Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Zimbra RCE PoC - CVE-2019-9670 XXE/SSRF | https://github.com/rek7/Zimbra-RCE | POC Details |
| 2 | Zimbra RCE CVE-2019-9670 | https://github.com/attackgithub/Zimbra-RCE | POC Details |
| 3 | 🔥 Arbimz is a python tool created to exploit the vulnerability on Zimbra assigned as CVE-2019-9670. | https://github.com/oppsec/arbimz | POC Details |
| 4 | 🕵️ Yet another CVE-2019-9670 exploit, but in Golang. | https://github.com/oppsec/zaber | POC Details |
| 5 | CVE-2019-9670 is used to find XXE bug | https://github.com/Cappricio-Securities/CVE-2019-9670 | POC Details |
| 6 | None | https://github.com/OracleNep/CVE-2019-9670-DtdFilegeneration | POC Details |
| 7 | 🔥 Arbimz is a python tool created to exploit the vulnerability on Zimbra assigned as CVE-2019-9670. | https://github.com/000pp/arbimz | POC Details |
| 8 | 🕵️ Yet another CVE-2019-9670 exploit, but in Golang. | https://github.com/000pp/zaber | POC Details |
| 9 | Synacor Zimbra Collaboration Suite 8.7.x before 8.7.11p10 has an XML external entity injection (XXE) vulnerability via the mailboxd component. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2019/CVE-2019-9670.yaml | POC Details |
| 10 | Zimbra XXE Vul,may Control your Server with AdminPort SSRF | https://github.com/chaitin/xray-plugins/blob/main/poc/manual/zimbra-cve-2019-9670-xxe.yml | POC Details |
| 11 | 🕵️ Yet another CVE-2019-9670 exploit, but in Golang. | https://github.com/Phuong39/zaber | POC Details |
No public POC found.
Login to generate AI POC| CVE-2018-19978 | Auerswald COMfort 1200 IP phone 缓冲区错误漏洞 | |
| CVE-2018-18631 | Zimbra Collaboration Suite mailboxd组件跨站脚本漏洞 | |
| CVE-2018-14013 | Zimbra Collaboration Suite 跨站脚本漏洞 | |
| CVE-2019-6981 | Zimbra Collaboration Suite 代码问题漏洞 | |
| CVE-2018-20160 | Zimbra Collaboration Suite 代码问题漏洞 | |
| CVE-2019-6980 | Zimbra Collaboration Suite 代码问题漏洞 | |
| CVE-2019-6322 | HP Workstation BIOS 安全特征问题漏洞 | |
| CVE-2019-6321 | HP Workstation BIOS 安全特征问题漏洞 | |
| CVE-2019-6957 | Buffer Overflow for Bosch Video Systems, PSIM and Access Control Systems | |
| CVE-2019-6958 | Improper Access Control for Bosch Video Systems, PSIM and Access Control Systems | |
| CVE-2019-12452 | Containous Traefik 信任管理问题漏洞 | |
| CVE-2019-12347 | pfSense 跨站脚本漏洞 | |
| CVE-2019-11872 | WordPress Hustle插件注入漏洞 | |
| CVE-2018-16221 | Yealink Ultra-elegant IP Phone SIP-T41P 路径遍历漏洞 | |
| CVE-2018-16218 | Yealink Ultra-elegant IP Phone SIP-T41P 跨站请求伪造漏洞 | |
| CVE-2018-16217 | Yealink Ultra-elegant IP Phone SIP-T41P 操作系统命令注入漏洞 | |
| CVE-2019-12439 | Bubblewrap 输入验证错误漏洞 | |
| CVE-2018-19977 | Auerswald COMfort 1200 IP phone 命令操作系统命令注入漏洞 | |
| CVE-2019-12165 | Mitel Networks MiCollab和Mitel Networks MiCollab AWV 安全漏洞 | |
| CVE-2019-9865 | Wind River Systems VxWorks 输入验证错误漏洞 |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet