Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Joomla! Cmimarketplace 0.1 is susceptible to local file inclusion because com_cmimarketplace allows remote attackers to list arbitrary directories via a .. (dot dot) in the viewit parameter to index.php. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2009/CVE-2009-1496.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2008-6784 | Scripts-For-Sites EZ Adult目录'directory.php' SQL注入漏洞 | |
| CVE-2009-1499 | Joomla! 'com_mailto' 组件 'index.php' SQL注入漏洞 | |
| CVE-2009-1498 | Internet Discussion Boards inc/profilemain.php' 本地文件目录遍历漏洞 | |
| CVE-2009-1497 | Gomlab Gretech GOM Player .srt文件解析栈溢出漏洞 | |
| CVE-2009-1495 | Web File Explorer 'data/db.mdb'权限许可和访问控制漏洞 | |
| CVE-2008-6775 | HTC Touch Pro和Touch Cruise vCard 拒绝服务攻击漏洞 | |
| CVE-2009-1507 | Drupal Node Access User Reference模块安全绕过漏洞 | |
| CVE-2009-1506 | Intelliants eLitius 'classes/Xp.phpp' SQL注入漏洞 | |
| CVE-2009-1505 | Drupal News Page模块SQL注入漏洞 | |
| CVE-2009-1504 | Xigla Absolute Form Processor XE 'xlaAFPadmin'cookie身份认证绕过漏洞 | |
| CVE-2009-1503 | Tiger DMS Login SQL注入漏洞 | |
| CVE-2009-1502 | Matteoiammarrone S-CMS 'plugin.php'目录遍历漏洞 | |
| CVE-2009-1501 | Exif Drupal Module 跨站脚本攻击漏洞 | |
| CVE-2009-1500 | ProjectCMS 'index.php'SQL注入漏洞 | |
| CVE-2009-1365 | Adobe Flash Media Server 未明漏洞 | |
| CVE-2009-1364 | libwmf库WMF图形文件解析远程代码执行漏洞 | |
| CVE-2009-1512 | X-Forum 'SaveConfig.php' SQL注入漏洞 | |
| CVE-2008-6783 | Scripts-For-Sites Home Business目录'directory.php' SQL注入漏洞 | |
| CVE-2008-6782 | Scripts-For-Sites Hosting Directory 'directory.php' SQL注入漏洞 | |
| CVE-2008-6781 | Scripts-For-Sites Gaming Directory 'directory.php' SQL注入漏洞 |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet