Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | CVE-2023-22621: SSTI to RCE by Exploiting Email Templates affecting Strapi Versions <=4.5.5 | https://github.com/sofianeelhor/CVE-2023-22621-POC | POC Details |
| 2 | Strapi through 4.5.5 allows authenticated Server-Side Template Injection (SSTI) that can be exploited to execute arbitrary code on the server. A remote attacker with access to the Strapi admin panel can inject a crafted payload that executes code on the server into an email template that bypasses the validation checks that should prevent code execution. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-22621.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2021-0875 | Google Android 输入验证错误漏洞 | |
| CVE-2023-28122 | UI Desktop 安全漏洞 | |
| CVE-2023-23451 | 多款SICK产品访问控制错误漏洞 | |
| CVE-2023-22894 | Strapi 安全漏洞 | |
| CVE-2023-29923 | PowerJob 安全漏洞 | |
| CVE-2023-29586 | Code Sector TeraCopy 安全漏洞 | |
| CVE-2023-29922 | PowerJob 安全漏洞 | |
| CVE-2021-0872 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0873 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0874 | Google Android 输入验证错误漏洞 | |
| CVE-2023-27777 | Sourcecodester Online Jewelry Shop 跨站脚本漏洞 | |
| CVE-2021-0876 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0878 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0879 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0880 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0881 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0882 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0883 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0884 | Google Android 输入验证错误漏洞 | |
| CVE-2021-0885 | Google Android 输入验证错误漏洞 |
Showing top 20 of 67 CVEs. View all on vendor page → →
No comments yet