Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

CVE-2022-24992

EPSS 1.87% · P83
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2022-24992

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
A vulnerability in the component process.php of QR Code Generator v5.2.7 allows attackers to perform directory traversal.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
DENSO WAVE QR Code Generator 路径遍历漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
DENSO WAVE QR Code Generator是日本DENSO WAVE公司的一个二维码生成器。 DENSO WAVE QR Code Generator v5.2.7版本存在安全漏洞。攻击者利用该漏洞执行目录遍历。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2022-24992

#POC DescriptionSource LinkShenlong Link
1CVE-2022–24992https://github.com/n0lsecurity/CVE-2022-24992POC Details
2CVE-2022–24992https://github.com/n0lpointer/CVE-2022-24992POC Details
3CVE-2022–24992https://github.com/n0lsec1337/CVE-2022-24992POC Details
4CVE-2022–24992https://github.com/esistferry/CVE-2022-24992POC Details
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2022-24992

登录查看更多情报信息。

Security Blog Posts for CVE-2022-24992 (1)

Other References for CVE-2022-24992 (2)

Same Patch Batch · n/a · 2022-07-25 · 50 CVEs total

CVE-2020-284459.8 CRITICALCommand Injection
CVE-2020-284439.8 CRITICALCommand Injection
CVE-2020-284469.8 CRITICALCommand Injection
CVE-2020-284479.8 CRITICALCommand Injection
CVE-2020-284389.8 CRITICALCommand Injection
CVE-2020-284359.4 CRITICALCommand Injection
CVE-2022-364448.6 HIGHAtos Unify OpenScape 安全漏洞
CVE-2020-76778.6 HIGHArbitrary Code Execution
CVE-2020-76788.6 HIGHArbitrary Code Execution
CVE-2022-364508.0 HIGHObsidian 输入验证错误漏洞
CVE-2021-233737.5 HIGHPrototype Pollution
CVE-2020-284717.3 HIGHPrototype Pollution
CVE-2020-284597.3 HIGHCross-site Scripting (XSS)
CVE-2020-284617.3 HIGHPrototype Pollution
CVE-2020-284627.3 HIGHPrototype Pollution
CVE-2020-284557.3 HIGHCross-site Scripting (XSS)
CVE-2020-284367.3 HIGHCommand Injection
CVE-2020-284417.3 HIGHPrototype Pollution
CVE-2021-234516.5 MEDIUMInsecure Randomness
CVE-2020-284226.4 MEDIUMCommand Injection

Showing top 20 of 50 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2022-24992

No comments yet


Leave a comment