andreafioraldi / cve_searchsploit

Search an exploit in the local exploitdb database by its CVE
MIT License
168 stars 52 forks source link

All exploits downloading #9

Closed Guezone closed 2 years ago

Guezone commented 2 years ago

Hello, thank you very much for your work. I noticed that CVE searchploit retrieved via git the entire exploit db repo. On the other hand, unless I am mistaken, all the exploits are therefore loaded on the machine, which would allow an authenticated attacker to execute all the exploits from the machine… I think that the data should be deleted each time and only the CVE <-> EBID match

andreafioraldi commented 2 years ago

yes I agree I'm gonna fix it and assign you a CVE