CVE-2019-25213: WordPress Advanced Access Manager – Path Traversal
漏洞标题 CVE-2019-25213: WordPress Advanced Access Manager - Path Traversal 漏洞描述 The Advanced Access Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary Fil...
CVE-2024-13161: Ivanti EPM – Credential Coercion Vulnerability in GetHashForSingleFile
漏洞标题 CVE-2024-13161: Ivanti EPM - Credential Coercion Vulnerability in GetHashForSingleFile 漏洞描述 A vulnerability in Ivanti Endpoint Manager (EPM) allows an unauthenticated ...
那些年我们一起学XSS
那些年我们一起学XSS 下载地址:http://i0x0fy4ibf.feishu.cn/file/boxcneWUeidPmbE15ZSYtydSSOg
CVE-2021-29505: XStream <1.4.17 - Remote Code Execution
漏洞标题 CVE-2021-29505: XStream <1.4.17 - Remote Code Execution 漏洞描述 XStream before 1.4.17 is susceptible to remote code execution. An attacker can execute commands of the ...
CVE-2021-46005: Sourcecodester Car Rental Management System 1.0 – Stored Cross-Site Scripting
漏洞标题 CVE-2021-46005: Sourcecodester Car Rental Management System 1.0 - Stored Cross-Site Scripting 漏洞描述 Sourcecodester Car Rental Management System 1.0 is vulnerable to cro...
CVE-2025-4302: Stop User Enumeration WordPress plugin – Authentication Bypass
漏洞标题 CVE-2025-4302: Stop User Enumeration WordPress plugin - Authentication Bypass 漏洞描述 Stop User Enumeration WordPress plugin < 1.7.3 contains an authentication bypass ...
CVE-2006-2842: Squirrelmail <=1.4.6 - Local File Inclusion
漏洞标题 CVE-2006-2842: Squirrelmail <=1.4.6 - Local File Inclusion 漏洞描述 SquirrelMail 1.4.6 and earlier versions are susceptible to a PHP local file inclusion vulnerability ...
CVE-2006-2173: FileZilla FTP Server 2.2.22 – Buffer Overflow
漏洞标题 CVE-2006-2173: FileZilla FTP Server 2.2.22 - Buffer Overflow 漏洞描述 FileZilla FTP Server version 2.2.22 contains a buffer overflow vulnerability that allows remote authe...
CVE-2019-13392: MindPalette NateMail 3.0.15 – Cross-Site Scripting
漏洞标题 CVE-2019-13392: MindPalette NateMail 3.0.15 - Cross-Site Scripting 漏洞描述 MindPalette NateMail 3.0.15 is susceptible to reflected cross-site scripting which could allows...
CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass
漏洞标题 CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass 漏洞描述 The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, ...
SSRF(服务端请求伪造)《⽩帽⼦讲漏洞修复与防御》书籍样稿
地址:http://i0x0fy4ibf.feishu.cn/file/boxcn1w1nZXPVtJa8lVa7wsw8Fg 简介: 0x01 漏洞介绍 0x02 漏洞代码 0x03 漏洞复现 0x04 漏洞危害 0x05 修复方案 0x06 漏洞场景
CVE-2022-44291: WebTareas 2.4p5 – SQL Injection
漏洞标题 CVE-2022-44291: WebTareas 2.4p5 - SQL Injection 漏洞描述 webTareas 2.4p5 was discovered to contain a SQL injection vulnerability via the id parameter in phasesets.php. PoC...
(CVE-2025-5961) WPvivid备份与迁移插件任意文件上传漏洞
漏洞标题 (CVE-2025-5961) WPvivid备份与迁移插件任意文件上传漏洞 漏洞描述 (CVE-2025-5961) WPvivid备份与迁移插件任意文件上传漏洞 PoC代码 暂无








