Robuta

https://www.exploit-db.com/ghdb/7783
# Google Dork: intitle:"index of" "*.pl" # Vulnerable Files # Date: 12/11/2021 # Exploit Author: Priyanshu Choudhary
google dorkindexplvulnerablefiles
https://www.exploit-db.com/ghdb/7450
# Google Dork: Fwd: intitle:"MedDream" "Softneta" -.com # Pages Containing Login Portals # Date:15/10/2021 # Exploit Author: Mugdha Bansode
login portalsfwdcompagescontaining
https://www.exploit-db.com/ghdb/7343
# Google Dork: inurl:/wp-content/themes/IncredibleWP # Files Containing Juicy Info # Date:28/09/2021 # Exploit Author: Sagar Jain
content themesjuicy infowpfilescontaining
https://www.exploit-db.com/ghdb/7750
# Google Dork: intitle:"index of" upload.asp " # Files Containing Juicy Info # Date:09/11/2021 # Exploit Author: Muhammad Al-Amin
juicy infoindexuploadaspfiles
https://www.exploit-db.com/ghdb/6980
# Google Dork: intitle:"Scalance web management" "Switch to insecure HTTP" # Various Online Devices # Date: 29/04/2021 # Exploit Author: Mugdha Peter Bansode
web managementswitchinsecurehttppages
https://www.exploit-db.com/ghdb/3241
Service d'upload v1.0.0 Shell Upload Vulnerability: https://www.exploit-db.com/exploits/10938
google dorkuploaderdesfichiersadvisories
https://www.exploit-db.com/ghdb/7162
# Google Dork: inurl:login.rsp "User name" # Pages Containing Login Portals # Date: 22/07/2021 # Exploit Author: Neha Singh
login rspuser namepagescontainingportals
https://www.exploit-db.com/ghdb/676
The MS access database can be downloaded from inside the docroot. The user table holds the admin password in plain text. Possible locations for the dugallery...
extaspsitecom
https://www.exploit-db.com/ghdb/1228
cgi binjuicy infopasstxtfiles
https://www.exploit-db.com/ghdb/3220
Alibaba Clone Platinum (offers_buy.php) SQL Injection Vulnerability - CVE: 2010-1725: https://www.exploit-db.com/exploits/12468
offersbuyphpidadvisories
https://www.exploit-db.com/ghdb/5344
login portal inurl:login_user.asp Reza Abasi(Turku)
login userasppagescontainingportals
https://www.exploit-db.com/ghdb/1765
Joomla Djice Shoutbox 1.0 Permanent XSS Vulnerability: https://www.exploit-db.com/exploits/8197
indexphpoptioncomadvisories
https://www.exploit-db.com/ghdb/3638
Many of the results of the search show error logs which give an attacker the server side paths including the home directory name. This name is often also used...
error messagespluginswpdbbackup
https://www.exploit-db.com/ghdb/6791
# Google Dork: inurl:"portal.mwsl" "Status" # Various online devices (Siemens S7 series of PLC controllers - SCADA) # Date: 9/2/2021 # Exploit Author:...
google dorkportalstatusvariousonline
https://www.exploit-db.com/ghdb/4535
Google Dork: intext:DB_PASSWORD || intext:"MySQL hostname" ext:txt Author: Tarkan Catal X This dork allows you to search for WordPress configuration file. This...
intextdbpasswordmysqlhostname
https://www.exploit-db.com/ghdb/5031
Google Dork Description: intitle:"index of /" authorized_keys Google Search: intitle:"index of /" authorized_keys Author: @nuria_pp Sensitive Directories:...
google dorkindexauthorizedkeyssensitive
https://www.exploit-db.com/ghdb/6070
Dork: intitle:"index of" "jsapi_ticket.json" Description: This Google dork lists out sensitive jsapi data for a web server Author: Abhi Chitkara
juicy infoindexticketjsonfiles
https://www.exploit-db.com/ghdb/7305
# Google Dork: inurl:login.rsp "User name" # Pages Containing Login Portals # Date: 24/09/2021 # Exploit Author: Neha Singh
login rspuser namepagescontainingportals
https://www.exploit-db.com/ghdb/1194
Novell Nterprise Linux Services detection dork. Some of the features are:* iFolder* Samba* NetStorage* eDirectory Administration* Linux User Management* NMAS...
nnlsbrandhtmlnavweb
https://www.exploit-db.com/ghdb/263
silkRoad Eprise is a dynamic content management product that simplifies the flow of content to a corporate website. The software requires NT 4, Windows 2000 or...
