• 设为首页
  • 点击收藏
  • 手机版
    手机扫一扫访问
    迪恩网络手机版
  • 关注官方公众号
    微信扫一扫关注
    公众号

漏洞

RSS

下级分类:

  • CVE-2020-8627
    CVE-2020-8627
    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2019.……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:16 | 回复:0
  • CVE-2020-8626
    CVE-2020-8626
    ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2019.……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:19 | 回复:0
  • CVE-2020-23426
    CVE-2020-23426
    zzcms 201910 contains an access control vulnerability through escalation of privileges in /user/adv.php, which allows an attacker to modify data for further attacks such as CSRF.……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:39 | 回复:0
  • CVE-2021-30463
    CVE-2021-30463
    VestaCP through 0.9.8-24 allows attackers to gain privileges by creating symlinks to files for which they lack permissions. After reading the RKEY value from user.conf under the /usr/local/vesta/data/ ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:18 | 回复:0
  • CVE-2021-30462
    CVE-2021-30462
    VestaCP through 0.9.8-24 allows the admin user to escalate privileges to root because the Sudo configuration does not require a password to run /usr/local/vesta/bin scripts.……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:21 | 回复:0
  • CVE-2021-28925
    CVE-2021-28925
    SQL injection vulnerability in Nagios Network Analyzer before 2.4.3 via the o parameter to api/checks/read/.……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:20 | 回复:0
  • CVE-2021-28924
    CVE-2021-28924
    Self Authenticated XSS in Nagios Network Analyzer before 2.4.2 via the nagiosna/groups/queries page.……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:20 | 回复:0
  • CVE-2021-20480
    CVE-2021-20480
    IBM WebSphere Application Server 7.0, 8.0, and 8.5 is vulnerable to server-side request forgery (SSRF). By sending a specially crafted request, a remote authenticated attacker could exploit this vulne ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:27 | 回复:0
  • CVE-2021-30114
    CVE-2021-30114
    Web-School ERP V 5.0 contains a cross-site request forgery (CSRF) vulnerability that allows a remote attacker to create a voucher payment request through module/accounting/voucher/create. The applicat ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:13 | 回复:0
  • CVE-2021-30113
    CVE-2021-30113
    A blind XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in event name and description fields. An attacker can inject a JavaScript code that will be stored in the page. If any visitor ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:23 | 回复:0
  • CVE-2021-30112
    CVE-2021-30112
    Web-School ERP V 5.0 contains a cross-site request forgery (CSRF) vulnerability that allows a remote attacker to create a student_leave_application request through module/core/studentleaveapplication/ ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:17 | 回复:0
  • CVE-2021-30111
    CVE-2021-30111
    A stored XSS vulnerability exists in Web-School ERP V 5.0 via (Add Events) in the event name and description fields. An attack can inject a JavaScript code that will be stored in the page. If any visi ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:21 | 回复:0
  • CVE-2021-3012
    CVE-2021-3012
    A cross-site scripting (XSS) vulnerability in the Document Link of documents in ESRI Enterprise before 10.9 allows remote authenticated users to inject arbitrary JavaScript code via a malicious HTML a ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:13 | 回复:0
  • CVE-2021-28686
    CVE-2021-28686
    AsIO2_64.sys and AsIO2_32.sys in ASUS GPUTweak II before 2.3.0.3 allow low-privileged users to trigger a stack-based buffer overflow. This could enable low-privileged users to achieve Denial of Servic ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:11 | 回复:0
  • CVE-2021-28685
    CVE-2021-28685
    AsIO2_64.sys and AsIO2_32.sys in ASUS GPUTweak II before 2.3.0.3 allow low-privileged users to interact directly with physical memory (by calling one of several driver routines that map physical memor ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:14 | 回复:0
  • CVE-2021-1405
    CVE-2021-1405
    A vulnerability in the email parsing module in Clam AntiVirus (ClamAV) Software version 0.103.1 and all prior versions could allow an unauthenticated, remote attacker to cause a denial of service cond ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:11 | 回复:0
  • CVE-2021-1404
    CVE-2021-1404
    A vulnerability in the PDF parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated, remote attacker to cause a denial of service condition on an ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:11 | 回复:0
  • CVE-2021-1252
    CVE-2021-1252
    A vulnerability in the Excel XLM macro parsing module in Clam AntiVirus (ClamAV) Software versions 0.103.0 and 0.103.1 could allow an unauthenticated, remote attacker to cause a denial of service cond ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:8 | 回复:0
  • CVE-2021-28174
    CVE-2021-28174
    Mitake smart stock selection system contains a broken authentication vulnerability. By manipulating the parameters in the URL, remote attackers can gain the privileged permissions to access transactio ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:8 | 回复:0
  • CVE-2021-1485
    CVE-2021-1485
