Pentest-Collaboration-Framework是一个开源、跨平台和可移植的工具包。用于在执行各种测试工作时自动化日常流程。 Pentest-Collaboration-Framework v1.0.8版本存在安全漏洞,该漏洞源于服务器端模板注入 (SSTI) 漏洞。远程攻击者利用该漏洞可通过 /project/PROJECTNAME/reports/ 执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-29932 | PRIMEUR SPAZIO 安全漏洞 | |
| CVE-2021-42646 | 多款WSO2产品代码问题漏洞 | |
| CVE-2022-29975 | Alt-N MDaemon 跨站脚本漏洞 | |
| CVE-2022-29976 | Alt-N MDaemon 跨站脚本漏洞 | |
| CVE-2022-29727 | Survey Sparrow Enterprise Survey Software 跨站脚本漏洞 | |
| CVE-2020-19228 | Bludit 代码问题漏洞 | |
| CVE-2022-29008 | Bus Pass Management System 安全漏洞 | |
| CVE-2022-29009 | Cyber Cafe Management System SQL注入漏洞 | |
| CVE-2022-29977 | libsixel 安全漏洞 | |
| CVE-2022-29978 | libsixel 安全漏洞 | |
| CVE-2022-29007 | Dairy Farm Shop Management System SQL注入漏洞 | |
| CVE-2022-28077 | Home Owners Collection Management 跨站脚本漏洞 | |
| CVE-2022-28078 | Home Owners Collection Management 跨站脚本漏洞 | |
| CVE-2022-23137 | ZTE ZXCDN 跨站脚本漏洞 | |
| CVE-2022-22975 | VMware Pinniped 注入漏洞 | |
| CVE-2021-3611 | QEMU 缓冲区错误漏洞 | |
| CVE-2021-30361 | Check Point Gaia Portal 操作系统命令注入漏洞 | |
| CVE-2022-30040 | Tenda AX1803 缓冲区错误漏洞 | |
| CVE-2021-33316 | TRENDnet TI-PG Series 输入验证错误漏洞 | |
| CVE-2021-33315 | TRENDnet TI-PG Series 输入验证错误漏洞 |
Showing top 20 of 61 CVEs. View all on vendor page → →
No comments yet