login portalsgoogle dorkpagescontainingghdb
https://www.exploit-db.com/ghdb/4208
Description: Helm Control Panel login page Google search: intitle:"Helm : The Web Hosting Control System" Autor: nebo_oben
web hostingcontrol systemhelmpagescontaining
https://www.exploit-db.com/ghdb/7493
# Google Dork: intitle:"Employee Login" & inurl:("login.aspx" | "login.asp") # Pages Containing Login Portals # Date:26/10/2021 # Exploit Author: Suman Das
employee loginaspxpagescontaining
https://www.exploit-db.com/ghdb/3654
IRIran eShop Builder SQL Injection: http://server/patch/pages/index.php?id=0[SQL] Submitter: Ahoora
google dorkpowerednetadvisoriesvulnerabilities
https://www.exploit-db.com/ghdb/518
The Lantronix web manager home pages show the print server configuration (Server Name, Boot Code Version, Firmware, Uptime, Hardware Address, IP Address and...
web managergoogle dorklantronixvariousonline
https://www.exploit-db.com/ghdb/1276
Joomla! is a Content Management System (CMS) created by the same team that brought the Mambo CMS. This dork finds the Web Installer page. On newer versions,...
web installerjuicy infojoomlafilescontaining
https://www.exploit-db.com/ghdb/802
The search reveals server upload portals.An attacker can use server space for his own benefit.
forum shopuploadintextsupport
https://www.exploit-db.com/ghdb/6999
# Google Dork: inurl:ALFA_DATA intitle:"index of" # Files Containing Juicy Info. # Date: 08/06/2021 # Exploit Author: Snowglobe_io
juicy infoalfadataindexfiles
https://www.exploit-db.com/ghdb/134
These pages indicate that they are sharing the C:\WINDOWS directory, which is the system folder for many Windows installations.
google dorkindexcwindowssensitive
https://www.exploit-db.com/ghdb/738
Norton Ghost allows administrators to create hard rive images for lots of purposes including backup, migration, etc. These files contain the hard drive images...
juicy infogoogle dorkextghofiles
https://www.exploit-db.com/ghdb/6281
Google Dork: "index of" "siri" Category: Files Containing Juicy Info Author: Prashant Sharma LinkedIn: https://www.linkedin.com/in/prashantique/
juicy infogoogle dorkindexsirifiles
https://www.exploit-db.com/ghdb/4477
Finds stealer logs with usernames, passwords and sites to input them! Dxtroyer
stealerexttxtfilescontaining
https://www.exploit-db.com/ghdb/6419
# Google Dork: intitle:"Wing FTP Server - Web" # Wing FTP Server 6.2.5 - Privilege Escalation. This dork is linked to the # following existing exploit:...
wing ftp servergoogle dorkwebvulnerableservers
https://www.exploit-db.com/ghdb/2192
SiteX 0.7.4.418 (THEME_FOLDER) Local File Inclusion Vulnerabilities - CVE: 2009-1846: https://www.exploit-db.com/exploits/8816
poweredsitexbetaadvisoriesvulnerabilities
https://www.exploit-db.com/ghdb/3768
kryCMS Version 3.0 SQL Injection. Author: tempe_mendoan
google dorkpoweredadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/6489
# Google Dork: inurl:"view.shtml" "Network Camera" # Various online devices (webcams). # Date: 21/08/2020 # Exploit Author: Alexandros Pappas
network cameraviewshtmlvariousonline
https://www.exploit-db.com/ghdb/3340
PHPFanBase 2.x (protection.php) Remote File Include Vulnerability: https://www.exploit-db.com/exploits/2957
google dorkpoweredadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/95
The webalizer program shows web statistics for web servers. This information includes who is visiting the site, what pages they visit, error codes produced,...
