GNU Wget是GNU计划开发的一套用于在网络上进行下载的自由软件,它支持通过HTTP、HTTPS以及FTP这三个最常见的TCP/IP协议下载。 GNU Wget 1.15及之前版本中存在绝对路径遍历漏洞。当程序使用递归时,远程攻击者可通过在LIST响应中引用相同的文件名利用该漏洞写入任意文件,执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2014-8533 | McAfee Network Data Loss Prevention 任意代码执行漏洞 | |
| CVE-2014-6149 | IBM Tivoli Application Dependency Discovery Manager 目录遍历漏洞 | |
| CVE-2014-4839 | IBM TRIRIGA Application Platform 跨站请求伪造漏洞 | |
| CVE-2014-3698 | Pidgin libpurple 信息泄露漏洞 | |
| CVE-2014-3697 | Pidgin 绝对路径遍历漏洞 | |
| CVE-2014-3696 | Pidgin 缓冲区溢出漏洞 | |
| CVE-2014-3695 | Pidgin libpurple 缓冲区溢出漏洞 | |
| CVE-2014-3694 | Pidgin libpurple 加密问题漏洞 | |
| CVE-2014-3670 | PHP EXIF扩展缓冲区溢出漏洞 | |
| CVE-2014-3669 | PHP 数字错误漏洞 | |
| CVE-2014-3668 | PHP XMLRPC扩展缓冲区溢出漏洞 | |
| CVE-2014-3051 | IBM Tivoli Composite Application Manager for Transactions Internet Service Monitor代理加密问题漏洞 | |
| CVE-2014-8537 | McAfee Network Data Loss Prevention 信息泄露漏洞 | |
| CVE-2014-8536 | McAfee Network Data Loss Prevention 信息泄露漏洞 | |
| CVE-2014-8535 | McAfee Network Data Loss Prevention 安全漏洞 | |
| CVE-2014-8534 | McAfee Network Data Loss Prevention 拒绝服务漏洞 | |
| CVE-2014-8538 | Android Hijab Modern应用程序加密问题漏洞 | |
| CVE-2014-8532 | McAfee Network Data Loss Prevention 安全漏洞 | |
| CVE-2014-8531 | McAfee Network Data Loss Prevention 加密问题漏洞 | |
| CVE-2014-8530 | McAfee Network Data Loss Prevention 信息泄露漏洞 |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet