MISP是一套开源的软件解决方案。该产品用于收集、存储、分发、共享网络安全指标,并具有威胁网络安全事件分析和恶意软件分析等功能。 MISP 2.4.128版本中存在安全漏洞,该漏洞源于附件下载器中的app/Controller/AttributesController.php文件没有进行充分的ACL检查。目前尚无此漏洞的相关信息,请随时关注CNNVD或厂商公告。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-15049 | 9.9 CRITICAL | Squid 环境问题漏洞 |
| CVE-2020-14956 | Windows cleaning assistant 输入验证错误漏洞 | |
| CVE-2020-15395 | MediaArea MediaInfo 缓冲区错误漏洞 | |
| CVE-2017-18922 | LibVNCServer 缓冲区错误漏洞 | |
| CVE-2020-15396 | iFAX Solutions HylaFAX+和HylaFAX Enterprise 安全漏洞 | |
| CVE-2020-15397 | iFAX Solutions HylaFAX+和HylaFAX Enterprise 安全漏洞 | |
| CVE-2019-20893 | Activision Infinity Ward Call of Duty Modern Warfare 2 缓冲区错误漏洞 | |
| CVE-2020-15400 | CakePHP 跨站请求伪造漏洞 | |
| CVE-2020-15401 | IOBit Malware Fighter Pro 后置链接漏洞 | |
| CVE-2020-15412 | MISP 安全漏洞 | |
| CVE-2020-15415 | DrayTek Vigor3900、Vigor2960和Vigor300B 操作系统命令注入漏洞 | |
| CVE-2020-9483 | Apache SkyWalking SQL注入漏洞 | |
| CVE-2020-14947 | OCS Inventory NG 操作系统命令注入漏洞 | |
| CVE-2020-14957 | Windows cleaning assistant 输入验证错误漏洞 | |
| CVE-2020-13095 | Objective Development Software Little Snitch 后置链接漏洞 | |
| CVE-2020-14482 | Delta Electronics Industrial Automation DOPSoft 缓冲区错误漏洞 | |
| CVE-2020-15307 | Nozomi Networks Guardian 跨站脚本漏洞 | |
| CVE-2020-14474 | Cellebrite UFED 信任管理问题漏洞 | |
| CVE-2020-14059 | Squid 安全漏洞 | |
| CVE-2020-14058 | Squid 代码问题漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet