Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Instructure Canvas Learning Management System (LMS) | Canvas LMS 2020-07-29 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Canvas version 2020-07-29 is susceptible to blind server-side request forgery. An attacker can cause Canvas to perform HTTP GET requests to arbitrary domains and thus potentially access sensitive information, modify data, and/or execute unauthorized operations. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-5775.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-24589 | 9.1 CRITICAL | WSO2 API Manager 安全漏洞 |
| CVE-2020-24590 | 9.1 CRITICAL | WSO2 API Manager 安全漏洞 |
| CVE-2019-11857 | 9.1 CRITICAL | ALEOS AceManager Information Disclosure |
| CVE-2019-11862 | 8.1 HIGH | ALEOS SSH Service Allows Traffic Proxying |
| CVE-2020-7710 | 8.1 HIGH | Sandbox Escape |
| CVE-2019-11855 | 8.1 HIGH | ALEOS LAN-Side RPC Server |
| CVE-2019-11847 | 7.3 HIGH | ALEOS User Root Shell Escalation |
| CVE-2020-24591 | 6.5 MEDIUM | WSO2 多款产品代码问题漏洞 |
| CVE-2019-11849 | 6.3 MEDIUM | ALEOS AT API Stack Overflow |
| CVE-2019-11850 | 6.3 MEDIUM | ALEOS AT Command Stack Overflow |
| CVE-2020-15858 | 6.2 MEDIUM | Thales DIS 路径遍历漏洞 |
| CVE-2019-11859 | 6.0 MEDIUM | ALEOS SMS Handler Buffer Overflow |
| CVE-2019-11858 | 5.7 MEDIUM | ALEOS Multiple Web UI vulnerabilities |
| CVE-2019-11848 | 4.1 MEDIUM | ALEOS AT Command API Abuse |
| CVE-2019-11853 | 3.9 LOW | ALEOS AT Command Injections |
| CVE-2019-11852 | 3.7 LOW | ALEOS ACEView Service Out-Of-Bounds Read |
| CVE-2019-11856 | 3.3 LOW | ALEOS ACEView Message Replay |
| CVE-2020-20633 | WordPress 跨站脚本漏洞 | |
| CVE-2020-3975 | VMware App Volumes 跨站脚本漏洞 | |
| CVE-2020-20634 | Elementor WordPress 安全漏洞 |
Showing top 20 of 48 CVEs. View all on vendor page → →
No comments yet