Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | LOYTEC LGATE-902 6.3.2 is susceptible to local file inclusion which could allow an attacker to manipulate path references and access files and directories (including critical system files) that are stored outside the root folder of the web application running on the device. This can be used to read and configuration files containing, e.g., usernames and passwords. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2018/CVE-2018-14918.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2018-14887 | Odoo 输入验证错误漏洞 | |
| CVE-2019-13032 | FlightCrew 代码问题漏洞 | |
| CVE-2019-13031 | LemonLDAP::NG 代码问题漏洞 | |
| CVE-2019-13028 | eID client 访问控制错误漏洞 | |
| CVE-2018-17170 | Grouptime Teamwire Desktop Client 代码注入漏洞 | |
| CVE-2018-17560 | Grouptime Teamwire Client 跨站脚本漏洞 | |
| CVE-2018-14867 | Odoo 访问控制错误漏洞 | |
| CVE-2018-14868 | Odoo 授权问题漏洞 | |
| CVE-2018-14885 | Odoo 访问控制错误漏洞 | |
| CVE-2018-14886 | Odoo 权限许可和访问控制问题漏洞 | |
| CVE-2019-12995 | Istio 输入验证错误漏洞 | |
| CVE-2019-12932 | SeedDMS 跨站脚本漏洞 | |
| CVE-2018-14916 | Loytec LGATE-902 代码问题漏洞 | |
| CVE-2018-14919 | Loytec LGATE-902 跨站脚本漏洞 | |
| CVE-2018-15519 | 多款Lexmark产品缓冲区错误漏洞 | |
| CVE-2018-15520 | 多款Lexmark产品缓冲区错误漏洞 | |
| CVE-2018-15555 | Actiontec Electronics WEB6000Q 权限许可和访问控制问题漏洞 | |
| CVE-2019-13012 | GNOME Glib 授权问题漏洞 | |
| CVE-2019-12997 | Loopchain 命令注入漏洞 |
No comments yet