Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | In Visual Tools DVR VX16 4.2.28.0, an unauthenticated attacker can achieve remote command execution via shell metacharacters in the cgi-bin/slogin/login.py User-Agent HTTP header. | https://github.com/adubaldo/CVE-2021-42071 | POC Details |
| 2 | Visual Tools DVR VX16 4.2.28.0 could allow an unauthenticated, remote attacker to perform command injection attacks against an affected device. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-42071.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-23447 | 5.4 MEDIUM | Cross-site Scripting (XSS) |
| CVE-2021-42089 | Zammad 信息泄露漏洞 | |
| CVE-2021-42086 | Zammad 安全漏洞 | |
| CVE-2021-42087 | Zammad 安全漏洞 | |
| CVE-2021-42085 | Zammad 跨站脚本漏洞 | |
| CVE-2021-42095 | NetSarang Xshell 安全漏洞 | |
| CVE-2020-21725 | 嘉兴想天信息科技 OpenSNS SQL注入漏洞 | |
| CVE-2020-21726 | 嘉兴想天信息科技 OpenSNS SQL注入漏洞 | |
| CVE-2020-21729 | Jeecms 跨站脚本漏洞 | |
| CVE-2021-38298 | ZOHO ManageEngine ADManager Plus 代码问题漏洞 | |
| CVE-2020-21865 | ThinkPHP50-CMS 代码问题漏洞 | |
| CVE-2021-42088 | Zammad 跨站脚本漏洞 | |
| CVE-2021-42090 | Zammad 代码问题漏洞 | |
| CVE-2021-42091 | Zammad 代码问题漏洞 | |
| CVE-2021-42092 | Zammad 跨站脚本漏洞 | |
| CVE-2021-42093 | Zammad 安全漏洞 | |
| CVE-2021-42094 | Zammad 命令注入漏洞 | |
| CVE-2021-37762 | Zoho ManageEngine ADManager Plus 代码问题漏洞 | |
| CVE-2021-37919 | Zoho ManageEngine ADManager Plus 代码问题漏洞 | |
| CVE-2021-37920 | Zoho ManageEngine ADManager Plus 代码问题漏洞 |
Showing top 20 of 44 CVEs. View all on vendor page → →
No comments yet