aurainfosec / xss_payloads
XSS payloads for edge cases
☆34Updated 6 years ago
Alternatives and similar repositories for xss_payloads:
Users that are interested in xss_payloads are comparing it to the libraries listed below
- ☆34Updated 5 years ago
- This is a filter bypass exploit that results in arbitrary file upload and remote code execution in class.upload.php <= 2.0.4☆36Updated 5 years ago
- All about CVE-2018-14667; From what it is to how to successfully exploit it.☆50Updated 6 years ago
- ☆63Updated 5 years ago
- ☆32Updated 4 years ago
- CVE-2019-10392 RCE Jackson with Git Client Plugin 2.8.2 (Authenticated)☆20Updated 5 years ago
- CORS checking☆34Updated 6 years ago
- CVE-2020-10199 CVE-2020-10204 Python POC☆19Updated 5 years ago
- Proof of concept written in Python to show that in some situations a SSRF vulnerability can be used to steal NTLMv1/v2 hashes.☆57Updated 7 years ago
- A proof of concept that demonstrates asynchronous scanning for Java deserialization bugs☆54Updated 8 years ago
- CVE-2018-19276 - OpenMRS Insecure Object Deserialization RCE☆16Updated 6 years ago
- Jira未授权SSRF漏洞☆31Updated 5 years ago
- New Found 0-days!☆36Updated 5 years ago
- Another plugin for CRLF vulnerability detection☆26Updated 8 years ago
- sploit☆68Updated 5 years ago
- Learn how to get a reverse shell from JIRA application server☆24Updated 6 years ago
- RCE in NPM VSCode Extension☆20Updated 4 years ago
- CVE-2019-9580 - StackStorm: exploiting CORS misconfiguration (null origin) to gain RCE☆32Updated 6 years ago
- ☆24Updated 5 years ago
- PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM☆52Updated 7 years ago
- cve-2019-0604 SharePoint RCE exploit☆40Updated 5 years ago
- A fast generative fuzzer for HTTP☆17Updated 6 years ago
- ☆35Updated 2 years ago
- CVE-2017-10271 WEBLOGIC RCE (TESTED)☆38Updated 7 years ago
- CVE-2017-10366: Oracle PeopleSoft 8.54, 8.55, 8.56 Java deserialization exploit☆25Updated 6 years ago
- Some of my public exploits☆51Updated 4 years ago
- X41 BeanStack - Stack Trace Fingerprinting BETA☆52Updated 4 years ago
- CVE-2018-6574 POC : golang 'go get' remote command execution during source code build☆24Updated 3 years ago
- Proof of concept showing how java byte code can be injected through InitialContext.lookup() calls☆42Updated 9 years ago
- Study about HQL injection exploitation.☆51Updated 8 years ago