freeSSHd是免费的SSH服务器实现。 freeSSHd在处理SFTP rename和realpath命令时存在空指针引用错误,如果远程攻击者在上述命令中包含了超长的字符串作为参数的话,就可以触发这个漏洞,导致服务器崩溃。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-4764 | Joomla! and Mambo eXtplorer 组件 'dir' 参数目录遍历漏洞 | |
| CVE-2008-4761 | Adam Wright HTMLTidy 'html-tidy-logic.php' 跨站脚本攻击漏洞 | |
| CVE-2008-4760 | Graphiks MyForum 'lecture.php' SQL注入漏洞 | |
| CVE-2008-4759 | BuzzScripts BuzzyWall 'download.php' 目录遍历漏洞 | |
| CVE-2008-4758 | Php-Daily 'download_file.php' 目录遍历漏洞 | |
| CVE-2008-4757 | Php-Daily 多个SQL注入漏洞 | |
| CVE-2008-4756 | Php-Daily ’add_prest_date.php’ 多个输入验证错误漏洞 | |
| CVE-2008-4755 | PozScripts Classified Ads 'gotourl.php' SQL注入漏洞 | |
| CVE-2008-4766 | Oxygen Bulletin Board 'member.php' SQL注入漏洞 | |
| CVE-2008-4765 | osCommerce Poll Booth Add-On 'pollbooth.php' SQL注入漏洞 | |
| CVE-2008-4772 | Questwork QuestCMS 'main.php' SQL注入漏洞 | |
| CVE-2008-4763 | WiKID wClient-PHP 'sample.php' 多个跨站脚本攻击漏洞 | |
| CVE-2008-4769 | WordPress 'index.php' cat参数目录遍历漏洞 | |
| CVE-2008-4768 | TLM CMS ’a-b-membres.php‘ nom参数 SQL注入漏洞 | |
| CVE-2008-4767 | PHP-Nuke DownloadsPlus模块任意文件上传漏洞 | |
| CVE-2008-4771 | Various IP Security Camera ActiveX Controls 'url' Attribute 缓冲区溢出漏洞 | |
| CVE-2008-4776 | libgadu libgadu库存在拒绝服务攻击漏洞 | |
| CVE-2008-4775 | phpMyAdmin 'pmd_pdf.php'模块跨站脚本漏洞 | |
| CVE-2008-4774 | Questwork QuestCMS 'main.php' 跨站脚本攻击漏洞 | |
| CVE-2008-4773 | Questwork QuestCMS 'main.php' 目录遍历漏洞 |
No comments yet