HadSky是中国HadSky公司的一款原创的开源 php 轻论坛系统。 HadSky 7.11.8版本存在跨站请求伪造漏洞,该漏洞源于组件User Handler会导致跨站点请求伪造。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | HadSky | 7.11.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-32254 | 9.8 CRITICAL | Tree connection race condition remote code execution vulnerability |
| CVE-2023-32250 | 9.0 CRITICAL | Session race condition remote code execution vulnerability |
| CVE-2023-34432 | 7.8 HIGH | Heap-buffer-overflow in src/formats_i.c |
| CVE-2023-34318 | 7.8 HIGH | Heap-buffer-overflow in src/hcom.c |
| CVE-2023-3606 | 6.3 MEDIUM | TamronOS ping os command injection |
| CVE-2023-32627 | 6.2 MEDIUM | Floating point exception in src/voc.c |
| CVE-2023-26590 | 6.2 MEDIUM | Floating point exception in src/aiff.c |
| CVE-2023-3578 | 5.5 MEDIUM | DedeCMS co_do.php server-side request forgery |
| CVE-2023-3607 | 5.5 MEDIUM | kodbox WebConsole Plug-In webconsole.php.txt Execute os command injection |
| CVE-2023-1183 | 5.0 MEDIUM | Arbitrary file write |
| CVE-2015-10121 | 3.5 LOW | Beeliked Microsite Plugin beelikedmicrosite.php embed_handler cross site scripting |
| CVE-2015-10120 | 3.5 LOW | WDS Multisite Aggregate Plugin WDS_Multisite_Aggregate_Options.php update_options cross si |
| CVE-2015-10119 | 3.5 LOW | View All Posts Page Plugin view-all-posts-pages.php action_admin_notices_activation cross |
| CVE-2023-36936 | Online Security Guards Hiring System 跨站脚本漏洞 | |
| CVE-2023-36939 | PHPGurukul Hostel Management System 跨站脚本漏洞 | |
| CVE-2023-36940 | Online Fire Reporting System 跨站脚本漏洞 | |
| CVE-2023-36376 | Hostel Management System 跨站脚本漏洞 | |
| CVE-2023-37150 | Online Pizza Ordering System 跨站脚本漏洞 | |
| CVE-2023-37152 | Projectworlds Online Art gallery project 代码问题漏洞 | |
| CVE-2023-37153 | KodExplorer 跨站脚本漏洞 |
Showing top 20 of 33 CVEs. View all on vendor page → →
No comments yet