Personal Management System是Dariusz个人开发者的一个用于管理个人数据的 Web 应用程序。 Personal Management System v1.4.64版本存在代码问题漏洞,该漏洞源于存在任意文件上传漏洞。攻击者可利用该漏洞通过将SVG文件上传到用户配置文件中来执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Public disclosure for CVE-2023-31584. | https://github.com/rootd4ddy/CVE-2023-43838 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2023-22618 | 8.1 HIGH | Nokia WaveLite 安全漏洞 |
| CVE-2023-3361 | 7.7 HIGH | S3 credentials included when exporting elyra notebook |
| CVE-2023-1832 | 6.8 MEDIUM | Improper authorization check in the server component |
| CVE-2022-4132 | 5.9 MEDIUM | Memory leak on tls connections |
| CVE-2023-3153 | 5.3 MEDIUM | Service monitor mac flow is not rate limited |
| CVE-2023-43261 | Milesight 日志信息泄露漏洞 | |
| CVE-2023-27121 | Pleasant Solutions Pleasant Password Server 跨站脚本漏洞 | |
| CVE-2023-36619 | Atos Unify OpenScape 输入验证错误漏洞 | |
| CVE-2023-36618 | Atos Unify OpenScape 操作系统命令注入漏洞 | |
| CVE-2023-44075 | PHPGurukul Small CRM 跨站脚本漏洞 | |
| CVE-2023-43877 | RiteCMS 跨站脚本漏洞 | |
| CVE-2023-43321 | Digital China Networks DCFW-1800-SDC 代码问题漏洞 | |
| CVE-2023-40299 | Insomnia 安全漏洞 | |
| CVE-2023-35803 | Extreme Networks IQ Engine 安全漏洞 |
No comments yet