Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Hongdian H8922 3.0.5 devices are susceptible to remote command injection via shell metacharacters into the ip-address (a/k/a Destination) field to the tools.cgi ping command, which is accessible with the username guest and password guest. An attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-28151.yaml | POC Details |
| 2 | None | https://github.com/Threekiii/Awesome-POC/blob/master/%E7%BD%91%E7%BB%9C%E8%AE%BE%E5%A4%87%E6%BC%8F%E6%B4%9E/%E5%AE%8F%E7%94%B5%20H8922%20%E5%90%8E%E5%8F%B0%E7%AE%A1%E7%90%86%E5%91%98%E4%BF%A1%E6%81%AF%E6%B3%84%E9%9C%B2%E6%BC%8F%E6%B4%9E%20CVE-2021-28151.md | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-32052 | Django 跨站脚本漏洞 | |
| CVE-2020-23264 | forkcms 跨站请求伪造漏洞 | |
| CVE-2021-28665 | Stormshield Network Security 资源管理错误漏洞 | |
| CVE-2021-27941 | IFTTT eWeLink 安全漏洞 | |
| CVE-2021-29203 | HP Edgeline Infrastructure Management 访问控制错误漏洞 | |
| CVE-2021-31737 | Emlog 代码问题漏洞 | |
| CVE-2020-23263 | Fork CMS 跨站脚本漏洞 | |
| CVE-2019-25043 | ModSecurity 安全漏洞 | |
| CVE-2021-31918 | tripleo-ansible 信息泄露漏洞 | |
| CVE-2021-31916 | Linux kernel 缓冲区错误漏洞 | |
| CVE-2021-31793 | Night Owl WDB-20-V2 访问控制错误漏洞 | |
| CVE-2021-31829 | Linux kernel 安全漏洞 | |
| CVE-2021-3507 | QEMU 缓冲区错误漏洞 | |
| CVE-2021-28149 | Hongdian H8922 路径遍历漏洞 | |
| CVE-2021-28150 | Hongdian H8922 输入验证错误漏洞 | |
| CVE-2021-28152 | Hongdian H8922 授权问题漏洞 | |
| CVE-2021-32030 | ASUS GT-AC2900 授权问题漏洞 | |
| CVE-2021-20204 | Homebrew Formulae libgetdata 缓冲区错误漏洞 | |
| CVE-2020-35519 | Linux kernel 缓冲区错误漏洞 | |
| CVE-2021-28128 | Strapi 授权问题漏洞 |
Showing top 20 of 54 CVEs. View all on vendor page → →
No comments yet