unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
hieuminhnv/CVE-2022-21587-POC-
CVE-2022-21587 POC
Create: 2023-02-06 12:18:24 +0000 UTC Push: 2023-02-06 12:18:25 +0000 UTC |
hieuminhnv/CVE-2022-21587-POC
CVE-2022-21587 POC
Create: 2023-02-06 12:18:24 +0000 UTC Push: 2023-02-06 12:30:10 +0000 UTC |
Live-Hack-CVE/CVE-2014-125085
A vulnerability, which was classified as critical, was found in Gimmie Plugin 1.2.2. Affected is an unknown function of the file trigger_ratethread.php. The manipulation of the argument t/postusername leads to sql injection. Upgrading to version 1.3.0 is able to address this issue. The name of the patch is f11a136e9cbd CVE project by @Sn0wAlice
Create: 2023-02-06 09:56:55 +0000 UTC Push: 2023-02-06 09:56:57 +0000 UTC |
Live-Hack-CVE/CVE-2014-125084
A vulnerability, which was classified as critical, has been found in Gimmie Plugin 1.2.2. This issue affects some unknown processing of the file trigger_referral.php. The manipulation of the argument referrername leads to sql injection. Upgrading to version 1.3.0 is able to address this issue. The name of the patch is CVE project by @Sn0wAlice
Create: 2023-02-06 09:56:51 +0000 UTC Push: 2023-02-06 09:56:53 +0000 UTC |
Live-Hack-CVE/CVE-2015-0252
internal/XMLReader.cpp in Apache Xerces-C before 3.1.2 allows remote attackers to cause a denial of service (segmentation fault and crash) via crafted XML data. CVE project by @Sn0wAlice
Create: 2023-02-06 07:43:09 +0000 UTC Push: 2023-02-06 07:43:11 +0000 UTC |
Live-Hack-CVE/CVE-2018-1311
The Apache Xerces-C 3.0.0 to 3.2.3 XML parser contains a use-after-free error triggered during the scanning of external DTDs. This flaw has not been addressed in the maintained version of the library and has no current mitigation other than to disable DTD processing. This can be accomplished via the DOM using a standar CVE project by @Sn0wAlice
Create: 2023-02-06 07:43:06 +0000 UTC Push: 2023-02-06 07:43:08 +0000 UTC |
l00neyhacker/CVE-2021-35287
CVE-2021-35287
Create: 2023-02-06 06:37:02 +0000 UTC Push: 2023-02-06 06:37:03 +0000 UTC |
l00neyhacker/CVE-2021-35286
CVE-2021-35286
Create: 2023-02-06 06:35:04 +0000 UTC Push: 2023-02-06 06:35:05 +0000 UTC |
0xFTW/CVE-2011-2523
CVE-2011-2523 exploit
Create: 2023-02-06 06:17:34 +0000 UTC Push: 2023-02-06 06:17:34 +0000 UTC |
tristao-marinho/CVE-2022-45544
SCHLIX CMS 2.2.7-2 arbitrary File Upload
Create: 2023-02-06 05:45:37 +0000 UTC Push: 2023-02-06 05:45:38 +0000 UTC |
Live-Hack-CVE/CVE-2017-20175
A vulnerability classified as problematic has been found in DaSchTour matomo-mediawiki-extension up to 2.4.2. This affects an unknown part of the file Piwik.hooks.php of the component Username Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been d CVE project by @Sn0wAlice
Create: 2023-02-06 05:32:46 +0000 UTC Push: 2023-02-06 05:32:49 +0000 UTC |
voidz0r/CVE-2022-44268
A PoC for the CVE-2022-44268 - ImageMagick arbitrary file read
Create: 2023-02-06 02:42:27 +0000 UTC Push: 2023-02-06 03:20:26 +0000 UTC |
dumitory-dev/CVE-2020-35391-POC
Tenda N300 Authentication Bypass via Malformed HTTP Eequest Header
Create: 2023-02-05 21:42:55 +0000 UTC Push: 2023-02-05 21:42:58 +0000 UTC |
Live-Hack-CVE/CVE-2023-22849
An improper neutralization of input during web page generation ('Cross-site Scripting') [CWE-79] vulnerability in Sling App CMS version 1.1.4 and prior may allow an authenticated remote attacker to perform a reflected cross-site scripting (XSS) attack in multiple features. Upgrade to Apache Sling App CMS >= 1.1.6 CVE project by @Sn0wAlice
Create: 2023-02-05 07:33:13 +0000 UTC Push: 2023-02-05 07:33:15 +0000 UTC |
Live-Hack-CVE/CVE-2022-45786
There are issues with the AGE drivers for Golang and Python that enable SQL injections to occur. This impacts AGE for PostgreSQL 11 & AGE for PostgreSQL 12, all versions up-to-and-including 1.1.0, when using those drivers. The fix is to update to the latest Golang and Python drivers in addition to the latest version of CVE project by @Sn0wAlice
Create: 2023-02-05 07:33:10 +0000 UTC Push: 2023-02-05 07:33:12 +0000 UTC |
peteribi/CVE-2021-27077
Create: 2023-02-05 06:13:35 +0000 UTC Push: 2023-02-05 06:13:35 +0000 UTC |
n2x4/Feb2023-CVE-2021-21974-OSINT
Analysis of the ransom demands from Shodan results
Create: 2023-02-05 05:23:20 +0000 UTC Push: 2023-02-05 05:23:21 +0000 UTC |
Live-Hack-CVE/CVE-2023-25193
hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks. CVE project by @Sn0wAlice
Create: 2023-02-05 05:19:30 +0000 UTC Push: 2023-02-05 05:19:32 +0000 UTC |
Live-Hack-CVE/CVE-2017-11358
The read_samples function in hcom.c in Sound eXchange (SoX) 14.4.2 allows remote attackers to cause a denial of service (invalid memory read and application crash) via a crafted hcom file. CVE project by @Sn0wAlice
Create: 2023-02-05 02:00:47 +0000 UTC Push: 2023-02-05 02:00:49 +0000 UTC |
Live-Hack-CVE/CVE-2021-3643
A flaw was found in sox 14.4.1. The lsx_adpcm_init function within libsox leads to a global-buffer-overflow. This flaw allows an attacker to input a malicious file, leading to the disclosure of sensitive information. CVE project by @Sn0wAlice
Create: 2023-02-05 02:00:43 +0000 UTC Push: 2023-02-05 02:00:45 +0000 UTC |
Previous
662
663
664
665
666
667
668
669
Next