IceCMS是NgShow个人开发者的一个基于 Spring Boot + Vue 前后端分离的内容管理系统。 IceCMS v.1.0.0版本存在安全漏洞,该漏洞源于允许攻击者通过getCosSetting中的Id和key参数获得权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-42298 | GPAC 输入验证错误漏洞 | |
| CVE-2023-40829 | Tencent WeChat 安全漏洞 | |
| CVE-2023-43148 | SPA-Cart eCommerce CMS 跨站请求伪造漏洞 | |
| CVE-2023-43149 | SPA-Cart eCommerce CMS 跨站请求伪造漏洞 | |
| CVE-2023-43147 | Limo Booking Software 跨站请求伪造漏洞 | |
| CVE-2023-45511 | tsMuxer 安全漏洞 | |
| CVE-2023-45510 | tsMuxer 安全漏洞 | |
| CVE-2023-23632 | BeyondTrust Privileged Remote Access 授权问题漏洞 | |
| CVE-2023-41263 | Scrutinizer NetFlow & sFlow Analyzer 日志信息泄露漏洞 | |
| CVE-2023-41262 | Scrutinizer NetFlow & sFlow Analyzer SQL注入漏洞 | |
| CVE-2023-41261 | Plixer Scrutinizer 授权问题漏洞 |
No comments yet