Giter Site home page Giter Site logo

alienwithin / scripts-sploits Goto Github PK

View Code? Open in Web Editor NEW
44.0 4.0 23.0 259 KB

A number of scripts POC's and problems solved as pentests move along.

Python 44.64% Batchfile 1.43% Ruby 24.85% PHP 7.18% PowerShell 6.99% C# 3.46% Shell 11.45%
python exploit ruby directory bruteforcing poc zen builder

scripts-sploits's Introduction

Scripts & Sploits

This repo will contain a collection of scripts that are POC's against various vulnerabilities identified. Currently here in there's:

zen_app_mobile_wp_rfu.py

This exploit caters for 5 CVE's that can be exploited

  • Zen App Mobile Native <=3.0 (CVE-2017-6104)
  • Wordpress Plugin webapp-builder v2.0 (CVE-2017-1002002)
  • Wordpress Plugin wp2android-turn-wp-site-into-android-app v1.1.4 CVE-2017-1002003)
  • Wordpress Plugin mobile-app-builder-by-wappress v1.05 CVE-2017-1002001)
  • Wordpress Plugin mobile-friendly-app-builder-by-easytouch v3.0 (CVE-2017-1002000)

wp_ue_api.py

This exploit enumerates users on wordpress 4.7 via the JSON API (CVE 2017-5487)

membership-simplified-for-oap-members-only-exploit.py

This exploit is a PoC for Wordpress Plugin Membership Simplified v1.58 - Arbitrary File Download and attempts to download the wordpress configuration file or /etc/passwd file from the target system. (CVE-2017-1002008)

mimi_multidump.bat

This is a simple batch script that makes it efficient if you have multiple lsass.dmp files to dump the passwords into text files for each.

MS15-034.py

This vulnerability could allow remote code execution if an attacker sends a specially crafted HTTP request to an affected Windows system. It can be achieved by abusing the Range header against IIS servers.

scripts-sploits's People

Contributors

alienwithin avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.