Skip to content

Commit

Permalink
TemplateMan Update [Tue Nov 7 07:20:43 UTC 2023] :robot:
Browse files Browse the repository at this point in the history
  • Loading branch information
actions-user committed Nov 7, 2023
1 parent 5c51d43 commit b9a98fc
Show file tree
Hide file tree
Showing 15 changed files with 18 additions and 18 deletions.
2 changes: 1 addition & 1 deletion http/cves/2017/CVE-2017-7925.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ info:
cvss-metrics: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
cve-id: CVE-2017-7925
cwe-id: CWE-522,CWE-260
cwe-id: CWE-260,CWE-522
epss-score: 0.35031
epss-percentile: 0.9665
cpe: cpe:2.3:o:dahuasecurity:dh-ipc-hdbw23a0rn-zs_firmware:-:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2018/CVE-2018-0296.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
cvss-score: 7.5
cve-id: CVE-2018-0296
cwe-id: CWE-20,CWE-22
cwe-id: CWE-22,CWE-20
epss-score: 0.97359
epss-percentile: 0.99865
cpe: cpe:2.3:a:cisco:adaptive_security_appliance_software:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2019/CVE-2019-3929.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
cve-id: CVE-2019-3929
cwe-id: CWE-79,CWE-78
cwe-id: CWE-78,CWE-79
epss-score: 0.97419
epss-percentile: 0.99908
cpe: cpe:2.3:o:crestron:am-100_firmware:1.6.0.2:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2020/CVE-2020-8193.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
cvss-score: 6.5
cve-id: CVE-2020-8193
cwe-id: CWE-284,CWE-287
cwe-id: CWE-287,CWE-284
epss-score: 0.93748
epss-percentile: 0.98861
cpe: cpe:2.3:o:citrix:application_delivery_controller_firmware:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2021/CVE-2021-1472.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
cve-id: CVE-2021-1472
cwe-id: CWE-287,CWE-119
cwe-id: CWE-119,CWE-287
epss-score: 0.97318
epss-percentile: 0.99841
cpe: cpe:2.3:o:cisco:rv160_firmware:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2021/CVE-2021-21345.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
cvss-score: 9.9
cve-id: CVE-2021-21345
cwe-id: CWE-502,CWE-78
cwe-id: CWE-78,CWE-502
epss-score: 0.37552
epss-percentile: 0.96773
cpe: cpe:2.3:a:xstream_project:xstream:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2021/CVE-2021-34621.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -16,7 +16,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
cve-id: CVE-2021-34621
cwe-id: CWE-306,CWE-269
cwe-id: CWE-269,CWE-306
epss-score: 0.7888
epss-percentile: 0.97929
cpe: cpe:2.3:a:properfraction:profilepress:*:*:*:*:*:wordpress:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2021/CVE-2021-39144.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
cvss-score: 8.5
cve-id: CVE-2021-39144
cwe-id: CWE-502,CWE-306
cwe-id: CWE-306,CWE-502
epss-score: 0.96508
epss-percentile: 0.99453
cpe: cpe:2.3:a:xstream_project:xstream:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2022/CVE-2022-0482.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
cvss-score: 9.1
cve-id: CVE-2022-0482
cwe-id: CWE-863,CWE-359
cwe-id: CWE-359,CWE-863
epss-score: 0.06254
epss-percentile: 0.92812
cpe: cpe:2.3:a:easyappointments:easyappointments:*:*:*:*:*:wordpress:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2022/CVE-2022-23544.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -17,7 +17,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
cvss-score: 6.1
cve-id: CVE-2022-23544
cwe-id: CWE-918,CWE-79
cwe-id: CWE-79,CWE-918
epss-score: 0.00059
epss-percentile: 0.23314
cpe: cpe:2.3:a:metersphere:metersphere:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2022/CVE-2022-46169.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
cve-id: CVE-2022-46169
cwe-id: CWE-78,CWE-74
cwe-id: CWE-74,CWE-78
epss-score: 0.96583
epss-percentile: 0.99485
cpe: cpe:2.3:a:cacti:cacti:*:*:*:*:*:*:*:*
Expand Down
2 changes: 1 addition & 1 deletion http/cves/2023/CVE-2023-34124.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -18,7 +18,7 @@ info:
cvss-metrics: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
cvss-score: 9.8
cve-id: CVE-2023-34124
cwe-id: CWE-287,CWE-305
cwe-id: CWE-305,CWE-287
epss-score: 0.01627
epss-percentile: 0.86122
cpe: cpe:2.3:a:sonicwall:analytics:*:*:*:*:*:*:*:*
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -44,4 +44,5 @@ http:
- 'status_code_2 == 200'
- 'contains(body_2, "{{payload}}")'
condition: and
# digest: 4a0a00473045022100b950d772245477a3b9ca9e272b20a63f38c6dc64378b6fa9dace29426cca5450022007f3af02a3422204244432721fbbdd6997a13cea83e2aac2259e960c7aefeb14:922c64590222798bb761d5b6d8e72950

# digest: 4a0a00473045022100b950d772245477a3b9ca9e272b20a63f38c6dc64378b6fa9dace29426cca5450022007f3af02a3422204244432721fbbdd6997a13cea83e2aac2259e960c7aefeb14:922c64590222798bb761d5b6d8e72950
6 changes: 2 additions & 4 deletions http/vulnerabilities/other/metabase-log4j.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -43,23 +43,21 @@ http:
- type: regex
part: interactsh_request
regex:
- '\d{6}\.([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' # Print extracted ${:-{{rand1}}}${:-{{rand2}}}.${hostName} in output


extractors:
- type: kval
kval:
- interactsh_ip # Print remote interaction IP in output


- type: regex
group: 2
regex:
- '\d{6}\.([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' # Print injection point in output
part: interactsh_request

- type: regex
group: 1
regex:
- '\d{6}\.([a-zA-Z0-9\.\-]+)\.([a-z0-9]+)\.([a-z0-9]+)\.([a-z0-9]+)\.\w+' # Print extracted ${:-{{rand1}}}${:-{{rand2}}}.${hostName} in output
part: interactsh_request

# digest: 490a00463044022069d41d35a4b8d057e5cd95eb255e94f2df8b3fdeb26f901e821fbe7bdd097b1f0220356c88a5e90ddfd1e00fc7973c4d2bdf2fcc98a5f66169596bbd41323c20b8d4:922c64590222798bb761d5b6d8e72950
3 changes: 2 additions & 1 deletion ssl/c2/quasar-rat-c2.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -26,4 +26,5 @@ ssl:
- type: json
json:
- " .issuer_cn"
# digest: 4a0a0047304502210089c3b7edfbbd1e6f13c79ed724e93ae0db447239b79bb2be0496828c5b7d2e2a022069d9ff039f32ebf74f17f2a6efe0a56b6704a80540b1b1d93bf359b0fc28b2f1:922c64590222798bb761d5b6d8e72950

# digest: 4a0a0047304502210089c3b7edfbbd1e6f13c79ed724e93ae0db447239b79bb2be0496828c5b7d2e2a022069d9ff039f32ebf74f17f2a6efe0a56b6704a80540b1b1d93bf359b0fc28b2f1:922c64590222798bb761d5b6d8e72950

0 comments on commit b9a98fc

Please sign in to comment.