Duke是Lars Marius Garshol个人开发者的一个在 Lucene 之上用 Java 编写的快速灵活的重复数据消除(或实体解析,或记录链接)引擎。 Duke v1.2及之前版本存在安全漏洞,该漏洞源于在组件no.priv.garshol.duke.server.CommonJTimer.init中存在代码注入漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-3988 | 6.3 MEDIUM | Cafe Billing System Order index.php sql injection |
| CVE-2023-39015 | WebMagic 代码注入漏洞 | |
| CVE-2023-38988 | jeesite 安全漏洞 | |
| CVE-2023-31932 | Rail Pass Management System SQL注入漏洞 | |
| CVE-2023-31933 | Rail Pass Management System SQL注入漏洞 | |
| CVE-2023-31934 | Rail Pass Management System 跨站脚本漏洞 | |
| CVE-2023-31935 | Rail Pass Management System 跨站脚本漏洞 | |
| CVE-2023-31936 | Rail Pass Management System SQL注入漏洞 | |
| CVE-2023-31937 | Rail Pass Management System SQL注入漏洞 | |
| CVE-2023-37754 | PowerJob 安全漏洞 | |
| CVE-2023-38992 | Jeecg-Boot SQL注入漏洞 | |
| CVE-2023-39010 | BoofCV 代码注入漏洞 | |
| CVE-2023-39016 | bboss 代码注入漏洞 | |
| CVE-2023-39017 | Terracotta Quartz Scheduler 代码注入漏洞 | |
| CVE-2023-39018 | FFmpeg 代码注入漏洞 | |
| CVE-2023-39020 | Stanford CoreNlp 代码注入漏洞 | |
| CVE-2023-39021 | Wix Embedded MySql 代码注入漏洞 | |
| CVE-2023-39022 | Ericsson OSCORE 代码注入漏洞 | |
| CVE-2023-39023 | University Compass 代码注入漏洞 | |
| CVE-2022-31454 | Yii 跨站脚本漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet