高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|---|---|---|
| 1 | WARNING: This is a vulnerable application to test the exploit for the Cacti command injection (CVE-2023-39362). Run it at your own risk! | https://github.com/m3ssap0/cacti-rce-snmp-options-vulnerable-application | POC詳細 |
| 2 | None | https://github.com/jakabakos/CVE-2023-39362-cacti-snmp-command-injection-poc | POC詳細 |
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2023-39361 | 9.8 CRITICAL | Unauthenticated SQL Injection in graph_view.php in Cacti |
| CVE-2023-39359 | 8.8 HIGH | Authenticated SQL injection vulnerability in graphs.php in Cacti |
| CVE-2023-39358 | 8.8 HIGH | Authenticated SQL injection vulnerability in reports_user.php in Cacti |
| CVE-2023-39357 | 8.8 HIGH | A Defect in sql_save() Causes Multiple SQL Injection Vulnerabilities in Cacti |
| CVE-2023-31132 | 7.8 HIGH | Cacti Privilege Escalation |
| CVE-2023-39515 | 6.1 MEDIUM | Stored Cross-site Scripting on data_debug.php datasource path view in Cacti |
| CVE-2023-39514 | 6.1 MEDIUM | Stored Cross-site Scripting on graphs.php data template formated name view in Cacti |
| CVE-2023-39513 | 6.1 MEDIUM | Stored Cross-site Scripting on host.php verbose data-query debug view in Cacti |
| CVE-2023-39512 | 6.1 MEDIUM | Stored Cross-site Scripting on data_sources.php device name view in Cacti |
| CVE-2023-39510 | 6.1 MEDIUM | Stored Cross-site Scripting in reports_admin.php through Device-Name in 'select' input in |
| CVE-2023-39366 | 6.1 MEDIUM | Stored Cross-site Scripting in data_sources.php through Device-Name in 'select' input in C |
| CVE-2023-39360 | 6.1 MEDIUM | Reflected Cross-site Scripting in graphs_new.php in Cacti |
| CVE-2023-39516 | 6.1 MEDIUM | Stored Cross-Site-Scripting on data_sources.php debug html-block in Cacti |
| CVE-2023-39365 | 4.6 MEDIUM | Unchecked regular expressions can lead to SQL Injection and data leakage in Cacti |
| CVE-2023-30534 | 4.3 MEDIUM | Insecure Deserialization in Cacti |
| CVE-2023-39364 | 3.5 LOW | Open redirect in change password functionality in Cacti |
まだコメントはありません