• 设为首页
  • 点击收藏
  • 手机版
    手机扫一扫访问
    迪恩网络手机版
  • 关注官方公众号
    微信扫一扫关注
    公众号

漏洞

RSS

下级分类:

  • CVE-2020-36172
    CVE-2020-36172
    The Advanced Custom Fields plugin before 5.8.12 for WordPress mishandles the escaping of strings in Select2 dropdowns, potentially leading to XSS.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:44 | 回复:0
  • CVE-2020-36171
    CVE-2020-36171
    The Elementor Website Builder plugin before 3.0.14 for WordPress does not properly restrict SVG uploads.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:50 | 回复:0
  • CVE-2020-27285
    CVE-2020-27285
    The default configuration of Crimson 3.1 (Build versions prior to 3119.001) allows a user to be able to read and modify the database without authentication.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:63 | 回复:0
  • CVE-2020-13545
    CVE-2020-13545
    An exploitable signed conversion vulnerability exists in the TextMaker document parsing functionality of SoftMaker Office 2021’s TextMaker application. A specially crafted document can cause the docu ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:58 | 回复:0
  • CVE-2020-13544
    CVE-2020-13544
    An exploitable sign extension vulnerability exists in the TextMaker document parsing functionality of SoftMaker Office 2021’s TextMaker application. A specially crafted document can cause the documen ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:65 | 回复:0
  • CVE-2012-10001
    CVE-2012-10001
    The Limit Login Attempts plugin before 1.7.1 for WordPress does not clear auth cookies upon a lockout, which might make it easier for remote attackers to conduct brute-force authentication attempts.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:66 | 回复:0
  • CVE-2020-8884
    CVE-2020-8884
    rcdsvc in the Proofpoint Insider Threat Management Windows Agent (formerly ObserveIT Windows Agent) before 7.9 allows remote authenticated users to execute arbitrary code as SYSTEM because of improper ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:59 | 回复:0
  • CVE-2020-36170
    CVE-2020-36170
    The Ultimate Member plugin before 2.1.13 for WordPress mishandles hidden name=timestamp fields in forms.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:46 | 回复:0
  • CVE-2020-10658
    CVE-2020-10658
    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application server's WriteImage API. The vulnerability allows an anonym ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:77 | 回复:0
  • CVE-2020-10657
    CVE-2020-10657
    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM web console's ImportAlertRules feature. The vulnerability allows a remo ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:52 | 回复:0
  • CVE-2020-10656
    CVE-2020-10656
    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application server's WriteWindowMouseWithChunksV2 API. The vulnerabilit ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:66 | 回复:0
  • CVE-2020-10655
    CVE-2020-10655
    The Proofpoint Insider Threat Management Server (formerly ObserveIT Server) before 7.9.1 contains a vulnerability in the ITM application server's WriteWindowMouse API. The vulnerability allows an ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:71 | 回复:0
  • CVE-2020-4336
    CVE-2020-4336
    IBM WebSphere eXtreme Scale 8.6.1 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer head ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:47 | 回复:0
  • CVE-2020-26759
    CVE-2020-26759
    clickhouse-driver before 0.1.5 allows a malicious clickhouse server to trigger a crash or execute arbitrary code (on a database client) via a crafted server response, due to a buffer overflow.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:81 | 回复:0
  • CVE-2021-21235
    CVE-2021-21235
    kamadak-exif is an exif parsing library written in pure Rust. In kamadak-exif version 0.5.2, there is an infinite loop in parsing crafted PNG files. Specifically, reader::read_from_container can cause ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:47 | 回复:0
  • CVE-2020-36169
    CVE-2020-36169
    An issue was discovered in Veritas NetBackup through 8.3.0.1 and OpsCenter through 8.3.0.1. Processes using OpenSSL attempt to load and execute libraries from paths that do not exist by default on the ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:70 | 回复:0
  • CVE-2020-36168
    CVE-2020-36168
    An issue was discovered in Veritas Resiliency Platform 3.4 and 3.5. It leverages OpenSSL on Windows systems when using the Managed Host addon. On start-up, it loads the OpenSSL library. This library m ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:53 | 回复:0
  • CVE-2020-36167
    CVE-2020-36167
    An issue was discovered in the server in Veritas Backup Exec through 16.2, 20.6 before hotfix 298543, and 21.1 before hotfix 657517. On start-up, it loads the OpenSSL library from the Installation fol ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:56 | 回复:0
  • CVE-2020-36166
    CVE-2020-36166
    An issue was discovered in Veritas InfoScale 7.x through 7.4.2 on Windows, Storage Foundation through 6.1 on Windows, Storage Foundation HA through 6.1 on Windows, and InfoScale Operations Manager (ak ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:44 | 回复:0
  • CVE-2020-36165
    CVE-2020-36165
    An issue was discovered in Veritas Desktop and Laptop Option (DLO) before 9.4. On start-up, it loads the OpenSSL library from /ReleaseX64/ssl. This library attempts to load the /ReleaseX64/ssl/openssl ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:50 | 回复:0
  • CVE-2020-36164
    CVE-2020-36164
    An issue was discovered in Veritas Enterprise Vault through 14.0. On start-up, it loads the OpenSSL library. The OpenSSL library then attempts to load the openssl.cnf configuration file (which does no ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:53 | 回复:0
  • CVE-2020-36163
    CVE-2020-36163
    An issue was discovered in Veritas NetBackup and OpsCenter through 8.3.0.1. NetBackup processes using Strawberry Perl attempt to load and execute libraries from paths that do not exist by default on t ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:46 | 回复:0
  • CVE-2020-36162
    CVE-2020-36162
    An issue was discovered in Veritas CloudPoint before 8.3.0.1+hotfix. The CloudPoint Windows Agent leverages OpenSSL. This OpenSSL library attempts to load the \usr\local\ssl\openssl.cnf configuration ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:55 | 回复:0
  • CVE-2020-36161
    CVE-2020-36161
    An issue was discovered in Veritas APTARE 10.4 before 10.4P9 and 10.5 before 10.5P3. By default, on Windows systems, users can create directories under C:\. A low privileged user can create a director ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:72 | 回复:0
  • CVE-2020-36160
    CVE-2020-36160
    An issue was discovered in Veritas System Recovery before 21.2. On start-up, it loads the OpenSSL library from \usr\local\ssl. This library attempts to load the from \usr\local\ssl\openssl.cnf configu ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:61 | 回复:0
  • CVE-2021-3026
    CVE-2021-3026
    Invision Community IPS Community Suite before 4.5.4.2 allows XSS during the quoting of a post or comment.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:46 | 回复:0
  • CVE-2020-7336
    CVE-2020-7336
    Cross Site Request Forgery vulnerability in McAfee Network Security Management (NSM) prior to 10.1.7.35 and NSM 9.x prior to 9.2.9.55 may allow an attacker to change the configuration of the Network S ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:101 | 回复:0
  • CVE-2020-36052
    CVE-2020-36052
    Directory traversal vulnerability in post-edit.php in MiniCMS V1.10 allows remote attackers to include and execute arbitrary files via the state parameter.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:63 | 回复:0
  • CVE-2020-36051
    CVE-2020-36051
    Directory traversal vulnerability in page_edit.php in MiniCMS V1.10 allows remote attackers to read arbitrary files via the state parameter.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:36 | 回复:0
  • CVE-2020-35170
    CVE-2020-35170
    Dell EMC Unisphere for PowerMax versions prior to 9.1.0.9, Dell EMC Unisphere for PowerMax versions prior to 9.0.2.16, and Dell EMC PowerMax OS 5978.221.221 and 5978.479.479 contain a Cross-Site Scrip ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:63 | 回复:0
  • CVE-2020-29502
    CVE-2020-29502
    Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore X T environments. A locally authenticated attacker could potentially exploit this ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:47 | 回复:0
  • CVE-2020-29501
    CVE-2020-29501
    Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore X T environments. A locally authenticated attacker could potentially exploit this ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:46 | 回复:0
  • CVE-2020-29500
    CVE-2020-29500
    Dell EMC PowerStore versions prior to 1.0.3.0.5.007 contain a Plain-Text Password Storage Vulnerability in PowerStore T environments. A locally authenticated attacker could potentially exploit this vu ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:56 | 回复:0
  • CVE-2020-29490
    CVE-2020-29490
    Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.0.4.0.5.012 contain a Denial of Service vulnerability on NAS Servers with NFS exports. A remote authenticated attacker could potentially expl ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:79 | 回复:0
  • CVE-2020-29489
    CVE-2020-29489
    Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.0.4.0.5.012 contains a plain-text password storage vulnerability. A user credentials (including the Unisphere admin privilege user) password ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:53 | 回复:0
  • CVE-2020-26199
    CVE-2020-26199
    Dell EMC Unity, Unity XT, and UnityVSA versions prior to 5.0.4.0.5.012 contain a plain-text password storage vulnerability. A user credentials (including the Unisphere admin privilege user) password i ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:43 | 回复:0
  • CVE-2020-26181
    CVE-2020-26181
    Dell EMC Isilon OneFS versions 8.1 and later and Dell EMC PowerScale OneFS version 9.0.0 contain a privilege escalation vulnerability on a SmartLock Compliance mode cluster. The compadmin user connect ...……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:61 | 回复:0
  • CVE-2020-23250
    CVE-2020-23250
    GigaVUE-OS (GVOS) 5.4 - 5.9 uses a weak algorithm for a hash stored in internal database.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:45 | 回复:0
  • CVE-2020-23249
    CVE-2020-23249
    GigaVUE-OS (GVOS) 5.4 - 5.9 stores a Redis database password in plaintext.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:49 | 回复:0
  • CVE-2019-20484
    CVE-2019-20484
    An issue was discovered in Viki Vera 4.9.1.26180. A user without access to a project could download or upload project files by opening the Project URL directly in the browser after logging in.……
    作者:菜鸟教程小白 | 时间:2022-2-5 09:37 | 阅读:49 | 回复:0

关注我们

极客给你想要的成长

关注极客中国获取最新资讯

热门推荐
    热门话题
    阅读排行榜

    扫描微信二维码

    查看手机版网站

    随时了解更新最新资讯

    139-2527-9053

    在线客服(服务时间 9:00~18:00)

    在线QQ客服
    地址:深圳市南山区西丽大学城创智工业园
    电邮:jeky_zhao#qq.com
    移动电话:139-2527-9053

    Powered by 互联科技 X3.4© 2001-2213 极客世界.|Sitemap