Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | An issue was discovered in FSMLabs TimeKeeper 8.0.17 through 8.0.28. By intercepting requests from various timekeeper streams, it is possible to find the getsamplebacklog call. Some query parameters are passed directly in the URL and named arg[x], with x an integer starting from 1; it is possible to modify arg[2] to insert Bash code that will be executed directly by the server. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-31465.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-37732 | yasm 代码问题漏洞 | |
| CVE-2023-28130 | Quantum Appliances 命令注入漏洞 | |
| CVE-2022-31456 | Trudesk 跨站脚本漏洞 | |
| CVE-2023-31466 | FSMLabs TimeKeeper 跨站脚本漏洞 | |
| CVE-2023-33802 | Sumatra PDF 安全漏洞 | |
| CVE-2023-37623 | Netdisco 跨站脚本漏洞 | |
| CVE-2023-37624 | Netdisco 输入验证错误漏洞 | |
| CVE-2022-31455 | Trudesk 跨站脚本漏洞 | |
| CVE-2023-30367 | mRemoteNG 安全漏洞 | |
| CVE-2023-37692 | October CMS 跨站脚本漏洞 | |
| CVE-2023-37049 | emlog 安全漏洞 | |
| CVE-2023-38285 | ModSecurity 安全漏洞 | |
| CVE-2023-30577 | Amanda 参数注入漏洞 | |
| CVE-2022-43710 | GX Software XperienCentral 跨站请求伪造漏洞 | |
| CVE-2022-43711 | GX Software XperienCentral 跨站脚本漏洞 | |
| CVE-2022-43712 | GX Software XperienCentral 安全漏洞 | |
| CVE-2022-43713 | GX Software XperienCentral 输入验证错误漏洞 | |
| CVE-2023-26859 | PrestaShop SQL注入漏洞 | |
| CVE-2023-26911 | ASUS Armoury Crate Service 代码问题漏洞 |
No comments yet