Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2018-9160

Quick assessment

Affected
n/a n/a
Exploitation
Public or AI PoC available; prioritize validation
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

SickRage是一款用于管理并存储电视节目的自动视频管理器。 SickRage 2018.03.09-1之前版本中存在安全漏洞,该漏洞源于HTTP响应中含有明文形式的凭证。攻击者可利用该漏洞获取信息。

AI Predicted 7.5 Difficulty: Easy EPSS 67.15% · P99

Public Exploits 2

ExploitDB · 1 EDB-44545 [webapps]
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2018-9160

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
SickRage before v2018.03.09-1 includes cleartext credentials in HTTP responses.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
SickRage 安全漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
SickRage是一款用于管理并存储电视节目的自动视频管理器。 SickRage 2018.03.09-1之前版本中存在安全漏洞,该漏洞源于HTTP响应中含有明文形式的凭证。攻击者可利用该漏洞获取信息。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Shenlong Deep Dive — AI Deep Analysis

10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2018-9160

# POC Description Source Link Shenlong Link
1 CVE-2018-9160 https://github.com/mechanico/sickrageWTF POC Details
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2018-9160

登录查看更多情报信息。

Exploits & Public PoCs for CVE-2018-9160 (1)

Other References for CVE-2018-9160 (1)

Same Patch Batch · n/a · 2018-03-31 · 9 CVEs total

CVE-2018-8893 Z-BlogPHP 跨站请求伪造漏洞
CVE-2018-8908 Frog CMS 跨站请求伪造漏洞
CVE-2018-9161 Prisma Industriale Checkweigher PrismaWEB 安全漏洞
CVE-2018-9162 Contec Smart Home 安全漏洞
CVE-2015-9258 Docker Notary 安全漏洞
CVE-2015-9259 Docker Notary 安全漏洞
CVE-2018-9159 Spark 安全漏洞
CVE-2017-18255 Linux kernel 安全漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2018-9160

No comments yet


Leave a comment