GithubHelp home page GithubHelp logo

Author of Hackpuntes Blog | Cybersecurity enthusiast and CTF Player | ๐ŸŒ Toledo, Spain

Hack The Box Profile

Github Pages - Javier Olmedo

OSCP Certification OSWE Certification OSWE Certification Offshore Pro Lab

Skills

๐Ÿž Penetration Testing ๐Ÿ› ๏ธ Hacking Tools ๐Ÿ‘จ๐Ÿปโ€๐Ÿ’ป Programming Language ๐ŸŒ Web Development
โœ… Web Application โœ… Burp Suite โœ… Python โœ… HTML, CSS and Javascript
โœ… Reversing APK โœ… Nmap โœ… Golang โœ… PHP
โœ… Linux/Windows โœ… Nessus โœ… C# and Powershell โœ… Vue.js

My CVEs

CVE Name CVSS3 CVSS2 ExploitDB
CVE-2018-13832 All In One Favicon <= 4.6 - Multiple Stored Authenticated XSS 4.8 MEDIUM ๐ŸŸ  3.5 LOW ๐ŸŸข โ€‹โœ…โ€‹
CVE-2018-14430 Multi Step Form <= 1.2.5 - Multiple Unauthenticated Reflected XSS 6.1 MEDIUM ๐ŸŸ  4.3 MEDIUM ๐ŸŸ  โ€‹โŒ
CVE-2018-15571 Export Users to CSV <= 1.1.1 CSV Injection 8.6 HIGH ๐Ÿ”ด 6.8 MEDIUM ๐ŸŸ  โœ…
CVE-2018-15873 Sentrifugo HRMS 3.2 - Blind SQL Injectionโ€‹ 9.8 CRITICAL ๐ŸŸฃ 7.5 HIGH ๐Ÿ”ด โ€‹โœ…
CVE-2018-15917 Jorani Leave Management System 0.6.5 - Cross-Site Scripting Persistenteโ€‹ 5.4 MEDIUM ๐ŸŸ  3.5 LOW ๐ŸŸข โœ…โ€‹
CVE-2018-15918 Jorani Leave Management System 0.6.5 - SQL Injectionโ€‹ 5.4 MEDIUM ๐ŸŸ  5.5 MEDIUM ๐ŸŸ  โœ…
CVE-2018-18478 Libre Network Monitoring System 1.43 - Stored Cross-Site Scriptingโ€‹ 6.1 MEDIUM ๐ŸŸ  4.3 MEDIUM ๐ŸŸ  โ€‹โŒโ€‹
CVE-2018-18921 PHP Server Monitor 3.3.1 - Cross-Site Request Forgery 6.5 MEDIUM ๐ŸŸ  5.8 MEDIUM ๐ŸŸ  โœ…
CVE-2018-18922 Ticketly 1.0 - Privilege Escalationโ€‹ 9.8 CRITICAL ๐ŸŸฃ 5.0 MEDIUM ๐ŸŸ  โ€‹โœ…
CVE-2018-18923 Ticketly 1.0 - Multiple SQL Injectionโ€‹ 9.8 CRITICAL ๐ŸŸฃ 7.5 HIGH ๐Ÿ”ด โœ…
CVE-2018-19828 Integria IMS 5.0.83 - Cross-Site Scriptingโ€‹ 6.1 MEDIUM ๐ŸŸ  4.3 MEDIUM ๐ŸŸ  โœ…โ€‹
CVE-2018-19829 Integria IMS 5.0.83 โ€“ Cross-Site Request Forgeryโ€‹ 6.5 MEDIUM ๐ŸŸ  5.8 MEDIUM ๐ŸŸ  โœ…
CVE-2019-7400 Rukovoditel ERP & CRM 2.4.1 - 'path' Cross-Site Scriptingโ€‹ 6.1 MEDIUM ๐ŸŸ  4.3 MEDIUM ๐ŸŸ  โ€‹โœ…โ€‹
CVE-2019-15092 WordPress Plugin Import Export WordPress Users 1.3.1 - CSV Injection 7.3 HIGH ๐Ÿ”ด 6.0 MEDIUM ๐ŸŸ  โœ…
CVE-2019-19031 Easy XML Editor <= 1.7.8 - XML External Entity Injectionโ€‹ 8.1 HIGH ๐Ÿ”ด 5.5 MEDIUM ๐ŸŸ  โ€‹โœ…โ€‹
CVE-2019-19032 XMLBlueprint <= 16.191112 - XML External Entity Injection 8.1 HIGH ๐Ÿ”ด 5.5 MEDIUM ๐ŸŸ  โœ…
CVE-2020-9038 Joplin through 1.0.184 allows Arbitrary File Read via XSS 5.4 MEDIUM ๐ŸŸ  3.5 LOW ๐ŸŸข โŒโ€‹
CVE-2021-43091 SQL Injection inย yeswiki/yeswiki 7.5 HIGH ๐Ÿ”ด 5.0 MEDIUM ๐ŸŸ  โŒโ€‹

Contact me

ย ย ย  ย ย ย  ย ย ย  ย ย ย  ย ย ย  ย ย ย  ย ย ย  ย ย ย  ย ย ย 

Made with โค๏ธ in Spain

Javier Olmedo's Projects

check-ms17-010 icon check-ms17-010

๐Ÿž Simple script in powershell to check ms17-010 vulnerability exploited by ransomware WannaCry

fifa-autobidder icon fifa-autobidder

Selenium-based bot that autobids and autobuys players on FIFA 23 Ultimate Team's transfer market

goad icon goad

game of active directory

gotectivity icon gotectivity

๐Ÿ•ต๏ธ A passive tool to fingerprinting and gathering technologies used on multiple domains

html-template icon html-template

๐Ÿ“ฆ An HTML template with the main JavaScript libraries added

ipdiscover icon ipdiscover

๐Ÿ” A simple tool to obtain long lists of ips from domains using goroutines

javierolmedo icon javierolmedo

๐Ÿ•ต๐Ÿปโ€โ™‚๏ธ My GitHub profile

kweo icon kweo

Kali linux custom Work Environment in One-liner

oass icon oass

๐Ÿ“„ OWASP Automatic Scan Script

owasp-calculator icon owasp-calculator

๐Ÿงฎ An online calculator to assess the risk of web vulnerabilities based on OWASP Risk Assessment

source2dictionary icon source2dictionary

A tool developed in python to convert the source code into a dictionary to perform fuzzing

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.