点击上方蓝字关注我们
建议大家把公众号“TeamSecret安全团队”设为星标,否则可能就看不到啦!因为公众号现在只对常读和星标的公众号才能展示大图推送。操作方法:点击右上角的【...】,然后点击【设为星标】即可。
免责申明
"本文档所提供的信息旨在帮助网络安全专业人员更好地理解并维护他们负责的网站和服务器等系统。我们鼓励在获得适当授权的情况下使用这些信息。请注意,任何未经授权的使用或由此产生的直接或间接后果和损失,均由使用者自行承担。我们提供的资源和工具仅供学习和研究之用,我们不鼓励也不支持任何非法活动。"
"我们创建这个社区是为了促进技术交流和知识分享。我们希望每位成员都能在遵守法律法规的前提下参与讨论和学习。如果使用本文档中的信息导致任何直接或间接的后果和损失,我们提醒您,这将由您个人承担。我们不承担由此产生的任何责任。如果有任何内容侵犯了您的权益,请随时告知我们,我们将立即采取行动并表示诚挚的歉意。我们感谢您的理解和支持。"
爆出漏洞
1. 万户-ezOffice-SQL
2. Sharp-多功能打印机-PermissionAC
3. 奇安信-网神SecSSL3600-PermissionAC
4. 致远-OA-任意文件上传
5. 紫光-电子档案管理系统-PermissionAC
6. 用友-U8-Cloud-SQL
7. 拓尔思-TRSWAS5.0-PermissionAC
8. TOTOLINK-A6000R-RCE
9. SuiteCRM-SQL
10. 赛蓝-企业管理系统-任意文件读取
11. livenvr-青柿视频管理系统-PermissionAC
12. 科荣-AIO-SQL
13. 金蝶-云星空-SQL
14. 九思-OA-任意文件上传
15. 金慧-综合管理信息系统-SQL
16. 湖南众合百易信息技术有限公司-资产管理运营系统 -任意文件上传
17. 红海云-EHR系统-任意文件上传
18. 华天动力-OA-任意文件读取
19. 广州图创-图书馆集群管理系统-PermissionAC
20. 百易云-资产管理运营系统-任意文件上传
21. 瑞斯康达-多业务智能网关-rce
22. 金万维-云联应用系统接入平台-RCE
23. 金和-OA-SQL
24. 宏脉-医美行业管理系统-任意文件读取
25. 泛微-E-Cology-SQL
26. logic-DataCube3测量系统-RCE
27. 用友-NC-反序列化RCE
28. 用友-GRP-U8-SQL
29. 深澜-计费管理系统-反序列化RCE
30. Netgear-WN604无线路由器-PermissionAC
31. 铭飞-MCMS-RCE
32. 浪潮-GS企业管理软件-RCE
33. 浪潮-GS企业管理软件-RCE
34. 开源-餐厅数字化综合管理平台-PermissionAC
35. 泛微-云桥E-Bridge-SQL
36. 超级猫-签名APP分发平台-任意文件读取
37. 超级猫-签名APP分发平台-SQL
38. RAISECOM网关设备list_base_config.php存在远程命令执行漏洞
39. 用友时空KSOA系统接口PreviewKPQT.jsp存在SQL注入漏洞
40. 用友时空KSOA系统接口PrintZP.jsp存在SQL注入漏洞
41. 用友时空KSOA系统接口PrintZPYG.jsp存在SQL注入漏洞
42. 用友时空KSOA系统接口PrintZPFB.jsp存在SQL注入漏洞
43. 用友时空KSOA系统接口PrintZPZP.jsp存在SQL注入漏洞
44. 用友时空KSOA系统接口fillKP.jsp存在SQL注入漏洞
45. 方天云智慧平台系统GetCompanyItem存在sql注入漏洞
46. 用友U9系统DoQuery接口存在SQL注入
47. 泛微ecology系统setup接口存在信息泄露漏洞
48. eking管理易FileUpload接口存在任意文件上传漏洞
49. SpringBlade系统menu接口存在SQL注入漏洞
威胁情报
漏洞介绍:
Spring Cloud Data Flow(SCDF)是一个基于微服务的工具包,用于在 Cloud Foundry()和 Kubernetes 中构建流式和批量数据处理管道。
漏洞危害:
受影响版本中,Skipper 服务器在处理文件上传时没有对路径进行适当的验证和清理,拥有 Skipper 服务器 API 访问权限攻击者可以通过构造恶意请求将 YAML 文件写入服务器的任意位置,同时由于 PackageMetadata 的创建过程中使用默认构造器反序列化 YAML 数据,从而导致任意代码执行。
漏洞编号:
CVE-2024-37084
影响范围:
org.springframework.cloud:spring-cloud-skipper@[2.11.0, 2.11.4)
修复方案:
官方已发布修复方案,受影响的用户建议及时下载补丁包进行漏洞修复
漏洞介绍:
帆软报表是一个企业级Web报表工具。
漏洞危害:
受影响版本在使用 SQLite 作为数据库时,view/ReportServer?test=&n= 接口存在SQL注入漏洞,当使用SQLite数据库时,未经授权的攻击者可利用该漏洞写入任意文件,从而执行任意系统命令。
影响范围:
finereport@(-∞, 11.0.28]
修复方案:
及时测试并升级到最新版本或升级版本
漏洞介绍:
Laravel 是用 PHP 编写的开源 Web 应用程序框架。
漏洞危害:
受影响版本中,由于 MonologHandler()Handle 类的 __destruct 方法调用了 close 方法,GroupHandler 重载了并调用每个 handler 的 close 方法,反序列化恶意对象时会通过 getStreamName 方法调用对象的 __toString 方法,攻击者可利用应用中存在的反序列化逻辑,构造基于laravel 的反序列化利用链执行任意代码。
漏洞编号:
CVE-2024-40075
影响范围:
laravel/framework@[11.0.0, 11.16.0]
修复方案:
及时测试并升级到最新版本或升级版本
漏洞介绍:
达梦数据库管理系统(DM8)是武汉达梦数据库有限公司开发的一款数据库系统。
漏洞危害:
达梦数据库管理系统存在命令执行漏洞,攻击者可利用该漏洞获取服务器权限。
影响范围:
