unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
v0lp3/CVE-2022-39073
Proof of concept for the command injection vulnerability affecting the ZTE MF286R router, including an RCE exploit.
Create: 2023-01-08 04:46:20 +0000 UTC Push: 2023-01-08 04:46:38 +0000 UTC |
Live-Hack-CVE/CVE-2021-4306
A vulnerability classified as problematic has been found in cronvel terminal-kit up to 2.1.7. Affected is an unknown function. The manipulation leads to inefficient regular expression complexity. Upgrading to version 2.1.8 is able to address this issue. The name of the patch is a2e446cc3927b559d0281683feb9b821e83b758c. CVE project by @Sn0wAlice
Create: 2023-01-08 03:26:40 +0000 UTC Push: 2023-01-08 03:26:44 +0000 UTC |
Live-Hack-CVE/CVE-2015-10027
A vulnerability, which was classified as problematic, has been found in hydrian TTRSS-Auth-LDAP. Affected by this issue is some unknown functionality of the component Username Handler. The manipulation leads to ldap injection. Upgrading to version 2.0b1 is able to address this issue. The name of the patch is a7f7a5a82d CVE project by @Sn0wAlice
Create: 2023-01-08 03:26:36 +0000 UTC Push: 2023-01-08 03:26:39 +0000 UTC |
Live-Hack-CVE/CVE-2014-125062
A vulnerability classified as critical was found in ananich bitstorm. Affected by this vulnerability is an unknown functionality of the file announce.php. The manipulation of the argument event leads to sql injection. The name of the patch is ea8da92f94cdb78ee7831e1f7af6258473ab396a. It is recommended to apply a patch CVE project by @Sn0wAlice
Create: 2023-01-08 03:26:32 +0000 UTC Push: 2023-01-08 03:26:35 +0000 UTC |
Live-Hack-CVE/CVE-2022-4880
A vulnerability was found in stakira OpenUtau. It has been classified as critical. This affects the function VoicebankInstaller of the file OpenUtau.Core/Classic/VoicebankInstaller.cs of the component ZIP Archive Handler. The manipulation leads to path traversal. Upgrading to version 0.0.991 is able to address this iss CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:27 +0000 UTC Push: 2023-01-08 00:11:30 +0000 UTC |
Live-Hack-CVE/CVE-2016-15012
** UNSUPPPORTED WHEN ASSIGNED **** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in forcedotcom SalesforceMobileSDK-Windows up to 4.x. It has been rated as critical. This issue affects the function ComputeCountSql of the file SalesforceSDK/SmartStore/Store/QuerySpec.cs. The manipulation leads to sql injection. CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:23 +0000 UTC Push: 2023-01-08 00:11:25 +0000 UTC |
Live-Hack-CVE/CVE-2015-10026
A vulnerability was found in tiredtyrant flairbot. It has been declared as critical. This vulnerability affects unknown code of the file flair.py. The manipulation leads to sql injection. The name of the patch is 5e112b68c6faad1d4699d02c1ebbb7daf48ef8fb. It is recommended to apply a patch to fix this issue. VDB-217618 CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:17 +0000 UTC Push: 2023-01-08 00:11:21 +0000 UTC |
Live-Hack-CVE/CVE-2015-10025
A vulnerability has been found in luelista miniConf up to 1.7.6 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file miniConf/MessageView.cs of the component URL Scanning. The manipulation leads to denial of service. Upgrading to version 1.7.7 and 1.8.0 is able to addres CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:13 +0000 UTC Push: 2023-01-08 00:11:15 +0000 UTC |
Live-Hack-CVE/CVE-2015-10024
A vulnerability classified as critical was found in hoffie larasync. This vulnerability affects unknown code of the file repository/content/file_storage.go. The manipulation leads to path traversal. The name of the patch is 776bad422f4bd4930d09491711246bbeb1be9ba5. It is recommended to apply a patch to fix this issue. CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:08 +0000 UTC Push: 2023-01-08 00:11:11 +0000 UTC |
Live-Hack-CVE/CVE-2014-125061
** UNSUPPPORTED WHEN ASSIGNED **** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in peel filebroker and classified as critical. Affected by this issue is the function select_transfer_status_desc of the file lib/common.rb. The manipulation leads to sql injection. The name of the patch is 91097e26a6c84d3208a351a CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:04 +0000 UTC Push: 2023-01-08 00:11:07 +0000 UTC |
Live-Hack-CVE/CVE-2014-125060
