unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
Live-Hack-CVE/CVE-2015-10024
A vulnerability classified as critical was found in hoffie larasync. This vulnerability affects unknown code of the file repository/content/file_storage.go. The manipulation leads to path traversal. The name of the patch is 776bad422f4bd4930d09491711246bbeb1be9ba5. It is recommended to apply a patch to fix this issue. CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:08 +0000 UTC Push: 2023-01-08 00:11:11 +0000 UTC |
Live-Hack-CVE/CVE-2014-125061
** UNSUPPPORTED WHEN ASSIGNED **** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in peel filebroker and classified as critical. Affected by this issue is the function select_transfer_status_desc of the file lib/common.rb. The manipulation leads to sql injection. The name of the patch is 91097e26a6c84d3208a351a CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:04 +0000 UTC Push: 2023-01-08 00:11:07 +0000 UTC |
Live-Hack-CVE/CVE-2014-125060
A vulnerability, which was classified as critical, was found in holdennb CollabCal. Affected is the function handleGet of the file calenderServer.cpp. The manipulation leads to improper authentication. It is possible to launch the attack remotely. The name of the patch is b80f6d1893607c99e5113967592417d0fe310ce6. It is CVE project by @Sn0wAlice
Create: 2023-01-08 00:11:00 +0000 UTC Push: 2023-01-08 00:11:02 +0000 UTC |
Live-Hack-CVE/CVE-2014-125059
A vulnerability, which was classified as problematic, has been found in sternenseemann sternenblog. This issue affects the function blog_index of the file main.c. The manipulation of the argument post_path leads to file inclusion. The attack may be initiated remotely. Upgrading to version 0.1.0 is able to address this CVE project by @Sn0wAlice
Create: 2023-01-08 00:10:55 +0000 UTC Push: 2023-01-08 00:10:58 +0000 UTC |
Zenmovie/CVE-2022-Stored-XSS-in-cve-monitor
There is stored XSS in https://p1ay8y3ar.github.io/cve_monitor/. Vulnerable argument "ServiceSetIdentifier" is in file /goform/wlanPrimaryNetwork. PoC: <script>alert("Subcribe to t.me/LamerZen")</script>
Create: 2023-01-07 23:19:29 +0000 UTC Push: 2023-01-07 23:19:30 +0000 UTC |
wr0x00/cve-2022-23131
Create: 2023-01-07 22:09:40 +0000 UTC Push: 2023-01-07 22:09:40 +0000 UTC |
Live-Hack-CVE/CVE-2018-25070
A vulnerability has been found in polterguy Phosphorus Five up to 8.2 and classified as critical. This vulnerability affects the function csv.Read of the file plugins/extras/p5.mysql/NonQuery.cs of the component CSV Import. The manipulation leads to sql injection. Upgrading to version 8.3 is able to address this issue. CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:34 +0000 UTC Push: 2023-01-07 22:00:36 +0000 UTC |
Live-Hack-CVE/CVE-2014-125058
A vulnerability was found in LearnMeSomeCodes project3 and classified as critical. This issue affects the function search_first_name of the file search.rb. The manipulation leads to sql injection. The name of the patch is d3efa17ae9f6b2fc25a6bbcf165cefed17c7035e. It is recommended to apply a patch to fix this issue. Th CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:30 +0000 UTC Push: 2023-01-07 22:00:32 +0000 UTC |
Live-Hack-CVE/CVE-2018-25071
A vulnerability was found in roxlukas LMeve up to 0.1.58. It has been rated as critical. Affected by this issue is the function insert_log of the file wwwroot/ccpwgl/proxy.php. The manipulation of the argument fetch leads to sql injection. Upgrading to version 0.1.59-beta is able to address this issue. The name of the CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:26 +0000 UTC Push: 2023-01-07 22:00:28 +0000 UTC |
Live-Hack-CVE/CVE-2015-10023
A vulnerability classified as critical has been found in Fumon trello-octometric. This affects the function main of the file metrics-ui/server/srv.go. The manipulation of the argument num leads to sql injection. The name of the patch is a1f1754933fbf21e2221fbc671c81a47de6a04ef. It is recommended to apply a patch to fix CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:21 +0000 UTC Push: 2023-01-07 22:00:24 +0000 UTC |
Live-Hack-CVE/CVE-2015-10022
