pedrohavay / exploit-grafana-CVE-2021-43798
This is a proof-of-concept exploit for Grafana's Unauthorized Arbitrary File Read Vulnerability (CVE-2021-43798).
☆40Updated 3 years ago
Alternatives and similar repositories for exploit-grafana-CVE-2021-43798:
Users that are interested in exploit-grafana-CVE-2021-43798 are comparing it to the libraries listed below
- This tool is designed to test for file upload and XXE vulnerabilities by poisoning XLSX files.☆75Updated last year
- PoC for XSS in org.webjars:swagger-ui [3.14.2, 3.36.2]☆52Updated 2 years ago
- Mine URLs from Browser's Heap Snapshot for fun and profit☆64Updated last year
- BChecks collection for Burp Suite Professional☆96Updated 10 months ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆119Updated last year
- swagroutes is a command-line tool that extracts and lists API routes from Swagger files in YAML or JSON format.☆58Updated 2 years ago
- This tool tries to find interesting stuff inside static files; mainly JavaScript and JSON files.☆62Updated last year
- Find subdomains on GitLab.☆97Updated 11 months ago
- Nuclei Templates - Here you will find the templates I use while hunting☆117Updated 3 years ago
- A demo PHP application used to exercise SQL injection techniques in a safe, local Docker environment☆44Updated 10 months ago
- Burp extension to check and exploit the IIS Tilde Enumeration/IIS 8.3 Short Filename Disclosure vulnerability☆59Updated last year
- ☆87Updated 3 years ago
- 🔭 Collection of regexp pattern for security passive scanning☆115Updated 2 years ago
- A path-normalization pentesting tool.☆126Updated last year
- Web cache poisoning vulnerability scanner.☆65Updated 2 years ago
- Extract JavaScript files from burp suite project with ease.☆88Updated 3 years ago
- A chrome/Firefox extension to retrieve and load react javascript chunks all at once for a wide range of javascript techs☆64Updated last month
- Create your own recon & vulnerability scanner with Trickest and GitHub☆49Updated last year
- CSPT is an open-source Burp Suite extension to find and exploit Client-Side Path Traversal.☆136Updated 9 months ago
- ☆39Updated last year
- ☆78Updated 2 years ago
- unleashed ffuf☆111Updated 9 months ago
- ☆46Updated 2 years ago
- Golang tool which helps dropping the irrelevant entries from your ffuf result file.☆135Updated 7 months ago
- ☆158Updated last year
- Modified Nuclei Templates Version to FUZZ Host Header☆49Updated 3 years ago
- BBSSRF - Bug Bounty SSRF is a powerful tool to check SSRF OOB connection☆38Updated 2 years ago
- Scans remote JavaScript files with Trufflehog + Semgrep to detect leaked secrets☆56Updated 3 months ago
- Wordlist to bruteforce for LFI☆123Updated 5 years ago
- CVE Collection of jQuery UI XSS Payloads☆120Updated 2 years ago