Apache OFBiz 16.11.04 is susceptible to XML external entity injection (XXE injection)
-
Updated
Jun 21, 2024 - Python
Apache OFBiz 16.11.04 is susceptible to XML external entity injection (XXE injection)
A web crawler and vulnerability scanner tool developed by Rohit Ajariwal
Pentester-Vurnability-Website
WAFManis is a Protocol-Level WAF Evasion Fuzzing Tool that automates the discovery of evasion vulnerabilities in Web Application Firewalls (WAFs) by fuzzing HTTP requests to identify potential bypass techniques.
XXE Testing Page
An automated tool for discovering vulnerabilities in GraphQL applications through fuzzing techniques, including OS Command Injection and XSS, with a focus on OWASP Top Ten vulnerabilities.
Oracle CTF Web XML Entity Exploit
Web Vulnerability Scanner
Automates HTML injection, HTTP Parameter Pollution, and XXE attacks.
Capture the Flag (CTF) is a cybersecurity competition that is used as a test of security skills.
A web app for injecting code into different file types.
A threat actor may interfere with an application's processing of extensible markup language (XML) data to view the content of a target's files
Exploit WordPress Media Library XML External Entity Injection (XXE) to exfiltrate files.
The PHP sandbox environment is a Docker-based tool for testing XML processing code, with XXE vulnerabilities demonstrated and security considerations explained.
Want to keep your Web application from getting hacked? Here's how to get serious about secure apps. So let's do it! Open Friday, Aug 2016 - Presentation Notes.
A collection of security tools for pentersion testing
Add a description, image, and links to the xxe-injection topic page so that developers can more easily learn about it.
To associate your repository with the xxe-injection topic, visit your repo's landing page and select "manage topics."