Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | An issue was discovered in SecurePoint UTM before 12.2.5.1. The firewall's endpoint at /spcgi.cgi allows information disclosure of memory contents to be achieved by an authenticated user. Essentially, uninitialized data can be retrieved via an approach in which a sessionid is obtained but not used. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-22897.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-27216 | D-Link DSL-3782 操作系统命令注入漏洞 | |
| CVE-2023-30512 | CubeFS 安全漏洞 | |
| CVE-2023-29581 | yasm 安全漏洞 | |
| CVE-2023-29580 | yasm 安全漏洞 | |
| CVE-2023-29574 | Bento4 安全漏洞 | |
| CVE-2023-29571 | Cesanta MJS 安全漏洞 | |
| CVE-2023-28488 | Connman 缓冲区错误漏洞 | |
| CVE-2023-28121 | WordPress plugin WooCommerce Payments 授权问题漏洞 | |
| CVE-2023-27826 | Seowon Intech SWC 5100W WIMAX Bootloader 操作系统命令注入漏洞 | |
| CVE-2023-27775 | LiveAction LiveSP 跨站脚本漏洞 | |
| CVE-2023-27704 | Void Tools 安全漏洞 | |
| CVE-2023-27703 | PikPak 安全漏洞 | |
| CVE-2023-27830 | TightVNC 安全漏洞 | |
| CVE-2023-27032 | PrestaShop SQL注入漏洞 | |
| CVE-2023-26852 | Textpattern CMS 代码问题漏洞 | |
| CVE-2023-23591 | Terminalfour 安全漏洞 | |
| CVE-2023-22620 | Securepoint Unified Threat Management 信息泄露漏洞 | |
| CVE-2023-22616 | Insyde InsydeH2O 安全漏洞 | |
| CVE-2023-1990 | Linux kernel 资源管理错误漏洞 | |
| CVE-2023-1906 | ImageMagick 缓冲区错误漏洞 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet