Skip to content
View sahiloj's full-sized avatar
πŸ‘¨β€πŸ’»
Focusing
πŸ‘¨β€πŸ’»
Focusing

Highlights

  • Pro

Block or report sahiloj

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Maximum 250 characters. Please don't include any personal information such as legal names or email addresses. Markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
sahiloj/README.md

Hi πŸ‘‹, I'm Sahil Ojha

A passionate Offensive Security Researcher and Application Penetration Tester.

Coding

sahiloj

  • πŸ”­ I’m currently working on Application, Network Infrastructures and Cloud Security

  • πŸ“ I sometime write blogs on https://sahilojha.com.np

  • πŸ“œ Go through my 18 published CVEs

  • πŸ’¬ Ask me about Cybersecurity, Penetration Testing, Red Teaming, Security Solutions Engineering and Bug Bounty Hunting.

  • πŸ“« How to reach me : Twitter- @SahilOj

  • ⚑ Fun fact 🏍 Moto Ride

Connect with me:

sahiloj sahilojha sahil_oj @sahiloj

Languages and Tools:

azure aws gcp bash docker kubernetes css3 git html5 java javascript linux mysql php postman python arduino

sahiloj

Β sahiloj

sahiloj

Pinned Loading

  1. CVE-2023-34839 CVE-2023-34839 Public

    CVE-2023-34839 | Issabel PBX v.4.0.0-6 | CSRF vulnerability allows privilege gain via custom exploit to create users.

    HTML 5 3

  2. CVE-2023-31703 CVE-2023-31703 Public

    CVE-2023-31703 | eScan Management Console 14.0.1400.2281 | XSS in "Edit User" form via the `from` parameter in the URL.

    3 2

  3. CVE-2023-31702 CVE-2023-31702 Public

    CVE-2023-31702 | eScan Management Console 14.0.1400.2281 | Authenticated SQL injection in the "View User Profile" allows attackers to dump the database and gain command shell access on the server v…

    2 1

  4. CVE-2023-37599 CVE-2023-37599 Public

    CVE-2023-37599 | Issabel PBX v.4.0.0-6 | Directory listing vulnerability exposing sensitive application files.

    2 1