Ovidentia是法国CANTICO团队的一套基于PHP和MySQL的开源内容管理系统和协作平台,它可用于发布和管理项目、出版和文章管理、日程共享等。 Ovidentia 8.4.3版本中的index.php文件存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验证。攻击者可利用该漏洞执行客户端代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-11989 | HPE IceWall SSO Agent Option和IceWall MFA 输入验证错误漏洞 | |
| CVE-2019-11553 | Code42 Software Code42 for Enterprise 访问控制错误漏洞 | |
| CVE-2018-17792 | MDaemon Webmail 跨站请求伪造漏洞 | |
| CVE-2019-12453 | Microstrategy Web 跨站脚本漏洞 | |
| CVE-2019-12820 | Jisiwei i3 信任管理问题漏洞 | |
| CVE-2019-12821 | Jisiwei i3 安全特征问题漏洞 | |
| CVE-2019-13989 | dpic 缓冲区错误漏洞 | |
| CVE-2019-13991 | Arduino 注入漏洞 | |
| CVE-2019-1579 | Palo Alto Networks PAN-OS 输入验证错误漏洞 | |
| CVE-2019-12193 | H3C H3Cloud OS SQL注入漏洞 | |
| CVE-2019-11990 | HPE UIoT 访问控制错误漏洞 | |
| CVE-2019-12725 | Zeroshell 操作系统命令注入漏洞 | |
| CVE-2019-13569 | WordPress Icegram Email Subscribers & Newsletters插件SQL注入漏洞 | |
| CVE-2019-9228 | 多款AudioCodes产品资源管理错误漏洞 | |
| CVE-2019-12815 | ProFTPD 访问控制错误漏洞 | |
| CVE-2019-9229 | 多款AudioCodes产品信任管理问题漏洞 | |
| CVE-2018-17210 | PrinterOn Central Print Services 授权问题漏洞 | |
| CVE-2019-12934 | WordPress wp-code-highlightjs插件跨站请求伪造漏洞 | |
| CVE-2019-12946 | Elcom Technology Elcom CMS SQL注入漏洞 | |
| CVE-2019-13970 | antSword 跨站脚本漏洞 |
Showing top 20 of 36 CVEs. View all on vendor page → →
No comments yet