Payara Server是英国Payara公司的一个云原生、创新的开源中间件平台。 Payara Server 存在安全漏洞,该漏洞源于允许远程攻击者在执行JNDI目录扫描后在服务器上加载恶意代码。受影响的产品和版本:Payara Server 4.1.2.191版本 (企业版),5.20.0及更新版本 (企业版),5.2020.1及更新版本(社区版)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-1744 | 6.3 MEDIUM | IBOS htaccess unrestricted upload |
| CVE-2023-1742 | 6.3 MEDIUM | IBOS Report Search getlist sql injection |
| CVE-2023-1747 | 6.3 MEDIUM | IBOS mark&op=delFromSend sql injection |
| CVE-2023-1745 | 5.3 MEDIUM | KMPlayer SHFOLDER.dll uncontrolled search path |
| CVE-2023-26116 | 5.3 MEDIUM | Angular 安全漏洞 |
| CVE-2023-26118 | 5.3 MEDIUM | Angular 安全漏洞 |
| CVE-2023-26117 | 5.3 MEDIUM | Angular 安全漏洞 |
| CVE-2023-1741 | 4.3 MEDIUM | jeecg-boot Sleep Command SysDictMapper.java sql injection |
| CVE-2023-1746 | 3.5 LOW | Dreamer CMS File Upload cross site scripting |
| CVE-2023-29059 | 3CX 安全漏洞 | |
| CVE-2023-27538 | libcurl 授权问题漏洞 | |
| CVE-2023-27537 | curl 资源管理错误漏洞 | |
| CVE-2023-27536 | curl 授权问题漏洞 | |
| CVE-2023-27535 | curl 授权问题漏洞 | |
| CVE-2023-27534 | curl 路径遍历漏洞 | |
| CVE-2023-27533 | curl 注入漏洞 | |
| CVE-2023-26692 | Zijper Collectie Beheer Systeem 跨站脚本漏洞 | |
| CVE-2023-1670 | Linux kernel 资源管理错误漏洞 | |
| CVE-2023-1393 | X.org Server 资源管理错误漏洞 | |
| CVE-2022-47542 | Red Gate SQL Monitor 安全漏洞 |
Showing top 20 of 24 CVEs. View all on vendor page → →
No comments yet