usage statisticsgeneratedwebalizerfilescontaining
https://www.exploit-db.com/ghdb/1799
Asset Manager Remote File upload Vulnerability: https://www.exploit-db.com/exploits/12693
editoraspadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/8213
# Google Dork: site:.org inurl:/admin.aspx # Pages Containing Login Portals # Date: 04/07/2023 # Exploit Author: Sachin Gupta
login portalssiteorgadminaspx
https://www.exploit-db.com/ghdb/6996
# Dork: Files Containing Juicy info: site:*/phpmyadmin/server_privileges.php BR, Reza Abasi (Turku) Cyber Sec researcher
juicy infositephpmyadminserverprivileges
https://www.exploit-db.com/ghdb/8350
# Google Dork: allinurl:"add_vhost.php?lang=english" # Files Containing Juicy Info # Date: 20/11/2023 # Exploit: Saleh Lardhi
juicy infoaddvhostphplang
https://www.exploit-db.com/ghdb/7436
# Google Dork: "com.sap.itsam.problems.java.systeminfo" # Pages Containing Login Portals # Date:13/10/2021 # Exploit Author: GnosticPlayers
login portalscomsapproblemsjava
https://www.exploit-db.com/ghdb/7259
# Google Dork: Inurl: "login" Intitle:index of username and pass # Files Containing Passwords # Date: 22/08/2021 # Exploit Author: Sahil Gupta
loginindexusernamepassfiles
https://www.exploit-db.com/ghdb/7714
# Google Dork: "index of" :excel documents # Files Containing Juicy Info # Date:9/11/2021 # Exploit Author: Renuka Kharat
juicy infoindexexceldocumentsfiles
https://www.exploit-db.com/ghdb/1957
XOOPS Module Glossario 2.2 (sid) Remote SQL Injection Vulnerability: https://www.exploit-db.com/exploits/5216
google dorkmodulesglossairesadvisoriesvulnerabilities
https://www.exploit-db.com/ghdb/6457
# Google Dork: inurl:8081/ "Pan, Tilt & Zoom" # Various online devices (webcams). # Date: 29/07/2020 # Exploit Author: Alexandros Pappas
pan tiltzoomvariousonlinedevices
https://www.exploit-db.com/ghdb/908
PaNews is reported prone to a remote PHP script code execution vulnerability. It is reported that PHP script code may be injected into the PaNews software...
filetypephppanewsadvisoriesvulnerabilities
https://www.exploit-db.com/ghdb/5621
Sophos XG Firewall Login pages # Google Dork: inurl:/webconsole/webpages/login.jsp # Date: [5-11-2019] # Author: [Mohammed*_*]
webpagesloginjspcontainingportals
https://www.exploit-db.com/ghdb/4245
Author: Charley Celice (@charleycelice) 99% of sites I found using this dork are vulnerable to XSS attacks. The "strParents" parameter seems to always be...
google dorkaspadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/3675
Author: IR-Security -Team SQL injection: http://server/administrator/index.php?section=manage_members&action=edit_photo&pho_id=-100001 union all select...
professional advisoriesintextpoweredhandshakesvulnerabilities
https://www.exploit-db.com/ghdb/6772
# Google Dork: inurl:"/console/login/LoginForm.jsp" # Oracle WebLogic Server 12.2.1.0 - RCE (Unauthenticated). CVE-2020 14882. #...
console loginjspadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/4279
Files containing usernames & passwords of NOD32 antivirus accounts. Google dork: intext:"eav" filetype:txt Thanks! D0bby
google dorkintexteavfiletypetxt
https://www.exploit-db.com/ghdb/852
date :Jan 30 2005 this search reveal the src/webmail.php which would allow acrafted URL to include a remote web page. This was assigned CAN-2005-0103by the...
squirrelmailversionsrcextphp
https://www.exploit-db.com/ghdb/1515
Joomla Component simple shop 2.0 SQL Injection Vulnerability: https://www.exploit-db.com/exploits/5177
google dorkcomadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/6312
# Dork: intext:Basato su IceWarp Server # IceWarp WebMail 11.4.4.1 and older version - Reflective Cross-Site Scripting. # This dork is linked to the following...
intextsuicewarpserveradvisories
https://www.exploit-db.com/ghdb/3897
Finds disclosed ftp FTP for Wordpress installs, which have been pushed to a public repo on GitHub. Credit: RogueCoder
sitegithubcomsftpconfig
https://www.exploit-db.com/ghdb/1048
The WinFrame-Client infos needed by users to connect toCitrix Application Servers (e.g. Metaframe).Often linked/stored on Webservers and sometimes reachable...
google dorkpasswordfiletypeicafiles
https://www.exploit-db.com/ghdb/7674
# Google Dork: intext:"index of" "signin" # Files Containing Juicy Info # Date:8/11/2021 # Exploit Author: Onkar Deshmukh
juicy infointextindexsigninfiles
https://www.exploit-db.com/ghdb/267
phpMySearch is a personal search engine that one can use to provide a search feature for one's own Web site. With this search an attacker can find admin logon...
