daptin是Daptin开源的一个内容管理系统。 daptin 0.10.3版本存在SQL注入漏洞,该漏洞源于对组件Aggregate API中文件server/resource/resource_aggregate.go内参数column/group/order的错误操作,可能导致SQL注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | Daptin | 0.10.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-15438 | 4.7 MEDIUM | PluXml Media Management medias.php __destruct deserialization |
| CVE-2025-15437 | 3.5 LOW | LigeroSmart Environment Variable cross site scripting |
| CVE-2025-15419 | 3.3 LOW | Open5GS GTPv2-C Flow s5c-handler.c sgwc_s5c_handle_create_session_response denial of servi |
| CVE-2024-55374 | REDCap 安全漏洞 | |
| CVE-2025-45286 | go-httpbin 安全漏洞 | |
| CVE-2025-67158 | Revotech I6032W-FHW 安全漏洞 | |
| CVE-2025-67160 | Vatilon IP Cameras 安全漏洞 | |
| CVE-2025-67159 | Vatilon IP Cameras 安全漏洞 | |
| CVE-2025-67268 | gpsd 安全漏洞 | |
| CVE-2025-67269 | gpsd 安全漏洞 | |
| CVE-2025-65125 | online-movie-booking 安全漏洞 |
No comments yet