Ingres是很多CA产品默认所使用的数据库后端。 Ingres多个版本(Ingres 2.6, Ingres 2006 release1及release2 )存在栈溢出漏洞。 上述版本运行Linux或HP-UX上时,本地用户可通过在运行verifydb、iimerge或csreport之前设置超长的环境变量造成溢出,从而获取特权。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-3484 | eStoreAff index.php SQL注入漏洞 | |
| CVE-2008-3482 | Panasonic NetworkCamera 跨站脚本攻击漏洞 | |
| CVE-2008-3483 | ScrewTurn Software ScrewTurn Wiki 'System Log' Page HTML注入漏洞 | |
| CVE-2008-3356 | CA Ingres verifydb 本地权限提升漏洞 | |
| CVE-2008-3357 | CA Ingres ingvalidpw 权限许可和访问控制漏洞 | |
| CVE-2008-3431 | Sun xVM VirtualBox VBoxDrv.sys 本地权限提升漏洞 | |
| CVE-2008-3481 | CoppermineGallery CopperminePhotoGallery hemes/sample/theme.php 信息泄露漏洞 |
No comments yet