高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| Adobe | Adobe Framemaker Publishing Server | 0 ~ 2022.2 | - |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2024-30300 | 9.8 CRITICAL | Tenable Vulnerability Disclosure | Sensitive Information Disclosure Via Fake FMPS Worker |
| CVE-2024-34102 | 9.8 CRITICAL | XXE can expose crypt key and other secrets granting full admin access |
| CVE-2024-34108 | 9.1 CRITICAL | Large attack surface through legit webhook usage in Adobe Commerce |
| CVE-2024-34104 | 8.2 HIGH | Adobe Commerce | Improper Authorization (CWE-285) |
| CVE-2024-34103 | 8.1 HIGH | Customer account takeover via web API call & subsequent password reset |
| CVE-2024-34115 | 7.8 HIGH | ZDI-CAN-24054: Adobe Substance 3D Stager SKP File Parsing Out-Of-Bounds Write Remote Code |
| CVE-2024-20753 | 7.8 HIGH | Adobe Photoshop PDF File Parsing Memory Corruption Remote Code Execution Vulnerability |
| CVE-2024-26029 | 7.5 HIGH | Adobe Experience Manager | Improper Access Control (CWE-284) |
| CVE-2024-34129 | 7.5 HIGH | Acrobat Android : OverSecured Finding : Overwriting arbitrary files via attacker-controlle |
| CVE-2024-34112 | 7.5 HIGH | ColdFusion CFDOCUMENT file retrieval / access control bypass |
| CVE-2024-34109 | 7.2 HIGH | Adobe Commerce | Improper Input Validation (CWE-20) |
| CVE-2024-34110 | 7.2 HIGH | RCE in the Adobe Commerce Webhook module through a legit webhook definition |
| CVE-2024-34116 | 7.1 HIGH | Adobe Creative Cloud App Install Arbitrary Folder Delete Vulnerability can be abuse to Pri |
| CVE-2024-34111 | 6.5 MEDIUM | SSRF in service connector |
| CVE-2024-34130 | 5.5 MEDIUM | Acrobat Android : OverSecured Finding : Access to arbitrary* content providers via insecur |
| CVE-2024-30276 | 5.5 MEDIUM | Adobe Audition 2024 M2V File Parsing Memory corruption |
| CVE-2024-30285 | 5.5 MEDIUM | Adobe Audition 2024 MP4 File Parsing Null Pointer Dereference |
| CVE-2024-34113 | 5.5 MEDIUM | ColdFusion | Weak Cryptography for Passwords (CWE-261) |
| CVE-2024-30278 | 5.5 MEDIUM | Adobe Media Encoder 2024 TGA File parsing memory corruption |
| CVE-2024-26072 | 5.4 MEDIUM | Adobe Experience Manager | Cross-site Scripting (DOM-based XSS) (CWE-79) |
Showing 20 of 165 CVEs. View all on vendor page →
まだコメントはありません