Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CHIYU TCP/IP Converter BF-430, BF-431, and BF-450 are susceptible to carriage return line feed injection. The redirect= parameter, available on multiple CGI components, is not properly validated, thus enabling an attacker to obtain sensitive information, modify data, and/or execute unauthorized administrative operations in the context of the affected site. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-31249.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-36142 | BloofoxCMS 路径遍历漏洞 | |
| CVE-2021-30475 | libaom 缓冲区错误漏洞 | |
| CVE-2020-15077 | OpenVPN 授权问题漏洞 | |
| CVE-2020-36382 | OpenVPN 代码问题漏洞 | |
| CVE-2021-26994 | NetApp Clustered Data ONTAP 安全漏洞 | |
| CVE-2021-3565 | tpm2-tools 信任管理问题漏洞 | |
| CVE-2020-7469 | FreeBSD 资源管理错误漏洞 | |
| CVE-2021-22516 | Micro Focus Secure API Manager 日志信息泄露漏洞 | |
| CVE-2020-27301 | Realtek RTL8710 缓冲区错误漏洞 | |
| CVE-2020-27302 | Realtek RTL8710 缓冲区错误漏洞 | |
| CVE-2021-28091 | Lasso 数据伪造问题漏洞 | |
| CVE-2021-33054 | SOGo 数据伪造问题漏洞 | |
| CVE-2021-31250 | CHIYU Technology BF-630W 跨站脚本漏洞 | |
| CVE-2020-36141 | BloofoxCms 代码问题漏洞 | |
| CVE-2020-36140 | BloofoxCms 跨站请求伪造漏洞 | |
| CVE-2020-36139 | BloofoxCms 跨站脚本漏洞 | |
| CVE-2020-29322 | D-Link DIR-880L 信息泄露漏洞 | |
| CVE-2020-29323 | D-Link DIR-885L MFC 信息泄露漏洞 | |
| CVE-2020-29324 | D-Link DIR-895L MFC 信息泄露漏洞 | |
| CVE-2020-29321 | D-Link DIR-868L 信息泄露漏洞 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet