Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2019-12725 ZeroShell 远程命令执行漏洞 | https://github.com/givemefivw/CVE-2019-12725 | POC Details |
| 2 | 漏洞POC、EXP合集,持续更新。Apache Druid-任意文件读取(CVE-2021-36749)、ConfluenceRCE(CVE-2021-26084)、ZeroShell防火墙RCE(CVE-2019-12725)、ApacheSolr任意文件读取、蓝凌OA任意文件读取、phpStudyRCE、ShowDoc任意文件上传、原创先锋后台未授权、Kyan账号密码泄露、TerraMasterTos任意文件读取、TamronOS-IPTV系统RCE、Wayos防火墙账号密码泄露 | https://github.com/sma11new/PocList | POC Details |
| 3 | ZeroShell 3.9.0 Remote Command Injection | https://github.com/h3v0x/CVE-2019-12725-Command-Injection | POC Details |
| 4 | ZeroShell命令执行漏洞批量扫描poc+exp | https://github.com/gougou123-hash/CVE-2019-12725 | POC Details |
| 5 | ZeroShell 3.9.0 Remote Command Injection | https://github.com/hev0x/CVE-2019-12725-Command-Injection | POC Details |
| 6 | The EXP/POC of CVE-2019-12725 | https://github.com/YZS17/CVE-2019-12725 | POC Details |
| 7 | None | https://github.com/nowindows9/CVE-2019-12725-modified-exp | POC Details |
| 8 | Zeroshell 3.9.0 is prone to a remote command execution vulnerability. Specifically, this issue occurs because the web application mishandles a few HTTP parameters. An unauthenticated attacker can exploit this issue by injecting OS commands inside the vulnerable parameters. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-12725.yaml | POC Details |
| 9 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/ZeroShell%203.9.0%20%E8%BF%9C%E7%A8%8B%E5%91%BD%E4%BB%A4%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E%20CVE-2019-12725.md | POC Details |
| 10 | ZeroShell 3.9.0-远程命令执行漏洞-CVE-2019-12725 | https://github.com/chaitin/xray-plugins/blob/main/poc/manual/zeroshell-cve-2019-12725-rce.yml | POC Details |
| 11 | None | https://github.com/t0mmy4/CVE-2019-12725-modified-exp | POC Details |
No public POC found.
Login to generate AI POC| CVE-2019-1579 | Palo Alto Networks PAN-OS 输入验证错误漏洞 | |
| CVE-2019-12193 | H3C H3Cloud OS SQL注入漏洞 | |
| CVE-2019-11553 | Code42 Software Code42 for Enterprise 访问控制错误漏洞 | |
| CVE-2018-17792 | MDaemon Webmail 跨站请求伪造漏洞 | |
| CVE-2019-12453 | Microstrategy Web 跨站脚本漏洞 | |
| CVE-2019-12820 | Jisiwei i3 信任管理问题漏洞 | |
| CVE-2019-12821 | Jisiwei i3 安全特征问题漏洞 | |
| CVE-2019-13989 | dpic 缓冲区错误漏洞 | |
| CVE-2019-13991 | Arduino 注入漏洞 | |
| CVE-2015-7882 | Authentication bypass when using LDAP authentication in MongoDB Enterprise Server | |
| CVE-2019-11989 | HPE IceWall SSO Agent Option和IceWall MFA 输入验证错误漏洞 | |
| CVE-2019-11990 | HPE UIoT 访问控制错误漏洞 | |
| CVE-2019-13569 | WordPress Icegram Email Subscribers & Newsletters插件SQL注入漏洞 | |
| CVE-2019-9228 | 多款AudioCodes产品资源管理错误漏洞 | |
| CVE-2019-12815 | ProFTPD 访问控制错误漏洞 | |
| CVE-2019-9229 | 多款AudioCodes产品信任管理问题漏洞 | |
| CVE-2018-17210 | PrinterOn Central Print Services 授权问题漏洞 | |
| CVE-2019-12934 | WordPress wp-code-highlightjs插件跨站请求伪造漏洞 | |
| CVE-2019-11552 | Code42 Software CrashPlan for Small Business 代码注入漏洞 | |
| CVE-2019-13970 | antSword 跨站脚本漏洞 |
Showing top 20 of 36 CVEs. View all on vendor page → →
No comments yet