Drupal是Drupal社区所维护的一套用PHP语言开发的免费、开源的内容管理系统。 Drupal中的AES加密模块7.x-1.4版本在发行时启用了某些调试代码,它会记录最后一个登录用户的明文密码。远程攻击者可以借此获取该用户的权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2010-4506 | Oracle Passlogix v-GO Self-Service Password Reset和OEM加密问题漏洞 | |
| CVE-2011-0323 | Topaz Systems SigPlus Pro ActiveX Control多个远程代码执行漏洞 | |
| CVE-2011-0324 | Topaz Systems SigPlus Pro ActiveX Control多个堆缓冲区溢出漏洞 | |
| CVE-2011-0522 | VideoLAN VLC媒体播放器StripTags函数缓冲区溢出漏洞 | |
| CVE-2011-0531 | VideoLAN VLC媒体播放器输入验证漏洞 | |
| CVE-2011-0900 | Terminal Server Client tsc_launch_remote函数栈缓冲区溢出漏洞 | |
| CVE-2011-0901 | Terminal Server Client tsc_launch_remote函数多个栈缓冲区溢出漏洞 | |
| CVE-2011-0902 | Sun Microsystems SunScreen Firewall Java Service多个不可信搜索路径漏洞 | |
| CVE-2011-0903 | Awcm-Cms AR Web Content Manager Cookie参数多个本地目录遍历漏洞 |
No comments yet