尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
| 厂商 | 产品 | 影响版本 | CPE | 订阅 |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC 描述 | 源链接 | 神龙链接 |
|---|---|---|---|
| 1 | Agentejo Cockpit prior to 0.12.0 is vulnerable to NoSQL Injection via the newpassword method of the Auth controller, which is responsible for displaying the user password reset form. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-35848.yaml | POC详情 |
| 2 | CVE-2020-35848 impacts Cockpit-CMS v1.7 due to unsafe handling of user inputs in authentication mechanisms, leading to remote code execution. This lab is built for CTF players and bug bounty learners to simulate real-world exploitation workflows including token extraction, password reset, and flag capture. | https://github.com/sabbu143s/CVE_2020_35848 | POC详情 |
未找到公开 POC。
登录以生成 AI POC| CVE-2020-28413 | 5.3 MEDIUM | MantisBT SQL注入漏洞 |
| CVE-2020-29231 | Egavilanmedia User Registration & Login System 跨站脚本漏洞 | |
| CVE-2020-35847 | Agentejo Cockpit SQL注入漏洞 | |
| CVE-2020-29230 | Egavilanmedia User Registration & Login System 跨站脚本漏洞 | |
| CVE-2020-28365 | Sentrifugo 跨站脚本漏洞 | |
| CVE-2020-29228 | Egavilanmedia User Registration & Login System SQL注入漏洞 | |
| CVE-2020-35849 | MantisBT 安全漏洞 | |
| CVE-2020-5809 | Umbraco 跨站脚本漏洞 | |
| CVE-2020-5810 | Umbraco 跨站脚本漏洞 | |
| CVE-2020-5811 | Umbraco 路径遍历漏洞 | |
| CVE-2020-29233 | WonderCMS 跨站脚本漏洞 | |
| CVE-2020-29469 | WonderCMS 跨站脚本漏洞 | |
| CVE-2020-35241 | Flatpress 跨站脚本漏洞 | |
| CVE-2020-35240 | Fluxbb 跨站脚本漏洞 | |
| CVE-2020-29477 | Invision Community 跨站脚本漏洞 | |
| CVE-2020-29594 | Rocket.Chat 授权问题漏洞 | |
| CVE-2020-35850 | Agentejo Cockpit 代码问题漏洞 | |
| CVE-2020-35846 | Agentejo Cockpit SQL注入漏洞 | |
| CVE-2020-27534 | Docker Engine 路径遍历漏洞 | |
| CVE-2020-35737 | Newgen Egov Correspondence Management System 安全漏洞 |
显示前 20 条,共 37 条。 查看全部 → →
暂无评论