unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
增加标签
Tags (allow clear + 0 threshold)
Choose a tag...
Please select a valid tag.
Live-Hack-CVE/CVE-2022-32647
In ccu, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07554646; Issue ID: ALPS07554646. CVE project by @Sn0wAlice
Create: 2023-01-04 08:08:13 +0000 UTC Push: 2023-01-04 08:08:16 +0000 UTC |
Live-Hack-CVE/CVE-2022-32646
In gpu drm, there is a possible stack overflow due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363501; Issue ID: ALPS07363501. CVE project by @Sn0wAlice
Create: 2023-01-04 08:08:09 +0000 UTC Push: 2023-01-04 08:08:12 +0000 UTC |
Live-Hack-CVE/CVE-2022-32645
In vow, there is a possible information disclosure due to a race condition. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07494477; Issue ID: ALPS07494477. CVE project by @Sn0wAlice
Create: 2023-01-04 08:08:05 +0000 UTC Push: 2023-01-04 08:08:08 +0000 UTC |
Live-Hack-CVE/CVE-2022-32644
In vow, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07494473; Issue ID: ALPS07494473. CVE project by @Sn0wAlice
Create: 2023-01-04 08:08:00 +0000 UTC Push: 2023-01-04 08:08:04 +0000 UTC |
Live-Hack-CVE/CVE-2022-32641
In meta wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07453594; Issue ID: ALPS07453594. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:56 +0000 UTC Push: 2023-01-04 08:07:59 +0000 UTC |
Live-Hack-CVE/CVE-2022-32640
In meta wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07441652; Issue ID: ALPS07441652. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:51 +0000 UTC Push: 2023-01-04 08:07:55 +0000 UTC |
Live-Hack-CVE/CVE-2022-32639
In watchdog, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07494487; Issue ID: ALPS07494487. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:47 +0000 UTC Push: 2023-01-04 08:07:50 +0000 UTC |
Live-Hack-CVE/CVE-2022-32638
In isp, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07494449; Issue ID: ALPS07494449. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:42 +0000 UTC Push: 2023-01-04 08:07:46 +0000 UTC |
Live-Hack-CVE/CVE-2022-32637
In hevc decoder, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07491374; Issue ID: ALPS07491374. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:37 +0000 UTC Push: 2023-01-04 08:07:40 +0000 UTC |
Live-Hack-CVE/CVE-2022-32636
In keyinstall, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07510064; Issue ID: ALPS07510064. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:33 +0000 UTC Push: 2023-01-04 08:07:36 +0000 UTC |
Live-Hack-CVE/CVE-2022-32635
In gps, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07573237; Issue ID: ALPS07573237. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:29 +0000 UTC Push: 2023-01-04 08:07:32 +0000 UTC |
Live-Hack-CVE/CVE-2022-32623
In mdp, there is a possible out of bounds write due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07342114; Issue ID: ALPS07342114. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:24 +0000 UTC Push: 2023-01-04 08:07:27 +0000 UTC |
Live-Hack-CVE/CVE-2022-23506
Spinnaker is an open source, multi-cloud continuous delivery platform for releasing software changes, and Spinnaker's Rosco microservice produces machine images. Rosco prior to versions 1.29.2, 1.28.4, and 1.27.3 does not property mask secrets generated via packer builds. This can lead to exposure of sensitive AWS cred CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:19 +0000 UTC Push: 2023-01-04 08:07:22 +0000 UTC |
Live-Hack-CVE/CVE-2022-38723
Gravitee API Management before 3.15.13 allows path traversal through HTML injection. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:11 +0000 UTC Push: 2023-01-04 08:07:14 +0000 UTC |
Live-Hack-CVE/CVE-2022-2967
Prosys OPC UA Simulation Server version prior to v5.3.0-64 and UA Modbus Server versions 1.4.18-5 and prior do not sufficiently protect credentials, which could allow an attacker to obtain user credentials and gain access to system data. CVE project by @Sn0wAlice
Create: 2023-01-04 08:07:05 +0000 UTC Push: 2023-01-04 08:07:10 +0000 UTC |
Live-Hack-CVE/CVE-2023-22456
ViewVC, a browser interface for CVS and Subversion version control repositories, as a cross-site scripting vulnerability that affects versions prior to 1.2.2 and 1.1.29. The impact of this vulnerability is mitigated by the need for an attacker to have commit privileges to a Subversion repository exposed by an otherwise CVE project by @Sn0wAlice
Create: 2023-01-04 05:54:25 +0000 UTC Push: 2023-01-04 05:54:28 +0000 UTC |
Live-Hack-CVE/CVE-2022-45143
The JsonErrorReportValve in Apache Tomcat 8.5.83, 9.0.40 to 9.0.68 and 10.1.0-M1 to 10.1.1 did not escape the type, message or description values. In some circumstances these are constructed from user provided data and it was therefore possible for users to supply values that invalidated or manipulated the JSON output. CVE project by @Sn0wAlice
Create: 2023-01-04 05:54:21 +0000 UTC Push: 2023-01-04 05:54:24 +0000 UTC |
Live-Hack-CVE/CVE-2022-45867
MyBB before 1.8.33 allows Directory Traversal. The Admin CP Languages module allows remote authenticated users, with high privileges, to achieve local file inclusion and execution. CVE project by @Sn0wAlice
Create: 2023-01-04 05:54:12 +0000 UTC Push: 2023-01-04 05:54:15 +0000 UTC |
not1cyyy/CVE-2018-16763
CVE-2018-16763 FuelCMS 1.4 Remote Code Execution, this version of FuelCMS is still vulnerable until now
Create: 2023-01-04 04:47:08 +0000 UTC Push: 2023-01-04 04:47:09 +0000 UTC |
Live-Hack-CVE/CVE-2022-42471
An improper neutralization of CRLF sequences in HTTP headers ('HTTP Response Splitting') vulnerability [CWE-113] In FortiWeb version 7.0.0 through 7.0.2, FortiWeb version 6.4.0 through 6.4.2, FortiWeb version 6.3.6 through 6.3.20 may allow an authenticated and remote attacker to inject arbitrary headers. CVE project by @Sn0wAlice
Create: 2023-01-04 03:44:18 +0000 UTC Push: 2023-01-04 03:44:21 +0000 UTC |
Previous
868
869
870
871
872
873
874
875
Next