武汉达梦数据库股份有限公司 达梦数据库管理系统 V8(231011)
修复方案:
及时测试并升级到最新版本或升级版本
微步编号:XVE-2024-18835
漏洞类型:文件上传
漏洞描述:LiveBOS灵动业务架构平台,是面向对象的业务支撑平台与建模工具。在LiveBos的UploadImage.do接口中,发现了一处任意文件上传漏洞,攻击者可利用该漏洞上传任意文件。
影响厂商/产品:福建顶点软件股份有限公司-LiveBOS灵动业务架构平台
微步编号:XVE-2024-18750
漏洞类型:远程代码执行
漏洞描述:深澜计费管理系统是一套计费系统,系统主要由 AAA认证计费平台、系统运营维护管理平台、用户及策略管理平台、用户自助服务平台、智能客户端模块、消息推送模块、数据统计模块组成。该系统/strategy/ip/bind-ip接口存在反序列化漏洞,可以远程执行任意代码。
影响厂商/产品:杭州瀚洋科技有限公司-深澜计费管理系统
微步编号:XVE-2024-18749
漏洞类型:SQL注入
漏洞平台:应用程序
漏洞描述:万户ezOFFICE协同管理平台是一个综合信息基础应用平台。万户ezOFFICE协同办公系统存在SQL注入漏洞。由于参数缺乏过滤,允许攻击者利用漏洞获取数据库敏感信息。
影响厂商/产品:北京万户软件技术有限公司-万户 EzOFFICE
红队及恶意攻击IP
129.211.220.212
119.45.151.227
146.56.209.163
220.231.145.193
154.212.141.198
154.212.141.253
110.40.20.102
110.40.39.82
106.75.187.10
223.113.128.178
1.117.236.166
110.42.66.212
203.86.254.105
203.91.121.207
223.113.128.142
218.241.249.123
123.125.21.211
222.186.13.133
119.167.222.135
185.33.53.121
165.154.192.177
154.204.179.241
65.109.15.19
114.224.21.143
119.91.208.128
101.132.253.139
139.196.7.181
118.89.238.3
39.98.41.16
114.132.159.125
8.134.102.190
36.139.221.115
39.103.159.236
106.75.133.45
36.133.221.93
188.131.128.110
110.41.23.52
182.42.105.110
124.222.124.77
180.106.239.217
220.167.140.180
101.126.173.203
114.251.188.228
106.75.144.128
42.101.15.87
8.134.85.79
1.13.14.76
39.104.70.192
218.60.22.112
42.193.252.203
39.103.164.38
14.103.44.172
39.103.162.98
161.189.42.18
106.39.213.50
101.200.218.8
193.176.211.26
39.105.125.188
106.75.138.147
118.178.133.144
60.205.230.246
1.13.198.79
58.215.103.164
47.120.42.15
123.207.75.128
58.215.103.161
120.27.110.150
123.56.176.19
106.75.175.181
159.75.159.29
47.98.236.160
182.116.21.185
8.142.5.22
42.101.14.246
109.244.96.73
154.212.141.199
47.92.199.109
101.43.216.27
82.157.160.9
103.106.230.54
121.237.176.195
175.178.93.10
36.112.155.12
43.137.215.124
125.39.175.201
61.153.188.78
47.108.13.37
223.15.244.207
220.192.220.105
103.106.230.173
139.196.145.119
121.204.150.32
111.180.204.147
36.134.153.32
120.27.133.105
47.97.75.180
111.172.248.58
118.118.95.100
106.55.202.118
103.106.230.36
101.200.148.202
47.116.199.171
121.62.63.58
180.163.246.131
180.163.246.132
101.200.57.211
110.248.163.168
45.158.222.202
183.56.225.163
8.138.42.47
106.75.165.83
39.105.121.204
60.191.137.103
180.130.123.188
117.50.186.164
39.103.157.217
47.93.142.152
104.152.52.36
106.75.133.175
104.152.52.38
104.209.34.200
101.67.50.34
106.75.130.53
106.75.188.194
104.248.191.107
104.199.38.190
104.152.52.27
106.14.57.117
101.132.137.180
104.40.73.150
112.86.225.169
101.36.106.69
106.55.160.215
112.13.112.190
106.53.208.178
103.230.15.172
101.67.50.109
100.42.185.220
104.40.75.134
1.13.184.229
101.36.106.135
101.67.29.70
104.40.75.118
106.54.45.201
104.209.33.45
103.73.160.217
101.67.29.208
