CVE-2022 第76页
CVE-2022-29455-headless: WordPress Elementor Website Builder <= 3.5.5 - DOM Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-29455-headless: WordPress Elementor Website Builder <= 3.5.5 - DOM Cross-Site Scripting

漏洞标题 CVE-2022-29455-headless: WordPress Elementor Website Builder <= 3.5.5 - DOM Cross-Site Scripting 漏洞描述 WordPress Elementor Website Builder plugin 3.5.5 and prior con...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年7月20日 10:30
10
CVE-2022-47966: ManageEngine - Remote Command Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2022-47966: ManageEngine – Remote Command Execution

漏洞标题 CVE-2022-47966: ManageEngine - Remote Command Execution 漏洞描述 Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年10月12日 15:04
10
CVE-2022-46934: kkFileView 4.1.0 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-46934: kkFileView 4.1.0 – Cross-Site Scripting

漏洞标题 CVE-2022-46934: kkFileView 4.1.0 - Cross-Site Scripting 漏洞描述 kkFileView 4.1.0 is susceptible to cross-site scripting via the url parameter at /controller/OnlinePreview...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年2月7日 16:25
10
CVE-2022-0817: WordPress BadgeOS <=3.7.0 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0817: WordPress BadgeOS <=3.7.0 - SQL Injection

漏洞标题 CVE-2022-0817: WordPress BadgeOS <=3.7.0 - SQL Injection 漏洞描述 WordPress BadgeOS plugin through 3.7.0 contains a SQL injection vulnerability. It does not sanitize an...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年6月22日 13:07
10
CVE-2022-0206: WordPress NewStatPress <1.3.6 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0206: WordPress NewStatPress <1.3.6 - Cross-Site Scripting

漏洞标题 CVE-2022-0206: WordPress NewStatPress <1.3.6 - Cross-Site Scripting 漏洞描述 WordPress NewStatPress plugin before 1.3.6 is susceptible to cross-site scripting. The plug...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年1月13日 16:12
10
CVE-2022-2034: WordPress Sensei LMS <4.5.0 - Information Disclosure-渗透云记 - 专注于网络安全与技术分享

CVE-2022-2034: WordPress Sensei LMS <4.5.0 - Information Disclosure

漏洞标题 CVE-2022-2034: WordPress Sensei LMS <4.5.0 - Information Disclosure 漏洞描述 WordPress Sensei LMS plugin before 4.5.0 is susceptible to information disclosure. The plug...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年4月23日 05:08
10
CVE-2022-26148: Grafana & Zabbix Integration - Credentials Disclosure-渗透云记 - 专注于网络安全与技术分享

CVE-2022-26148: Grafana & Zabbix Integration – Credentials Disclosure

漏洞标题 CVE-2022-26148: Grafana & Zabbix Integration - Credentials Disclosure 漏洞描述 Grafana through 7.3.4, when integrated with Zabbix, contains a credential disclosure vul...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年3月21日 11:44
10
CVE-2022-29299: SolarView Compact 6.00 - 'time_begin' Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-29299: SolarView Compact 6.00 – ‘time_begin’ Cross-Site Scripting

漏洞标题 CVE-2022-29299: SolarView Compact 6.00 - 'time_begin' Cross-Site Scripting 漏洞描述 SolarView Compact version 6.00 contains a cross-site scripting vulnerability ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年2月15日 02:47
10
CVE-2022-0735: GitLab CE/EE - Information Disclosure-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0735: GitLab CE/EE – Information Disclosure

漏洞标题 CVE-2022-0735: GitLab CE/EE - Information Disclosure 漏洞描述 GitLab CE/EE is susceptible to information disclosure. An attacker can access runner registration tokens usin...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年3月21日 10:39
10
CVE-2022-40047: Flatpress < v1.2.1 - Cross Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-40047: Flatpress < v1.2.1 - Cross Site Scripting

漏洞标题 CVE-2022-40047: Flatpress < v1.2.1 - Cross Site Scripting 漏洞描述 Flatpress v1.2.1 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via t...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年12月27日 08:40
10
CVE-2022-0658: CommonsBooking < 2.6.8 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0658: CommonsBooking < 2.6.8 - SQL Injection

漏洞标题 CVE-2022-0658: CommonsBooking < 2.6.8 - SQL Injection 漏洞描述 The plugin does not sanitise and escape the location parameter of the calendar_data AJAX action (availabl...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年5月3日 18:53
10
CVE-2022-23854: AVEVA InTouch Access Anywhere Secure Gateway - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2022-23854: AVEVA InTouch Access Anywhere Secure Gateway – Local File Inclusion

漏洞标题 CVE-2022-23854: AVEVA InTouch Access Anywhere Secure Gateway - Local File Inclusion 漏洞描述 AVEVA InTouch Access Anywhere Secure Gateway is vulnerable to local file inclu...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年12月19日 11:13
10
CVE-2022-32430: Lin CMS Spring Boot - Default JWT Token-渗透云记 - 专注于网络安全与技术分享

CVE-2022-32430: Lin CMS Spring Boot – Default JWT Token

漏洞标题 CVE-2022-32430: Lin CMS Spring Boot - Default JWT Token 漏洞描述 An access control issue in Lin CMS Spring Boot v0.2.1 allows attackers to access the backend information a...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年9月11日 02:47
10
CVE-2022-2379: WordPress Easy Student Results <=2.2.8 - Improper Authorization-渗透云记 - 专注于网络安全与技术分享

CVE-2022-2379: WordPress Easy Student Results <=2.2.8 - Improper Authorization

漏洞标题 CVE-2022-2379: WordPress Easy Student Results <=2.2.8 - Improper Authorization 漏洞描述 WordPress Easy Student Results plugin through 2.2.8 is susceptible to informatio...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年6月16日 15:02
10
CVE-2022-44951: Rukovoditel <= 3.2.1 - Cross Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-44951: Rukovoditel <= 3.2.1 - Cross Site Scripting

漏洞标题 CVE-2022-44951: Rukovoditel <= 3.2.1 - Cross Site Scripting 漏洞描述 Rukovoditel v3.2.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in t...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年9月19日 18:09
10
CVE-2022-21500: Oracle E-Business Suite <=12.2 - Authentication Bypass-渗透云记 - 专注于网络安全与技术分享

CVE-2022-21500: Oracle E-Business Suite <=12.2 - Authentication Bypass

漏洞标题 CVE-2022-21500: Oracle E-Business Suite <=12.2 - Authentication Bypass 漏洞描述 Oracle E-Business Suite (component: Manage Proxies) 12.1 and 12.2 are susceptible to an ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年3月23日 08:34
10