Hashicorp HashiCorp Consul是美国HashiCorp(Hashicorp)公司的一套分布式、高可用数据中心感知解决方案。该产品用于跨动态分布式基础架构连接和配置应用程序。 HashiCorp Consul and Consul Enterprise 1.9.4版本存在安全漏洞,该漏洞源于原始模式容易受到跨站点脚本攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | HashiCorp Consul and Consul Enterprise up to version 1.9.4 are vulnerable to cross-site scripting via the key-value (KV) raw mode. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2020/CVE-2020-25864.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-35314 | WonderCMS 操作系统命令注入漏洞 | |
| CVE-2020-35313 | WonderCMS 代码问题漏洞 | |
| CVE-2021-30464 | OMICRON StationGuard 资源管理错误漏洞 | |
| CVE-2020-14105 | Xiaomi 10 安全漏洞 | |
| CVE-2021-28156 | Hashicorp HashiCorp Consul 安全漏洞 | |
| CVE-2021-28492 | unisys stealth(core) 安全漏洞 | |
| CVE-2021-28793 | Lex Li vscode-restructuredtext 访问控制错误漏洞 | |
| CVE-2021-25681 | ADTRAN AdTran-Personal-Phone-Manager-Vulns 安全漏洞 | |
| CVE-2021-25680 | ADTRAN AdTran-Personal-Phone-Manager-Vulns 跨站脚本漏洞 | |
| CVE-2021-25679 | ADTRAN AdTran-Personal-Phone-Manager-Vulns 跨站脚本漏洞 | |
| CVE-2021-29155 | Linux kernel 缓冲区错误漏洞 | |
| CVE-2021-30496 | Telegram 安全漏洞 |
No comments yet