Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | thinkphp5.*Rce CVE-2018-20062 | https://github.com/NS-Sp4ce/thinkphp5.XRce | POC Details |
| 2 | None | https://github.com/yilin1203/CVE-2018-20062 | POC Details |
| 3 | An issue was discovered in NoneCms V1.3. thinkphp/library/think/App.php allows remote attackers to execute arbitrary PHP code via crafted use of the filter parameter, as demonstrated by the s=index/\think\Request/input&filter=phpinfo&data=1 query string. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2018/CVE-2018-20062.yaml | POC Details |
| 4 | RedArrow3.2 是一款用于渗透测试ThinkPHP 5.0.23 远程命令执行漏洞(CVE-2018-20062)的图形化工具。 | https://github.com/shenhui35/RedArrow | POC Details |
No public POC found.
Login to generate AI POC| CVE-2018-20064 | doorGets 安全漏洞 | |
| CVE-2018-19968 | phpMyAdmin 信息泄露漏洞 | |
| CVE-2018-19969 | phpMyAdmin 安全漏洞 | |
| CVE-2018-19970 | phpMyAdmin 跨站脚本漏洞 | |
| CVE-2018-20060 | urllib3 信任管理问题漏洞 | |
| CVE-2018-20061 | Frappe ERPNext SQL注入漏洞 | |
| CVE-2018-18344 | Google Chrome 输入验证错误漏洞 | |
| CVE-2018-20059 | Pippo 安全漏洞 | |
| CVE-2018-20057 | D-Link DIR-619L Rev.B和DIR-605L Rev.B 安全漏洞 | |
| CVE-2018-20056 | D-Link DIR-619L Rev.B和DIR-605L Rev.B 缓冲区错误漏洞 | |
| CVE-2018-20058 | Evernote For macOS 路径遍历漏洞 |
No comments yet