107.151.182.50
104.199.37.210
107.151.182.58
112.13.112.171
112.13.112.33
103.230.15.39
101.36.106.165
101.67.29.101
101.67.29.103
101.67.49.194
101.36.107.83
112.50.53.5
112.13.112.20
104.236.2.197
106.75.138.9
106.75.70.142
104.203.242.76
110.230.116.5
111.253.163.141
112.86.225.123
103.230.15.41
112.13.112.154
103.186.108.247
112.13.112.153
104.152.52.18
101.43.30.166
106.75.129.206
110.40.33.40
101.67.49.31
103.93.175.146
104.209.33.87
101.67.49.162
103.148.244.208
101.67.50.96
101.67.49.25
106.75.5.52
167.94.138.153
167.71.58.10
147.185.132.138
167.94.145.107
154.31.35.225
134.122.135.149
167.94.146.61
172.169.190.120
147.78.47.22
134.122.133.217
147.185.133.184
14.128.63.10
13.64.193.60
134.122.102.65
164.90.142.20
128.14.209.26
147.185.133.104
147.185.132.85
167.94.138.43
152.32.252.198
147.182.254.89
147.185.133.217
134.122.106.248
138.197.164.81
137.184.92.212
172.104.73.58
172.206.143.20
128.14.211.186
167.94.138.128
172.232.208.48
175.176.38.138
147.185.132.99
152.32.132.38
175.24.229.108
175.178.16.155
172.169.4.164
162.216.149.133
172.202.177.22
167.94.138.131
180.101.81.159
137.184.226.250
138.199.62.5
162.142.125.90
180.101.81.158
138.199.62.3
172.169.2.171
128.14.211.190
167.71.57.153
128.199.2.164
172.206.150.13
125.74.55.217
172.206.143.196
134.122.135.15
147.185.132.201
164.92.172.25
150.158.46.19
140.246.61.63
156.238.255.152
147.185.133.250
165.154.23.208
165.154.6.82
167.94.138.32
147.185.133.41
167.94.138.112
162.216.150.130
162.216.150.131
167.94.138.115
167.94.138.118
162.216.150.139
13.91.165.136
152.32.175.64
170.64.233.180
13.91.166.22
13.87.128.101
172.212.59.22
129.204.86.17
150.91.220.178
172.202.178.6
162.216.149.194
128.14.153.234
172.206.143.136
143.110.192.130
167.99.196.152
152.32.174.249
162.216.150.202
176.111.174.5
172.202.177.191
13.64.193.92
175.6.228.253
146.190.57.24
172.232.195.139
147.182.153.35
13.64.193.6
156.146.45.110
162.216.149.185
147.185.132.51
175.178.119.226
125.8.94.219
162.216.150.22
147.185.132.193
165.227.40.7
147.185.132.192
124.64.19.30
172.212.59.114
167.94.145.100
152.89.198.67
159.75.103.236
142.93.132.9
180.101.81.25
135.148.232.57
143.110.158.195
180.101.81.157
134.122.45.14
180.101.81.156
180.101.81.155
125.63.115.122
180.101.81.151
167.94.138.145
162.142.125.85
172.169.206.122
157.90.182.30
162.142.125.83
167.94.138.149
172.233.92.4
167.99.178.237
165.227.0.96
178.212.35.142
162.216.150.103
172.206.142.235
162.142.125.89
144.217.180.194
150.158.42.96
162.216.149.96
134.122.135.61
162.243.163.14
167.94.138.156
91.92.252.2
39.106.226.149
47.92.35.208
68.183.206.120
52.230.152.207
60.188.9.162
45.58.184.222
46.101.164.231
47.102.126.55
51.222.253.17
51.222.253.14
46.101.164.15
39.173.105.156
51.8.223.89
46.101.164.11
