LibTIFF是LibTIFF开源的一个读写TIFF(标签图像文件格式)文件的库。该库包含一些处理TIFF文件的命令行工具。 LibTIFF 4.7.0版本存在安全漏洞,该漏洞源于组件tiffcmp中文件tiffcmp.c存在内存泄漏。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | LibTIFF | 4.7.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-9139 | 4.3 MEDIUM | Scada-LTS WatchListDwr.init.dwr information disclosure |
| CVE-2025-9171 | 3.5 LOW | SolidInvoice Clients clients cross site scripting |
| CVE-2025-9170 | 3.5 LOW | SolidInvoice Tax Rates rates cross site scripting |
| CVE-2025-9169 | 3.5 LOW | SolidInvoice Quote quotes cross site scripting |
| CVE-2025-9168 | 3.5 LOW | SolidInvoice Invoice Creation invoice cross site scripting |
| CVE-2025-9167 | 3.5 LOW | SolidInvoice Recurring Invoice recurring cross site scripting |
| CVE-2025-9145 | 3.5 LOW | Scada-LTS SVG File view_edit.shtm cross site scripting |
| CVE-2025-9144 | 3.5 LOW | Scada-LTS publisher_edit.shtm cross site scripting |
| CVE-2025-9143 | 3.5 LOW | Scada-LTS mailing_lists.shtm cross site scripting |
| CVE-2025-9138 | 3.5 LOW | Scada-LTS new cross site scripting |
| CVE-2025-9137 | 3.5 LOW | Scada-LTS scheduled_events.shtm cross site scripting |
| CVE-2024-44373 | Allsky Camera 安全漏洞 | |
| CVE-2025-51543 | Cicool web builder 3.4.4 安全漏洞 | |
| CVE-2025-50926 | Easy Hosting Control Panel EHCP 安全漏洞 | |
| CVE-2025-52337 | LogicData eCommerce Framework 安全漏洞 | |
| CVE-2025-52338 | LogicData eCommerce Framework 安全漏洞 | |
| CVE-2025-54336 | Plesk Obsidian 安全漏洞 | |
| CVE-2025-51506 | TalentNeuron Suite 安全漏洞 | |
| CVE-2025-51540 | EzGED 安全漏洞 | |
| CVE-2025-50938 | HUSTOJ 安全漏洞 |
Showing top 20 of 32 CVEs. View all on vendor page → →
No comments yet