Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | In Progress MOVEit Transfer before 2020.1.11 (12.1.11), 2021.0.9 (13.0.9), 2021.1.7 (13.1.7), 2022.0.7 (14.0.7), 2022.1.8 (14.1.8), and 2023.0.4 (15.0.4), a SQL injection vulnerability has been identified in the MOVEit Transfer web application that could allow an unauthenticated attacker to gain unauthorized access to the MOVEit Transfer database. An attacker could submit a crafted payload to a MOVEit Transfer application endpoint that could result in modification and disclosure of MOVEit database content. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2023/CVE-2023-36934.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-3089 | 7.0 HIGH | Ocp & fips mode |
| CVE-2023-33335 | Sophos iView 跨站脚本漏洞 | |
| CVE-2023-27197 | PAX Technology A930 安全漏洞 | |
| CVE-2023-27198 | PAX Technology A930 操作系统命令注入漏洞 | |
| CVE-2023-27199 | PAX Technology A930 安全漏洞 | |
| CVE-2023-34654 | taoCMS 跨站脚本漏洞 | |
| CVE-2023-36622 | Loxone Miniserver 操作系统命令注入漏洞 | |
| CVE-2023-36623 | Loxone Miniserver 信任管理问题漏洞 | |
| CVE-2023-36624 | Loxone Miniserver 安全漏洞 | |
| CVE-2023-30207 | Kodi Home Theater Software 数字错误漏洞 | |
| CVE-2020-23452 | Selenium Grid 跨站脚本漏洞 | |
| CVE-2023-35863 | MADEFORNET HTTP Debugger 竞争条件问题漏洞 | |
| CVE-2023-36932 | Progress Software MOVEit Transfer SQL注入漏洞 | |
| CVE-2023-36933 | Progress Software MOVEit Transfer 安全漏洞 | |
| CVE-2020-25969 | gnuplot 安全漏洞 | |
| CVE-2023-25399 | SciPy 安全漏洞 | |
| CVE-2023-36665 | protobuf.js 安全漏洞 | |
| CVE-2023-35786 | ZOHO ManageEngine ADManager Plus 代码问题漏洞 | |
| CVE-2022-42175 | SolusVM-WHMCS-Module 安全漏洞 | |
| CVE-2023-33201 | Bouncy Castle 信任管理问题漏洞 |
No comments yet