Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Python script to exploit CVE-2021-35064 and CVE-2021-36356 | https://github.com/Chocapikk/CVE-2021-35064 | POC Details |
| 2 | Kramer VIAware, all tested versions, allow privilege escalation and remote code execution due to misconfigured sudo permissions. Attackers can execute arbitrary system commands remotely if the web interface is accessible, due to vulnerabilities in the handling of privileged operations through ajaxPages/writeBrowseFilePathAjax.php and improper sudoers configurations. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-35064.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-23389 | 9.8 CRITICAL | Arbitrary Code Execution |
| CVE-2021-23390 | 9.8 CRITICAL | Arbitrary Code Execution |
| CVE-2021-36382 | 2.6 LOW | Devolutions Server 信任管理问题漏洞 |
| CVE-2021-33807 | Cartadis Gespage 路径遍历漏洞 | |
| CVE-2021-22916 | Brave 安全漏洞 | |
| CVE-2021-22917 | Brave Browser Tor Window 安全漏洞 | |
| CVE-2021-3547 | OpenVPN 信任管理问题漏洞 | |
| CVE-2021-27293 | RestSharp 安全漏洞 | |
| CVE-2021-35037 | JAMF Jamf Pro 输入验证错误漏洞 | |
| CVE-2021-36377 | Fossil 信任管理问题漏洞 | |
| CVE-2020-21131 | Metinfo MetInfo SQL注入漏洞 | |
| CVE-2020-21132 | Metinfo MetInfo SQL注入漏洞 | |
| CVE-2020-21133 | Metinfo MetInfo SQL注入漏洞 | |
| CVE-2021-36383 | Xen 安全漏洞 | |
| CVE-2020-18979 | Halo 跨站脚本漏洞 | |
| CVE-2020-18544 | WMS SQL注入漏洞 | |
| CVE-2020-18980 | Halo 安全漏洞 | |
| CVE-2020-19204 | Lightning Wire Labs IPFire 跨站脚本漏洞 | |
| CVE-2020-19203 | pfSense 跨站脚本漏洞 | |
| CVE-2021-36381 | Edifecs Transaction Management 注入漏洞 |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet