Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | OpenSIS SQLi Injection | https://github.com/whwhwh96/CVE-2024-35584 | POC Details |
| 2 | SQL injection vulnerability in Ajax.php, ForWindow.php, ForExport.php, Modules.php, functions/HackingLogFnc.php in OpenSis Community Edition 9.1, 8.0, and possibly earlier versions. It is possible for an authenticated user to perform SQL Injection due to the lack to sanitisation. The application takes arbitrary value from "X-Forwarded-For" header and appends it to a SQL INSERT statement directly, leading to SQL Injection. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-35584.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-21535 | 6.1 MEDIUM | markdown-to-jsx 安全漏洞 |
| CVE-2024-31955 | 4.9 MEDIUM | SAMSUNG eMMC 安全漏洞 |
| CVE-2024-49195 | Mbed TLS 安全漏洞 | |
| CVE-2024-48712 | TP-LINK TL-WDR7660 安全漏洞 | |
| CVE-2024-48710 | TP-LINK TL-WDR7660 安全漏洞 | |
| CVE-2024-48779 | WonderShare Yitu 安全漏洞 | |
| CVE-2024-48411 | itsourcecode Online Tours and Travels Management System 安全漏洞 | |
| CVE-2024-48781 | WonderShare Yitu 安全漏洞 | |
| CVE-2024-48713 | TP-LINK TL-WDR7660 安全漏洞 | |
| CVE-2024-48714 | TP-LINK TL-WDR7660 安全漏洞 | |
| CVE-2024-48783 | Ruijie Networks NBR3000D-E 安全漏洞 | |
| CVE-2024-48782 | DYCMS 安全漏洞 | |
| CVE-2024-44775 | KMQTT 安全漏洞 | |
| CVE-2024-44337 | Markdown 安全漏洞 | |
| CVE-2024-41311 | libheif 安全漏洞 | |
| CVE-2024-41344 | CodeIgniter 安全漏洞 | |
| CVE-2023-31493 | ZoneMinder 安全漏洞 | |
| CVE-2024-48948 | Elliptic 安全漏洞 | |
| CVE-2024-48624 | Domainmod 安全漏洞 | |
| CVE-2024-48279 | PHPGurukul User Registration & Login and User Management System 安全漏洞 |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet