Pleasant Solutions Pleasant Password Server是Pleasant Solutions公司的一个专有的多用户企业密码服务器。 Pleasant Solutions Pleasant Password Server v7.11.41.0版本存在安全漏洞,该漏洞源于组件 /framework/cron/action/ humanize 中存在跨站脚本 (XSS),允许攻击者通过cronString 参数注入 的精心设计的有效负载来执行任意 Web 脚本或 HTML。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-22618 | 8.1 HIGH | Nokia WaveLite 安全漏洞 |
| CVE-2023-3361 | 7.7 HIGH | S3 credentials included when exporting elyra notebook |
| CVE-2023-1832 | 6.8 MEDIUM | Improper authorization check in the server component |
| CVE-2022-4132 | 5.9 MEDIUM | Memory leak on tls connections |
| CVE-2023-3153 | 5.3 MEDIUM | Service monitor mac flow is not rate limited |
| CVE-2023-43261 | Milesight 日志信息泄露漏洞 | |
| CVE-2023-43838 | Personal Management System 代码问题漏洞 | |
| CVE-2023-36619 | Atos Unify OpenScape 输入验证错误漏洞 | |
| CVE-2023-36618 | Atos Unify OpenScape 操作系统命令注入漏洞 | |
| CVE-2023-44075 | PHPGurukul Small CRM 跨站脚本漏洞 | |
| CVE-2023-43877 | RiteCMS 跨站脚本漏洞 | |
| CVE-2023-43321 | Digital China Networks DCFW-1800-SDC 代码问题漏洞 | |
| CVE-2023-40299 | Insomnia 安全漏洞 | |
| CVE-2023-35803 | Extreme Networks IQ Engine 安全漏洞 |
No comments yet