CVE-2024 第61页
CVE-2024-10571: Chartify – WordPress Chart Plugin < 2.9.6 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2024-10571: Chartify – WordPress Chart Plugin < 2.9.6 - Local File Inclusion

漏洞标题 CVE-2024-10571: Chartify – WordPress Chart Plugin < 2.9.6 - Local File Inclusion 漏洞描述 The Chartify – WordPress Chart Plugin plugin for WordPress is vulnerable to ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年1月13日 00:23
30
CVE-2024-1061: WordPress HTML5 Video Player - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2024-1061: WordPress HTML5 Video Player – SQL Injection

漏洞标题 CVE-2024-1061: WordPress HTML5 Video Player - SQL Injection 漏洞描述 WordPress HTML5 Video Player plugin is vulnerable to SQL injection. An unauthenticated attacker can ex...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年1月6日 17:33
30
CVE-2024-43917: WordPress TI WooCommerce Wishlist Plugin <= 2.8.2 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2024-43917: WordPress TI WooCommerce Wishlist Plugin <= 2.8.2 - SQL Injection

漏洞标题 CVE-2024-43917: WordPress TI WooCommerce Wishlist Plugin <= 2.8.2 - SQL Injection 漏洞描述 In the latest version (2.8.2 as of writing the article) and below, the plugin...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年8月2日 11:23
30
CVE-2024-23897: Jenkins < 2.441 - Arbitrary File Read-渗透云记 - 专注于网络安全与技术分享

CVE-2024-23897: Jenkins < 2.441 - Arbitrary File Read

漏洞标题 CVE-2024-23897: Jenkins < 2.441 - Arbitrary File Read 漏洞描述 Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser t...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年11月20日 12:57
30
CVE-2024-27497: Linksys E2000 1.0.06 position.js Improper Authentication-渗透云记 - 专注于网络安全与技术分享

CVE-2024-27497: Linksys E2000 1.0.06 position.js Improper Authentication

漏洞标题 CVE-2024-27497: Linksys E2000 1.0.06 position.js Improper Authentication 漏洞描述 Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position....
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年6月1日 07:32
30
CVE-2024-36683: PrestaShop productsalert - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2024-36683: PrestaShop productsalert – SQL Injection

漏洞标题 CVE-2024-36683: PrestaShop productsalert - SQL Injection 漏洞描述 In the module 'Products Alert' (productsalert) up to version 1.7.4 from Smart Modules for Prest...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年2月3日 09:45
30
CVE-2024-1061: WordPress HTML5 Video Player - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2024-1061: WordPress HTML5 Video Player – SQL Injection

漏洞标题 CVE-2024-1061: WordPress HTML5 Video Player - SQL Injection 漏洞描述 WordPress HTML5 Video Player plugin is vulnerable to SQL injection. An unauthenticated attacker can ex...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年12月4日 14:48
30
CVE-2024-37656: GnuBoard5 5.5.16 - Open Redirect-渗透云记 - 专注于网络安全与技术分享

CVE-2024-37656: GnuBoard5 5.5.16 – Open Redirect

漏洞标题 CVE-2024-37656: GnuBoard5 5.5.16 - Open Redirect 漏洞描述 Gnuboard5 5.5.16 contains an open redirect vulnerability caused by insufficient URL parameter verification in bbs...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年12月16日 01:11
30
CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass-渗透云记 - 专注于网络安全与技术分享

CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass

漏洞标题 CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass 漏洞描述 The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年3月10日 20:21
30
CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass-渗透云记 - 专注于网络安全与技术分享

CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass

漏洞标题 CVE-2024-9989: Crypto <= 2.15 - Authentication Bypass 漏洞描述 The Crypto plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年8月9日 06:48
30
CVE-2024-21683: Atlassian Confluence Data Center and Server - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2024-21683: Atlassian Confluence Data Center and Server – Remote Code Execution

漏洞标题 CVE-2024-21683: Atlassian Confluence Data Center and Server - Remote Code Execution 漏洞描述 Detects a Remote Code Execution vulnerability in Confluence Data Center and Se...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年10月13日 04:23
30
CVE-2024-36412: SuiteCRM - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2024-36412: SuiteCRM – SQL Injection

漏洞标题 CVE-2024-36412: SuiteCRM - SQL Injection 漏洞描述 SuiteCRM is an open-source Customer Relationship Management (CRM) software application. Prior to versions 7.14.4 and 8.6....
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年8月28日 03:23
30
CVE-2024-4940: Gradio - Open Redirect-渗透云记 - 专注于网络安全与技术分享

CVE-2024-4940: Gradio – Open Redirect

漏洞标题 CVE-2024-4940: Gradio - Open Redirect 漏洞描述 An open redirect vulnerability exists in the gradio-app/gradio, affecting the latest version. The vulnerability allows an at...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年10月5日 08:45
30
CVE-2024-27954: WordPress Automatic Plugin <3.92.1 - Arbitrary File Download and SSRF-渗透云记 - 专注于网络安全与技术分享

CVE-2024-27954: WordPress Automatic Plugin <3.92.1 - Arbitrary File Download and SSRF

漏洞标题 CVE-2024-27954: WordPress Automatic Plugin <3.92.1 - Arbitrary File Download and SSRF 漏洞描述 WordPress Automatic plugin <3.92.1 is vulnerable to unauthenticated Ar...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年8月27日 22:18
30
CVE-2024-55550: Mitel MiCollab - Arbitary File Read-渗透云记 - 专注于网络安全与技术分享

CVE-2024-55550: Mitel MiCollab – Arbitary File Read

漏洞标题 CVE-2024-55550: Mitel MiCollab - Arbitary File Read 漏洞描述 The Mitel Collab Arbitrary File Read vulnerability allows an unauthenticated attacker to read arbitrary files ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年5月13日 09:09
30
CVE-2024-12987: DrayTek Vigor - Command Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2024-12987: DrayTek Vigor – Command Injection

漏洞标题 CVE-2024-12987: DrayTek Vigor - Command Injection 漏洞描述 DrayTek Gateway devices (Vigor2960, Vigor300B, etc.) are vulnerable to command injection via the session paramet...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年7月28日 07:36
20