卓源软件 Jeesite是中国卓源软件公司的一套开源的Java EE企业级快速开发平台。该平台包括系统权限组件、数据权限组件、数据字典组件、核心工具组件、视图操作组件、工作流组件和代码生成组件等。 jeesite 1.2.6版本存在安全漏洞,该漏洞源于UserController类的delete函数允许攻击者任意删除管理员的角色信息。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-35791 | 6.1 MEDIUM | Vound Intella Connect 输入验证错误漏洞 |
| CVE-2023-35792 | 5.4 MEDIUM | Vound Intella Connect 跨站脚本漏洞 |
| CVE-2023-38750 | Zimbra Collaboration Suite 安全漏洞 | |
| CVE-2023-34635 | Wifi Soft Unibox Administration SQL注入漏洞 | |
| CVE-2023-33534 | Guanzhou Tozed Kangwei Intelligent Technology ZLTS10G 跨站请求伪造漏洞 | |
| CVE-2021-31681 | yolov5-face 代码问题漏洞 | |
| CVE-2021-31680 | yolov5-face 代码问题漏洞 | |
| CVE-2021-31651 | NeoFrag 跨站脚本漏洞 | |
| CVE-2020-21881 | DuxCMS 跨站请求伪造漏洞 | |
| CVE-2020-21662 | Yunyecms SQL注入漏洞 | |
| CVE-2023-34842 | Desdev DedeCMS 代码注入漏洞 | |
| CVE-2023-37771 | Art Gallery Management System SQL注入漏洞 | |
| CVE-2023-37580 | Zimbra Collaboration Suite 跨站脚本漏洞 | |
| CVE-2023-34917 | Fuge CMS 输入验证错误漏洞 | |
| CVE-2023-34916 | Fuge CMS 输入验证错误漏洞 | |
| CVE-2020-36763 | DuxCMS 跨站脚本漏洞 | |
| CVE-2023-3983 | Advantech iView SQL注入漏洞 | |
| CVE-2022-42183 | Precisely Spectrum Spatial Analyst 代码问题漏洞 | |
| CVE-2022-42182 | Precisely Spectrum Spatial Analyst 路径遍历漏洞 | |
| CVE-2023-39122 | BMC Control-M SQL注入漏洞 |
Showing top 20 of 38 CVEs. View all on vendor page → →
No comments yet