ambionics / magento-exploits
Exploits for Magento 2.3.0 and lower
☆144Updated 6 years ago
Alternatives and similar repositories for magento-exploits:
Users that are interested in magento-exploits are comparing it to the libraries listed below
- Scan a Magento site for information☆443Updated 5 years ago
- Proof of Concept code of the Shoplift code☆39Updated 3 years ago
- A Burp Extension designed to identify argument injection vulnerabilities.☆122Updated 5 years ago
- CVE-2018-13382☆148Updated 5 years ago
- Java serialization brute force attack tool.☆122Updated 7 years ago
- JWT Fuzzer for BurpSuite. Adds an Intruder hook for on-the-fly JWT fuzzing.☆98Updated 5 years ago
- Atlassian JIRA Template injection vulnerability RCE☆93Updated 5 years ago
- An interactive OOB XXE data exfiltration tool☆91Updated 7 years ago
- CVE-2019-19781 - Remote Code Execution on Citrix ADC Netscaler exploit☆155Updated 4 years ago
- An Out-of-Band XXE server for retrieving file contents over FTP.☆180Updated 4 years ago
- POC Exploit for Apache Tomcat 7.0.x CVE-2017-12615 PUT JSP vulnerability.☆111Updated 2 years ago
- ☆73Updated 6 years ago
- XXE Out of Band Server.☆170Updated last year
- A Burp extension to detect and exploit versions of Telerik Web UI vulnerable to CVE-2017-9248.☆98Updated 6 years ago
- HTTPWookiee is an HTTP server and proxy stress tool (respect of RFC, HTTP Smuggling issues, etc). If you run an HTTP server project conta…☆50Updated 7 years ago
- Exploit for Drupal 7 <= 7.57 CVE-2018-7600☆133Updated 6 years ago
- A Burp Extension to test applications for vulnerability to the Web Cache Deception attack☆138Updated 4 years ago
- Magento shoplift exploit is vulnerability which was discovered by CheckPoint team (http://blog.checkpoint.com/2015/04/20/analyzing-magent…☆13Updated 9 years ago
- Proof-of-concept to exploit the flaw in the PHP-GD built-in function, imagecreatefromgif()☆121Updated 9 years ago
- Toolset for detecting reflected xss in websites☆112Updated 6 years ago
- Jsdir is a Burp Suite extension that extracts hidden paths from js files and beautifies it for further reading.☆118Updated 4 years ago
- A lab for playing with NoSQL Injection☆130Updated 4 years ago
- CVE-2017-9506 - SSRF☆189Updated 3 years ago
- A script to extract domain names from Content Security Policy(CSP) headers☆111Updated 5 years ago
- Sample vulnerable code and its exploit code☆189Updated 4 years ago
- PrestaShop (1.6.x <= 1.6.1.23 or 1.7.x <= 1.7.4.4) Back Office Remote Code Execution (CVE-2018-19126)☆40Updated 6 years ago
- This will assist you in the finding of potentially vulnerable PHP code. Each type of grep command is categorized in the type of vulnerabi…☆350Updated last month
- Exploit for the Post-Auth RCE vulnerability in Pulse Secure Connect☆132Updated 3 years ago
- (PoC) Python version of CVE-2019-11043 exploit by neex☆145Updated 5 years ago
- Scan Victim Backup Directories & Backup Files☆178Updated last year