52.228.154.87
39.173.105.142
51.159.103.10
46.101.157.30
47.96.228.248
64.227.155.127
8.213.194.30
52.167.144.161
64.227.125.48
47.92.161.29
35.203.210.169
64.62.197.126
59.110.166.199
60.26.94.137
39.77.179.62
52.228.155.172
68.183.223.44
60.188.9.138
49.234.52.67
52.230.152.111
52.167.144.175
34.34.177.152
46.101.164.33
52.167.144.190
36.28.78.142
88.88.133.174
39.109.126.254
42.236.17.226
60.188.9.245
60.188.9.99
46.101.164.26
35.203.210.172
43.135.155.251
27.215.125.136
47.92.34.9
61.244.94.126
64.226.127.67
46.101.164.22
35.203.210.189
43.130.49.138
60.188.9.90
66.240.236.116
60.188.9.117
60.188.10.27
60.188.9.233
77.90.22.16
39.107.140.158
40.83.133.237
46.101.164.59
87.242.121.12
45.135.132.161
60.188.10.30
66.240.236.119
46.101.164.50
47.103.57.73
60.188.9.81
60.188.9.80
40.118.213.55
46.101.228.86
34.140.160.62
83.212.98.223
60.188.9.101
39.173.107.252
60.188.11.12
68.183.221.157
34.140.167.6
34.76.56.210
40.118.214.175
57.151.67.250
35.203.211.65
71.6.199.23
35.203.211.66
46.101.164.42
34.76.224.181
91.92.244.4
5.59.248.230
52.167.144.136
60.188.9.212
60.188.9.65
52.167.144.138
35.203.210.87
91.92.249.227
39.173.107.42
91.92.244.227
46.101.227.219
52.230.152.170
60.188.9.209
52.230.159.202
75.115.206.118
46.101.164.67
35.203.211.201
36.48.238.120
64.62.156.111
95.214.27.183
43.248.141.170
46.101.164.94
36.135.72.133
4.156.21.171
69.172.97.17
45.156.128.63
52.167.144.200
34.22.220.85
52.167.144.25
57.151.71.135
71.6.167.142
60.188.9.36
36.111.177.14
77.90.30.63
39.173.107.74
51.8.222.152
98.152.200.3
68.183.194.183
4.156.21.142
45.156.128.66
46.101.228.74
4.151.218.131
45.156.128.67
45.156.128.68
45.156.129.42
45.156.128.76
52.167.144.217
78.128.114.82
8.213.23.66
4.156.21.54
45.33.109.17
39.101.71.184
45.156.129.104
45.156.129.100
60.188.10.19
38.45.125.154
45.156.128.77
79.110.62.188
4.151.38.194
45.156.128.83
66.240.219.146
39.173.107.78
43.225.198.234
45.141.215.239
45.9.74.69
80.82.77.33
69.10.48.174
42.236.101.253
45.156.128.88
36.150.164.81
35.203.211.155
45.156.129.64
65.49.1.76
45.156.130.40
45.156.129.65
45.156.128.91
45.156.128.92
78.128.114.114
45.156.129.68
43.134.170.46
36.103.230.234
45.79.163.53
58.20.6.132
94.102.49.193
78.128.114.102
35.203.210.10
57.152.56.138
89.190.156.46
35.203.210.124
34.76.207.254
91.92.246.103
38.9.146.107
60.188.9.174
8.213.212.50
46.101.163.219
57.152.56.248
48.217.211.95
205.210.31.154
205.210.31.82
223.113.128.220
205.210.31.156
205.210.31.83
223.72.29.31
212.113.102.130
185.191.171.10
209.38.20.190
199.47.82.19
205.210.31.73
20.70.176.140
184.105.139.68
199.45.154.146
209.97.179.89
223.113.128.216
202.107.226.2
205.210.31.162
209.38.241.167
223.109.252.213
223.113.128.210
223.109.252.210
205.210.31.70
223.72.29.25
180.214.237.128
