Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | D-Link DSL-2888A devices with firmware prior to AU_2.31_V1.1.47ae55 are vulnerable to authentication bypass issues which can lead to remote command execution. An unauthenticated attacker could bypass authentication to access authenticated pages and functionality. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-24579.yaml | POC Details |
| 2 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/D-Link%20DSL-28881A%20%E6%9C%AA%E6%8E%88%E6%9D%83%E8%AE%BF%E9%97%AE%20CVE-2020-24579.md | POC Details |
| 3 | None | https://github.com/chaitin/xray-plugins/blob/main/poc/manual/dlink-dsl-2888a-rce.yml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-25066 | 10.0 CRITICAL | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-27337 | 7.3 HIGH | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-27338 | 5.9 MEDIUM | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-28460 | 5.6 MEDIUM | Prototype Pollution |
| CVE-2020-28448 | 5.6 MEDIUM | Prototype Pollution |
| CVE-2020-27336 | 3.7 LOW | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-29583 | Zyxel USG Series 加密问题漏洞 | |
| CVE-2020-28641 | Malwarebytes Endpoint Protection 后置链接漏洞 | |
| CVE-2020-25106 | Nanosystems Supremo 代码问题漏洞 | |
| CVE-2020-13557 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-13560 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-13570 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-24578 | D-link DSL-2888A 默认配置问题漏洞 | |
| CVE-2020-24580 | D-link DSL-2888A 访问控制错误漏洞 | |
| CVE-2020-24581 | D-link DSL-2888A 操作系统命令注入漏洞 | |
| CVE-2020-13547 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-35608 | Microsoft Azure Sphere 注入漏洞 | |
| CVE-2020-35609 | Microsoft Azure Sphere 注入漏洞 | |
| CVE-2020-14231 | HCL Client Application Access 缓冲区错误漏洞 | |
| CVE-2020-14270 | Hcl Technologies Domino 安全漏洞 |
No comments yet