Dovecot中存在差一(off-by-one)缓冲区溢出,当系统使用了index文件并且mmap_disable设置为"yes"时,远程认证IMAP或者POP3用户可以通过涉及缓存文件的未明向量来发起拒绝服务攻击(崩溃)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2006-5975 | BlogMe 'comments.asp '多个跨站脚本漏洞 | |
| CVE-2006-5976 | BlogMe admin_login.asp 多个SQL注入漏洞 | |
| CVE-2006-5977 | MultiCalendars 多个SQL注入漏洞 | |
| CVE-2006-5978 | E-Xoopport多个未明安全漏洞 | |
| CVE-2006-5979 | Renasoft NetJetServer 信息泄露漏洞 | |
| CVE-2006-5980 | Renasoft NetJetServer adm_lgn_admin.asp 权限认证和访问控制漏洞 | |
| CVE-2006-5981 | SeleniumServer FTP Server 多个目录遍历漏洞 | |
| CVE-2006-5982 | SeleniumServer FTP Server 信息泄露漏洞 | |
| CVE-2006-5983 | DirectAdmin多个跨站脚本攻击漏洞 | |
| CVE-2006-5984 | Helm Web Hosting Control Panel 存在多个跨站脚本攻击漏洞 | |
| CVE-2006-5985 | Extreme CMS admin/options.php 多个跨站脚本攻击漏洞 | |
| CVE-2006-5986 | Extreme admin/options.php 权限认证和访问控制漏洞 | |
| CVE-2006-5987 | ASPIntranet Default.ASP SQL注入漏洞 | |
| CVE-2006-5988 | Microsoft Active Directory未明拒绝服务漏洞 | |
| CVE-2006-5989 | Apache Mod_Auth_Kerb单字节溢出拒绝服务漏洞 |
No comments yet