unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
Live-Hack-CVE/CVE-2022-34440
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain admin privileges. CVE project by @Sn0wAlice
Create: 2023-01-11 19:11:56 +0000 UTC Push: 2023-01-11 19:11:59 +0000 UTC |
Live-Hack-CVE/CVE-2022-34441
Dell EMC SCG Policy Manager, versions from 5.10 to 5.12, contain(s) a contain a Hard-coded Cryptographic Key vulnerability. An attacker with the knowledge of the hard-coded sensitive information, could potentially exploit this vulnerability to login to the system to gain admin privileges. CVE project by @Sn0wAlice
Create: 2023-01-11 19:11:51 +0000 UTC Push: 2023-01-11 19:11:55 +0000 UTC |
Live-Hack-CVE/CVE-2022-34330
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 22 CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:53 +0000 UTC Push: 2023-01-11 14:52:56 +0000 UTC |
Live-Hack-CVE/CVE-2022-43392
A buffer overflow vulnerability in the parameter of web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted authorization request. CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:38 +0000 UTC Push: 2023-01-11 14:52:41 +0000 UTC |
Live-Hack-CVE/CVE-2022-43390
A command injection vulnerability in the CGI program of Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to execute some OS commands on a vulnerable device by sending a crafted HTTP request. CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:34 +0000 UTC Push: 2023-01-11 14:52:37 +0000 UTC |
Live-Hack-CVE/CVE-2023-22958
The Syracom Secure Login plugin before 3.1.1.0 for Jira may allow spoofing of 2FA PIN validation via the plugins/servlet/twofactor/public/pinvalidation target parameter. CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:29 +0000 UTC Push: 2023-01-11 14:52:33 +0000 UTC |
Live-Hack-CVE/CVE-2022-48253
nhttpd in Nostromo before 2.1 is vulnerable to a path traversal that may allow an attacker to execute arbitrary commands on the remote server. The vulnerability occurs when the homedirs option is used. CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:26 +0000 UTC Push: 2023-01-11 14:52:28 +0000 UTC |
Live-Hack-CVE/CVE-2022-43519
Multiple vulnerabilities in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct SQL injection attacks against the Aruba EdgeConnect Enterprise Orchestrator instance. An attacker could exploit these vulnerabilities to obtain and modify s CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:19 +0000 UTC Push: 2023-01-11 14:52:22 +0000 UTC |
Live-Hack-CVE/CVE-2022-43526
Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victi CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:15 +0000 UTC Push: 2023-01-11 14:52:18 +0000 UTC |
Live-Hack-CVE/CVE-2022-43525
Multiple vulnerabilities within the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow a remote attacker to conduct a reflected cross-site scripting (XSS) attack against a user of the interface. A successful exploit could allow an attacker to execute arbitrary script code in a victi CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:10 +0000 UTC Push: 2023-01-11 14:52:13 +0000 UTC |
Live-Hack-CVE/CVE-2022-43524
A vulnerability in the web-based management interface of Aruba EdgeConnect Enterprise Orchestrator could allow an authenticated remote attacker to conduct a stored cross-site scripting (XSS) attack against an administrative user of the interface. A successful exploit allows an attacker to execute arbitrary script code CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:06 +0000 UTC Push: 2023-01-11 14:52:09 +0000 UTC |
Live-Hack-CVE/CVE-2023-22959
WebChess through 0.9.0 and 1.0.0.rc2 allows SQL injection: mainmenu.php, chess.php, and opponentspassword.php (txtFirstName, txtLastName). CVE project by @Sn0wAlice
Create: 2023-01-11 14:52:02 +0000 UTC Push: 2023-01-11 14:52:05 +0000 UTC |
Live-Hack-CVE/CVE-2022-0553
There is no check to see if slot 0 is being uploaded from the device to the host. When using encrypted images this means the unencrypted firmware can be retrieved easily. CVE project by @Sn0wAlice
Create: 2023-01-11 14:51:57 +0000 UTC Push: 2023-01-11 14:52:01 +0000 UTC |
Live-Hack-CVE/CVE-2021-3966
usb device bluetooth class includes a buffer overflow related to implementation of net_buf_add_mem. CVE project by @Sn0wAlice
Create: 2023-01-11 14:51:53 +0000 UTC Push: 2023-01-11 14:51:56 +0000 UTC |
E-bounce/cve-2010-1622_learning_environment
cve-2010-1622 Learning Environment
Create: 2023-01-11 11:37:56 +0000 UTC Push: 2023-01-11 11:37:56 +0000 UTC |
Live-Hack-CVE/CVE-2023-21540
Windows Cryptographic Information Disclosure Vulnerability. This CVE ID is unique from CVE-2023-21550, CVE-2023-21559. CVE project by @Sn0wAlice
Create: 2023-01-11 08:11:14 +0000 UTC Push: 2023-01-11 08:11:16 +0000 UTC |
Live-Hack-CVE/CVE-2023-21537
Microsoft Message Queuing (MSMQ) Elevation of Privilege Vulnerability. CVE project by @Sn0wAlice
Create: 2023-01-11 08:11:09 +0000 UTC Push: 2023-01-11 08:11:12 +0000 UTC |
Live-Hack-CVE/CVE-2023-21765
Windows Print Spooler Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21678, CVE-2023-21760. CVE project by @Sn0wAlice
Create: 2023-01-11 08:11:05 +0000 UTC Push: 2023-01-11 08:11:08 +0000 UTC |
Live-Hack-CVE/CVE-2023-21539
Windows Authentication Remote Code Execution Vulnerability. CVE project by @Sn0wAlice
Create: 2023-01-11 08:11:00 +0000 UTC Push: 2023-01-11 08:11:03 +0000 UTC |
Live-Hack-CVE/CVE-2023-21764
Microsoft Exchange Server Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2023-21763. CVE project by @Sn0wAlice
Create: 2023-01-11 08:10:57 +0000 UTC Push: 2023-01-11 08:10:59 +0000 UTC |
Previous
730
731
732
733
734
735
736
737
Next