云记-渗透云记 - 专注于网络安全与技术分享-第849页
CVE-2022-22947: Spring Cloud Gateway Code Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-22947: Spring Cloud Gateway Code Injection

漏洞标题 CVE-2022-22947: Spring Cloud Gateway Code Injection 漏洞描述 Applications using Spring Cloud Gateway prior to 3.1.1+ and 3.0.7+ are vulnerable to a code injection attack w...
CVE-2024-50477: WordPress Stacks Mobile App Builder <=5.2.3 - Authentication Bypass-渗透云记 - 专注于网络安全与技术分享

CVE-2024-50477: WordPress Stacks Mobile App Builder <=5.2.3 - Authentication Bypass

漏洞标题 CVE-2024-50477: WordPress Stacks Mobile App Builder <=5.2.3 - Authentication Bypass 漏洞描述 Stacks Mobile App Builder WordPress plugin ≤ 5.2.3 suffers from an authent...
CVE-2023-36934: MOVEit Transfer - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2023-36934: MOVEit Transfer – SQL Injection

漏洞标题 CVE-2023-36934: MOVEit Transfer - SQL Injection 漏洞描述 In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2...
CVE-2023-37629: Online Piggery Management System v1.0 - Unauthenticated File Upload-渗透云记 - 专注于网络安全与技术分享

CVE-2023-37629: Online Piggery Management System v1.0 – Unauthenticated File Upload

漏洞标题 CVE-2023-37629: Online Piggery Management System v1.0 - Unauthenticated File Upload 漏洞描述 Online Piggery Management System 1.0 is vulnerable to File Upload. An unauthen...
CVE-2023-1671: Sophos Web Appliance - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2023-1671: Sophos Web Appliance – Remote Code Execution

漏洞标题 CVE-2023-1671: Sophos Web Appliance - Remote Code Execution 漏洞描述 A pre-auth command injection vulnerability in the warn-proceed handler of Sophos Web Appliance older t...
CVE-2022-0653: Wordpress Profile Builder Plugin Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0653: WordPress Profile Builder Plugin Cross-Site Scripting

漏洞标题 CVE-2022-0653: Wordpress Profile Builder Plugin Cross-Site Scripting 漏洞描述 The Profile Builder User Profile & User Registration Forms WordPress plugin is vulnerable...
CVE-2010-1476: Joomla! Component AlphaUserPoints 1.5.5 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2010-1476: Joomla! Component AlphaUserPoints 1.5.5 – Local File Inclusion

漏洞标题 CVE-2010-1476: Joomla! Component AlphaUserPoints 1.5.5 - Local File Inclusion 漏洞描述 A directory traversal vulnerability in the AlphaUserPoints (com_alphauserpoints) com...
CVE-2021-46381: D-Link DAP-1620 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2021-46381: D-Link DAP-1620 – Local File Inclusion

漏洞标题 CVE-2021-46381: D-Link DAP-1620 - Local File Inclusion 漏洞描述 D-Link DAP-1620 is susceptible to local file Inclusion due to path traversal that can lead to unauthorized ...
CVE-2010-5028: Joomla! Component JE Job 1.0 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2010-5028: Joomla! Component JE Job 1.0 – Local File Inclusion

漏洞标题 CVE-2010-5028: Joomla! Component JE Job 1.0 - Local File Inclusion 漏洞描述 A SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! a...
CVE-2022-4325: WordPress Post Status Notifier Lite <1.10.1 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-4325: WordPress Post Status Notifier Lite <1.10.1 - Cross-Site Scripting

漏洞标题 CVE-2022-4325: WordPress Post Status Notifier Lite <1.10.1 - Cross-Site Scripting 漏洞描述 WordPress Post Status Notifier Lite plugin before 1.10.1 contains a cross-sit...
CVE-2023-5914: Citrix StoreFront - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2023-5914: Citrix StoreFront – Cross-Site Scripting

漏洞标题 CVE-2023-5914: Citrix StoreFront - Cross-Site Scripting 漏洞描述 Reflected Cross-Site Scripting issue which is exploitable without authentication. This vulnerability was e...
CVE-2021-27519: FUDForum 3.1.0 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2021-27519: FUDForum 3.1.0 – Cross-Site Scripting

漏洞标题 CVE-2021-27519: FUDForum 3.1.0 - Cross-Site Scripting 漏洞描述 FUDForum 3.1.0 contains a cross-site scripting vulnerability which allows remote attackers to inject JavaScr...
Apache OFBiz CVE-2024-36104 鉴权绕过漏洞-渗透云记 - 专注于网络安全与技术分享

Apache OFBiz CVE-2024-36104 鉴权绕过漏洞

漏洞标题 Apache OFBiz CVE-2024-36104 鉴权绕过漏洞 漏洞描述 Apache OFBiz 存在鉴权绕过漏洞,此漏洞是由于ProgramExport未充分验证用户输入的数据所导致的。 PoC代码 暂无
CVE-2022-47615: LearnPress Plugin < 4.2.0 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2022-47615: LearnPress Plugin < 4.2.0 - Local File Inclusion

漏洞标题 CVE-2022-47615: LearnPress Plugin < 4.2.0 - Local File Inclusion 漏洞描述 Local File Inclusion vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versi...
CVE-2022-28033: Atom.CMS 2.0 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-28033: Atom.CMS 2.0 – SQL Injection

漏洞标题 CVE-2022-28033: Atom.CMS 2.0 - SQL Injection 漏洞描述 Atom.CMS 2.0 is vulnerable to SQL Injection via Atom.CMS_admin_uploads.php which allows an attacker to execute arbitr...
CVE-2010-1531: Joomla! Component redSHOP 1.0 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2010-1531: Joomla! Component redSHOP 1.0 – Local File Inclusion

漏洞标题 CVE-2010-1531: Joomla! Component redSHOP 1.0 - Local File Inclusion 漏洞描述 A directory traversal vulnerability in the redSHOP (com_redshop) component 1.0.x for Joomla! a...