A vulnerability was found in IISH nlgis2. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file scripts/etl/custom_import.pl. The manipulation leads to sql injection. The name of the patch is 8bdb6fcf7209584eaf1232437f0f53e735b2b34c. It is recommended to apply a patch CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:17 +0000 UTC Push: 2023-01-07 22:00:20 +0000 UTC |
Live-Hack-CVE/CVE-2015-10021
A vulnerability was found in ritterim definely. It has been classified as problematic. Affected is an unknown function of the file src/database.js. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The name of the patch is b31a022ba4d8d17148445a13ebb5a42ad593dbaa. It is recom CVE project by @Sn0wAlice
Create: 2023-01-07 22:00:13 +0000 UTC Push: 2023-01-07 22:00:16 +0000 UTC |
Live-Hack-CVE/CVE-2023-0114
A vulnerability was found in Netis Netcore Router. It has been rated as problematic. Affected by this issue is some unknown functionality of the file param.file.tgz of the component Backup Handler. The manipulation leads to cleartext storage in a file or on disk. Local access is required to approach this attack. The id CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:53 +0000 UTC Push: 2023-01-07 19:49:56 +0000 UTC |
Live-Hack-CVE/CVE-2023-0113
A vulnerability was found in Netis Netcore Router. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file param.file.tgz of the component Backup Handler. The manipulation leads to information disclosure. The attack can be launched remotely. The associated identifier CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:49 +0000 UTC Push: 2023-01-07 19:49:51 +0000 UTC |
Live-Hack-CVE/CVE-2018-25069
A vulnerability classified as critical has been found in Netis Netcore Router. This affects an unknown part. The manipulation leads to use of hard-coded password. It is possible to initiate the attack remotely. The identifier VDB-217593 was assigned to this vulnerability. CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:44 +0000 UTC Push: 2023-01-07 19:49:47 +0000 UTC |
Live-Hack-CVE/CVE-2015-10019
A vulnerability, which was classified as problematic, has been found in foxoverflow MySimplifiedSQL. This issue affects some unknown processing of the file MySimplifiedSQL_Examples.php. The manipulation of the argument FirstName/LastName leads to cross site scripting. The attack may be initiated remotely. The name of t CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:40 +0000 UTC Push: 2023-01-07 19:49:43 +0000 UTC |
Live-Hack-CVE/CVE-2014-125055
A vulnerability, which was classified as problematic, was found in agnivade easy-scrypt. Affected is the function VerifyPassphrase of the file scrypt.go. The manipulation leads to observable timing discrepancy. Upgrading to version 1.0.0 is able to address this issue. The name of the patch is 477c10cf3b144ddf96526aa09f CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:36 +0000 UTC Push: 2023-01-07 19:49:39 +0000 UTC |
Live-Hack-CVE/CVE-2014-125054
A vulnerability classified as critical was found in koroket RedditOnRails. This vulnerability affects unknown code of the component Vote Handler. The manipulation leads to improper access controls. The attack can be initiated remotely. The name of the patch is 7f3c7407d95d532fcc342b00d68d0ea09ca71030. It is recommended CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:32 +0000 UTC Push: 2023-01-07 19:49:35 +0000 UTC |
Live-Hack-CVE/CVE-2020-36644
A vulnerability has been found in jamesmartin Inline SVG up to 1.7.1 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file lib/inline_svg/action_view/helpers.rb of the component URL Parameter Handler. The manipulation of the argument filename leads to cross site scripting CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:28 +0000 UTC Push: 2023-01-07 19:49:31 +0000 UTC |
Live-Hack-CVE/CVE-2014-125057
A vulnerability was found in mrobit robitailletheknot. It has been classified as problematic. This affects an unknown part of the file app/filters.php of the component CSRF Token Handler. The manipulation of the argument _token leads to incorrect comparison. It is possible to initiate the attack remotely. The name of t CVE project by @Sn0wAlice
Create: 2023-01-07 19:49:24 +0000 UTC Push: 2023-01-07 19:49:27 +0000 UTC |
Previous
743
744
745
746
747
748
749
750
Next