cnotin / RazorVulnerableAppLinks
DO NOT USE: this is a vulnerable ASP.NET web app using Razor templating engine. The vulnerability is a Server-Side Template Injection (SSTI). For training and testing purposes.
☆28Updated 4 years ago
Alternatives and similar repositories for RazorVulnerableApp
Users that are interested in RazorVulnerableApp are comparing it to the libraries listed below
Sorting:
- #BugBounty #BugBounty Tools #WebDeveloper Tool☆37Updated last month
- A Proof of concept for CVE-2021-27850 affecting Apache Tapestry and leading to unauthencticated remote code execution.☆5Updated 2 years ago
- 该脚本为Citrix XenMobile 目录遍历漏洞(CVE-2020-8209)批量检测脚本。☆31Updated 4 years ago
- A burp-suite plugin that extract all parameter names from in-scope requests☆29Updated 3 years ago
- Burp extension to filter JSON on the fly with JQ queries in the HTTP message viewer.☆47Updated 4 years ago
- Tool is to check for Cache Deception Attack Both For Authenticated and UnAuthenticated Pages☆44Updated 3 years ago
- Same Origin XSS challenge☆61Updated 3 years ago
- Burp Bounty profiles☆83Updated 3 years ago
- Gopher Tomcat Deployer☆48Updated 6 years ago
- ☆36Updated 5 months ago
- YSOSERIAL Integration with burp suite☆41Updated 3 years ago
- A Web-UI for subdomain enumeration (subfinder)☆54Updated 5 years ago
- A Burp extension to show the Collaborator client in a tab☆24Updated 2 years ago
- A Burp Suite extension which augments your proxy traffic by injecting log4shell payloads into headers☆42Updated 3 years ago
- ☆33Updated 3 years ago
- Some PoC (Proof-of-Concept) about vulnerability of java deserialization of untrusted data☆26Updated 3 years ago
- CVE-2020-9484 Mass Scanner, Scan a list of urls for Apache Tomcat deserialization (CVE-2020-9484) which could lead to RCE☆32Updated 5 years ago
- Broken Link Hijacking Burp Extension☆57Updated 5 years ago
- S2-061 CVE-2020-17530☆29Updated 4 years ago
- Directory transversal to remote code execution☆69Updated 5 years ago
- JSON Beautifier for Burp written in Java☆39Updated 5 years ago
- The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.☆76Updated 4 years ago
- ☆27Updated 3 years ago
- ☆46Updated 4 years ago
- CVE-2020-35728 & Jackson-databind RCE☆43Updated 4 years ago
- Tool to try multiple paths for PHPunit RCE CVE-2017-9841☆26Updated 3 years ago
- ExtractSubdomainFromFDNS, updating☆33Updated 5 years ago
- Some payloads of JNDI Injection in JDK 1.8.0_191+☆10Updated 5 years ago
- CVE-2020-5410 Spring Cloud Config directory traversal vulnerability☆31Updated 5 years ago
- Looking for JAR files that are vulnerable to Log4j RCE (CVE‐2021‐44228)?☆45Updated 3 years ago