unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
Live-Hack-CVE/CVE-2014-125074
A vulnerability was found in Nayshlok Voyager. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file Voyager/src/models/DatabaseAccess.java. The manipulation leads to sql injection. The name of the patch is f1249f438cd8c39e7ef2f6c8f2ab76b239a02fae. It is recommended to CVE project by @Sn0wAlice
Create: 2023-01-20 00:29:57 +0000 UTC Push: 2023-01-20 00:30:00 +0000 UTC |
p33d/CVE-2022-47966
Multiple Zoho ManageEngine on-premise products
Create: 2023-01-20 00:06:56 +0000 UTC Push: 2023-01-20 00:06:56 +0000 UTC |
MONK-MODE/CVE-2023-XXXX
Create: 2023-01-19 22:02:38 +0000 UTC Push: 2023-01-19 22:02:39 +0000 UTC |
Live-Hack-CVE/CVE-2023-23690
Cloud Mobility for Dell EMC Storage, versions 1.3.0.X and below contains an Improper Check for Certificate Revocation vulnerability. A threat actor does not need any specific privileges to potentially exploit this vulnerability. An attacker could perform a man-in-the-middle attack and eavesdrop on encrypted communicati CVE project by @Sn0wAlice
Create: 2023-01-19 21:15:23 +0000 UTC Push: 2023-01-19 21:15:26 +0000 UTC |
Live-Hack-CVE/CVE-2022-3738
The vulnerability allows a remote unauthenticated attacker to download a backup file, if one exists. That backup file might contain sensitive information like credentials and cryptographic material. A valid user has to create a backup after the last reboot for this attack to be successfull. CVE project by @Sn0wAlice
Create: 2023-01-19 21:15:19 +0000 UTC Push: 2023-01-19 21:15:22 +0000 UTC |
Live-Hack-CVE/CVE-2023-0397
A malicious / defect bluetooth controller can cause a Denial of Service due to unchecked input in le_read_buffer_size_complete. CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:35 +0000 UTC Push: 2023-01-19 20:08:37 +0000 UTC |
Live-Hack-CVE/CVE-2022-4892
A vulnerability was found in MyCMS. It has been classified as problematic. This affects the function build_view of the file lib/gener/view.php of the component Visitors Module. The manipulation of the argument original/converted leads to cross site scripting. It is possible to initiate the attack remotely. The name of CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:31 +0000 UTC Push: 2023-01-19 20:08:33 +0000 UTC |
Live-Hack-CVE/CVE-2017-20174
A vulnerability was found in bastianallgeier Kirby Webmentions Plugin and classified as problematic. Affected by this issue is some unknown functionality. The manipulation leads to injection. The attack may be launched remotely. The name of the patch is 55bedea78ae9af916a9a41497bd9996417851502. It is recommended to app CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:26 +0000 UTC Push: 2023-01-19 20:08:29 +0000 UTC |
Live-Hack-CVE/CVE-2015-10069
A vulnerability was found in viakondratiuk cash-machine. It has been declared as critical. This vulnerability affects the function is_card_pin_at_session/update_failed_attempts of the file machine.py. The manipulation leads to sql injection. The name of the patch is 62a6e24efdfa195b70d7df140d8287fdc38eb66d. It is recom CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:22 +0000 UTC Push: 2023-01-19 20:08:25 +0000 UTC |
Live-Hack-CVE/CVE-2023-0398
Cross-Site Request Forgery (CSRF) in GitHub repository modoboa/modoboa prior to 2.0.4. CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:17 +0000 UTC Push: 2023-01-19 20:08:21 +0000 UTC |
Live-Hack-CVE/CVE-2015-10071
A vulnerability was found in gitter-badger ezpublish-modern-legacy. It has been rated as problematic. This issue affects some unknown processing of the file kernel/user/forgotpassword.php. The manipulation leads to weak password recovery. Upgrading to version 1.0 is able to address this issue. The name of the patch is CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:12 +0000 UTC Push: 2023-01-19 20:08:15 +0000 UTC |
Live-Hack-CVE/CVE-2015-10070
A vulnerability was found in copperwall Twiddit. It has been rated as critical. This issue affects some unknown processing of the file index.php. The manipulation leads to sql injection. The name of the patch is 2203d4ce9810bdaccece5c48ff4888658a01acfc. It is recommended to apply a patch to fix this issue. The identifi CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:08 +0000 UTC Push: 2023-01-19 20:08:11 +0000 UTC |
Live-Hack-CVE/CVE-2014-125083
A vulnerability has been found in Anant Labs google-enterprise-connector-dctm up to 3.2.3 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument username/domain leads to sql injection. The name of the patch is 6fba04f18ab7764002a1da308e7cd9712b501cb7. It CVE project by @Sn0wAlice
Create: 2023-01-19 20:08:04 +0000 UTC Push: 2023-01-19 20:08:07 +0000 UTC |
Live-Hack-CVE/CVE-2013-10014
A vulnerability classified as critical has been found in oktora24 2moons. Affected is an unknown function. The manipulation leads to sql injection. The name of the patch is 1b09cf7672eb85b5b0c8a4de321f7a4ad87b09a7. It is recommended to apply a patch to fix this issue. VDB-218898 is the identifier assigned to this vulne CVE project by @Sn0wAlice
Create: 2023-01-19 20:07:59 +0000 UTC Push: 2023-01-19 20:08:02 +0000 UTC |
Trinadh465/linux-4.19.72_CVE-2022-45934
Create: 2023-01-19 19:58:08 +0000 UTC Push: 2023-01-19 19:58:08 +0000 UTC |
0xDSousa/CVE-2022-23521
Truncated Allocation Leading to Out of Bounds Write Via Large Number of Attributes
Create: 2023-01-19 19:50:21 +0000 UTC Push: 2023-01-19 19:50:21 +0000 UTC |
ralph-morrinson/CVE-2022-47966-RCE-PoC
CVE-2022-47966 ManageEngine unauthenticated RCE exploit via the SAML request,
Create: 2023-01-19 18:41:26 +0000 UTC Push: 2023-01-19 18:41:27 +0000 UTC |
Live-Hack-CVE/CVE-2022-27778
A use of incorrectly resolved name vulnerability fixed in 7.83.1 might remove the wrong file when `--no-clobber` is used together with `--remove-on-error`. CVE project by @Sn0wAlice
Create: 2023-01-19 14:38:53 +0000 UTC Push: 2023-01-19 14:38:56 +0000 UTC |
Live-Hack-CVE/CVE-2013-0796
The WebGL subsystem in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 on Linux does not properly interact with Mesa drivers, which allows remote attackers to execute arbitrary code or cause a denial of service (free o CVE project by @Sn0wAlice
Create: 2023-01-19 14:38:49 +0000 UTC Push: 2023-01-19 14:38:52 +0000 UTC |
Live-Hack-CVE/CVE-2014-6417
net/ceph/auth_x.c in Ceph, as used in the Linux kernel before 3.16.3, does not properly consider the possibility of kmalloc failure, which allows remote attackers to cause a denial of service (system crash) or possibly have unspecified other impact via a long unencrypted auth ticket. CVE project by @Sn0wAlice
Create: 2023-01-19 14:38:45 +0000 UTC Push: 2023-01-19 14:38:47 +0000 UTC |
Previous
509
510
511
512
513
514
515
516
Next