漏洞库 第691页
此分类不是0day,只是做互联网poc收集,不对poc真实性、可用性做保证,不以poc无效等理由反馈退款
CVE-2013-5528: Cisco Unified Communications Manager 7/8/9 - Directory Traversal-渗透云记 - 专注于网络安全与技术分享

CVE-2013-5528: Cisco Unified Communications Manager 7/8/9 – Directory Traversal

漏洞标题 CVE-2013-5528: Cisco Unified Communications Manager 7/8/9 - Directory Traversal 漏洞描述 A directory traversal vulnerability in the Tomcat administrative web interface in ...
CVE-2022-31181: PrestaShop - SQL Injection to Eval Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-31181: PrestaShop – SQL Injection to Eval Injection

漏洞标题 CVE-2022-31181: PrestaShop - SQL Injection to Eval Injection 漏洞描述 PrestaShop versions from 1.6.0.10 and before 1.7.8.7 contain an SQL injection caused by unsanitized u...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年11月17日 21:31
10
CVE-2021-41826: PlaceOS 1.2109.1 - Open Redirection-渗透云记 - 专注于网络安全与技术分享

CVE-2021-41826: PlaceOS 1.2109.1 – Open Redirection

漏洞标题 CVE-2021-41826: PlaceOS 1.2109.1 - Open Redirection 漏洞描述 PlaceOS Authentication Service before 1.29.10.0 allows app/controllers/auth/sessions_controller.rb open redire...
CVE-2019-10758: mongo-express Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2019-10758: mongo-express Remote Code Execution

漏洞标题 CVE-2019-10758: mongo-express Remote Code Execution 漏洞描述 mongo-express before 0.54.0 is vulnerable to remote code execution via endpoints that uses the `toBSON` method...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2019年9月12日 13:37
30
CVE-2024-41713: MitelMiCollab 身份绕过导致任意文件读取漏洞-渗透云记 - 专注于网络安全与技术分享

CVE-2024-41713: MitelMiCollab 身份绕过导致任意文件读取漏洞

漏洞标题 CVE-2024-41713: MitelMiCollab 身份绕过导致任意文件读取漏洞 漏洞描述 Mitel MiCollab 是一个企业协作平台,它将各种通信工具整合到一个应用程序中,提供语音和视频通话、消息传递、...
CVE-2013-4117: WordPress Plugin Category Grid View Gallery 2.3.1 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2013-4117: WordPress Plugin Category Grid View Gallery 2.3.1 – Cross-Site Scripting

漏洞标题 CVE-2013-4117: WordPress Plugin Category Grid View Gallery 2.3.1 - Cross-Site Scripting 漏洞描述 A cross-site scripting vulnerability in includes/CatGridPost.php in the Ca...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2013年7月29日 21:33
30
CVE-2022-23898: MCMS 5.2.5 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-23898: MCMS 5.2.5 – SQL Injection

漏洞标题 CVE-2022-23898: MCMS 5.2.5 - SQL Injection 漏洞描述 MCMS 5.2.5 contains a SQL injection vulnerability via the categoryId parameter in the file IContentDao.xml. An attacker...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年11月22日 02:20
20
CVE-2021-21978: VMware View Planner <4.6 SP1- Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2021-21978: VMware View Planner <4.6 SP1- Remote Code Execution

漏洞标题 CVE-2021-21978: VMware View Planner <4.6 SP1- Remote Code Execution 漏洞描述 VMware View Planner 4.x prior to 4.6 Security Patch 1 contains a remote code execution vuln...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2021年8月24日 15:14
20
CVE-2019-6112: WordPress Sell Media 2.4.1 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2019-6112: WordPress Sell Media 2.4.1 – Cross-Site Scripting

漏洞标题 CVE-2019-6112: WordPress Sell Media 2.4.1 - Cross-Site Scripting 漏洞描述 WordPress Plugin Sell Media v2.4.1 contains a cross-site scripting vulnerability in /inc/class-se...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2019年9月27日 09:43
30
CVE-2024-58136: Yii2 PHP Framework < 2.0.52 - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2024-58136: Yii2 PHP Framework < 2.0.52 - Remote Code Execution

漏洞标题 CVE-2024-58136: Yii2 PHP Framework < 2.0.52 - Remote Code Execution 漏洞描述 Yii2 PHP Framework before 2.0.52 is vulnerable to remote code execution via improper valida...
CVE-2013-4625: WordPress Plugin Duplicator < 0.4.5 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2013-4625: WordPress Plugin Duplicator < 0.4.5 - Cross-Site Scripting

漏洞标题 CVE-2013-4625: WordPress Plugin Duplicator < 0.4.5 - Cross-Site Scripting 漏洞描述 A cross-site scripting vulnerability in files/installer.cleanup.php in the Duplicator...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2013年11月10日 20:35
20
CVE-2022-0651: WordPress Plugin WP Statistics <= 13.1.5 - SQL Injection-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0651: WordPress Plugin WP Statistics <= 13.1.5 - SQL Injection

漏洞标题 CVE-2022-0651: WordPress Plugin WP Statistics <= 13.1.5 - SQL Injection 漏洞描述 The WP Statistics WordPress plugin is vulnerable to SQL Injection due to insufficient e...
CVE-2021-27909: Mautic <3.3.4 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2021-27909: Mautic <3.3.4 - Cross-Site Scripting

漏洞标题 CVE-2021-27909: Mautic <3.3.4 - Cross-Site Scripting 漏洞描述 Mautic before 3.3.4 contains a cross-site scripting vulnerability on the password reset page in the bundle...
CVE-2019-9874: Sitecore Experience Platform - Deserialization of Untrusted Data-渗透云记 - 专注于网络安全与技术分享

CVE-2019-9874: Sitecore Experience Platform – Deserialization of Untrusted Data

漏洞标题 CVE-2019-9874: Sitecore Experience Platform - Deserialization of Untrusted Data 漏洞描述 Sitecore Experience Platform before 8.2 Update-7 and 9.0 before Update-2 is vulner...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2019年10月12日 07:53
40
CVE-2024-32238: H3C ER8300G2-X - Password Disclosure-渗透云记 - 专注于网络安全与技术分享

CVE-2024-32238: H3C ER8300G2-X – Password Disclosure

漏洞标题 CVE-2024-32238: H3C ER8300G2-X - Password Disclosure 漏洞描述 H3C ER8300G2-X is vulnerable to Incorrect Access Control. The password for the router's management syste...
CVE-2014-9119: WordPress DB Backup <=4.5 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2014-9119: WordPress DB Backup <=4.5 - Local File Inclusion

漏洞标题 CVE-2014-9119: WordPress DB Backup <=4.5 - Local File Inclusion 漏洞描述 WordPress Plugin DB Backup 4.5 and possibly prior versions are prone to a local file inclusion ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2014年2月5日 00:41
30