Slims9 Bulian是印度尼西亚Slims社区的一个免费的开源软件。用于图书馆资源管理(如书籍、期刊、数字文档和其他图书馆资料)和管理。 Slims9 Bulian 存在SQL注入漏洞,该漏洞源于 lib/comment.inc.php 中存在SQL注入漏洞。成功利用该漏洞可以获得用户数据。该漏洞影响以下产品:SLiMS 9 Bulian 9.4.2 版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Slims9 Bulian 9.4.2 is affected by SQL injection in lib/comment.inc.php. User data can be obtained. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2021/CVE-2021-45793.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2022-0748 | 9.8 CRITICAL | Arbitrary Code Execution |
| CVE-2022-25354 | 8.6 HIGH | Prototype Pollution |
| CVE-2022-25352 | 7.5 HIGH | Prototype Pollution |
| CVE-2022-0749 | 7.4 HIGH | Deserialization of Untrusted Data |
| CVE-2022-25760 | 7.1 HIGH | Arbitrary Code Injection |
| CVE-2021-23632 | 6.6 MEDIUM | Remote Code Execution (RCE) |
| CVE-2021-23771 | 6.5 MEDIUM | Sandbox Bypass |
| CVE-2021-23556 | 6.4 MEDIUM | Exposed Dangerous Method or Function |
| CVE-2022-25296 | 6.3 MEDIUM | Prototype Pollution |
| CVE-2022-21221 | 5.9 MEDIUM | Directory Traversal |
| CVE-2021-46107 | Ligeo Archives 代码问题漏洞 | |
| CVE-2020-15591 | F*EX 代码注入漏洞 | |
| CVE-2022-26501 | Veeam Backup&Replication 访问控制错误漏洞 | |
| CVE-2021-45040 | Spatie Laravel Media Library Pro 代码问题漏洞 | |
| CVE-2022-25364 | Gradle 安全漏洞 | |
| CVE-2022-26503 | Veeam Agent for Windows 代码问题漏洞 | |
| CVE-2021-44260 | WAVLINK AC1200 访问控制错误漏洞 | |
| CVE-2022-26504 | Veeam Backup&Replication 授权问题漏洞 | |
| CVE-2022-26500 | Veeam Backup&Replication 路径遍历漏洞 | |
| CVE-2022-24302 | Paramiko 竞争条件问题漏洞 |
Showing top 20 of 36 CVEs. View all on vendor page → →
No comments yet