MB CONNECT LINE mymbCONNECT24是德国MB CONNECT LINE公司的一款适用于虚拟环境的内部远程维护解决方案。knximport是个人开发者的一个java编写的用于将 ets4 export file 格式文件转换成 KnxGroupAddress objects的jar包。 MB CONNECT LINE mymbCONNECT24和knximport 2.6.1及之前版本中存在SQL注入漏洞。该漏洞源于基于数据库的应用缺少对外部输入SQL语句的验证。攻击者可利用该漏洞执
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-15595 | 4.3 MEDIUM | Zoho Application Control Plus 安全漏洞 |
| CVE-2020-15594 | 4.3 MEDIUM | Zoho Application Control Plus 信息泄露漏洞 |
| CVE-2020-26154 | libproxy 缓冲区错误漏洞 | |
| CVE-2020-26137 | urllib3 注入漏洞 | |
| CVE-2020-26150 | Logaritmo Aware CallManager 信息泄露漏洞 | |
| CVE-2020-13794 | Linux kernel 信息泄露漏洞 | |
| CVE-2018-5353 | ZOHO ManageEngine ADSelfService Plus 安全漏洞 | |
| CVE-2018-5354 | ANIXIS Password Reset Client 安全漏洞 | |
| CVE-2020-24570 | MB CONNECT LINE mymbCONNECT24和mbCONNECT24 SQL跨站请求伪造漏洞 | |
| CVE-2020-25763 | Seat Reservation System 代码问题漏洞 | |
| CVE-2020-25762 | Seat Reservation System SQL注入漏洞 | |
| CVE-2020-25761 | Projectworlds Visitor Management System 跨站脚本漏洞 | |
| CVE-2020-25760 | Projectworlds Visitor Management System SQL注入漏洞 | |
| CVE-2020-13658 | Lansweeper 跨站请求伪造漏洞 | |
| CVE-2020-26148 | md4c 安全漏洞 | |
| CVE-2020-20800 | MetInfo SQL注入漏洞 | |
| CVE-2020-26043 | Hoosk CmS 跨站脚本漏洞 | |
| CVE-2020-8243 | Pulse Secure Pulse Connect Secure 代码注入漏洞 | |
| CVE-2020-26042 | Hoosk CMS SQL注入漏洞 | |
| CVE-2020-8256 | Pulse Secure Connect Secure 代码问题漏洞 |
Showing top 20 of 23 CVEs. View all on vendor page → →
No comments yet