Repository Vulnerability Product dan Public Exploit Berbasiskan CVE
Menyediakan kerentanan keamanan unik (CVE) pada berbagai produk yang dilaporkan secara global untuk membantu pemetaan risiko infrastruktur Anda.
Repository dari Prrof of Concept (PoC) dan skrip eksploitasi yang di release pada publik untuk pengujian penetrasi pada keamanan produk.
| Product Vulnerabilities | Type | Date Release | CVE Number | Author | View |
|---|---|---|---|---|---|
| Accela Civic Platform 21.1 - 'contactSeqNumber' Insecure Direct Object References (IDOR) | webapps | 2021-06-14 | CVE-2021-34369 | Abdulazeez Alaseeri |
|
| Accela Civic Platform 21.1 - 'successURL' Cross-Site-Scripting (XSS) | webapps | 2021-06-14 | CVE-2021-34370 | Abdulazeez Alaseeri |
|
| GLPI 9.4.5 - Remote Code Execution (RCE) | webapps | 2021-06-14 | CVE-2020-11060 | Brian Peters |
|
| WibuKey Runtime 6.51 - 'WkSvW32.exe' Unquoted Service Path | local | 2021-06-14 | - | Brian Rodriguez |
|
| Spy Emergency 25.0.650 - 'Multiple' Unquoted Service Path | local | 2021-06-14 | - | Erick Galindo |
|
| Gitea 1.12.5 - Remote Code Execution (Authenticated) | webapps | 2021-06-14 | - | Podalirius |
|
| Tftpd64 4.64 - 'Tftpd32_svc' Unquoted Service Path | local | 2021-06-14 | - | Brian Rodriguez |
|
| OpenEMR 5.0.1.3 - 'manage_site_files' Remote Code Execution (Authenticated) | webapps | 2021-06-14 | CVE-2018-15139 | Ron Jost |
|
| Cerberus FTP Web Service 11 - 'svg' Stored Cross-Site Scripting (XSS) | webapps | 2021-06-14 | CVE-2019-25046 | Mohammad Hossein Kaviyany |
|
| Stock Management System 1.0 - 'user_id' Blind SQL injection (Authenticated) | webapps | 2021-06-14 | - | Riadh Benlamine |
|