Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2014-8682 | https://github.com/nihal1306/gogs | POC Details |
| 2 | Multiple SQL injection vulnerabilities in Gogs (aka Go Git Service) 0.3.1-9 through 0.5.x before 0.5.6.1105 Beta allow remote attackers to execute arbitrary SQL commands via the q parameter to (1) api/v1/repos/search, which is not properly handled in models/repo.go, or (2) api/v1/users/search, which is not properly handled in models/user.go. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2014/CVE-2014-8682.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2014-5395 | Huawei HiLink E3236和E3276 跨站请求伪造漏洞 | |
| CVE-2014-7137 | Dolibarr ERP/CRM SQL注入漏洞 | |
| CVE-2014-7871 | Open-Xchange AppSuite‘ExtractValue()’函数SQL注入漏洞 | |
| CVE-2014-8090 | Ruby REXML解析器拒绝服务漏洞 | |
| CVE-2014-8469 | Moxi9 PHPFox 跨站脚本漏洞 | |
| CVE-2014-8539 | Joomla! Simple Email Form 跨站脚本漏洞 | |
| CVE-2014-8681 | Gogs SQL注入漏洞 | |
| CVE-2014-8683 | Gogs 跨站脚本漏洞 | |
| CVE-2014-7194 | 多款TIBCO产品权限许可和访问控制漏洞 | |
| CVE-2014-7195 | TIBCO Spotfire Web Player Engine 信息泄露漏洞 | |
| CVE-2014-8000 | Cisco Unified Communications Manager IM and Presence Service 权限许可和访问控制漏洞 | |
| CVE-2014-8388 | Advantech WebAccess 基于栈的缓冲区溢出漏洞 |
No comments yet