Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | SearchBlox prior to version 9.2.2 is susceptible to local file inclusion in FileServlet that allows remote, unauthenticated users to read arbitrary files from the operating system via a /searchblox/servlet/FileServlet?col=url= request. Additionally, this may be used to read the contents of the SearchBlox configuration file (e.g., searchblox/WEB-INF/config.xml), which contains both the Super Admin API key and the base64 encoded SHA1 password hashes of other SearchBlox users. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-35580.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-23386 | 7.7 HIGH | Remote Memory Exposure |
| CVE-2020-24395 | Homee Brain Cube 数据伪造问题漏洞 | |
| CVE-2021-3536 | Red Hat Wildfly 跨站脚本漏洞 | |
| CVE-2021-27461 | Emerson Rosemount X-STREAM Gas Analyzer 路径遍历漏洞 | |
| CVE-2020-15522 | Bouncy Castle BC 竞争条件问题漏洞 | |
| CVE-2021-27467 | Emerson Rosemount X-STREAM Gas Analyzer 安全漏洞 | |
| CVE-2021-27465 | Emerson Rosemount X-STREAM Gas Analyzer 跨站脚本漏洞 | |
| CVE-2021-27463 | Emerson Rosemount X-STREAM Gas Analyzer 安全漏洞 | |
| CVE-2021-3426 | Python 路径遍历漏洞 | |
| CVE-2021-27457 | Emerson Rosemount X-STREAM Gas Analyzer 加密问题漏洞 | |
| CVE-2020-24396 | Homee Brain Cube 安全漏洞 | |
| CVE-2021-29659 | ownCloud 安全漏洞 | |
| CVE-2021-28111 | Draege X-Dock 信任管理问题漏洞 | |
| CVE-2021-28112 | Draege X-Dock 安全漏洞 | |
| CVE-2021-3438 | HP 多款产品缓冲区错误漏洞 | |
| CVE-2021-27434 | Siemens SIMATIC OPC UA 信息泄露漏洞 | |
| CVE-2021-25930 | Opennms Group OpenNMS 跨站请求伪造漏洞 | |
| CVE-2021-25929 | Opennms Group OpenNMS 跨站脚本漏洞 | |
| CVE-2020-21053 | FusionPBX 跨站脚本漏洞 | |
| CVE-2021-25931 | Opennms Group OpenNMS 跨站请求伪造漏洞 |
Showing top 20 of 45 CVEs. View all on vendor page → →
No comments yet