Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Scanner for Zyxel products which are potentially vulnerable due to an undocumented user account (CVE-2020-29583) | https://github.com/ruppde/scan_CVE-2020-29583 | POC Details |
| 2 | A hardcoded credential vulnerability was identified in the 'zyfwp' user account in some Zyxel firewalls and AP controllers. The account was designed to deliver automatic firmware updates to connected access points through FTP. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-29583.yaml | POC Details |
| 3 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/Zyxel%20%E7%A1%AC%E7%BC%96%E7%A0%81%E5%90%8E%E9%97%A8%E8%B4%A6%E6%88%B7%E6%BC%8F%E6%B4%9E%20CVE-2020-29583.md | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-25066 | 10.0 CRITICAL | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-27337 | 7.3 HIGH | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-27338 | 5.9 MEDIUM | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-28460 | 5.6 MEDIUM | Prototype Pollution |
| CVE-2020-28448 | 5.6 MEDIUM | Prototype Pollution |
| CVE-2020-27336 | 3.7 LOW | Treck TCP/IP 缓冲区错误漏洞 |
| CVE-2020-14270 | Hcl Technologies Domino 安全漏洞 | |
| CVE-2020-14231 | HCL Client Application Access 缓冲区错误漏洞 | |
| CVE-2020-35609 | Microsoft Azure Sphere 注入漏洞 | |
| CVE-2020-35608 | Microsoft Azure Sphere 注入漏洞 | |
| CVE-2020-13547 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-24581 | D-link DSL-2888A 操作系统命令注入漏洞 | |
| CVE-2020-24580 | D-link DSL-2888A 访问控制错误漏洞 | |
| CVE-2020-24579 | D-link DSL-2888A 授权问题漏洞 | |
| CVE-2020-24578 | D-link DSL-2888A 默认配置问题漏洞 | |
| CVE-2020-13570 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-13560 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-13557 | Foxit Reader 资源管理错误漏洞 | |
| CVE-2020-25106 | Nanosystems Supremo 代码问题漏洞 | |
| CVE-2020-28641 | Malwarebytes Endpoint Protection 后置链接漏洞 |
No comments yet