Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Netmask NPM Package is susceptible to server-side request forgery because of improper input validation of octal strings in netmask npm package. This allows unauthenticated remote attackers to perform indeterminate SSRF, remote file inclusion, and local file inclusion attacks on many of the dependent packages. A remote unauthenticated attacker can bypass packages relying on netmask to filter IPs and reach critical VPN or LAN hosts. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-28918.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-29932 | Rust 资源管理错误漏洞 | |
| CVE-2021-29935 | Rust 资源管理错误漏洞 | |
| CVE-2021-29937 | Rust 安全漏洞 | |
| CVE-2021-29941 | Rust 缓冲区错误漏洞 | |
| CVE-2021-29942 | Rust 缓冲区错误漏洞 | |
| CVE-2021-20296 | LIM OpenEXR 代码问题漏洞 | |
| CVE-2021-29421 | jbarlow83 pikepdf 代码问题漏洞 | |
| CVE-2021-3447 | 红帽 Ansible 日志信息泄露漏洞 | |
| CVE-2021-29940 | Rust 资源管理错误漏洞 | |
| CVE-2021-29933 | Rust 资源管理错误漏洞 | |
| CVE-2021-29934 | Rust 缓冲区错误漏洞 | |
| CVE-2021-29931 | Rust 资源管理错误漏洞 | |
| CVE-2021-29930 | Rust 缓冲区错误漏洞 | |
| CVE-2021-29929 | Rust 资源管理错误漏洞 | |
| CVE-2021-29251 | BTCPay Server 安全漏洞 | |
| CVE-2021-3393 | PostgreSQL 安全漏洞 | |
| CVE-2021-20234 | ZeroMQ 资源管理错误漏洞 | |
| CVE-2021-20235 | libzmq 缓冲区错误漏洞 | |
| CVE-2021-22876 | Haxx libcurl 信息泄露漏洞 | |
| CVE-2021-22890 | Haxx libcurl 安全漏洞 |
Showing top 20 of 48 CVEs. View all on vendor page → →
No comments yet