Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2004-0731

EPSS 0.06% · P18
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2004-0731

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Cross-site scripting (XSS) vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to inject arbitrary script as other users via the input field.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
PHP-Nuke多个输入验证漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
PHP-Nuke是一个广为流行的网站创建和管理工具,它可以使用很多数据库软件作为后端,比如MySQL、PostgreSQL、mSQL、Interbase、Sybase等。 PHP-Nuke多处不正确处理用户提交的数据,远程攻击者可以利用这个漏洞进行跨站脚本,路径泄露,敏感信息泄露等攻击。 A. 路径泄露 "WebLinks"模块对"show"变量缺少过滤,可导致路径泄露: http://localhost/nuke73/modules.php?name=Web_Links&l_op=viewlink&ci
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2004-0731

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2004-0731

登录查看更多情报信息。

Same Patch Batch · n/a · 2004-07-23 · 27 CVEs total

CVE-2004-0729PhpBB泄露完整路径漏洞
CVE-2004-0742Sun Java System Calendar服务器认证代理权限增加漏洞
CVE-2004-0741LionMax Software WWW File Share Pro服务拒绝漏洞
CVE-2004-0740Lexmark打印机HTTP服务远程拒绝服务漏洞
CVE-2004-0739Whisper FTP Surfer缓冲区溢出漏洞
CVE-2004-0738Php-Nuke SQL注入漏洞
CVE-2004-0737Php-Nuke Search module index.php 跨站脚本攻击漏洞 Php-Nuke Search module index.php跨站脚本攻击漏洞
CVE-2004-0736Php-Nuke信息泄露漏洞
CVE-2004-0735Medal of Honor(1) Allied Assault(2) Breakthrough(3) Spearhead缓冲区溢出漏洞
CVE-2004-0734Extropia WebStore远程命令执行漏洞
CVE-2004-0733OllyDbg Debugger消息格式串处理漏洞
CVE-2004-0732Php-Nuke Search module index.php SQL注入漏洞
CVE-2004-0730PhpBB跨站脚本攻击(XSS)漏洞
CVE-2004-0600Samba 3.x SWAT预验证远程缓冲区溢出漏洞
CVE-2004-0728Microsoft Systems Management Server远程拒绝服务漏洞
CVE-2004-0727Microsoft Internet Explorer 安全漏洞
CVE-2004-0726Microsoft Windows 2000 Media Player控件媒体预览漏洞
CVE-2004-0725Moodle 安全漏洞
CVE-2004-0724Valve软件Half-Life引擎远程服务拒绝漏洞
CVE-2004-0723Microsoft JVM跨域Applet未授权通信漏洞

Showing top 20 of 27 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2004-0731

No comments yet


Leave a comment