login portalssearchadminphppages
https://www.exploit-db.com/ghdb/168
Webmin is a html admin interface for Unix boxes. It is run on a proprietary web server listening on the default port of 10000.
login portalsintextwebminpagescontaining
https://www.exploit-db.com/ghdb/6094
Dork: intitle:"index of" "tinyfilemanager.php" Description: This google dork lists out websites with the "tinyfilemanager.php" shell uploaded on them and...
google dorkindexphpsensitivedirectories
https://www.exploit-db.com/ghdb/5679
Zabbix login portal: inurl:"/index.php?enter=guest" Reza Abasi(Turku)
indexphpenterguestvarious
https://www.exploit-db.com/ghdb/6477
# Google Dork: intitle:"Helpdesk Software Login" "login" "by Jitbit" # Ticketing Systems login portals. # Date: 12/08/2020 # Exploit Author: Alexandros Pappas
helpdesk softwareloginjitbitpagescontaining
https://www.exploit-db.com/ghdb/4772
Sites with WebGais - Websendmail. Author: Parth S. Patel https://ca.linkedin.com/in/parthpateloscp
google dorkindexsensitivedirectoriesghdb
https://www.exploit-db.com/ghdb/2490
Joomla Component Nice Talk 0.9.3 (tagid) SQL Injection Vulnerability - CVE: 2007-4503: https://www.exploit-db.com/exploits/4308
indexphpoptioncomadvisories
https://www.exploit-db.com/ghdb/4909
This dork can be used to detect codes hosted by different companies that uses lighttpd Web Server. Anwar Ayoob
com fileslighttpdconfsitegithub
https://www.exploit-db.com/ghdb/8068
# Google Dork:HP Laserjet Config Network Page # Various Online Devices # Date:21/02/2023 # Exploit Author: Kerim Mert YILDIRIM
google dorkhp laserjetconfignetworkvarious
https://www.exploit-db.com/ghdb/7753
# Google Dork: inurl:pastebin "API_KEY" # Files Containing Juicy Info # Date:10/11/2021 # Exploit Author: Krishna Agarwal
api keyjuicy infopastebinfilescontaining
https://www.exploit-db.com/ghdb/5144
Category : Pages containing login portals Description : Dork for finding to login portals of Employees and admins which using Automatic Data Processing Inc.,...
self service loginadppagescontainingportals
https://www.exploit-db.com/ghdb/975
myBloggie is affected by multiple vulnerabilities. http://www.securityfocus.com/bid/13507
advisories
https://www.exploit-db.com/ghdb/1811
PHPFootball 1.6 (show.php) Remote Database Disclosure Vulnerability - CVE: 2007-0638: https://www.exploit-db.com/exploits/3226
google dorkadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/8122
# Google Dork: intitle:"index of" inurl:admin/php # Files Containing Juicy Info # Date:21/03/2023 # Exploit Author: Md Hasib
juicy infoindexadminphpfiles
https://www.exploit-db.com/ghdb/7012
# Google Dork: intitle:"ZAP Scanning Report" + "Alert Detail" # Network or Vulnerability data. # Date: 1/07/2021 # Exploit Author: Alexandros Pappas
zapscanningreportalertdetail
https://www.exploit-db.com/ghdb/6757
# Google Dork: ext:xlsx inurl:database # Date: 15/01/2021 # Information of database with .xlsv extension # Author:Raj Zamal
database filesjuicy infoextxlsxcontaining
https://www.exploit-db.com/ghdb/2074
AJ Auction v1 (id) Remote SQL Injection Vulnerability: https://www.exploit-db.com/exploits/5868
google dorkpoweredajauctionadvisories
https://www.exploit-db.com/ghdb/7321
# Google Dork: intitle:"index of" "/sql" "admin" #Description: This Dork will return the important files containing admin setup to sql. #Date: 21/09/2021....
google dorkindexsqladminvulnerable
https://www.exploit-db.com/ghdb/582
Test CGI by Lilikoi Software aids in the installation of the Ceilidh discussion engine for the World Wide Web. An attacker can use this to gather information...
cgi binexepleasedistributefiles
https://www.exploit-db.com/ghdb/726
Phorum admin pagesThis either shows Information leakage (path info) or it shows Unprotected Admin pages.
