EasyUse MailHunter Ultimate是中国EasyUse公司的一个准确的电子邮件查找工具。 EasyUse MailHunter Ultimate 2023及之前版本存在安全漏洞,该漏洞源于敏感系统信息暴露给未经授权的Control Sphere,允许经过身份验证的远程用户通过未加密的VIEWSTATE参数获取绝对路径。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| EasyUse Digital Technology | MailHunter Ultimate | 0 ~ 2023 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-34207 | 9.9 CRITICAL | Unrestricted Upload of File with Dangerous Type in EasyUse MailHunter Ultimate |
| CVE-2023-34210 | 7.7 HIGH | SQL Injection in EasyUse MailHunter Ultimate |
| CVE-2023-34208 | 6.5 MEDIUM | Path Traversal in EasyUse MailHunter Ultimate |
No comments yet