Repository Vulnerability Product dan Public Exploit Berbasiskan CVE
Menyediakan kerentanan keamanan unik (CVE) pada berbagai produk yang dilaporkan secara global untuk membantu pemetaan risiko infrastruktur Anda.
Repository dari Prrof of Concept (PoC) dan skrip eksploitasi yang di release pada publik untuk pengujian penetrasi pada keamanan produk.
| Product Vulnerabilities | Type | Date Release | CVE Number | Author | View |
|---|---|---|---|---|---|
| Aero CMS v0.0.1 - SQL Injection (no auth) | webapps | 2023-03-27 | - | Hubert Wojciechowski |
|
| ImpressCMS v1.4.3 - Authenticated SQL Injection | webapps | 2023-03-25 | CVE-2022-26986 | Sarang Tumne |
|
| Online Diagnostic Lab Management System v1.0 - Remote Code Execution (RCE) (Unauthenticated) | webapps | 2023-03-25 | - | yousef alraddadi |
|
| Yoga Class Registration System v1.0 - Multiple SQLi | webapps | 2023-03-25 | - | Abdulhakim Öner |
|
| NVFLARE < 2.1.4 - Unsafe Deserialization due to Pickle | remote | 2023-03-25 | CVE-2022-34668 | Elias Hohl |
|
| System Mechanic v15.5.0.61 - Arbitrary Read/Write | local | 2023-03-25 | CVE-2018-5701 | Brandon Marshall |
|
| _camp_ Raspberry Pi camera server 1.0 - Authentication Bypass | webapps | 2023-03-25 | CVE-2022-37109 | Elias Hohl |
|
| Password Manager for IIS v2.0 - XSS | webapps | 2023-03-25 | CVE-2022-36664 | VP4TR10T |
|
| Lavalite v9.0.0 - XSRF-TOKEN cookie File path traversal | webapps | 2023-03-25 | - | nu11secur1ty |
|
| D-Link DNR-322L <=2.60B15 - Authenticated Remote Code Execution | remote | 2023-03-25 | - | luka |
|