• 设为首页
  • 点击收藏
  • 手机版
    手机扫一扫访问
    迪恩网络手机版
  • 关注官方公众号
    微信扫一扫关注
    公众号

CVE漏洞

RSS
  • CVE-2021-46824
    CVE-2021-46824
    Cross Site Scripting (XSS) vulnerability in sourcecodester School File Management System 1.0 via the Lastname parameter to the Update Account form in student_profile.php.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:54 | 阅读:87 | 回复:0
  • CVE-2022-22967
    CVE-2022-22967
    An issue was discovered in SaltStack Salt in versions before 3002.9, 3003.5, 3004.2. PAM auth fails to reject locked accounts, which allows a previously authorized user whose account is locked still r ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:54 | 阅读:73 | 回复:0
  • CVE-2022-22980
    CVE-2022-22980
    A Spring Data MongoDB application is vulnerable to SpEL Injection when using @Query or @Aggregation-annotated query methods with SpEL expressions that contain query parameter placeholders for value bi ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:54 | 阅读:83 | 回复:0
  • CVE-2022-29299
    CVE-2022-29299
    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-20660. Reason: This candidate is a reservation duplicate of CVE-2021-20660. Notes: All CVE users should reference CVE-2021-20660 ins ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:54 | 阅读:79 | 回复:0
  • CVE-2022-29301
    CVE-2022-29301
    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2021-20660. Reason: This candidate is a reservation duplicate of CVE-2021-20660. Notes: All CVE users should reference CVE-2021-20660 ins ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:54 | 阅读:72 | 回复:0
  • CVE-2022-29526
    CVE-2022-29526
    Go before 1.17.10 and 1.18.x before 1.18.2 has Incorrect Privilege Assignment. When called with a non-zero flags parameter, the Faccessat function could incorrectly report that a file is accessible.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:54 | 阅读:67 | 回复:0
  • CVE-2021-26637
    CVE-2021-26637
    There is no account authentication and permission check logic in the firmware and existing apps of SiHAS's SGW-300, ACM-300, GCM-300, so unauthorized users can remotely control the device.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:53 | 阅读:111 | 回复:0
  • CVE-2021-26638
    CVE-2021-26638
    Improper Authentication vulnerability in SD smarthome(smartcare) application can cause authentication bypass and information exposure. Remote attackers can use this vulerability to take control of the ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:53 | 阅读:112 | 回复:0
  • CVE-2021-29055
    CVE-2021-29055
    Cross Site Scripting (XSS) vulnerability in sourcecodester School File Management System 1.0 via the Firtstname parameter to the Update Account form in student_profile.php.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:53 | 阅读:103 | 回复:0
  • CVE-2021-40954
    CVE-2021-40954
    Laiketui 3.5.0 is affected by an arbitrary file upload vulnerability that can allow an attacker to execute arbitrary code.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:53 | 阅读:95 | 回复:0
  • CVE-2021-40955
    CVE-2021-40955
    SQL injection exists in LaiKetui v3.5.0 the background administrator list.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:53 | 阅读:88 | 回复:0
  • CVE-2021-40956
    CVE-2021-40956
    LaiKetui v3.5.0 has SQL injection in the background through the menu management function, and sensitive data can be obtained.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:53 | 阅读:85 | 回复:0
  • CVE-2017-20089
    CVE-2017-20089
    A vulnerability was found in Gwolle Guestbook Plugin 1.7.4. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to basic cross site scripting. The atta ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:225 | 回复:0
  • CVE-2017-20090
    CVE-2017-20090
    A vulnerability was found in Global Content Blocks Plugin 2.1.5. It has been declared as problematic. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:177 | 回复:0
  • CVE-2017-20091
    CVE-2017-20091
    A vulnerability was found in File Manager Plugin 3.0.1. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross-site request forgery. It is possible to ini ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:152 | 回复:0
  • CVE-2022-31009
    CVE-2022-31009
    wire-ios is an iOS client for the Wire secure messaging application. Invalid accent colors of Wire communication partners may render the iOS Wire Client partially unusable by causing it to crash multi ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:148 | 回复:0
  • CVE-2022-34305
    CVE-2022-34305
    In Apache Tomcat 10.1.0-M1 to 10.1.0-M16, 10.0.0-M1 to 10.0.22, 9.0.30 to 9.0.64 and 8.5.50 to 8.5.81 the Form authentication example in the examples web application displayed user provided data witho ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:312 | 回复:0
  • CVE-2022-2175
    CVE-2022-2175
    Buffer Over-read in GitHub repository vim/vim prior to 8.2.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:140 | 回复:0
  • CVE-2021-26636
    CVE-2021-26636
    Stored XSS and SQL injection vulnerability in MaxBoard could lead to occur Remote Code Execution, which could lead to information exposure and privilege escalation.……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:52 | 阅读:125 | 回复:0
  • CVE-2017-20085
    CVE-2017-20085
    A vulnerability has been found in Atahualpa Theme and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to basic cross site scripting. The a ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:51 | 阅读:347 | 回复:0
  • CVE-2017-20086
    CVE-2017-20086
