unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
Live-Hack-CVE/CVE-2021-41073
loop_rw_iter in fs/io_uring.c in the Linux kernel 5.10 through 5.14.6 allows local users to gain privileges by using IORING_OP_PROVIDE_BUFFERS to trigger a free of a kernel buffer, as demonstrated by using /proc/<pid>/maps for exploitation. CVE project by @Sn0wAlice
Create: 2023-01-12 01:47:54 +0000 UTC Push: 2023-01-12 01:47:57 +0000 UTC |
PoyomiFox/Nft-Grabber-Stealer-Exploit-Cve-2022-Steal-BlockHain-Hack-Nft
Create: 2023-01-12 01:35:47 +0000 UTC Push: 2023-01-12 01:35:48 +0000 UTC |
PoyomiFox/Jpg-Png-Exploit-Downloader-Fud-Cryter-Malware-Builder-Cve-2022
Create: 2023-01-12 01:25:42 +0000 UTC Push: 2023-01-12 01:25:43 +0000 UTC |
NumRcs/Jpg-Png-Exploit-Downloader-Fud-Cryter-Malware-Builder-Cve-2022
We have collectively determined that these vulnerabilities are available to individuals other than the person(s) who discovered them. An unknowable number of people having access to these vulnerabilities makes this a critical issue for everyone using this software.About CVE CVE was launched in 1999 when most information security tools used their ow
Create: 2023-01-12 01:25:42 +0000 UTC Push: 2023-01-12 01:27:17 +0000 UTC |
PoyomiFox/Discord-Image-Token-Password-Grabber-Exploit-Cve-2022
Create: 2023-01-12 01:24:51 +0000 UTC Push: 2023-01-12 01:24:52 +0000 UTC |
HAMRCS/Discord-Image-Token-Password-Grabber-Exploit-Cve-2022
Features No local caching Transfers via Discord webhook Searches for authorization tokens in multiple directories (Discord, Discord PTB, Discord Canary, Google chrome, Opera, Brave and Yandex) No external Python modules required [todo] Cross-platform support
Create: 2023-01-12 01:24:51 +0000 UTC Push: 2023-01-12 01:26:09 +0000 UTC |
Live-Hack-CVE/CVE-2022-4696
There exists a use-after-free vulnerability in the Linux kernel through io_uring and the IORING_OP_SPLICE operation. If IORING_OP_SPLICE is missing the IO_WQ_WORK_FILES flag, which signals that the operation won't use current->nsproxy, so its reference counter is not increased. This assumption is not always true as cal CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:32 +0000 UTC Push: 2023-01-11 23:37:35 +0000 UTC |
Live-Hack-CVE/CVE-2022-42967
Caret is vulnerable to an XSS attack when the user opens a crafted Markdown file when preview mode is enabled. This directly leads to client-side code execution. CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:27 +0000 UTC Push: 2023-01-11 23:37:31 +0000 UTC |
Live-Hack-CVE/CVE-2022-47866
Lead management system v1.0 is vulnerable to SQL Injection via the id parameter in removeBrand.php. CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:22 +0000 UTC Push: 2023-01-11 23:37:26 +0000 UTC |
Live-Hack-CVE/CVE-2022-47865
Lead Management System v1.0 is vulnerable to SQL Injection via the id parameter in removeOrder.php. CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:17 +0000 UTC Push: 2023-01-11 23:37:21 +0000 UTC |
Live-Hack-CVE/CVE-2018-25073
A vulnerability has been found in Newcomer1989 TSN-Ranksystem up to 1.2.6 and classified as problematic. This vulnerability affects the function getlog of the file webinterface/bot.php. The manipulation leads to cross site scripting. The attack can be initiated remotely. Upgrading to version 1.2.7 is able to address th CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:12 +0000 UTC Push: 2023-01-11 23:37:16 +0000 UTC |
Live-Hack-CVE/CVE-2022-43530
Vulnerabilities in the web-based management interface of ClearPass Policy Manager could allow an authenticated remote attacker to conduct SQL injection attacks against the ClearPass Policy Manager instance. An attacker could exploit these vulnerabilities to obtain and modify sensitive information in the underlying data CVE project by @Sn0wAlice
Create: 2023-01-11 23:37:06 +0000 UTC Push: 2023-01-11 23:37:09 +0000 UTC |
despossivel/CVE-2022-23529-lab
Create: 2023-01-11 19:46:22 +0000 UTC Push: 2023-01-11 19:46:22 +0000 UTC |
Live-Hack-CVE/CVE-2021-26403
Insufficient checks in SEV may lead to a malicious hypervisor disclosing the launch secret potentially resulting in compromise of VM confidentiality. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:38 +0000 UTC Push: 2023-01-11 19:13:42 +0000 UTC |
Live-Hack-CVE/CVE-2021-26402
Insufficient bounds checking in ASP (AMD Secure Processor) firmware while handling BIOS mailbox commands, may allow an attacker to write partially-controlled data out-of-bounds to SMM or SEV-ES regions which may lead to a potential loss of integrity and availability. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:34 +0000 UTC Push: 2023-01-11 19:13:37 +0000 UTC |
Live-Hack-CVE/CVE-2021-26396
Insufficient validation of address mapping to IO in ASP (AMD Secure Processor) may result in a loss of memory integrity in the SNP guest. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:29 +0000 UTC Push: 2023-01-11 19:13:32 +0000 UTC |
Live-Hack-CVE/CVE-2021-26398
Insufficient input validation in SYS_KEY_DERIVE system call in a compromised user application or ABL may allow an attacker to corrupt ASP (AMD Secure Processor) OS memory which may lead to potential arbitrary code execution. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:26 +0000 UTC Push: 2023-01-11 19:13:28 +0000 UTC |
Live-Hack-CVE/CVE-2021-26355
Insufficient fencing and checks in System Management Unit (SMU) may result in access to invalid message port registers that could result in a potential denial-of-service. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:21 +0000 UTC Push: 2023-01-11 19:13:24 +0000 UTC |
Live-Hack-CVE/CVE-2021-26328
Failure to verify the mode of CPU execution at the time of SNP_INIT may lead to a potential loss of memory integrity for SNP guests. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:17 +0000 UTC Push: 2023-01-11 19:13:20 +0000 UTC |
Live-Hack-CVE/CVE-2021-26346
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential denial of service. CVE project by @Sn0wAlice
Create: 2023-01-11 19:13:13 +0000 UTC Push: 2023-01-11 19:13:16 +0000 UTC |
Previous
834
835
836
837
838
839
840
841
Next