VideoLAN VLC media player是法国Videolan组织的一款免费、开源的跨平台多媒体播放器(也是一个多媒体框架)。该产品支持播放多种介质(文件、光盘等)、多种音视频格式(WMV,MP3等)等。 VideoLAN VLC media player 3.0.11 存在缓冲区错误漏洞,该漏洞允许攻击者通过精心制作的.mkv文件触发基于堆的缓冲区溢出。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2020-7794 | 9.8 CRITICAL | Command Injection |
| CVE-2020-7784 | 9.8 CRITICAL | command_injection |
| CVE-2020-28468 | 8.1 HIGH | Improper Control of Generation of Code ('Code Injection') |
| CVE-2020-5805 | Marvell QConvergeConsole 安全漏洞 | |
| CVE-2021-3025 | Invision Community SQL注入漏洞 | |
| CVE-2020-24577 | D-link DSL-2888A 安全漏洞 | |
| CVE-2020-25950 | Awbs Advanced Webhost Billing System 跨站请求伪造漏洞 | |
| CVE-2021-3111 | Portlandlabs Concrete5 跨站脚本漏洞 | |
| CVE-2020-5804 | Marvell QConvergeConsole 路径遍历漏洞 | |
| CVE-2020-25678 | 部分Red Hat产品 安全漏洞 | |
| CVE-2020-27262 | Innokas Medical Innokas Yhtyma Oy Vital Signs Monitor 跨站脚本漏洞 | |
| CVE-2020-27260 | Innokas Medical Innokas Yhtyma Oy Vital Signs Monitor 注入漏洞 | |
| CVE-2020-8584 | Element OS 代码注入漏洞 | |
| CVE-2020-35131 | Cockpit 代码注入漏洞 | |
| CVE-2020-17502 | Barco Transform NDN-210 命令注入漏洞 | |
| CVE-2020-17503 | Barco Transform NDN-210 命令注入漏洞 | |
| CVE-2020-17504 | Barco Transform NDN-210 命令注入漏洞 | |
| CVE-2020-28208 | Rocket.Chat 安全漏洞 |
No comments yet