Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (Pipeline: Declarative)
-
Updated
Apr 1, 2019 - JavaScript
The Common Vulnerabilities and Exposures (CVE) system provides a reference-method for publicly known information-security vulnerabilities and exposures. The United States’ National Cybersecurity FFRDC, operated by The Mitre Corporation, maintains the system, with funding from the US National Cyber Security Division of the US Department of Homeland Security
Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (Pipeline: Declarative)
Vulnogram is the tool for reserving, managing, and publishing CVEs. Get started at vulnogram.org or deploy Docker edition for full enterprise features.
Collection of penetration test reports and pentest report templates. Published by the the best security companies in the world.
a globally-accessible knowledge base of adversary tactics and techniques based on real-world observations on decentralized finance
💎 RapidFort hardened secure images
CVE 2021-21315 PoC
Zed Attack Proxy Scripts for finding CVEs and Secrets.
A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.
Development of the NIST vulnerability data ontology (Vulntology).
Security Assessment Data Management and Analysis Tool
A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC
Build a CVE library with aggregated CISA, EPSS and CVSS data
CVE-2023-52251 There is a Remote Code Execution vulnerability provectus/kafka-ui.
Find vulnerable modules inside packed files (bundles)
Error-based blind SQL injection with bit-shifting approach for Moodle 3.10.4