漏洞库 第799页
此分类不是0day,只是做互联网poc收集,不对poc真实性、可用性做保证,不以poc无效等理由反馈退款
CVE-2024-30569: Netgear R6850 - Information Disclosure-渗透云记 - 专注于网络安全与技术分享

CVE-2024-30569: Netgear R6850 – Information Disclosure

漏洞标题 CVE-2024-30569: Netgear R6850 - Information Disclosure 漏洞描述 Netgear R6850 router firmware version V1.1.0.88 contains an information leakage vulnerability in the curren...
CVE-2014-4558: WooCommerce Swipe <= 2.7.1 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2014-4558: WooCommerce Swipe <= 2.7.1 - Cross-Site Scripting

漏洞标题 CVE-2014-4558: WooCommerce Swipe <= 2.7.1 - Cross-Site Scripting 漏洞描述 A cross-site scripting vulnerability in test-plugin.php in the Swipe Checkout for WooCommerce ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2014年11月6日 22:00
60
CVE-2022-0250: Redirection for Contact Form 7 < 2.5.0 - Cross-Site Scripting-渗透云记 - 专注于网络安全与技术分享

CVE-2022-0250: Redirection for Contact Form 7 < 2.5.0 - Cross-Site Scripting

漏洞标题 CVE-2022-0250: Redirection for Contact Form 7 < 2.5.0 - Cross-Site Scripting 漏洞描述 The Redirection for Contact Form 7 WordPress plugin before 2.5.0 does not escape a...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年12月20日 09:07
40
CVE-2021-38647: Microsoft Open Management Infrastructure - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2021-38647: Microsoft Open Management Infrastructure – Remote Code Execution

漏洞标题 CVE-2021-38647: Microsoft Open Management Infrastructure - Remote Code Execution 漏洞描述 Microsoft Open Management Infrastructure is susceptible to remote code execution ...
CVE-2019-17232: WordPress Ultimate FAQs <= 1.8.24 – Unauthenticated Options Import and Export-渗透云记 - 专注于网络安全与技术分享

CVE-2019-17232: WordPress Ultimate FAQs <= 1.8.24 – Unauthenticated Options Import and Export

漏洞标题 CVE-2019-17232: WordPress Ultimate FAQs <= 1.8.24 – Unauthenticated Options Import and Export 漏洞描述 Functions/EWD_UFAQ_Import.php in the ultimate-faqs plugin throug...
CRMEB开源商城系统 /api/products 存在SQL注入漏洞(CVE-2024-36837)-渗透云记 - 专注于网络安全与技术分享

CRMEB开源商城系统 /api/products 存在SQL注入漏洞(CVE-2024-36837)

漏洞标题 CRMEB开源商城系统 /api/products 存在SQL注入漏洞(CVE-2024-36837) 漏洞描述 CRMEB开源商城系统是一款全开源可商用的系统,前后端分离开发,全部100%开源,在小程序、公众号、H5、APP...
CVE-2015-4074: Joomla! Helpdesk Pro plugin <1.4.0 - Local File Inclusion-渗透云记 - 专注于网络安全与技术分享

CVE-2015-4074: Joomla! Helpdesk Pro plugin <1.4.0 - Local File Inclusion

漏洞标题 CVE-2015-4074: Joomla! Helpdesk Pro plugin <1.4.0 - Local File Inclusion 漏洞描述 Directory traversal vulnerability in the Helpdesk Pro plugin before 1.4.0 for Joomla! ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2015年1月27日 01:10
40
CVE-2022-31706: VMware vRealize Log Insight - Path Traversal-渗透云记 - 专注于网络安全与技术分享

CVE-2022-31706: VMware vRealize Log Insight – Path Traversal

漏洞标题 CVE-2022-31706: VMware vRealize Log Insight - Path Traversal 漏洞描述 he vRealize Log Insight contains a Directory Traversal Vulnerability. An unauthenticated, malicious a...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年12月25日 14:55
40
CVE-2021-29490: Jellyfin 10.7.2 - Server Side Request Forgery-渗透云记 - 专注于网络安全与技术分享

CVE-2021-29490: Jellyfin 10.7.2 – Server Side Request Forgery

漏洞标题 CVE-2021-29490: Jellyfin 10.7.2 - Server Side Request Forgery 漏洞描述 Jellyfin is a free software media system. Versions 10.7.2 and below are vulnerable to unauthenticate...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2021年10月1日 18:49
10
CVE-2020-8615: Wordpress Plugin Tutor LMS 1.5.3 - Cross-Site Request Forgery-渗透云记 - 专注于网络安全与技术分享

CVE-2020-8615: WordPress Plugin Tutor LMS 1.5.3 – Cross-Site Request Forgery

漏洞标题 CVE-2020-8615: Wordpress Plugin Tutor LMS 1.5.3 - Cross-Site Request Forgery 漏洞描述 A CSRF vulnerability in the Tutor LMS plugin before 1.5.3 for WordPress can result in...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2020年1月7日 06:29
50
CVE-2024-7714: AI Assistant with ChatGPT by AYS <= 2.0.9 - Unauthenticated AJAX Calls-渗透云记 - 专注于网络安全与技术分享

CVE-2024-7714: AI Assistant with ChatGPT by AYS <= 2.0.9 - Unauthenticated AJAX Calls

漏洞标题 CVE-2024-7714: AI Assistant with ChatGPT by AYS <= 2.0.9 - Unauthenticated AJAX Calls 漏洞描述 The plugin lacks sufficient access controls allowing an unauthenticated u...
CVE-2015-3306: ProFTPd - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2015-3306: ProFTPd – Remote Code Execution

漏洞标题 CVE-2015-3306: ProFTPd - Remote Code Execution 漏洞描述 ProFTPD 1.3.5 contains a remote code execution vulnerability via the mod_copy module which allows remote attackers ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2015年3月19日 19:57
30
CVE-2022-33901: WordPress MultiSafepay for WooCommerce <=4.13.1 - Arbitrary File Read-渗透云记 - 专注于网络安全与技术分享

CVE-2022-33901: WordPress MultiSafepay for WooCommerce <=4.13.1 - Arbitrary File Read

漏洞标题 CVE-2022-33901: WordPress MultiSafepay for WooCommerce <=4.13.1 - Arbitrary File Read 漏洞描述 WordPress MultiSafepay for WooCommerce plugin through 4.13.1 contains an ...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2022年12月29日 16:33
20
CVE-2021-38647: Microsoft Open Management Infrastructure - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2021-38647: Microsoft Open Management Infrastructure – Remote Code Execution

漏洞标题 CVE-2021-38647: Microsoft Open Management Infrastructure - Remote Code Execution 漏洞描述 Microsoft Open Management Infrastructure is susceptible to remote code execution ...
CVE-2020-11853: Micro Focus Operations Bridge Manager <=2020.05 - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2020-11853: Micro Focus Operations Bridge Manager <=2020.05 - Remote Code Execution

漏洞标题 CVE-2020-11853: Micro Focus Operations Bridge Manager <=2020.05 - Remote Code Execution 漏洞描述 Micro Focus Operations Bridge Manager in versions 2020.05 and below is ...
CVE-2024-28397: pyload-ng js2py - Remote Code Execution-渗透云记 - 专注于网络安全与技术分享

CVE-2024-28397: pyload-ng js2py – Remote Code Execution

漏洞标题 CVE-2024-28397: pyload-ng js2py - Remote Code Execution 漏洞描述 An issue in the component js2py.disable_pyimport() of js2py up to v0.74 allows attackers to execute arbitr...
云记的头像-渗透云记 - 专注于网络安全与技术分享云记2024年7月6日 10:20
40