Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Vulnerability check script for CVE-2024-37393 (SecurEnvoy MFA 9.4.513) | https://github.com/optistream/securenvoy-cve-2024-37393 | POC Details |
| 2 | Vulnerability check script for CVE-2024-37393 (SecurEnvoy MFA 9.4.513) | https://github.com/noways-io/securenvoy-cve-2024-37393 | POC Details |
| 3 | Multiple LDAP injections vulnerabilities exist in SecurEnvoy MFA before 9.4.514 due to improper validation of user-supplied input. An unauthenticated remote attacker could exfiltrate data from Active Directory through blind LDAP injection attacks against the DESKTOP service exposed on the /secserver HTTP endpoint. This may include ms-Mcs-AdmPwd, which has a cleartext password for the Local Administrator Password Solution (LAPS) feature. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-37393.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-35474 | 6.5 MEDIUM | ResourcePack Server 安全漏洞 |
| CVE-2024-32167 | Online Medicine Ordering System 安全漏洞 | |
| CVE-2024-31613 | BossCMS 安全漏洞 | |
| CVE-2024-31611 | SeaCMS 安全漏洞 | |
| CVE-2024-31612 | emlog 安全漏洞 | |
| CVE-2024-37880 | Kyber 安全漏洞 | |
| CVE-2024-37014 | Langflow 安全漏洞 | |
| CVE-2024-26507 | FinalWire AIDA64 安全漏洞 | |
| CVE-2024-33850 | Pexip Infinity 安全漏洞 | |
| CVE-2024-36531 | Vinades NukeViet 安全漏洞 | |
| CVE-2024-36528 | Vinades NukeViet 安全漏洞 | |
| CVE-2024-34332 | SiSoftware SANDRA 安全漏洞 | |
| CVE-2022-45168 | LIVEBOX Collaboration vDesk 安全漏洞 | |
| CVE-2022-45176 | LIVEBOX Collaboration vDesk 安全漏洞 |
No comments yet