Git Product home page Git Product logo

pyfiscan's People

Contributors

aminvakil avatar evak-de avatar fgeek avatar greggles avatar joneskoo avatar martijnbraam avatar motikan2010 avatar nfm-8 avatar sabl0r avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

pyfiscan's Issues

Add support for BigTree CMS

Currently there is no fixed in version for latest issues. Makes it pretty hard to communicate with end users.

CVE-2013-4879
CVE-2013-4880
CVE-2013-4881
CVE-2013-5313

Create new fingerprint template

  • Figure out proper content
  • Add examples
  • Change previous fingerprints to new template

Template should include following:

  • CWE
  • CVSS2
  • CVE
  • OSVDB
  • Secunia (SAXXXX)
  • Publication date
  • Fixed date
  • Fixed in version
  • CPE
  • ISS X-Force ID
  • SecurityTracker Alert ID
  • Vendor URL
  • Vendor changelog or scm urls

Jara

Jara has several unfixed vulnerabilities for many years now. Detection should say not to use this software.

Coppermine regexp matches CPG MiniCMS Plugin

2013-08-24 21:49:57 ERROR is_not_secure:166 Traceback (most recent call last):
File "pyfiscan.py", line 164, in is_not_secure
return map(int, secure_version.split('.')) > map(int, file_version.split('.'))
ValueError: invalid literal for int() with base 10: ''

From file:
# CPG MiniCMS Plugin for Coppermine Photo Gallery

Joomla upgrades result in false-positives

If installation is upgraded from Joomla 1.6.1 to 1.7.x by unzipping there will be both version files libraries/joomla/version.php and includes/version.php where first is the old one.

  • Check if this also affects web-ui updates
  • Test from 1.6.x to 1.7.x
  • Test from 1.7.x to 2.x
  • Test from 2.x to 3.x

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.