Repository Vulnerability Product dan Public Exploit Berbasiskan CVE
Menyediakan kerentanan keamanan unik (CVE) pada berbagai produk yang dilaporkan secara global untuk membantu pemetaan risiko infrastruktur Anda.
Repository dari Prrof of Concept (PoC) dan skrip eksploitasi yang di release pada publik untuk pengujian penetrasi pada keamanan produk.
| Product Vulnerabilities | Type | Date Release | CVE Number | Author | View |
|---|---|---|---|---|---|
| Liferay Portal - Java Unmarshalling via JSONWS RCE (Metasploit) | remote | 2020-04-16 | CVE-2020-7961 | Metasploit |
|
| VMware Fusion - USB Arbitrator Setuid Privilege Escalation (Metasploit) | local | 2020-04-16 | CVE-2020-3950 | Metasploit |
|
| VMware Fusion 11.5.2 - Privilege Escalation | local | 2020-04-16 | CVE-2020-3950 | Rich Mirch |
|
| Apache Solr 8.2.0 - Remote Code Execution | webapps | 2020-04-16 | CVE-2019-17558 | @l3x_wong |
|
| ThinkPHP - Multiple PHP Injection RCEs (Metasploit) | remote | 2020-04-16 | CVE-2019-9082;CVE-2018-20062 | Metasploit |
|
| DotNetNuke - Cookie Deserialization Remote Code Execution (Metasploit) | remote | 2020-04-16 | CVE-2018-18326;CVE-2018-18325;CVE-2018-15812;CVE-2018-15811;CVE-2017-9822 | Metasploit |
|
| Pandora FMS - Ping Authenticated Remote Code Execution (Metasploit) | remote | 2020-04-16 | - | Metasploit |
|
| TP-Link Archer A7/C7 - Unauthenticated LAN Remote Code Execution (Metasploit) | remote | 2020-04-16 | CVE-2020-10884;CVE-2020-10883;CVE-2020-10882 | Metasploit |
|
| PlaySMS - index.php Unauthenticated Template Injection Code Execution (Metasploit) | remote | 2020-04-16 | CVE-2020-8644 | Metasploit |
|
| Macs Framework 1.14f CMS - Persistent Cross-Site Scripting | webapps | 2020-04-15 | - | Vulnerability-Lab |
|