DuckDuckGo是一款使用在浏览器中的扩展程序。用于匿名访问网络。WebRTC component是使用在其中的一个支持浏览器进行实时语音对话或视频对话的组件。 DuckDuckGo 4.2.0版本中的WebRTC组件存在安全漏洞。攻击者可利用该漏洞在STUN请求中获取私有IP地址。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-9172 | WordPress Iptanus WordPress File Upload插件安全漏洞 | |
| CVE-2018-9149 | Zyxel Multy X(AC3000 Tri-Band WiFi System)设备安全漏洞 | |
| CVE-2018-9156 | AXIS M1033-W 安全漏洞 | |
| CVE-2018-9157 | AXIS M1033-W 安全漏洞 | |
| CVE-2018-9158 | AXIS M1033-W 安全漏洞 | |
| CVE-2018-9165 | libming 安全漏洞 | |
| CVE-2018-9128 | Aviosoft DVD X Player Standar 缓冲区错误漏洞 |
No comments yet