database connectionforum networkphorumadmin
https://www.exploit-db.com/ghdb/2918
Joomla DJ-Classifieds Extension com_djclassifieds Upload Vulnerability: https://www.exploit-db.com/exploits/12479
google dorkcomadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/8269
# Google Dork: inurl:login/login-user # Files Containing Juicy Info # Date:01/08/2023 # Exploit Author: Faridul Hasan
google dorklogin userfwdfilescontaining
https://www.exploit-db.com/ghdb/6526
Google Dork: intitle:"Dell SonicWALL - Authentication" inurl:auth.html Description: This Google Dork is used for detecting/fetching login pages of Dell based...
dell sonicwallhtml pagesauthenticationcontaininglogin
https://www.exploit-db.com/ghdb/3256
PostNuke Module pnFlashGames 2.5 SQL Injection Vulnerabilities - CVE: 2008-2013: https://www.exploit-db.com/exploits/5500
php moduleindexadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/564
Multiple vulnerabilities have been found in GoSmart Message Board. A remote user can conduct SQL injection attack and Cross site scripting attack....
google dorkmessageboardforumaspadvisories
https://www.exploit-db.com/ghdb/4469
RDP is basically a Windows-sanctioned backdoor. You can use it to access someones computer remotely. This dork finds files with RDP info and logins! Dxtroyer
screen modejuicy infoidextrdp
https://www.exploit-db.com/ghdb/638
This is the adminstration login portal search for PHP iCalendar. It is compatible with Evolution and clients for other platforms. Admin uuthentication has two...
phpicalendaradministrationsitesourceforge
https://www.exploit-db.com/ghdb/5030
ckeditor directories ManhNho
google dorkindexckeditorsensitivedirectories
https://www.exploit-db.com/ghdb/4266
Sonicwall Global VPN Client files containing sensitive information and login
juicy infofiletypercfvpnfiles
https://www.exploit-db.com/ghdb/2365
SQli Vulnerability in iScripts VisualCaster - CVE: 2010-2853: https://www.exploit-db.com/exploits/12451
google dorkpoweredadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/4992
Category: Page containing log in portal & Web Server Detection Description: This dork allows user to access default page of Oracle Weblogic Server - UDDI...
google dorkjspadvisoriesvulnerabilitiesghdb
https://www.exploit-db.com/ghdb/8358
# Google Dork: inurl: /adminer.php # Files Containing Juicy Info # Date: 27/11/2023 # Exploit: Satyam Singh
juicy infogoogle dorkadminerphpfiles
https://www.exploit-db.com/ghdb/325
Filemanager without authentication.
explorercfmdirectorysensitivedirectories
https://www.exploit-db.com/ghdb/212
These are Citrix Metaframe login portals. Attackers can use these to profile a site and can use insecure setups of this application to access the site.
login portalsgoogle dorkcitrixpagescontaining
https://www.exploit-db.com/ghdb/5684
Google dork description: Mongo Express instances. Most have no authentication enabled Google Search: intitle:"Home - Mongo Express" Submitted by: Alfie...
google dorkmongoexpressvariousonline
https://www.exploit-db.com/ghdb/7789
# Google Dork: intitle:"index of" "/mysql" # Files Containing Juicy Info # Date:12/11/2021 # Exploit Author: Priyanshu Choudhary
juicy infoindexmysqlfilescontaining
https://www.exploit-db.com/ghdb/83
An Oracle error message, this message can display path names, function names, filenames and partial SQL code, all of which are very helpful for hackers...
sql commanderror messagesoraproperlyended
https://www.exploit-db.com/ghdb/6289
Dork: intext:"index of /" "customer.php" "~Login" Description: will give information related to customer and login info. Author: Priyanka Prasad
login pagesintextindexcustomerphp
https://www.exploit-db.com/ghdb/2664
Ele Medios CMS SQL Injection Vulnerability: https://www.exploit-db.com/exploits/10418
google dorknoticiasphpadvisoriesvulnerabilities
https://www.exploit-db.com/ghdb/5301
# Exploit Title: Guest Login # Google Dork: inurl:/guest/login.php # Author: Francis Al Victoriano
guest loginphppagescontainingportals
https://www.exploit-db.com/ghdb/5731
# Dork # inurl:"saw.dll" AND intitle:"Sign In" Login Portals.
sawdllsignpagescontaining
https://www.exploit-db.com/ghdb/4995
inurl:/Portal/Portal.mwsl?PriNav=FileBrowser Access into simatic step 7 plc software systems by dekingofcyber....
portalfilebrowservariousonlinedevices