在 Oracle VM VirtualBox 7.2.8 之前的版本中,客户机操作系统用户可以导致在主机操作系统中 pcnetReceiveNoSync(位于 DevPCNet.cpp 中的 PCNet (Am79C970A) 网络设备模型)发生越界写漏洞。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-105571 | 7.3 HIGH | PickMall Lilishop Mobile Binding bindMobile improper authorization |
| CVE-2026-105707 | 5.3 MEDIUM | uptrace user_handler.go Login information exposure |
| CVE-2026-105708 | 4.3 MEDIUM | imgproxy SVG svg.go sanitizeElement cross site scripting |
| CVE-2026-105572 | 4.3 MEDIUM | PickMall Lilishop Buyer Invoice List receipt authorization |
No comments yet