago
- POC for CVE-2022-21907: HTTP Protocol Stack Remote Code Execution Vulnerability.☆17Jun 18, 2025Updated 9 months ago
- my nuclei templates #new☆10Jun 24, 2024Updated last year
- A script written in python3 to spread blind cross-site scripting payloads on HTTP requests headers☆10Oct 2, 2022Updated 3 years ago
- Many yaml scanner plugin parser [nuclei-template, xray-poc, ez-poc] - for Python☆13Mar 27, 2022Updated 3 years ago
- The Dependency Confusion vulnerability scanner and autoexploitation tool to help identifying and mitigating supply chain attacks☆37Feb 20, 2024Updated 2 years ago
- NetScan CLI is a command-line tool for retrieving and analyzing IP address information. It provides detailed subnet and organization data…☆62Sep 4, 2024Updated last year
- IIS shortname scanner + bruteforce☆56Feb 18, 2024Updated 2 years ago
- ☆15Mar 21, 2025Updated last year
- CVE-2021-41773 | CVE-2021-42013 Exploit Tool (Apache/2.4.49-2.4.50)☆10Apr 8, 2022Updated 3 years ago
- Welcome to the 403 and 401 Bypass Techniques and Bug Bounty Tips repository! This repo is a collection of methods and strategies to bypas…☆19Dec 26, 2024Updated last year
- Searcher for cross-site leaks (XS-Leaks)☆81Dec 27, 2022Updated 3 years ago
- A tool to guess the rest of the shortnames provided by vulnerable IIS instances.☆41Aug 12, 2023Updated 2 years ago
- A collection of my Semgrep rules☆51Jul 4, 2023Updated 2 years ago
- CVE-2022-1292 OpenSSL c_rehash Vulnerability - POC☆28Jul 20, 2022Updated 3 years ago
- ☆16Nov 27, 2022Updated 3 years ago
- Dig through the Wayback Machine and find sensitive or forgotten files exposed by web servers over time.☆27Mar 27, 2025Updated 11 months ago
- Shodan Favicon Hash Generator By Aziz Hakim @eternyle☆26May 25, 2024Updated last year
- Apache Superset Auth Bypass (CVE-2023-27524)☆11May 9, 2023Updated 2 years ago
- Exploit code for Jira Mobile Rest Plugin SSRF (CVE-2022-26135)☆89Jul 5, 2022Updated 3 years ago
- ☆105Jan 3, 2023Updated 3 years ago
- A burp extension, check Sturts2 RCE through passive scan.一款检测Struts2 RCE漏洞的burp被动扫描插件~☆15Dec 9, 2020Updated 5 years ago
- Looks for parameters in urls☆34Oct 14, 2024Updated last year
- CVE-2022-3910☆12Mar 14, 2023Updated 3 years ago
- ☆14Jun 26, 2025Updated 8 months ago
- Useful scripts for tampermonkey that I used during bug hunting. Will be updated "au fil de l'eau"☆17Jun 2, 2025Updated 9 months ago
- anveshan is a completed script that helps to automate your recon process, It finds subdomains, urls, js files, parameters, screenshots, a…☆30Oct 29, 2024Updated last year
- Detects attempts and successful exploitation of CVE-2022-26809☆33Sep 16, 2024Updated last year
- CVE-2022-21660☆28Jan 10, 2022Updated 4 years ago