Repository Vulnerability Product dan Public Exploit Berbasiskan CVE
Menyediakan kerentanan keamanan unik (CVE) pada berbagai produk yang dilaporkan secara global untuk membantu pemetaan risiko infrastruktur Anda.
Repository dari Prrof of Concept (PoC) dan skrip eksploitasi yang di release pada publik untuk pengujian penetrasi pada keamanan produk.
| Product Vulnerabilities | Type | Date Release | CVE Number | Author | View |
|---|---|---|---|---|---|
| GetSimple CMS Plugin Multi User 1.8.2 - Cross-Site Request Forgery (Add Admin) | webapps | 2020-08-13 | - | boku |
|
| Artica Proxy 4.3.0 - Authentication Bypass | webapps | 2020-08-13 | CVE-2020-17506 | Dan Duffy |
|
| vBulletin 5.6.2 - 'widget_tabbedContainer_tab_panel' Remote Code Execution | webapps | 2020-08-12 | - | zenofex |
|
| CMS Made Simple 2.2.14 - Authenticated Arbitrary File Upload | webapps | 2020-08-12 | - | Roel van Beurden |
|
| Fuel CMS 1.4.7 - 'col' SQL Injection (Authenticated) | webapps | 2020-08-11 | - | Roel van Beurden |
|
| BarcodeOCR 19.3.6 - 'BarcodeOCR' Unquoted Service Path | local | 2020-08-10 | - | Daniel Bertoni |
|
| Warehouse Inventory System 1.0 - Cross-Site Request Forgery (Change Admin Password) | webapps | 2020-08-10 | - | boku |
|
| ManageEngine ADSelfService Build prior to 6003 - Remote Code Execution (Unauthenticated) | webapps | 2020-08-10 | - | Bhadresh Patel |
|
| Daily Expenses Management System 1.0 - 'item' SQL Injection | webapps | 2020-08-07 | - | screetsec |
|
| All-Dynamics Digital Signage System 2.0.2 - Cross-Site Request Forgery (Add Admin) | webapps | 2020-08-07 | - | LiquidWorm |
|