Nikki 6.6和之前的版本中存在命令注入漏洞。该漏洞源于对用户提供的输入没有经过充分的过滤,攻击者可利用该漏洞在web服务进程上下文中执行任意命令,导致应用程序完全被操控,可能在底层系统中实现该漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2011-4646 | WordPress WP-PostRatings插件SQL注入漏洞 | |
| CVE-2011-4647 | Geeklog ‘story creation feature’跨站脚本漏洞 | |
| CVE-2009-5028 | Namazu缓冲区溢出漏洞 | |
| CVE-2011-3173 | Novell iPrint Client ‘nipplib.dll’ 远程代码执行漏洞 | |
| CVE-2011-3639 | Apache HTTP Server 输入验证错误漏洞 | |
| CVE-2011-4191 | Novell Netware ‘XNFS.NLM’远程缓冲区溢出漏洞 | |
| CVE-2011-4317 | Apache HTTP Server mod_proxy反向代理模式安全绕过漏洞 | |
| CVE-2011-4345 | Namazu跨站脚本漏洞 | |
| CVE-2011-4542 | Hastymail RC2 SQL注入漏洞 |
No comments yet