v9.7.5
版本发布时间: 2024-01-30 16:36:05
projectdiscovery/nuclei-templates最新发布版本:v9.8.5(2024-04-22 19:36:54)
🔥 Release Highlights 🔥
In our latest release, we have added a significant number of trending CVEs and are excited to announce the addition of new local privilege escalation templates. These valuable contributions come from our community, with a notable contribution from @daffainfo, and are available at Local Privilege Escalation Templates. These templates utilize the newly introduced code protocol, enhancing their capability to detect vulnerabilities more effectively.
It's important to note that these templates are specifically designed for local execution to identify privilege escalation vulnerabilities. For security reasons, they are not executed as part of the default Nuclei scan. We ensure the security and authenticity of these templates by signing them officially. To run these templates, users need to provide the -code
flag along with -itags local
. These additions are particularly useful for penetration testing and red-teaming focusing on privilege escalation, and we plan to further expand their coverage in future updates. Following are the other highlights of this release:
- javascript/cves/2024/CVE-2024-23897.yaml by @iamnoooob,@rootxharsh,@pdresearch 🔥
- http/cves/2024/CVE-2024-0204.yaml by @DhiyaneshDK 🔥
- http/cves/2023/CVE-2023-47211.yaml by @gy741 🔥
- http/cves/2023/CVE-2023-22527.yaml by @iamnooob,@rootxharsh,@pdresearch 🔥
- http/cves/2023/CVE-2023-6875.yaml by @iamnoooob,@rootxharsh,@pdresearch 🔥
- http/cves/2019/CVE-2019-16469.yaml by @DomenicoVeneziano 🔥
What's Changed
New Templates Added: 106
| CVEs Added: 14
| First-time contributions: 14
- javascript/cves/2024/CVE-2024-23897.yaml by @iamnoooob,@rootxharsh,@pdresearch 🔥
- http/cves/2024/CVE-2024-0204.yaml by @DhiyaneshDK 🔥
- http/cves/2023/CVE-2023-48023.yaml by @cookiehanhoan,@harryha
- http/cves/2023/CVE-2023-47643.yaml by @isacaya
- http/cves/2023/CVE-2023-47211.yaml by @gy741 🔥
- http/cves/2023/CVE-2023-44352.yaml by @pwnwithlove
- http/cves/2023/CVE-2023-27640.yaml by @MaStErChO
- http/cves/2023/CVE-2023-27639.yaml by @MaStErChO
- http/cves/2023/CVE-2023-22527.yaml by @iamnooob,@rootxharsh,@pdresearch 🔥
- http/cves/2023/CVE-2023-6977.yaml by @gy741
- http/cves/2023/CVE-2023-6875.yaml by @iamnoooob,@rootxharsh,@pdresearch 🔥
- http/cves/2023/CVE-2023-6023.yaml by @m0ck3d,@cookiehanhoan
- http/cves/2019/CVE-2019-16469.yaml by @DomenicoVeneziano 🔥
- http/cves/2018/CVE-2018-10942.yaml by @MaStErChO
- http/vulnerabilities/apache/apache-nifi-rce.yaml by @arliya
- http/vulnerabilities/juniper/junos-xss.yaml by @DhiyaneshDK
- http/vulnerabilities/prestashop/prestashop-blocktestimonial-file-upload.yaml by @MaStErChO
- http/vulnerabilities/vbulletin/vbulletin-backdoor.yaml by @MaStErCho
- code/privilege-escalation/linux/binary/privesc-aa-exec.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-ash.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-awk.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-bash.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-cdist.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-choom.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-cpulimit.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-csh.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-csvtool.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-dash.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-dc.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-distcc.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-elvish.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-enscript.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-env.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-expect.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-find.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-fish.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-flock.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-gawk.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-grc.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-ionice.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-julia.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-lftp.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-ltrace.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-lua.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-mawk.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-multitime.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-mysql.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-nawk.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-nice.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-node.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-nsenter.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-perl.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-pexec.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-php.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-posh.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-python.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-rake.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-rc.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-rlwrap.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-rpm.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-rpmdb.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-rpmverify.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-ruby.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-run-parts.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-sash.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-slsh.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-socat.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-softlimit.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-sqlite3.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-ssh-agent.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-sshpass.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-stdbuf.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-strace.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-tar.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-tcsh.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-time.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-timeout.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-tmate.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-torify.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-torsocks.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-unshare.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-vi.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-view.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-vim.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-xargs.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-xdg-user-dir.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-yash.yaml by @daffainfo
- code/privilege-escalation/linux/binary/privesc-zsh.yaml by @daffainfo
- code/privilege-escalation/linux/rw-shadow.yaml by @daffainfo
- code/privilege-escalation/linux/rw-sudoers.yaml by @daffainfo
- code/privilege-escalation/linux/sudo-nopasswd.yaml by @daffainfo
- code/privilege-escalation/linux/writable-etc-passwd.yaml by @daffainfo
- http/default-logins/node-red/nodered-default-login.yaml by @savik
- http/default-logins/powershell/powershell-default-login.yaml by @ap3r
- http/exposed-panels/autoset-detect.yaml by @MaStErCho
- http/exposed-panels/compalex-panel-detect.yaml by @MaStErCho
- http/exposed-panels/doris-panel.yaml by @ritikchaddha
- http/exposed-panels/lomnido-panel.yaml by @righettod
- http/exposures/configs/vbulletin-path-disclosure.yaml by @MaStErChO
- http/exposures/logs/go-pprof-debug.yaml by @w8ay
- http/miscellaneous/defacement-detect.yaml by @ricardomaia
- http/misconfiguration/doris-dashboard.yaml by @ritikchaddha
- http/misconfiguration/springboot/springboot-integrationgraph.yaml by @ELSFA7110
- http/misconfiguration/springboot/springboot-startup.yaml by @ELSFA7110
- http/technologies/tibco-businessconnect-detect.yaml by @righettod
- dns/dns-rebinding.yaml by @ricardomaia
New Contributors
- @PhillipoTF2 made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8965
- @sea-god made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/7042
- @jmoraissec made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8966
- @hieuha made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8978
- @shivamsaraswat made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8919
- @dkasak made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8974
- @boy-hack made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8906
- @ryanborum made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/9000
- @Rinolock72 made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/9002
- @NxtTAB made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8992
- @monitor403 made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/9031
- @DomenicoVeneziano made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/9032
- @isacaya made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/9033
- @pwnwithlove made their first contribution in https://github.com/projectdiscovery/nuclei-templates/pull/8933
Full Changelog: https://github.com/projectdiscovery/nuclei-templates/compare/v9.7.4...v9.7.5