Exif是一种数码相机使用的图像文件格式规范。EXIF模块可以显示图像节点的Exif元数据。 Drupal Exif模块5.x-1.2之前的5.x-1.x版本和April 13, 2009之前的6.x-1.x-dev版本存在跨站脚本攻击漏洞。远程攻击者可以借助图像中的EXIF标识,注入任意的web脚本或HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2008-6784 | Scripts-For-Sites EZ Adult目录'directory.php' SQL注入漏洞 | |
| CVE-2009-1499 | Joomla! 'com_mailto' 组件 'index.php' SQL注入漏洞 | |
| CVE-2009-1498 | Internet Discussion Boards inc/profilemain.php' 本地文件目录遍历漏洞 | |
| CVE-2009-1497 | Gomlab Gretech GOM Player .srt文件解析栈溢出漏洞 | |
| CVE-2009-1496 | Ijobid cmimarketplace Component 'index.php' 目录遍历漏洞 | |
| CVE-2009-1495 | Web File Explorer 'data/db.mdb'权限许可和访问控制漏洞 | |
| CVE-2008-6775 | HTC Touch Pro和Touch Cruise vCard 拒绝服务攻击漏洞 | |
| CVE-2009-1507 | Drupal Node Access User Reference模块安全绕过漏洞 | |
| CVE-2009-1506 | Intelliants eLitius 'classes/Xp.phpp' SQL注入漏洞 | |
| CVE-2009-1505 | Drupal News Page模块SQL注入漏洞 | |
| CVE-2009-1504 | Xigla Absolute Form Processor XE 'xlaAFPadmin'cookie身份认证绕过漏洞 | |
| CVE-2009-1503 | Tiger DMS Login SQL注入漏洞 | |
| CVE-2009-1502 | Matteoiammarrone S-CMS 'plugin.php'目录遍历漏洞 | |
| CVE-2009-1500 | ProjectCMS 'index.php'SQL注入漏洞 | |
| CVE-2009-1365 | Adobe Flash Media Server 未明漏洞 | |
| CVE-2009-1364 | libwmf库WMF图形文件解析远程代码执行漏洞 | |
| CVE-2009-1512 | X-Forum 'SaveConfig.php' SQL注入漏洞 | |
| CVE-2008-6783 | Scripts-For-Sites Home Business目录'directory.php' SQL注入漏洞 | |
| CVE-2008-6782 | Scripts-For-Sites Hosting Directory 'directory.php' SQL注入漏洞 | |
| CVE-2008-6781 | Scripts-For-Sites Gaming Directory 'directory.php' SQL注入漏洞 |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet