Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | jeecg-boot | 3.5.0 | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | jeecg-boot unauthorized SQL Injection Vulnerability (CVE-2023-1454) | https://github.com/gobysec/CVE-2023-1454 | POC Details |
| 2 | jmreport/qurestSql 未授权SQL注入批量扫描poc | https://github.com/cjybao/CVE-2023-1454 | POC Details |
| 3 | CVE-2023-1454 jeecg-boot Unauthorized SQL injection vulnerability | https://github.com/CKevens/CVE-2023-1454-EXP | POC Details |
| 4 | CVE-2023-1454漏洞检测脚本 | https://github.com/BugFor-Pings/CVE-2023-1454 | POC Details |
| 5 | CVE-2023-1454,Jeecg-Boot 前台SQL注入,CVE-2023-1454批量检测 | https://github.com/padbergpete47/CVE-2023-1454 | POC Details |
| 6 | jmreport/qurestSql 未授权SQL注入批量扫描poc Jeecg-Boot是一款基于Spring Boot和Jeecg-Boot-Plus的快速开发平台,最新的jeecg-boot 3.5.0 中被爆出多个SQL注入漏洞。 | https://github.com/Sweelg/CVE-2023-1454-Jeecg-Boot-qurestSql-SQLvuln | POC Details |
| 7 | JeecgBoot SQL(CVE-2023-1454) | https://github.com/shad0w0sec/CVE-2023-1454-EXP | POC Details |
| 8 | CVE-2023-1454 jeecg-boot Unauthorized SQL injection vulnerability | https://github.com/3yujw7njai/CVE-2023-1454-EXP | POC Details |
| 9 | CVE-2023-1454 jeecg-boot Unauthorized SQL injection vulnerability | https://github.com/AiK1d/CVE-2023-1454-EXP | POC Details |
| 10 | A vulnerability classified as critical has been found in jeecg-boot 3.5.0. This affects an unknown part of the file jmreport/qurestSql. The manipulation of the argument apiSelectId leads to sql injection. It is possible to initiate the attack remotely. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-1454.yaml | POC Details |
| 11 | None | https://github.com/Threekiii/Awesome-POC/blob/master/Web%E5%BA%94%E7%94%A8%E6%BC%8F%E6%B4%9E/JeecgBoot%20%E4%BC%81%E4%B8%9A%E7%BA%A7%E4%BD%8E%E4%BB%A3%E7%A0%81%E5%B9%B3%E5%8F%B0%20qurestSql%20SQL%E6%B3%A8%E5%85%A5%E6%BC%8F%E6%B4%9E%20CVE-2023-1454.md | POC Details |
| 12 | CVE-2023-1454 jeecg-boot Unauthorized SQL injection vulnerability | https://github.com/P4x1s/CVE-2023-1454-EXP | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-1452 | 5.3 MEDIUM | GPAC load_text.c buffer overflow |
| CVE-2023-1449 | 5.3 MEDIUM | GPAC av_parsers.c gf_av1_reset_state double free |
| CVE-2023-1448 | 5.3 MEDIUM | GPAC mpegts.c gf_m2ts_process_sdt heap-based overflow |
| CVE-2023-1451 | 3.3 LOW | MP4v2 mp4track.cpp GetSampleFileOffset denial of service |
| CVE-2023-1450 | 3.3 LOW | MP4v2 mp4trackdump.cpp DumpTrack denial of service |
| CVE-2023-28531 | OpenSSH 安全漏洞 | |
| CVE-2023-24678 | Centralite Pearl Thermostat 安全漏洞 | |
| CVE-2023-27253 | pfSense 安全漏洞 |
No comments yet