ncpfs是Linux下的NetWare协议支持软件。 ncpfs存在多个访问控制漏洞。Ncpfs的(1) ncpmount, (2) ncpumount, 和(3) ncplogin 程序由于没有合理的创建锁定文件,本地用户可以借助能够触发/etc/mtab~文件(该程序存在)创建的未明向量,导致拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-0955 | Media-Products Bild Flirt Community 'index.php' SQL注入漏洞 | |
| CVE-2010-0926 | Samba smbd默认配置目录遍历漏洞 | |
| CVE-2010-0790 | ncpfs 多个本地文件信息泄露漏洞 | |
| CVE-2010-0728 | Samba 'CAP_DAC_OVERRIDE' 文件权限 | |
| CVE-2010-0418 | chumby web界面操作系统命令注入漏洞 | |
| CVE-2010-0103 | Energizer DUO USB Battery Charger 未授权访问漏洞 | |
| CVE-2010-0958 | Tribisur 'modules/hayoo/index.php'目录遍历漏洞 | |
| CVE-2010-0957 | Saskia_Bruckner Saskia's Shopsystem 'content.php' 目录遍历漏洞 | |
| CVE-2010-0956 | OpenCart 'index.php' SQL注入漏洞 | |
| CVE-2010-0947 | BBSMAX 'post.aspx' 跨站脚本攻击漏洞 | |
| CVE-2010-0954 | Pre Projects Pre E-Learning Portal 'search_result.asp' SQL注入漏洞 | |
| CVE-2010-0953 | phpCOIN 'mod.php' 目录遍历漏洞 | |
| CVE-2010-0952 | Insanevisions OneCMS 'index.php' SQL注入漏洞 | |
| CVE-2010-0951 | dev4u CMS 'go_target.php' SQL注入漏洞 | |
| CVE-2010-0950 | Natychmiast CMS 多个SQL注入漏洞 | |
| CVE-2010-0949 | Natychmiast CMS 多个跨站脚本攻击漏洞 | |
| CVE-2010-0948 | Bfs.Kilu Bigforum 'profil.php'SQL注入漏洞 |
No comments yet