capture0x / SSTI-FINDER
This tool is designed to detect and identify Server-Side Template Injection (SSTI) vulnerabilities in web applications
☆9Updated 10 months ago
Related projects ⓘ
Alternatives and complementary repositories for SSTI-FINDER
- Exploit for the unauthenticated file upload vulnerability in WordPress's Royal Elementor Addons and Templates plugin (< 1.3.79). CVE-ID: …☆9Updated last year
- ☆13Updated last year
- A server side template injection vulnerability in CrushFTP in all versions before 10.7.1 and 11.1.0 on all platforms allows unauthenticat…☆11Updated 6 months ago
- This repository contains random Nuclei templates I've created. Most of them based on recent security issues and exploits.☆14Updated 6 months ago
- PoC for Exploiting CVE-2024-31848/49/50/51 - File Path Traversal☆14Updated 6 months ago
- Find CVEs that don't have a Detectify modules.☆21Updated last year
- ☆12Updated last year
- hacking tools☆14Updated last year
- NetFuzzer is a comprehensive network security assessment tool for internal and external networks, including Firewalls, Routers, Switches,…☆13Updated 4 months ago
- ☆16Updated last year
- POC for CVE-2024-40348. Will attempt to read /etc/passwd from target☆27Updated 4 months ago
- CVE-2023-38389 < Wordpress < JupiterX Core < Unauthenticated Account Takeover☆27Updated 3 months ago
- ☆14Updated last year
- F5 BIG-IP Scanner scans for servers on shodan and checks to see if they are vulnerable.☆17Updated last year
- [CVE-2024-4956] Nexus Repository Manager 3 Unauthenticated Path Traversal Bulk Scanner☆14Updated last month
- Automatic Mass Tool for check and exploiting vulnerability in CVE-2023-3076 - MStore API < 3.9.9 - Unauthenticated Privilege Escalation (…☆19Updated last year
- H&E- Burp Highlighter and Extractor☆18Updated last year
- Find subdomains by searching public certificate records☆14Updated 5 months ago
- A BurpSuite extension for vulnerability Scanning☆25Updated 9 months ago
- A simple utility to fetch freshly updated DNS resolvers☆18Updated 9 months ago
- Nuclei template for CVE-2024-23897 (Jenkins LFI Vulnerability)☆19Updated 9 months ago
- Quick tool to create custom wordlists like how fuzzers work☆11Updated last year
- 「📖」Tool created to extract metadata from a domain☆13Updated 2 years ago
- Simple recon tool automates your recon process☆16Updated last year
- CVE-2023-6063 (WP Fastest Cache < 1.2.2 - UnAuth SQL Injection)☆30Updated last year
- This tool allows you to find ssti vulnerability with ease!☆19Updated 2 years ago
- Burp extension to track your current IP address. Extension focused for red teams where the attacker needs to log all used IP addresses.☆24Updated last year
- Template Nuclei SSTI☆29Updated last year