unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
Live-Hack-CVE/CVE-2022-43537
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploits could allow an attacker to execute arbitrary commands as root on the underlying operating system leading to complete system compromise in CVE project by @Sn0wAlice
Create: 2023-01-12 01:48:12 +0000 UTC Push: 2023-01-12 01:48:15 +0000 UTC |
Live-Hack-CVE/CVE-2022-43539
A vulnerability exists in the ClearPass Policy Manager cluster communications that allow for an attacker in a privileged network position to potentially obtain sensitive information. A successful exploit could allow an attacker to retrieve information that allows for unauthorized actions as a privileged user on the Cle CVE project by @Sn0wAlice
Create: 2023-01-12 01:48:08 +0000 UTC Push: 2023-01-12 01:48:11 +0000 UTC |
Live-Hack-CVE/CVE-2022-43540
A vulnerability exists in the ClearPass OnGuard macOS agent that allows for an attacker with local macOS instance access to potentially obtain sensitive information. A successful exploit could allow an attacker to retrieve information that is of a sensitive nature in Aruba ClearPass Policy Manager version(s): ClearPass CVE project by @Sn0wAlice
Create: 2023-01-12 01:48:03 +0000 UTC Push: 2023-01-12 01:48:07 +0000 UTC |
Live-Hack-CVE/CVE-2022-43538
Vulnerabilities in the ClearPass Policy Manager web-based management interface allow remote authenticated users to run arbitrary commands on the underlying host. Successful exploits could allow an attacker to execute arbitrary commands as root on the underlying operating system leading to complete system compromise in CVE project by @Sn0wAlice
Create: 2023-01-12 01:47:59 +0000 UTC Push: 2023-01-12 01:48:02 +0000 UTC |
Live-Hack-CVE/CVE-2021-41073
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer, as demonstrated by using /proc/<pid>/maps for exploitation. CVE project by @Sn0wAlice
Create: 2023-01-12 01:47:54 +0000 UTC Push: 2023-01-12 01:47:57 +0000 UTC |
PoyomiFox/Nft-Grabber-Stealer-Exploit-Cve-2022-Steal-BlockHain-Hack-Nft
Create: 2023-01-12 01:35:47 +0000 UTC Push: 2023-01-12 01:35:48 +0000 UTC |
PoyomiFox/Jpg-Png-Exploit-Downloader-Fud-Cryter-Malware-Builder-Cve-2022
Create: 2023-01-12 01:25:42 +0000 UTC Push: 2023-01-12 01:25:43 +0000 UTC |
NumRcs/Jpg-Png-Exploit-Downloader-Fud-Cryter-Malware-Builder-Cve-2022
We have collectively determined that these vulnerabilities are available to individuals other than the person(s) who discovered them. An unknowable number of people having access to these vulnerabilities makes this a critical issue for everyone using this software.About CVE CVE was launched in 1999 when most information security tools used their ow
Create: 2023-01-12 01:25:42 +0000 UTC Push: 2023-01-12 01:27:17 +0000 UTC |
PoyomiFox/Discord-Image-Token-Password-Grabber-Exploit-Cve-2022
Create: 2023-01-12 01:24:51 +0000 UTC Push: 2023-01-12 01:24:52 +0000 UTC |
HAMRCS/Discord-Image-Token-Password-Grabber-Exploit-Cve-2022
Features No local caching Transfers via Discord webhook Searches for authorization tokens in multiple directories (Discord, Discord PTB, Discord Canary, Google chrome, Opera, Brave and Yandex) No external Python modules required [todo] Cross-platform support
Create: 2023-01-12 01:24:51 +0000 UTC Push: 2023-01-12 01:26:09 +0000 UTC |
Live-Hack-CVE/CVE-2022-4696
There exists a use-after-free vulnerability in the Linux kernel through io_uring and the IORING_OP_SPLICE operation. If IORING_OP_SPLICE is missing the IO_WQ_WORK_FILES flag, which signals that the operation won't use current->nsproxy, so its reference counter is not increased. This assumption is not always true as cal CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:32 +0000 UTC Push: 2023-01-11 23:37:35 +0000 UTC |
Live-Hack-CVE/CVE-2022-42967
Caret is vulnerable to an XSS attack when the user opens a crafted Markdown file when preview mode is enabled. This directly leads to client-side code execution. CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:27 +0000 UTC Push: 2023-01-11 23:37:31 +0000 UTC |
Live-Hack-CVE/CVE-2022-47866
Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php. CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:22 +0000 UTC Push: 2023-01-11 23:37:26 +0000 UTC |
Live-Hack-CVE/CVE-2022-47865
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php. CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:17 +0000 UTC Push: 2023-01-11 23:37:21 +0000 UTC |
Live-Hack-CVE/CVE-2018-25073
A vulnerability has been found in Newcomer1989 TSN-Ranksystem up to 1.2.6 and classified as problematic. This vulnerability affects the function getlog of the file webinterface/bot.php. The manipulation leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 1.2.7 is able to address th CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:12 +0000 UTC Push: 2023-01-11 23:37:16 +0000 UTC |
Live-Hack-CVE/CVE-2022-43530
Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities to obtain and modify sensitive information in the underlying data CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:06 +0000 UTC Push: 2023-01-11 23:37:09 +0000 UTC |
despossivel/CVE-2022-23529-lab
Create: 2023-01-11 19:46:22 +0000 UTC Push: 2023-01-11 19:46:22 +0000 UTC |
Live-Hack-CVE/CVE-2021-26403
Insufficient checks in SEV may lead to a malicious hypervisor disclosing the launch secret potentially resulting in compromise of VM confidentiality. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:38 +0000 UTC Push: 2023-01-11 19:13:42 +0000 UTC |
Live-Hack-CVE/CVE-2021-26402
Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an attacker to write partially-controlled data out-of-bounds to SMM or SEV-ES regions which may lead to a potential loss of integrity and availability. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:34 +0000 UTC Push: 2023-01-11 19:13:37 +0000 UTC |
Live-Hack-CVE/CVE-2021-26396
Insufficient validation of address mapping to IO in ASP (AMD Secure Processor) may result in a loss of memory integrity in the SNP guest. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:29 +0000 UTC Push: 2023-01-11 19:13:32 +0000 UTC |
Previous
728
729
730
731
732
733
734
735
Next