Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | A login bypass(CVE-2019-18371) and a command injection vulnerability(CVE-2019-18370) in Xiaomi Router R3G up to version 2.28.23. | https://github.com/UltramanGaia/Xiaomi_Mi_WiFi_R3G_Vulnerability_POC | POC Details |
| 2 | A login bypass(CVE-2019-18371) and a command injection vulnerability(CVE-2019-18370) in Xiaomi Router R3G up to versi… | https://github.com/AjayMT6/UltramanGaia | POC Details |
| 3 | A login bypass(CVE-2019-18371) and a command injection vulnerability(CVE-2019-18370) in Xiaomi Router R3G up to versi… | https://github.com/jsnhcuan1997/UltramanGaia | POC Details |
| 4 | Xiaomi Mi WiFi R3G devices before 2.28.23-stable are susceptible to local file inclusion vulnerabilities via a misconfigured NGINX alias, as demonstrated by api-third-party/download/extdisks../etc/config/account. With this vulnerability, the attacker can bypass authentication. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-18371.yaml | POC Details |
| 5 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/%E5%B0%8F%E7%B1%B3%20%E8%B7%AF%E7%94%B1%E5%99%A8%20extdisks%20%E4%BB%BB%E6%84%8F%E6%96%87%E4%BB%B6%E8%AF%BB%E5%8F%96%E6%BC%8F%E6%B4%9E%20CVE-2019-18371.md | POC Details |
No public POC found.
Login to generate AI POC| CVE-2015-9521 | WordPress Easy Digital Downloads(EDD)Pushover Notifications extension 跨站脚本漏洞 | |
| CVE-2019-18278 | VideoLAN VLC media player 缓冲区错误漏洞 | |
| CVE-2019-18281 | Qt qtbase 缓冲区错误漏洞 | |
| CVE-2015-9528 | WordPress Easy Digital Downloads Software Licensing extension 跨站脚本漏洞 | |
| CVE-2015-9527 | WordPress Easy Digital Downloads Simple Shipping extension 跨站脚本漏洞 | |
| CVE-2015-9526 | WordPress Easy Digital Downloads Reviews extension 跨站脚本漏洞 | |
| CVE-2015-9525 | WordPress Easy Digital Downloads Recurring Payments extension 跨站脚本漏洞 | |
| CVE-2015-9524 | WordPress Easy Digital Downloads Recount Earnings extension 跨站脚本漏洞 | |
| CVE-2015-9523 | WordPress Easy Digital Downloads Recommended Products extension 跨站脚本漏洞 | |
| CVE-2015-9522 | WordPress Easy Digital Downloads QR Code extension 跨站脚本漏洞 | |
| CVE-2015-9529 | WordPress Easy Digital Downloads Stripe extension 跨站脚本漏洞 | |
| CVE-2015-9520 | WordPress Easy Digital Downloads Per Product Emails extension 跨站脚本漏洞 | |
| CVE-2015-9519 | WordPress Easy Digital Downloads PDF Stamper extension 跨站脚本漏洞 | |
| CVE-2015-9518 | WordPress Easy Digital Downloads PDF Invoices extension 跨站脚本漏洞 | |
| CVE-2015-9517 | WordPress Easy Digital Downloads Manual Purchases extension 跨站脚本漏洞 | |
| CVE-2015-9516 | WordPress Easy Digital Downloads Invoices extension 跨站脚本漏洞 | |
| CVE-2015-9502 | WordPress Auberge theme 跨站脚本漏洞 | |
| CVE-2015-9515 | WordPress Easy Digital Downloads htaccess Editor extension 跨站脚本漏洞 | |
| CVE-2015-9514 | WordPress Easy Digital Downloads Free Downloads extension 跨站脚本漏洞 | |
| CVE-2015-9513 | WordPress Easy Digital Downloads Favorites extension 跨站脚本漏洞 |
Showing top 20 of 72 CVEs. View all on vendor page → →
No comments yet