Pushkarup
👋 Greetings! I'm Pushkar , a CSE student with a passion for unraveling the mysteries of code and a keen interest in malware analysis. 🕵️♂️💻
Pinned Repositories
74cms-weixin-sqli
This script is designed to test for SQL injection vulnerabilities in the 74CMS `weixin.php` file. The vulnerability arises due to the lack of customization of the `libxml_disable_entity_loader` function, allowing XML External Entity (XXE) Injection, leading to SQL injection vulnerabilities.
Akamai-WAF-Bypass-Payload
Akamai WAF Bypass Payload Documentation
arcade-php-sqli
Exploitable SQL injection vulnerability in arcade.php script, allowing unauthorized database access.
CVE-2022-29464
A PoC and Exploit for CVE 2022-29464
CVE-2023-20198
A PoC for CVE 2023-20198
CVE-2023-23397
This script exploits CVE-2023-23397, a Zero-Day vulnerability in Microsoft Outlook, allowing the generation of malicious emails for testing and educational purposes.
CVE-2023-23752
Exploit for CVE-2023-23752 (4.0.0 <= Joomla <= 4.2.7).
CVE-2023-5360
The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.
Go-ProxyCheck
Go-sort
Pushkarup's Repositories
Pushkarup/CVE-2023-20198
A PoC for CVE 2023-20198
Pushkarup/CVE-2023-5360
The Royal Elementor Addons and Templates WordPress plugin before 1.3.79 does not properly validate uploaded files, which could allow unauthenticated users to upload arbitrary files, such as PHP and achieve RCE.
Pushkarup/CVE-2023-23397
This script exploits CVE-2023-23397, a Zero-Day vulnerability in Microsoft Outlook, allowing the generation of malicious emails for testing and educational purposes.
Pushkarup/CVE-2022-29464
A PoC and Exploit for CVE 2022-29464
Pushkarup/CVE-2023-23752
Exploit for CVE-2023-23752 (4.0.0 <= Joomla <= 4.2.7).
Pushkarup/Go-ProxyCheck
Pushkarup/74cms-weixin-sqli
This script is designed to test for SQL injection vulnerabilities in the 74CMS `weixin.php` file. The vulnerability arises due to the lack of customization of the `libxml_disable_entity_loader` function, allowing XML External Entity (XXE) Injection, leading to SQL injection vulnerabilities.
Pushkarup/Akamai-WAF-Bypass-Payload
Akamai WAF Bypass Payload Documentation
Pushkarup/arcade-php-sqli
Exploitable SQL injection vulnerability in arcade.php script, allowing unauthorized database access.
Pushkarup/Go-sort
Pushkarup/Pushkarup
Pushkarup/GoBing
Pushkarup/XSS-WAF-Bypass
XSS WAF Bypass using location concatenation