PMB是PMB Services团队的一个 100% 免费文档管理的参考工具。 PMB 7.4.7 及之前版本存在SQL注入漏洞,该漏洞源于允许未经身份验证的远程攻击者通过/admin/convert/export.class.php中的 get_next_notice 函数中的query参数执行任意 SQL 命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-22235 | 6.7 MEDIUM | VMware Aria Operations 安全漏洞 |
| CVE-2024-26311 | 5.7 MEDIUM | Archer Platform 安全漏洞 |
| CVE-2024-1705 | 5.6 MEDIUM | Shopwind Installation DefaultController.php actionCreate code injection |
| CVE-2024-26310 | 4.3 MEDIUM | Archer Platform 安全漏洞 |
| CVE-2024-24479 | Wireshark 安全漏洞 | |
| CVE-2023-52155 | PMB SQL注入漏洞 | |
| CVE-2024-25381 | emlog 安全漏洞 | |
| CVE-2024-24476 | Wireshark 安全漏洞 | |
| CVE-2023-24330 | D-Link DIR882 安全漏洞 | |
| CVE-2023-24331 | D-Link DIR-816 安全漏洞 | |
| CVE-2023-24332 | Tenda AC6 安全漏洞 | |
| CVE-2023-24333 | Tenda AC21 安全漏洞 | |
| CVE-2023-24334 | Tenda AC23 安全漏洞 | |
| CVE-2024-25249 | He3 安全漏洞 | |
| CVE-2024-25461 | Creatio Terrasoft CRM 安全漏洞 | |
| CVE-2023-37177 | PMB SQL注入漏洞 | |
| CVE-2023-38844 | PMB SQL注入漏洞 | |
| CVE-2023-52153 | PMB SQL注入漏洞 | |
| CVE-2023-52154 | PMB 安全漏洞 | |
| CVE-2024-25891 | ChurchCRM 安全漏洞 |
Showing top 20 of 37 CVEs. View all on vendor page → →
No comments yet