Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Sunlogin Sunflower Simplified (aka Sunflower Simple and Personal) 1.0.1.43315 is vulnerable to a path traversal issue. A remote and unauthenticated attacker can execute arbitrary programs on the victim host by sending a crafted HTTP request, as demonstrated by /check?cmd=ping../ followed by the pathname of the powershell.exe program. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2022/CVE-2022-48323.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-25937 | 6.5 MEDIUM | glance 路径遍历漏洞 |
| CVE-2023-24086 | Slims9 Bulian 跨站脚本漏洞 | |
| CVE-2023-25727 | phpMyAdmin 跨站脚本漏洞 | |
| CVE-2023-25719 | ConnectWise Control 注入漏洞 | |
| CVE-2023-25718 | ConnectWise Control 数据伪造问题漏洞 | |
| CVE-2023-25717 | Ruckus Wireless SmartZone 代码注入漏洞 | |
| CVE-2023-25241 | bgERP 跨站脚本漏洞 | |
| CVE-2023-25240 | Pimcore 安全漏洞 | |
| CVE-2023-24648 | Zippy Store 跨站脚本漏洞 | |
| CVE-2023-24647 | Online Food Ordering System SQL注入漏洞 | |
| CVE-2023-24646 | Online Food Ordering System 代码问题漏洞 | |
| CVE-2023-24619 | Redpanda 安全漏洞 | |
| CVE-2023-24188 | UReport 路径遍历漏洞 | |
| CVE-2023-24084 | ChiKoi SQL注入漏洞 | |
| CVE-2023-22854 | Mitel MiContact Center Business 安全漏洞 | |
| CVE-2022-48322 | NETGEAR Nighthawk 缓冲区错误漏洞 | |
| CVE-2022-48110 | CKEditor 跨站脚本漏洞 | |
| CVE-2022-48077 | Genymotion Desktop 代码问题漏洞 | |
| CVE-2022-47034 | playSMS 安全漏洞 | |
| CVE-2022-45962 | Open Solutions For Education openSIS SQL注入漏洞 |
Showing top 20 of 25 CVEs. View all on vendor page → →
No comments yet