Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | /web/Lib/Action/IndexAction.class.php in D-Link Central WiFi Manager CWM(100) before v1.03R0100_BETA6 allows remote attackers to execute arbitrary PHP code via a cookie because a cookie's username field allows eval injection, and an empty password bypasses authentication. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-13372.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2019-13375 | D-Link Central WiFi Manager CWM-100 SQL注入漏洞 | |
| CVE-2019-13374 | D-Link Central WiFi Manager CWM-100 跨站脚本漏洞 | |
| CVE-2019-13373 | D-Link Central WiFi Manager CWM-100 SQL注入漏洞 | |
| CVE-2019-13370 | Ignited CMS 跨站请求伪造漏洞 | |
| CVE-2019-13362 | Codedoc 缓冲区错误漏洞 |
No comments yet