    A vulnerability in the CLI of Cisco IOS XR Software could allow an authenticated, local attacker to inject arbitrary commands that are executed with root privileges on the underlying Linux operating s ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:20 | 回复:0
  • CVE-2021-1480
    CVE-2021-1480
    Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or allow an authenticated, local attacker to gain escalated privileg ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:29 | 回复:0
  • CVE-2021-1479
    CVE-2021-1479
    Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or allow an authenticated, local attacker to gain escalated privileg ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:11 | 回复:0
  • CVE-2021-1475
    CVE-2021-1475
    Multiple vulnerabilities in the Admin audit log export feature and Scheduled Reports feature of Cisco Umbrella could allow an authenticated, remote attacker to perform formula and link injection attac ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:12 | 回复:0
  • CVE-2021-1474
    CVE-2021-1474
    Multiple vulnerabilities in the Admin audit log export feature and Scheduled Reports feature of Cisco Umbrella could allow an authenticated, remote attacker to perform formula and link injection attac ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:6 | 回复:0
  • CVE-2021-1473
    CVE-2021-1473
    Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbitrary commands or bypass authentication and upload f ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:11 | 回复:0
  • CVE-2021-1472
    CVE-2021-1472
    Multiple vulnerabilities exist in the web-based management interface of Cisco Small Business RV Series Routers. A remote attacker could execute arbitrary commands or bypass authentication and upload f ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:13 | 回复:0
  • CVE-2021-1467
    CVE-2021-1467
    A vulnerability in Cisco Webex Meetings for Android could allow an authenticated, remote attacker to modify the avatar of another user. This vulnerability is due to improper authorization checks. An a ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:16 | 回复:0
  • CVE-2021-1463
    CVE-2021-1463
    A vulnerability in the web-based management interface of Cisco Unified Intelligence Center Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack again ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:10 | 回复:0
  • CVE-2021-1459
    CVE-2021-1459
    A vulnerability in the web-based management interface of Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers could allow an unauthenticated, remote attacker to execute arbitrary code on an ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:16 | 回复:0
  • CVE-2021-1420
    CVE-2021-1420
    A vulnerability in certain web pages of Cisco Webex Meetings could allow an unauthenticated, remote attacker to modify a web page in the context of a user's browser. The vulnerability is due to im ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:16 | 回复:0
  • CVE-2021-1415
    CVE-2021-1415
    Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:28 | 回复:0
  • CVE-2021-1414
    CVE-2021-1414
    Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:20 | 回复:0
  • CVE-2021-1413
    CVE-2021-1413
    Multiple vulnerabilities in the web-based management interface of Cisco RV340, RV340W, RV345, and RV345P Dual WAN Gigabit VPN Routers could allow an authenticated, remote attacker to execute arbitrary ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:9 | 回复:0
  • CVE-2021-1409
    CVE-2021-1409
    Multiple vulnerabilities in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM amp; Presence Service (Unified CM IMamp;P), ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:14 | 回复:0
  • CVE-2021-1408
    CVE-2021-1408
    Multiple vulnerabilities in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM amp; Presence Service (Unified CM IMamp;P), ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:8 | 回复:0
  • CVE-2021-1407
    CVE-2021-1407
    Multiple vulnerabilities in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM amp; Presence Service (Unified CM IMamp;P), ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:13 | 回复:0
  • CVE-2021-1406
    CVE-2021-1406
    A vulnerability in Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an authenticated, remote attacker ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:23 | 回复:0
  • CVE-2021-1399
    CVE-2021-1399
    A vulnerability in the Self Care Portal of Cisco Unified Communications Manager (Unified CM) and Cisco Unified Communications Manager Session Management Edition (Unified CM SME) could allow an authent ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:6 | 回复:0
  • CVE-2021-1386
    CVE-2021-1386
    A vulnerability in the dynamic link library (DLL) loading mechanism in Cisco Advanced Malware Protection (AMP) for Endpoints Windows Connector, ClamAV for Windows, and Immunet could allow an authentic ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:9 | 回复:0
  • CVE-2021-1380
    CVE-2021-1380
    Multiple vulnerabilities in the web-based management interface of Cisco Unified Communications Manager (Unified CM), Cisco Unified Communications Manager IM amp; Presence Service (Unified CM IMamp;P), ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 10:31 | 阅读:19 | 回复:0

关注我们

极客给你想要的成长

关注极客中国获取最新资讯

热门推荐
阅读排行榜

扫描微信二维码

查看手机版网站

随时了解更新最新资讯

139-2527-9053

在线客服(服务时间 9:00~18:00)

在线QQ客服
地址:深圳市南山区西丽大学城创智工业园
电邮:jeky_zhao#qq.com
移动电话:139-2527-9053

Powered by 互联科技 X3.4© 2001-2213 极客世界.|Sitemap