Github json-smart-v1是Github开源的一个应用软件。提供数据存储中的所有非索引数据都作为序列化的 JSON 消息存储在列中功能。 JSON Smart 1.3 和 2.4 版本存在安全漏洞,该漏洞源于JSONParserByteArray的indexOf函数,攻击者可利用该漏洞通过精心制作的web请求导致拒绝服务。以下产品和版本受到影响:Nextcloud Server 19.0.11、20.0.10或21.0.2之前的版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/andikahilmy/CVE-2021-31684-json-smart-v2-vulnerable | POC Details |
No public POC found.
Login to generate AI POC| CVE-2020-27748 | xdg-utils 安全漏洞 | |
| CVE-2020-26669 | Fastspot BigTree 跨站脚本漏洞 | |
| CVE-2020-26668 | Fastspot BigTree SQL注入漏洞 | |
| CVE-2021-31641 | CHIYU科技BF-630W 跨站脚本漏洞 | |
| CVE-2021-3412 | 3Scale 安全漏洞 | |
| CVE-2021-3516 | libxml2 资源管理错误漏洞 | |
| CVE-2021-20306 | Red Hat BPMN Editor 安全漏洞 | |
| CVE-2021-3515 | PostgreSQL 操作系统命令注入漏洞 | |
| CVE-2021-3495 | Kiali-operator 安全漏洞 | |
| CVE-2021-3543 | Red Hat, Inc. Nitro Enclaves内核驱动 资源管理错误漏洞 | |
| CVE-2020-26670 | Fastspot BigTree 操作系统命令注入漏洞 | |
| CVE-2021-23017 | F5 NGINX Controller 安全漏洞 | |
| CVE-2021-23021 | F5 NGINX Controller 安全漏洞 | |
| CVE-2021-23020 | NGINX控制器 安全特征问题漏洞 | |
| CVE-2021-23019 | F5 NGINX Controller 安全漏洞 | |
| CVE-2021-23018 | Nginx 控制器 安全漏洞 | |
| CVE-2021-27828 | In4Velocity In4Suite ERP SQL注入漏洞 | |
| CVE-2021-25932 | Opennms Group OpenNMS 跨站脚本漏洞 | |
| CVE-2021-32027 | PostgreSQL 输入验证错误漏洞 | |
| CVE-2021-3424 | Red Hat Single Sign-On 7安全漏洞 |
Showing top 20 of 38 CVEs. View all on vendor page → →
No comments yet