高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2026-44713 | 8.8 HIGH | pam_usb: Command injection via $TMUX environment variable leads to RCE as root |
| CVE-2026-44712 | 8.2 HIGH | pam_usb: Shell injection via device UUID and username in pamusb-conf and pamusb-agent |
| CVE-2026-48064 | 8.1 HIGH | pam_usb: PAM_RHOST check skipped when deny_remote=false allows XDMCP authentication bypass |
| CVE-2026-44711 | 7.9 HIGH | pam_usb: Symlink attacks on pad directory and pad files enable authentication bypass and r |
| CVE-2026-44709 | 7.8 HIGH | pam_usb: PINENTRY_FALLBACK_APP environment variable allows arbitrary command execution |
| CVE-2026-47269 | 7.4 HIGH | pam_usb: deny_remote feature incorrectly classifies IPv4-mapped IPv6 remote connections as |
| CVE-2026-47272 | 7.1 HIGH | pam_usb: OTP pad authentication bypass via missing system pad check and uninitialized RNG |
| CVE-2026-48065 | 6.7 MEDIUM | pam_usb: Unchecked integer multiplication before xmalloc() in conf.c allows heap-based buf |
| CVE-2026-47273 | 6.5 MEDIUM | pam_usb: XPath injection via PAM-supplied identifiers in pam_usb configuration queries |
| CVE-2026-47274 | 6.3 MEDIUM | pam_usb: Uncontrolled search path in pam_usb tools allows privilege escalation via PATH ma |
| CVE-2026-47270 | 6.3 MEDIUM | pam_usb: strtok() race condition in multi-threaded PAM hosts can corrupt deny_remote resul |
| CVE-2026-48066 | 5.7 MEDIUM | pam_usb: Thread-unsafe static pointer in log.c causes data race under concurrent PAM authe |
| CVE-2026-44710 | 4.6 MEDIUM | pam_usb: NULL pointer dereference from UDisks device fields causes PAM crash and login den |
| CVE-2026-48792 | 4.4 MEDIUM | pam_usb: pusb_has_virtual_input_device() silently discards EACCES, disabling remote deskto |
まだコメントはありません