SUSE hackweek是德国SUSE公司的一种将 hack 想法培育成项目,然后协作完成的工具。 SUSE hackweek存在跨站脚本漏洞,该漏洞源于缺乏对输入的清理,任意用户都可发起存储型跨站脚本攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-22038 | 7.3 HIGH | DoS attacks, information leaks etc. with crafted Git repositories in obs-scm-bridge |
| CVE-2024-22037 | 5.5 MEDIUM | Database password leaked by systemd uyuni-server-attestation service |
| CVE-2024-49502 | 3.5 LOW | Reflected XSS in Setup Wizard, HTTP Proxy credentials pane in spacewalk-web |
| CVE-2024-49503 | 3.5 LOW | Reflected XSS in Setup Wizard, Organization Credentials in spacewalk-web |
No comments yet