A vulnerability, which was classified as critical, was found in holdennb CollabCal. Affected is the function handleGet of the file calenderServer.cpp. The manipulation leads to improper authentication. It is possible to launch the attack remotely. The name of the patch is b80f6d1893607c99e5113967592417d0fe310ce6. It is CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:00 +0000 UTC Push: 2023-01-08 00:11:02 +0000 UTC |
Live-Hack-CVE/CVE-2014-125059
A vulnerability, which was classified as problematic, has been found in sternenseemann sternenblog. This issue affects the function blog_index of the file main.c. The manipulation of the argument post_path leads to file inclusion. The attack may be initiated remotely. Upgrading to version 0.1.0 is able to address this CVE project by @Sn0wAlice
Create: 2023-01-08 00:10:55 +0000 UTC Push: 2023-01-08 00:10:58 +0000 UTC |
Zenmovie/CVE-2022-Stored-XSS-in-cve-monitor
There is stored XSS in https://p1ay8y3ar.github.io/cve_monitor/. Vulnerable argument "ServiceSetIdentifier" is in file /goform/wlanPrimaryNetwork. PoC: <script>alert("Subcribe to t.me/LamerZen")</script>
Create: 2023-01-07 23:19:29 +0000 UTC Push: 2023-01-07 23:19:30 +0000 UTC |
wr0x00/cve-2022-23131
Create: 2023-01-07 22:09:40 +0000 UTC Push: 2023-01-07 22:09:40 +0000 UTC |
Live-Hack-CVE/CVE-2018-25070
A vulnerability has been found in polterguy Phosphorus Five up to 8.2 and classified as critical. This vulnerability affects the function csv.Read of the file plugins/extras/p5.mysql/NonQuery.cs of the component CSV Import. The manipulation leads to sql injection. Upgrading to version 8.3 is able to address this issue. CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:34 +0000 UTC Push: 2023-01-07 22:00:36 +0000 UTC |
Live-Hack-CVE/CVE-2014-125058
A vulnerability was found in LearnMeSomeCodes project3 and classified as critical. This issue affects the function search_first_name of the file search.rb. The manipulation leads to sql injection. The name of the patch is d3efa17ae9f6b2fc25a6bbcf165cefed17c7035e. It is recommended to apply a patch to fix this issue. Th CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:30 +0000 UTC Push: 2023-01-07 22:00:32 +0000 UTC |
Live-Hack-CVE/CVE-2018-25071
A vulnerability was found in roxlukas LMeve up to 0.1.58. It has been rated as critical. Affected by this issue is the function insert_log of the file wwwroot/ccpwgl/proxy.php. The manipulation of the argument fetch leads to sql injection. Upgrading to version 0.1.59-beta is able to address this issue. The name of the CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:26 +0000 UTC Push: 2023-01-07 22:00:28 +0000 UTC |
Live-Hack-CVE/CVE-2015-10023
A vulnerability classified as critical has been found in Fumon trello-octometric. This affects the function main of the file metrics-ui/server/srv.go. The manipulation of the argument num leads to sql injection. The name of the patch is a1f1754933fbf21e2221fbc671c81a47de6a04ef. It is recommended to apply a patch to fix CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:21 +0000 UTC Push: 2023-01-07 22:00:24 +0000 UTC |
Live-Hack-CVE/CVE-2015-10022
A vulnerability was found in IISH nlgis2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file scripts/etl/custom_import.pl. The manipulation leads to sql injection. The name of the patch is 8bdb6fcf7209584eaf1232437f0f53e735b2b34c. It is recommended to apply a patch CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:17 +0000 UTC Push: 2023-01-07 22:00:20 +0000 UTC |
Live-Hack-CVE/CVE-2015-10021
A vulnerability was found in ritterim definely. It has been classified as problematic. Affected is an unknown function of the file src/database.js. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The name of the patch is b31a022ba4d8d17148445a13ebb5a42ad593dbaa. It is recom CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:13 +0000 UTC Push: 2023-01-07 22:00:16 +0000 UTC |
Previous
534
535
536
537
538
539
540
541
Next