Skip to content

Instantly share code, notes, and snippets.

View enferas's full-sized avatar

Feras Al-Kassar enferas

  • Jean Monnet University
  • Saint-Etienne, France
View GitHub Profile
@enferas
enferas / CVE-2022-36747.md
Last active September 22, 2022 13:17
XSS vulnerability in Razor
@enferas
enferas / CVE-2022-34026.md
Created September 22, 2022 13:54
directory traversal in ICEcoder
@enferas
enferas / XSS_Cacti.md
Last active September 22, 2022 14:18
XSS vulnerability in Cacti
@enferas
enferas / header_injection_phpipam.md
Created September 22, 2022 13:34
Header injection (SSRF) vulnerability in phpipam

Header injection vulnerability in phpipam https://github.com/phpipam/phpipam version v1.5.0

The path of the vulnerability:

<?php
//In file https://github.com/phpipam/phpipam/blob/master/app/admin/subnets/ripe-query.php
//line 21
// the source is $_POST[‘subnet’]
$res = $Subnets->resolve_ripe_arin ($_POST['subnet']);
@enferas
enferas / XSS_pfesense.md
Created October 2, 2022 10:46
XSS in pfsense v2.5.2
@enferas
enferas / CVE-2018-20962.md
Created December 12, 2022 10:51
Old report CVE-2018-20962
@enferas
enferas / CVE-2019-15489.md
Created December 12, 2022 10:55
old report CVE-2019-15489

Link: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-15489

<input type="text" name="q" class="form-control" placeholder="Search..." value="{!! request()->input('q') !!}">

The sanitization

<input type="text" name="q" class="form-control" placeholder="Search..." value="{{ request()->input('q') }}">
@enferas
enferas / CVE-2021-27371.md
Created December 12, 2022 11:18
old reported CVE-2021-27371
@enferas
enferas / XSS_in_mapos.md
Created December 25, 2022 22:28
XSS_in_mapos

Link: https://github.com/RamonSilva20/mapos

Multiple XSS vulnerabilities.

For example,

'telefone' is saved in the DB, then it is retrieved and printed in the view.

In file mapos-master\application\controllers\Clientes.php

@enferas
enferas / CVE-2022-40704.md
Created December 30, 2022 15:06
XSS in phoronix-test-suite