WebKit是KDE、苹果(Apple)、谷歌(Google)等公司共同开发的一套开源Web浏览器引擎,目前被Apple Safari及Google Chrome等浏览器使用。 在Google Chrome 4.1.249.1059之前版本中使用的WebKit r57041之前版本中的WebCore中的loader/DocumentThreadableLoader.cpp文件中存在跨站请求伪造漏洞。远程攻击者可以借助特制的同步预检XMLHttpRequest操作劫持未明受害者的认证。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-1823 | Google WebKit 释放后使用漏洞 | |
| CVE-2010-3306 | Weborf modURL函数目录遍历漏洞 | |
| CVE-2010-3304 | Dovecot Access Control List (ACL) Plugin安全绕过漏洞 | |
| CVE-2010-3294 | PHP 跨站脚本漏洞 | |
| CVE-2010-3285 | HP OpenView Network Node Manager未明漏洞 | |
| CVE-2010-3284 | HP System Management Homepage未明漏洞 | |
| CVE-2010-3283 | HP System Management Homepage开放重定向漏洞 | |
| CVE-2010-3261 | RSA Authentication Agent目录遍历漏洞 | |
| CVE-2010-2491 | Roundup 'cgi/client.py'跨站脚本攻击漏洞 | |
| CVE-2010-1825 | Google WebKit释放后使用漏洞 | |
| CVE-2010-1824 | Google WebKit释放后使用漏洞 | |
| CVE-2010-3601 | Invisionpower ibPhotohost 'img' 参数SQL注入漏洞 | |
| CVE-2010-1773 | Google Chrome WebKit WebCore Off-by-one错误漏洞 | |
| CVE-2010-1772 | Google Chrome WebKit Geolocation Events释放后使用漏洞 | |
| CVE-2010-3081 | Linux kernel 缓冲区错误漏洞 | |
| CVE-2010-3608 | Wire_Plastic_Design wpQuiz多个SQL注入漏洞 | |
| CVE-2010-3607 | NetArt Media Real Estate Portal 'index.php' 跨站脚本攻击漏洞 | |
| CVE-2010-3606 | NetArt Media Real Estate Portal 'index.php' 多个目录遍历漏洞 | |
| CVE-2010-3605 | TYPO3 powermail扩展件跨站脚本攻击漏洞 | |
| CVE-2010-3604 | TYPO3 powermail扩展件SQL注入漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet