Privoxy是美国Privoxy团队的一款不进行网页缓存且自带过滤功能的代理服务器。它具有高级过滤功能,可增强隐私,修改网页数据和HTTP标头,控制访问以及删除广告和其他令人讨厌的Internet垃圾。Privoxy具有灵活的配置,可以根据个人需要进行定制。它适用于独立系统和多用户网络。 Privoxy存在输入验证错误漏洞,该漏洞源于“get_url_spec_param”函数中用户提供的输入验证不足。攻击者可利用该漏洞将精心编制的输入传递给应用程序并执行拒绝服务(DoS)攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Privoxy | Privoxy 3.0.33 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-45462 | 7.5 HIGH | Open5Gs 输入验证错误漏洞 |
| CVE-2021-20318 | Red Hat Jboss Enterprise Application Platform 7 代码问题漏洞 | |
| CVE-2020-35398 | Nch Software UTI Mutual fund 安全漏洞 | |
| CVE-2021-45470 | cve-search 安全漏洞 | |
| CVE-2021-3622 | hivex 资源管理错误漏洞 | |
| CVE-2021-27006 | Netapp StorageGRID 安全漏洞 | |
| CVE-2021-3584 | Foreman 操作系统命令注入漏洞 | |
| CVE-2021-27007 | NetApp Virtual Desktop Service 安全漏洞 | |
| CVE-2021-4024 | Podman 访问控制错误漏洞 | |
| CVE-2021-44543 | Privoxy 跨站脚本漏洞 | |
| CVE-2021-44542 | Privoxy 输入验证错误漏洞 | |
| CVE-2021-44541 | Privoxy 输入验证错误漏洞 | |
| CVE-2021-3621 | SSSD 操作系统命令注入漏洞 | |
| CVE-2021-45469 | Linux kernel 缓冲区错误漏洞 | |
| CVE-2021-40161 | Autodesk Navisworks 缓冲区错误漏洞 | |
| CVE-2021-40160 | Autodesk Navisworks 缓冲区错误漏洞 | |
| CVE-2021-44526 | Zoho ManageEngine SupportCenter Plus 授权问题漏洞 | |
| CVE-2021-44600 | Simple Online Mens Salon Management SystemSQL注入漏洞 | |
| CVE-2021-44599 | Online Enrollment Management System SQL注入漏洞 | |
| CVE-2021-45463 | GIMP 操作系统命令注入漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet