Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | In SugarCRM before 12.0. Hotfix 91155, a crafted request can inject custom PHP code through the EmailTemplates because of missing input validation. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-22952.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2015-10037 | 5.5 MEDIUM | ACI_Escola sql injection |
| CVE-2014-125075 | 5.5 MEDIUM | gmail-servlet Model.java search sql injection |
| CVE-2013-10010 | 4.3 MEDIUM | zerochplus thread.res.pl PrintResList cross site scripting |
| CVE-2023-22963 | Dart 输入验证错误漏洞 | |
| CVE-2023-22959 | WebChess SQL注入漏洞 | |
| CVE-2023-22958 | Syracom 输入验证错误漏洞 | |
| CVE-2023-22947 | Shibboleth 代码问题漏洞 | |
| CVE-2023-22945 | MediaWiki 安全漏洞 | |
| CVE-2022-48253 | nostromo 路径遍历漏洞 | |
| CVE-2022-48252 | Pi.Alert 操作系统命令注入漏洞 | |
| CVE-2022-47866 | Lead management system SQL注入漏洞 | |
| CVE-2022-47865 | Lead Management System SQL注入漏洞 | |
| CVE-2022-47864 | Lead Management System SQL注入漏洞 | |
| CVE-2022-47862 | Lead Management System SQL注入漏洞 | |
| CVE-2022-47861 | Lead Management System SQL注入漏洞 | |
| CVE-2022-47860 | Lead Management System SQL注入漏洞 | |
| CVE-2022-47859 | Lead Management System SQL注入漏洞 | |
| CVE-2022-4543 | Linux kernel 信息泄露漏洞 | |
| CVE-2022-4415 | systemd 信息泄露漏洞 |
No comments yet