Haxx libcurl是瑞典Haxx公司的一个免费、开源的客户端URL传输库。该库支持FTP、FTPS、TFTP、HTTP等。 Haxx libcurl 6.0版本至7.39版本中存在CRLF注入漏洞。当程序使用HTTP代理时,远程攻击者可借助URL中的CRLF序列利用该漏洞注入任意HTTP头,实施HTTP响应拆分攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2014-9594 | SAP NetWeaver Dispatcher 缓冲区溢出漏洞 | |
| CVE-2014-8738 | GNU Binutils 信息泄露漏洞 | |
| CVE-2014-8869 | WoltLab Burning Board Tapatalk插件跨站脚本漏洞 | |
| CVE-2014-8870 | WoltLab Burning Board Tapatalk插件开放重定向漏洞 | |
| CVE-2014-9308 | WordPress Shopping Cart插件代码注入漏洞 | |
| CVE-2014-9560 | SoftBB SQL注入漏洞 | |
| CVE-2014-9561 | SoftBB 跨站脚本漏洞 | |
| CVE-2014-9570 | WordPress MyWebsiteAdvisor Simple Security插件跨站脚本漏洞 | |
| CVE-2014-9587 | Roundcube Webmail 跨站请求伪造漏洞 | |
| CVE-2014-9593 | Apache CloudStack 安全漏洞 | |
| CVE-2014-8398 | Corel FastFlick 代码注入漏洞 | |
| CVE-2014-9595 | SAP NetWeaver Dispatcher 缓冲区溢出漏洞 | |
| CVE-2015-0552 | gcab 本地目录遍历漏洞 | |
| CVE-2015-1039 | Zend Framework ZF-Commons ZfcUser 跨站脚本漏洞 | |
| CVE-2015-1040 | BEdita 跨站脚本漏洞 | |
| CVE-2015-1041 | E107 跨站脚本漏洞 | |
| CVE-2015-1050 | F5 BIG-IP Application Security Manager 跨站脚本漏洞 | |
| CVE-2015-1051 | Drupal Context模块开放重定向漏洞 | |
| CVE-2015-1052 | PHPKIT 跨站脚本漏洞 | |
| CVE-2014-7812 | Red Hat Network Satellite 跨站脚本漏洞 |
Showing top 20 of 38 CVEs. View all on vendor page → →
No comments yet