Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | openam-CVE-2021-35464 tomcat 执行命令回显 | https://github.com/Y4er/openam-CVE-2021-35464 | POC Details |
| 2 | None | https://github.com/rood8008/CVE-2021-35464 | POC Details |
| 3 | ForgeRock AM server before 7.0 has a Java deserialization vulnerability in the jato.pageSession parameter on multiple pages. The exploitation does not require authentication, and remote code execution can be triggered by sending a single crafted /ccversion/* request to the server. The vulnerability exists due to the usage of Sun ONE Application Framework (JATO) found in versions of Java 8 or earlier. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-35464.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-36222 | MIT Kerberos 代码问题漏洞 | |
| CVE-2020-22284 | lwip 安全漏洞 | |
| CVE-2021-34261 | STMicroelectronics STM32Cube 安全漏洞 | |
| CVE-2021-34260 | STMicroelectronics STM32Cube 缓冲区错误漏洞 | |
| CVE-2021-34259 | STMicroelectronics STM32Cube Middleware 安全漏洞 | |
| CVE-2021-34262 | STMicroelectronics STM32Cube 缓冲区错误漏洞 | |
| CVE-2021-26224 | SourceCodester Fantastic-Blog-CMS 跨站脚本漏洞 | |
| CVE-2021-26223 | CASAP Automated Enrollment SQL注入漏洞 | |
| CVE-2021-33032 | EQ-3 eQ-3 HomeMatic CCU2 和 CCU3 操作系统命令注入漏洞 | |
| CVE-2020-36033 | Sourcecodester SourceCodester Water Billing System SQL注入漏洞 | |
| CVE-2021-27332 | CASAP Automated Enrollment 跨站脚本漏洞 | |
| CVE-2021-25197 | SourceCodester Content Management System 跨站脚本漏洞 | |
| CVE-2015-2098 | WebGate eDVR Manager 缓冲区溢出漏洞 | |
| CVE-2015-2099 | webgateinc WebGate Control Center 缓冲区溢出漏洞 | |
| CVE-2021-25202 | Bakeshop Inventory System SQL注入漏洞 | |
| CVE-2015-2100 | webgateinc WebGate Control Center 缓冲区错误漏洞 | |
| CVE-2021-26226 | CASAP Automated Enrollment SQL注入漏洞 | |
| CVE-2021-35063 | Suricata 安全漏洞 | |
| CVE-2021-33478 | Broadcom Media exChange 缓冲区错误漏洞 | |
| CVE-2021-26227 | CASAP Automated Enrollment 跨站脚本漏洞 |
Showing top 20 of 58 CVEs. View all on vendor page → →
No comments yet