Little CMS(又名lcms或liblcms)是软件开发者Marti Maria所研发的一套开源的色彩管理系统。该系统提供黑点补偿、多种像素格式处理、配置文件编辑等功能。 Little cms在解析ICC配置文件时存在栈溢出漏洞,远程攻击者可能利用此漏洞通过诱使用户处理恶意文件控制用户机器。 如果用户受骗打开了设置有特制ICC配置文件的.JPG文件的话,就可能触发这个溢出,导致执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2007-2752 | RunawaySoft Haber porta 'devami.asp' SQL注入漏洞 | |
| CVE-2007-2744 | PrecisionID Barcode PrecisionID_Barcode.dll控件栈缓冲区溢出漏洞 | |
| CVE-2007-2743 | Glossword 'Custom_Vars.PHP' 远程文件包含漏洞 | |
| CVE-2007-2742 | labs.beffa.org W2Box 双扩展名任意文件上传漏洞 | |
| CVE-2007-2740 | xajax 未明漏洞 | |
| CVE-2007-2739 | Xajax 未知跨站脚本攻击漏洞 | |
| CVE-2007-2738 | XOOPS Module Glossarie 'Glossaire-P-F.PHP' SQL注入漏洞 | |
| CVE-2007-2737 | Xoops MyConference 'index.php' SQL注入漏洞 | |
| CVE-2007-2736 | Achievo ATK.Inc 'index.php' 远程文件包含漏洞 | |
| CVE-2007-2735 | XOOPS ResManager Module 'Edit_day.PHP' SQL注入漏洞 | |
| CVE-2007-2753 | RunawaySoft Haber portal 'xice.mdb'漏洞 | |
| CVE-2007-2755 | PrecisionID Barcode 'PrecisionID_Barcode.DLL' 控件控制向量文件覆盖漏洞 | |
| CVE-2007-2751 | PHPGlossar Format_Menue Parameter 多个远程PHP文件包含漏洞 | |
| CVE-2007-2750 | SimpNews 'print.php 'SQL注入漏洞 | |
| CVE-2007-2749 | FAQEngine 'question.php' SQL注入漏洞。 | |
| CVE-2007-2748 | PHP 5 substr_count函数整数溢出漏洞 | |
| CVE-2007-2747 | rdiffWeb 'rdw_helpers.py' 目录遍历漏洞 | |
| CVE-2007-2746 | Plain Black WebGUI 'DataForm.pm' 未明权限漏洞 | |
| CVE-2007-2745 | VDECK WebMail 'PrintCal.PL' 跨站脚本攻击漏洞 | |
| CVE-2007-1693 | SIP协议中 channel模块 caller_info_uri参数远程拒绝服务漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet