Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Wordpress Plugin Simple Job Board 2.9.3 LFI Vulnerability (CVE-2020-35749) proof of concept exploit | https://github.com/M4xSec/Wordpress-CVE-2020-35749 | POC Details |
| 2 | WordPress Simple Job Board prior to version 2.9.4 is vulnerable to arbitrary file retrieval vulnerabilities because it does not validate the sjb_file parameter when viewing a resume, allowing an authenticated user with the download_resume capability (such as HR users) to download arbitrary files from the web-server via local file inclusion. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-35749.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-35581 | Envira Gallery Lite 跨站脚本漏洞 | |
| CVE-2020-35582 | Envira Gallery Lite 跨站脚本漏洞 | |
| CVE-2021-23835 | flatCore 输入验证错误漏洞 | |
| CVE-2021-23836 | flatCore CMS 跨站脚本漏洞 | |
| CVE-2021-23837 | flatCore SQL注入漏洞 | |
| CVE-2021-23838 | flatCore 跨站脚本漏洞 | |
| CVE-2019-16961 | Solarwinds Web Help Desk 跨站脚本漏洞 | |
| CVE-2020-35733 | Ericsson Erlang 信任管理问题漏洞 | |
| CVE-2020-35748 | WordPress FV Flowplayer Video Player 跨站脚本漏洞 | |
| CVE-2020-16255 | Owncloud 跨站脚本漏洞 | |
| CVE-2020-24641 | HPE Aruba Airwave Glass 代码问题漏洞 | |
| CVE-2020-24638 | HPE Aruba Airwave Glass 安全漏洞 | |
| CVE-2020-24639 | HPE Aruba Airwave Glass 代码问题漏洞 | |
| CVE-2020-24640 | HPE Aruba Airwave Glass 输入验证错误漏洞 | |
| CVE-2021-3162 | Docker Desktop 信任管理问题漏洞 | |
| CVE-2020-25533 | Malwarebytes 竞争条件问题漏洞 |
No comments yet