Apache Tomcat 是一款由Apache Foundation维护的免费开放源代码的Java Servlet和JSP服务程序。 当在SecurityManager中运行时,Apache Tomcat 7.0.0至7.0.3版本,6.0.x,以及5.5.x版本没有将ServletContext属性设为只读。本地web应用程序可以利用该漏洞读或写预设工作目录外的文件。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-4196 | Adobe Shockwave Player Shockwave 3d Asset模块输入验证漏洞 | |
| CVE-2010-4193 | Adobe Shockwave Player任意代码执行漏洞 | |
| CVE-2010-4191 | Adobe Shockwave Player缓冲区溢出漏洞 | |
| CVE-2010-4187 | Adobe Shockwave Player缓冲区溢出漏洞 | |
| CVE-2010-4093 | Adobe Shockwave Player缓冲区溢出漏洞 | |
| CVE-2010-2589 | Adobe Shockwave Player dirapi.dll模块整数溢出漏洞 | |
| CVE-2010-2588 | Adobe Shockwave Player dirapi.dll模块缓冲区溢出漏洞 | |
| CVE-2010-2587 | Adobe Shockwave Player dirapi.dll模块缓冲区溢出漏洞 | |
| CVE-2010-4188 | Adobe Shockwave Player dirapi.dll模块缓冲区溢出漏洞 | |
| CVE-2010-4195 | Adobe Shockwave Player TextXtra模块输入验证漏洞 | |
| CVE-2010-4194 | Adobe Shockwave Player输入验证漏洞 | |
| CVE-2010-4306 | Adobe Shockwave Player输入验证漏洞 | |
| CVE-2010-4307 | Adobe Shockwave Player缓冲区溢出漏洞 | |
| CVE-2011-0033 | Microsoft Windows多个平台OpenType字体编码字符漏洞 | |
| CVE-2011-0035 | Microsoft Internet Explorer内存远程代码执行漏洞 | |
| CVE-2011-0036 | Microsoft Internet Explorer mshtml.dll库任意代码执行漏洞 | |
| CVE-2011-0038 | Microsoft Internet Explorer不可信搜索路径漏洞 | |
| CVE-2011-0043 | Microsoft Windows多个平台Kerberos非密钥校验漏洞 | |
| CVE-2011-0091 | Microsoft Windows多个平台Kerberos敏感信息泄露漏洞 | |
| CVE-2011-0092 | Microsoft Visio对象内存破坏漏洞 |
Showing top 20 of 95 CVEs. View all on vendor page → →
No comments yet