IBM Web Interface (WEBi)是使用开放标准和支持Web 2.0和AJAX技术的交互性Web客户端。 基于Content Management的IBM Web Interface(WEBi)FP3之前的1.0.4版本中存在多个跨站脚本攻击漏洞。某些输入在返回给用户之前没有正确过滤,远程攻击者可利用此漏洞在用户的浏览器中执行任意HTML和脚本代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2011-1559 | IBM WEBi未明漏洞 | |
| CVE-2011-1560 | IBM solidDB solid.exe认证绕过漏洞 | |
| CVE-2011-1561 | IBM AIX bos.rte.security LDAP认证绕过漏洞 | |
| CVE-2011-1562 | Ecava IntegraXor HMI SQL注入漏洞 | |
| CVE-2011-1563 | RealFlex RealWin HMI应用程序多个栈缓冲区溢出漏洞 | |
| CVE-2011-1564 | RealFlex RealWin HMI应用程序多个整数溢出漏洞 | |
| CVE-2011-1565 | 7-Technologies Interactive Graphical SCADA System目录遍历漏洞 | |
| CVE-2011-1566 | 7-Technologies Interactive Graphical SCADA System目录遍历漏洞 | |
| CVE-2011-1567 | 7-Technologies Interactive Graphical SCADA System栈缓冲区溢出漏洞 | |
| CVE-2011-1568 | 7-Technologies Interactive Graphical SCADA System格式化字符串漏洞 | |
| CVE-2011-1569 | Douran Portal download.aspx信息泄露漏洞 |
No comments yet