OneKeyAdmin是About 基于Thinkphp6+Element的插件化管理系统,网站、小程序、商城、CMS、APP、ERP、API接口一个系统全部搞定,无需脚手架开箱即用! OneKeyAdmin v1.3.9版本存在安全漏洞,该漏洞源于在Adding Categories模块中存在存储型跨站脚本(XSS)漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-1277 | 7.8 HIGH | kylin-system-updater Update InstallSnap command injection |
| CVE-2023-1276 | 4.7 MEDIUM | SUL1SS_shop Order.php sql injection |
| CVE-2023-1278 | 3.5 LOW | IBOS index.php cross site scripting |
| CVE-2023-27974 | Bitwarden 安全漏洞 | |
| CVE-2023-27088 | feiqu 安全漏洞 | |
| CVE-2023-26956 | OneKeyAdmin 安全漏洞 | |
| CVE-2023-26952 | OneKeyAdmin 跨站脚本漏洞 | |
| CVE-2023-26922 | Varisicte matrix-gui SQL注入漏洞 | |
| CVE-2023-26261 | UBIKA WAAP Gateway/Cloud 注入漏洞 | |
| CVE-2023-25395 | TOTOLINK A7100RU 操作系统命令注入漏洞 | |
| CVE-2023-24782 | FunAdmin SQL注入漏洞 | |
| CVE-2023-24777 | FunAdmin SQL注入漏洞 | |
| CVE-2023-24773 | FunAdmin SQL注入漏洞 | |
| CVE-2023-24657 | phpIPAM 跨站脚本漏洞 | |
| CVE-2023-24282 | Poly Trio 跨站脚本漏洞 | |
| CVE-2023-22892 | Zephyr 安全漏洞 | |
| CVE-2023-22891 | Zephyr 安全漏洞 | |
| CVE-2023-22890 | Zephyr 代码问题漏洞 | |
| CVE-2023-22889 | Zephyr 代码注入漏洞 | |
| CVE-2023-0030 | Linux kernel 资源管理错误漏洞 |
Showing top 20 of 27 CVEs. View all on vendor page → →
No comments yet