漏洞库 第246页
此分类不是0day,只是做互联网poc收集,不对poc真实性、可用性做保证,不以poc无效等理由反馈退款
CVE-2022-0437: karma-runner DOM-based Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0437: karma-runner DOM-based Cross-Site Scripting

漏洞标题 CVE-2022-0437: karma-runner DOM-based Cross-Site Scripting 漏洞描述 NPM karma prior to 6.3.14. contains a DOM-based cross-site Scripting vulnerability. PoC代码
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年4月27日 13:46
00
CVE-2021-22214: Gitlab CE/EE 10.5 - Server-Side Request Forgery-渗透云记 - 专注于网络安全与技术分享

CVE-2021-22214: Gitlab CE/EE 10.5 – Server-Side Request Forgery

漏洞标题 CVE-2021-22214: Gitlab CE/EE 10.5 - Server-Side Request Forgery 漏洞描述 GitLab CE/EE versions starting from 10.5 are susceptible to a server-side request forgery vulnerab...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2021年1月23日 08:31
00
CVE-2025-34032: Moodle LMS Jmol Plugin <= 6.1 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2025-34032: Moodle LMS Jmol Plugin <= 6.1 - Cross-Site Scripting

漏洞标题 CVE-2025-34032: Moodle LMS Jmol Plugin <= 6.1 - Cross-Site Scripting 漏洞描述 A reflected cross-site scripting (XSS) vulnerability exists in the Moodle LMS Jmol plugin ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2025年6月29日 05:56
10
CVE-2018-10088: XiongMai uc-httpd 1.0.0 - Buffer Overflow-渗透云记 - 专注于网络安全与技术分享

CVE-2018-10088: XiongMai uc-httpd 1.0.0 – Buffer Overflow

漏洞标题 CVE-2018-10088: XiongMai uc-httpd 1.0.0 - Buffer Overflow 漏洞描述 Buffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulner...
CVE-2023-48084: Nagios XI < 5.11.3 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2023-48084: Nagios XI < 5.11.3 - SQL Injection

漏洞标题 CVE-2023-48084: Nagios XI < 5.11.3 - SQL Injection 漏洞描述 SQL injection vulnerability in Nagios XI before version 5.11.3 via the bulk modification tool. PoC代码
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2023年8月17日 19:43
60
CVE-2022-31474: CVE-2022-31474-渗透云记 - 专注于网络安全与技术分享

CVE-2022-31474: CVE-2022-31474

漏洞标题 CVE-2022-31474: CVE-2022-31474 漏洞描述 iThemes BackupBuddy 插件 8.5.8.0 - 8.7.4.1 版本中的目录遍历漏洞。 PoC代码
CVE-2021-44910: SpringBlade - Information Leakage-渗透云记 - 专注于网络安全与技术分享

CVE-2021-44910: SpringBlade – Information Leakage

漏洞标题 CVE-2021-44910: SpringBlade - Information Leakage 漏洞描述 SpringBlade is a comprehensive project upgraded and optimized from a commercial-grade project, featuring both a ...
CVE-2025-40630: IceWarp Mail Server ≤11.4.0 - Open Redirect-渗透云记 - 专注于网络安全与技术分享

CVE-2025-40630: IceWarp Mail Server ≤11.4.0 – Open Redirect

漏洞标题 CVE-2025-40630: IceWarp Mail Server ≤11.4.0 - Open Redirect 漏洞描述 IceWarp Mail Server version 11.4.0 and below contains an open redirect vulnerability that allows atta...
CVE-2018-7653: YzmCMS v3.6 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2018-7653: YzmCMS v3.6 – Cross-Site Scripting

漏洞标题 CVE-2018-7653: YzmCMS v3.6 - Cross-Site Scripting 漏洞描述 In YzmCMS 3.6, index.php has XSS via the a, c, or m parameter. PoC代码
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2018年4月21日 08:03
40
CVE-2023-39007: OPNsense - Cross-Site Scripting to RCE-渗透云记 - 专注于网络安全与技术分享

CVE-2023-39007: OPNsense – Cross-Site Scripting to RCE

漏洞标题 CVE-2023-39007: OPNsense - Cross-Site Scripting to RCE 漏洞描述 There is a XSS in /ui/cron/item/open in the Cron component of OPNsense Community Edition before 23.7 and Bu...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2023年8月22日 00:29
00
CVE-2022-24900: Piano LED Visualizer 1.3 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2022-24900: Piano LED Visualizer 1.3 – Local File Inclusion

漏洞标题 CVE-2022-24900: Piano LED Visualizer 1.3 - Local File Inclusion 漏洞描述 Piano LED Visualizer 1.3 and prior are vulnerable to local file inclusion. PoC代码
CVE-2021-24210: WordPress PhastPress <1.111 - Open Redirect-渗透云记 - 专注于网络安全与技术分享

CVE-2021-24210: WordPress PhastPress <1.111 - Open Redirect

漏洞标题 CVE-2021-24210: WordPress PhastPress <1.111 - Open Redirect 漏洞描述 WordPress PhastPress plugin before 1.111 contains an open redirect vulnerability. An attacker can r...
CVE-2025-48703: CWP (Control Web Panel) < 0.9.8.1205 - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2025-48703: CWP (Control Web Panel) < 0.9.8.1205 - Remote Code Execution

漏洞标题 CVE-2025-48703: CWP (Control Web Panel) < 0.9.8.1205 - Remote Code Execution 漏洞描述 CWP (Control Web Panel) < 0.9.8.1205 contains a remote code execution caused by...
CVE-2018-1000861: Jenkins - Remote Command Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2018-1000861: Jenkins – Remote Command Injection

漏洞标题 CVE-2018-1000861: Jenkins - Remote Command Injection 漏洞描述 Jenkins 2.153 and earlier and LTS 2.138.3 and earlier are susceptible to a remote command injection via stapl...
CVE-2023-30869: Easy Digital Downloads - Privilege Escalation-渗透云记 - 专注于网络安全与技术分享

CVE-2023-30869: Easy Digital Downloads – Privilege Escalation

漏洞标题 CVE-2023-30869: Easy Digital Downloads - Privilege Escalation 漏洞描述 Improper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Esca...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2023年8月27日 09:12
60
CVE-2022-1916: WordPress Active Products Tables for WooCommerce <1.0.5 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-1916: WordPress Active Products Tables for WooCommerce <1.0.5 - Cross-Site Scripting

漏洞标题 CVE-2022-1916: WordPress Active Products Tables for WooCommerce <1.0.5 - Cross-Site Scripting 漏洞描述 WordPress Active Products Tables for WooCommerce plugin prior to ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年5月11日 18:07
00