Anteeo WMS是Anteeo WMS公司的一个功能齐全的数据中心。 Anteeo WMS 4.7.34之前版本存在安全漏洞,该漏洞源于存在SQL注入漏洞,未经身份验证的攻击者可以通过用户名参数和泄露底层数据库中的一些数据来执行任意SQL命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/AndreaF17/PoC-CVE-2024-44349 | POC Details |
| 2 | A SQL injection vulnerability in login portal in AnteeoWMS before v4.7.34 allows unauthenticated attackers to execute arbitrary SQL commands via the username parameter and disclosure of some data in the underlying DB. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2024/CVE-2024-44349.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2024-21532 | 7.3 HIGH | ggit 安全漏洞 |
| CVE-2024-21533 | 6.5 MEDIUM | ggit 安全漏洞 |
| CVE-2024-27457 | 2.5 LOW | Intel TDX Module firmware 代码问题漏洞 |
| CVE-2024-45880 | Motorola CX2L 安全漏洞 | |
| CVE-2024-45231 | Django 安全漏洞 | |
| CVE-2024-45230 | Django 安全漏洞 | |
| CVE-2024-45918 | Kelixin Communication Command and Dispatch Platform 安全漏洞 | |
| CVE-2024-25885 | xhtml2pdf 安全漏洞 | |
| CVE-2024-46410 | PublicCMS 安全漏洞 | |
| CVE-2024-46539 | Fire Boltt Artillery Smart Watch NJ-R6E 安全漏洞 | |
| CVE-2024-36814 | Eugene AdGuard Home 安全漏洞 |
No comments yet