Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Dolibarr before 17.0.1 allows remote code execution by an authenticated user via an uppercase manipulation: <?PHP instead of <?php in injected data. | https://github.com/Rubikcuv5/cve-2023-30253 | POC Details |
| 2 | Poc for CVE-2023-30253 | https://github.com/04Shivam/CVE-2023-30253-Exploit | POC Details |
| 3 | Reverse Shell POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253), PHP Code Injection | https://github.com/nikn0laty/Exploit-for-Dolibarr-17.0.0-CVE-2023-30253 | POC Details |
| 4 | CVE-2023-30253 PoC | https://github.com/g4nkd/CVE-2023-30253-PoC | POC Details |
| 5 | In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection bypassing the application restrictions. | https://github.com/dollarboysushil/Dolibarr-17.0.0-Exploit-CVE-2023-30253 | POC Details |
| 6 | An authenticated RCE exploit for Dolibarr ERP/CRM CVE-2023-30253. | https://github.com/andria-dev/DolibabyPhp | POC Details |
| 7 | Dolibarr 17.0.0 PHP Code Injection Exploit | https://github.com/bluetoothStrawberry/CVE-2023-30253 | POC Details |
| 8 | POC exploit for Dolibarr <= 17.0.0 (CVE-2023-30253) | https://github.com/1lkla/POC-exploit-for-Dolibarr | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-30571 | 3.9 LOW | libarchive 竞争条件问题漏洞 |
| CVE-2021-27825 | Mercury MAC 1200R 路径遍历漏洞 | |
| CVE-2022-24627 | AudioCodes Device Manager Express SQL注入漏洞 | |
| CVE-2022-24628 | AudioCodes Device Manager Express SQL注入漏洞 | |
| CVE-2022-24629 | AudioCodes Device Manager Express 路径遍历漏洞 | |
| CVE-2022-24630 | AudioCodes Device Manager Express 命令注入漏洞 | |
| CVE-2022-24631 | AudioCodes Device Manager Express 跨站脚本漏洞 | |
| CVE-2022-24632 | AudioCodes Device Manager Express 路径遍历漏洞 | |
| CVE-2022-41766 | MediaWiki 安全漏洞 | |
| CVE-2019-19791 | LemonLDAP::NG 安全漏洞 | |
| CVE-2020-29547 | Citadel 命令注入漏洞 | |
| CVE-2023-24605 | Open-Xchange OX App Suite 信息泄露漏洞 | |
| CVE-2021-37845 | Citadel 安全漏洞 | |
| CVE-2023-28153 | Kiddoware Kids Place 跨站脚本漏洞 | |
| CVE-2023-24597 | Open-Xchange OX App Suite 信息泄露漏洞 | |
| CVE-2023-24598 | Open-Xchange OX App Suite 信息泄露漏洞 | |
| CVE-2023-24599 | Open-Xchange OX App Suite 信息泄露漏洞 | |
| CVE-2023-24600 | Open-Xchange OX App Suite 信息泄露漏洞 | |
| CVE-2023-24601 | Open-Xchange OX App Suite 跨站脚本漏洞 | |
| CVE-2023-24602 | Open-Xchange OX App Suite 跨站脚本漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet