Fortra Cobalt Strike是Fortra公司的一个应用程序。为您提供了一个开发后代理和秘密渠道,以模仿客户网络中一个安静的长期嵌入式参与者。 Fortra Cobalt Strike 4.7.1版本存在安全漏洞,该漏洞源于Swing 组件上无法正确转义 HTML 标签,攻击者利用该漏洞可以通过注入精心制作的 HTML 代码,在 Cobalt Strike UI 中执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-28818 | 5.3 MEDIUM | Veritas Technologies Veritas NetBackup 数据伪造问题漏洞 |
| CVE-2023-28152 | 5.3 MEDIUM | Independentsoft JWord 代码问题漏洞 |
| CVE-2023-28151 | 5.3 MEDIUM | Independentsoft JSpreadsheet 代码问题漏洞 |
| CVE-2023-28150 | 5.3 MEDIUM | Independentsoft JODF 代码问题漏洞 |
| CVE-2023-21028 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21047 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21029 | Google Pixel 安全漏洞 | |
| CVE-2023-21030 | Google Pixel 资源管理错误漏洞 | |
| CVE-2023-21031 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21032 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21033 | Google Pixel 资源管理错误漏洞 | |
| CVE-2023-21034 | Google Pixel 安全漏洞 | |
| CVE-2023-21035 | Google Pixel 安全漏洞 | |
| CVE-2023-21036 | Google Pixel 安全漏洞 | |
| CVE-2023-21043 | Google Pixel 资源管理错误漏洞 | |
| CVE-2023-21008 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21046 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21045 | Google Pixel 资源管理错误漏洞 | |
| CVE-2023-21044 | Google Pixel 缓冲区错误漏洞 | |
| CVE-2023-21041 | Google Pixel 缓冲区错误漏洞 |
Showing top 20 of 163 CVEs. View all on vendor page → →
No comments yet