    A vulnerability, which was classified as critical, was found in VaultPress Plugin 1.8.4. This affects an unknown part. The manipulation leads to code injection. It is possible to initiate the attack r ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:51 | 阅读:722 | 回复:0
  • CVE-2017-20087
    CVE-2017-20087
    A vulnerability, which was classified as problematic, has been found in Alpine PhotoTile for Instagram Plugin 1.2.7.7. Affected by this issue is some unknown functionality. The manipulation leads to b ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:51 | 阅读:240 | 回复:0
  • CVE-2017-20088
    CVE-2017-20088
    A vulnerability classified as problematic has been found in Atahualpa Theme. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack ...……
    作者:菜鸟教程小白 | 时间:2022-7-7 07:51 | 阅读:223 | 回复:0
  • CVE-2022-0331
    CVE-2022-0331
    An information disclosure vulnerability in Webadmin allows an unauthenticated remote attacker to read the device serial number in Sophos Firewall version v18.5 MR2 and older.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:77 | 回复:0
  • CVE-2022-25521
    CVE-2022-25521
    UNNO v03.11.00 was discovered to contain access control issue.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:73 | 回复:0
  • CVE-2022-26269
    CVE-2022-26269
    Suzuki Connect v1.0.15 allows attackers to tamper with displayed messages via spoofed CAN messages.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:81 | 回复:0
  • CVE-2022-23937
    CVE-2022-23937
    In Wind River VxWorks 6.9 and 7, a specific crafted packet may lead to an out-of-bounds read during an IKE initial exchange scenario.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:104 | 回复:0
  • CVE-2022-24956
    CVE-2022-24956
    An issue was discovered in Shopware B2B-Suite through 4.4.1. The sort-by parameter of the search functionality of b2border and b2borderlist allows SQL injection. Possible techniques are boolean-based ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:101 | 回复:0
  • CVE-2022-24957
    CVE-2022-24957
    DHC Vision eQMS through 5.4.8.322 has Persistent XSS due to insufficient encoding of untrusted input/output. To exploit the vulnerability, the attacker has to create or edit a new information object a ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:97 | 回复:0
  • CVE-2022-25420
    CVE-2022-25420
    NTT Resonant Incorporated goo blog App Web Application 1.0 is vulnerable to CLRF injection. This vulnerability allows attackers to execute arbitrary code via a crafted HTTP request.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:99 | 回复:0
  • CVE-2022-1072
    CVE-2022-1072
    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-26254. Reason: This candidate is a reservation duplicate of CVE-2022-26254. Notes: All CVE users should reference CVE-2022-26254 ins ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:79 | 回复:0
  • CVE-2022-1073
    CVE-2022-1073
    A vulnerability was found in Automatic Question Paper Generator 1.0. It has been declared as critical. An attack leads to privilege escalation. The attack can be launched remotely.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:84 | 回复:0
  • CVE-2022-1074
    CVE-2022-1074
    A vulnerability has been found in TEM FLEX-1085 1.6.0 and classified as problematic. Using the input h1HTML Injection/h1 in the WiFi settings of the dashboard leads to html injection.……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:89 | 回复:0
  • CVE-2022-1075
    CVE-2022-1075
    A vulnerability was found in College Website Management System 1.0 and classified as problematic. Affected by this issue is the file /cwms/classes/Master.php?f=save_contact of the component Contact Ha ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:95 | 回复:0
  • CVE-2022-1076
    CVE-2022-1076
    A vulnerability was found in Automatic Question Paper Generator System 1.0. It has been classified as problematic. This affects the file /aqpg/users/login.php of the component My Account Page. The man ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:89 | 回复:0
  • CVE-2022-1077
    CVE-2022-1077
    A vulnerability was found in TEM FLEX-1080 and FLEX-1085 1.6.0. It has been declared as problematic. This vulnerability log.cgi of the component Log Handler. A direct request leads to information disc ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:96 | 回复:0
  • CVE-2022-1078
    CVE-2022-1078
    A vulnerability was found in SourceCodester College Website Management System 1.0. It has been classified as critical. Affected is the file /cwms/admin/?page=articles/view_article/. The manipulation o ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:84 | 回复:0
  • CVE-2022-1079
    CVE-2022-1079
    A vulnerability classified as problematic has been found in SourceCodester One Church Management System. Affected are multiple files and parameters which are prone to to cross site scripting. It is po ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:75 | 回复:0
  • CVE-2022-1080
    CVE-2022-1080
    A vulnerability was found in SourceCodester One Church Management System 1.0. It has been declared as critical. This vulnerability affects code of the file attendancy.php as the manipulation of the ar ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:80 | 回复:0
  • CVE-2022-1081
    CVE-2022-1081
    A vulnerability was found in SourceCodester Microfinance Management System 1.0. It has been declared as problematic. This vulnerability affects the file /mims/app/addcustomerHandler.php. The manipulat ...……
    作者:菜鸟教程小白 | 时间:2022-6-23 10:57 | 阅读:70 | 回复:0

关注我们

极客给你想要的成长

关注极客中国获取最新资讯

热门推荐
专题导读
阅读排行榜

扫描微信二维码

查看手机版网站

随时了解更新最新资讯

139-2527-9053

在线客服(服务时间 9:00~18:00)

在线QQ客服
地址:深圳市南山区西丽大学城创智工业园
电邮:jeky_zhao#qq.com
移动电话:139-2527-9053

Powered by 互联科技 X3.4© 2001-2213 极客世界.|Sitemap