Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 62 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2021-20724 PHP Factory Telop01 跨站脚本漏洞 PHP Factory[Telop01] free edition 中危 -2021-05-24 03:20:30 Deep Dive
CVE-2021-25317 cups: ownership of /var/log/cups allows the lp user to create files as root SUSESUSE Linux Enterprise Server 11-SP4-LTSS Low 3.3 2021-05-05 09:35:13 Deep Dive
CVE-2021-25319 virtualbox: missing sticky bit for /etc/vbox allows local root exploit for members of vboxusers group openSUSEFactory High 7.8 2021-05-05 08:25:14 Deep Dive
CVE-2020-8032 Local privilege escalation to root due to insecure tmp file usage openSUSEFactory Medium 6.7 2021-02-25 09:15:17 Deep Dive
CVE-2020-5616 多款PHP Factory产品授权问题漏洞 PHP Factory[Calendar01], [Calendar02], [PKOBO-News01], [PKOBO-vote01], [Telop01], [Gallery01], [CalendarForm01], and [Link01] 超危 -2020-08-04 01:05:50 Deep Dive
CVE-2020-5615 PHP Factory Calendar01和Calendar02 跨站请求伪造漏洞 PHP Factory[Calendar01] and [Calendar02] 高危 -2020-08-04 01:05:49 Deep Dive
CVE-2019-3681 osc: stores downloaded (supposed) RPM in network-controlled filesystem paths SUSESUSE Linux Enterprise Module for Development Tools 15 High 7.5 2020-06-29 12:00:17 Deep Dive
CVE-2020-8024 Problematic permissions in hylafax+ packaging allow escalation from uucp to other users openSUSEopenSUSE Leap 15.2 Medium 5.3 2020-06-29 07:45:18 Deep Dive
CVE-2020-8015 Local privilege escalation in exim package from user mail to root openSUSEFactory High 8.4 2020-04-02 07:55:13 Deep Dive
CVE-2019-18903 wicked: Use-after-free when receiving invalid DHCP6 IA_PD option SUSESUSE Linux Enterprise Server 12 High 7.5 2020-03-02 16:45:19 Deep Dive
CVE-2019-18902 wicked: Use-after-free when receiving invalid DHCP6 client options SUSESUSE Linux Enterprise Server 12 High 7.5 2020-03-02 16:45:18 Deep Dive
CVE-2019-18897 Local privilege escalation from user salt to root SUSESUSE Linux Enterprise Server 12 High 8.4 2020-03-02 15:20:27 Deep Dive
CVE-2019-3698 nagios cron job allows privilege escalation from user nagios to root SUSESUSE Linux Enterprise Server 12 Medium 5.7 2020-02-28 13:20:14 Deep Dive
CVE-2018-12476 obs-service-extract_file's outfilename parameter allows to write files outside of package directory SUSESUSE Linux Enterprise Server 15 Medium 4.3 2020-01-27 08:30:15 Deep Dive
CVE-2019-3700 yast: Fallback to DES without configuration in /etc/login.def openSUSEFactory Low 2.9 2020-01-24 12:45:14 Deep Dive
CVE-2019-3699 Local privilege escalation from user privoxy to root openSUSELeap 15.1 High 7.7 2020-01-24 12:25:13 Deep Dive
CVE-2019-3694 Local privilege escalation from munin to root in the packaging of munin openSUSEFactory High 7.7 2020-01-24 10:50:12 Deep Dive
CVE-2019-3692 Local privilege escalation from user news to root in the packaging of inn SUSESUSE Linux Enterprise Server 11 High 7.7 2020-01-24 08:50:12 Deep Dive
CVE-2019-3691 Local privilege escalation from user munge to root SUSESUSE Linux Enterprise Server 15 High 7.7 2020-01-23 16:00:20 Deep Dive
CVE-2019-18898 trousers: Local privilege escalation from tss to root SUSESUSE Linux Enterprise Server 15 SP1 High 7.7 2020-01-23 14:05:14 Deep Dive