漏洞库 第486页
此分类不是0day,只是做互联网poc收集,不对poc真实性、可用性做保证,不以poc无效等理由反馈退款
CVE-2019-2729: Oracle WebLogic Server Administration Console - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2019-2729: Oracle WebLogic Server Administration Console – Remote Code Execution

漏洞标题 CVE-2019-2729: Oracle WebLogic Server Administration Console - Remote Code Execution 漏洞描述 The Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponen...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2019年7月3日 23:11
10
CVE-2020-29597: IncomCMS 2.0 - Arbitrary File Upload-渗透云记 - 专注于网络安全与技术分享

CVE-2020-29597: IncomCMS 2.0 – Arbitrary File Upload

漏洞标题 CVE-2020-29597: IncomCMS 2.0 - Arbitrary File Upload 漏洞描述 IncomCMS 2.0 has a an insecure file upload vulnerability in modules/uploader/showcase/script.php. This allows...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2020年4月10日 15:44
10
CVE-2022-24384: SmarterTools SmarterTrack - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-24384: SmarterTools SmarterTrack – Cross-Site Scripting

漏洞标题 CVE-2022-24384: SmarterTools SmarterTrack - Cross-Site Scripting 漏洞描述 Cross-site Scripting (XSS) vulnerability in SmarterTools SmarterTrack This issue affects: Smarter...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年12月22日 18:49
10
CVE-2025-47812: Wing FTP Server <= 7.4.3 - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2025-47812: Wing FTP Server <= 7.4.3 - Remote Code Execution

漏洞标题 CVE-2025-47812: Wing FTP Server <= 7.4.3 - Remote Code Execution 漏洞描述 Wing FTP Server versions prior to 7.4.4 are vulnerable to an unauthenticated remote code execu...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2025年9月24日 03:37
10
CVE-2022-30777: Parallels H-Sphere 3.6.1713 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-30777: Parallels H-Sphere 3.6.1713 – Cross-Site Scripting

漏洞标题 CVE-2022-30777: Parallels H-Sphere 3.6.1713 - Cross-Site Scripting 漏洞描述 Parallels H-Sphere 3.6.1713 contains a cross-site scripting vulnerability via the index_en.php ...
CVE-2008-7269: UC Gateway Investment SiteEngine v5.0 - Open Redirect-渗透云记 - 专注于网络安全与技术分享

CVE-2008-7269: UC Gateway Investment SiteEngine v5.0 – Open Redirect

漏洞标题 CVE-2008-7269: UC Gateway Investment SiteEngine v5.0 - Open Redirect 漏洞描述 Open redirect vulnerability in api.php in SiteEngine 5.x allows user-assisted remote attacker...
CVE-2022-46934: kkFileView 4.1.0 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-46934: kkFileView 4.1.0 – Cross-Site Scripting

漏洞标题 CVE-2022-46934: kkFileView 4.1.0 - Cross-Site Scripting 漏洞描述 kkFileView 4.1.0 is susceptible to cross-site scripting via the url parameter at /controller/OnlinePreview...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年2月7日 16:25
10
CVE-2021-41349: Microsoft Exchange Server Pre-Auth POST Based Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2021-41349: Microsoft Exchange Server Pre-Auth POST Based Cross-Site Scripting

漏洞标题 CVE-2021-41349: Microsoft Exchange Server Pre-Auth POST Based Cross-Site Scripting 漏洞描述 Microsoft Exchange Server is vulnerable to a spoofing vulnerability. Be aware t...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2021年3月9日 20:34
10
CVE-2022-25148: WordPress Plugin WP Statistics <= 13.1.5 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-25148: WordPress Plugin WP Statistics <= 13.1.5 - SQL Injection

漏洞标题 CVE-2022-25148: WordPress Plugin WP Statistics <= 13.1.5 - SQL Injection 漏洞描述 The WP Statistics WordPress plugin is vulnerable to SQL Injection due to insufficient ...
Anyscale Ray CVE-2023-48022 远程代码执行漏洞-渗透云记 - 专注于网络安全与技术分享

Anyscale Ray CVE-2023-48022 远程代码执行漏洞

漏洞标题 Anyscale Ray CVE-2023-48022 远程代码执行漏洞 漏洞描述 Anyscale Ray 是一个开源的分布式计算框架,可以轻松扩展 AI 和 Python 工作。该框架中存在远程代码执行漏洞,此漏洞是程序对...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2023年7月19日 00:01
10
CVE-2018-19892: DomainMOD 4.11.01 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2018-19892: DomainMOD 4.11.01 – Cross-Site Scripting

漏洞标题 CVE-2018-19892: DomainMOD 4.11.01 - Cross-Site Scripting 漏洞描述 DomainMOD 4.11.01 contains a cross-site scripting vulnerability via /domain//admin/dw/add-server.php Disp...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2018年2月19日 17:15
10
CVE-2020-22209: 74cms - ajax_common.php SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2020-22209: 74cms – ajax_common.php SQL Injection

漏洞标题 CVE-2020-22209: 74cms - ajax_common.php SQL Injection 漏洞描述 SQL Injection in 74cms 3.2.0 via the query parameter to plus/ajax_common.php. PoC代码
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2020年11月16日 05:36
10
CVE-2020-13379: Grafana 3.0.1-7.0.1 - Server-Side Request Forgery-渗透云记 - 专注于网络安全与技术分享

CVE-2020-13379: Grafana 3.0.1-7.0.1 – Server-Side Request Forgery

漏洞标题 CVE-2020-13379: Grafana 3.0.1-7.0.1 - Server-Side Request Forgery 漏洞描述 Grafana 3.0.1 through 7.0.1 is susceptible to server-side request forgery via the avatar feature...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2020年7月1日 21:01
10
CVE-2015-6920: WordPress sourceAFRICA <=0.1.3 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2015-6920: WordPress sourceAFRICA <=0.1.3 - Cross-Site Scripting

漏洞标题 CVE-2015-6920: WordPress sourceAFRICA <=0.1.3 - Cross-Site Scripting 漏洞描述 WordPress sourceAFRICA plugin version 0.1.3 contains a cross-site scripting vulnerability....
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2015年11月22日 02:53
10
CVE-2024-8856: WP Time Capsule Plugin - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2024-8856: WP Time Capsule Plugin – Remote Code Execution

漏洞标题 CVE-2024-8856: WP Time Capsule Plugin - Remote Code Execution 漏洞描述 The Backup and Staging by WP Time Capsule plugin for WordPress is vulnerable to arbitrary file uploa...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年5月29日 03:03
10
CVE-2010-1717: Joomla! Component iF surfALERT 1.2 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2010-1717: Joomla! Component iF surfALERT 1.2 – Local File Inclusion

漏洞标题 CVE-2010-1717: Joomla! Component iF surfALERT 1.2 - Local File Inclusion 漏洞描述 A directory traversal vulnerability in the iF surfALERT (com_if_surfalert) component 1.2 ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2010年8月7日 23:39
10