205.210.31.216
185.189.182.234
185.165.191.27
199.204.96.22
198.235.24.177
205.210.31.212
205.210.31.211
209.38.233.75
198.235.24.169
206.168.34.197
203.86.123.54
198.235.24.182
198.235.24.186
193.118.52.78
185.200.116.49
195.15.207.238
20.118.68.233
205.210.31.235
199.45.154.179
193.118.51.134
199.45.154.177
193.112.206.240
193.118.51.130
205.210.31.231
205.210.31.234
223.109.255.158
222.187.119.230
199.45.154.184
185.200.116.76
199.45.154.181
205.210.31.249
20.251.144.86
205.210.31.242
209.38.233.42
198.235.24.159
207.90.244.14
199.45.154.191
185.65.134.145
193.177.182.119
180.101.81.29
192.34.128.73
223.113.128.166
180.101.81.27
223.113.128.168
198.235.24.254
183.134.104.172
223.109.252.172
198.235.24.248
205.210.31.17
205.210.31.18
180.101.81.35
206.168.34.160
180.101.81.33
223.109.252.159
223.109.252.154
223.72.102.241
185.142.236.34
223.109.255.145
192.3.80.130
190.120.231.58
206.168.34.171
203.150.141.248
198.235.24.232
198.235.24.39
203.195.213.121
209.141.53.28
223.104.41.66
198.235.24.104
198.235.24.226
223.113.128.194
198.235.24.108
205.234.156.88
180.102.110.144
206.168.34.172
198.235.24.45
198.235.24.43
205.210.31.206
209.38.233.187
209.38.233.186
198.235.24.40
223.113.128.174
198.235.24.122
198.235.24.244
205.210.31.201
205.210.31.200
223.113.128.183
198.235.24.117
198.235.24.119
20.118.69.93
206.237.115.15
211.53.189.137
185.150.26.247
198.235.24.54
198.235.24.52
23.27.48.150
205.210.31.69
205.210.31.173
205.210.31.172
223.109.252.243
205.210.31.176
193.3.19.26
199.45.154.116
202.151.42.147
205.210.31.60
198.235.24.202
198.235.24.203
223.72.29.99
198.235.24.205
198.235.24.208
205.210.31.171
185.242.226.38
202.165.14.21
205.210.31.53
192.241.137.216
205.210.31.58
205.210.31.183
198.235.24.222
223.113.128.231
198.235.24.223
223.113.128.230
198.235.24.218
207.90.244.6
207.90.244.2
185.242.226.49
220.243.191.67
220.243.191.69
220.181.51.85
195.170.172.225
223.113.128.144
223.113.128.147
212.80.21.22
223.113.128.146
205.210.31.198
223.72.29.77
222.88.83.2
205.210.31.193
198.235.24.72
209.97.137.27
193.177.182.107
185.133.250.71
209.38.254.244
210.252.212.2
198.235.24.201
195.154.176.37
206.189.63.169
199.204.99.110
223.72.29.233
198.235.24.98
223.113.128.204
223.113.128.203
223.113.128.205
223.109.252.203
205.210.31.131
223.113.128.201
205.210.31.253
183.154.32.102
198.235.24.94
20.225.3.216
205.210.31.95
205.210.31.96
213.199.54.89
205.210.31.98
209.38.201.119
193.118.52.34
223.72.29.48
218.75.38.211
209.141.51.21
223.72.29.44
218.75.38.210
223.113.128.229
199.45.154.135
2.58.56.25
198.235.24.194
198.235.24.198
27.150.194.2
119.96.122.241
103.197.113.185
47.242.238.41
110.40.20.162
47.94.222.178
120.92.12.14
103.234.72.219
89.134.11.61
117.72.75.193
119.45.23.226
43.133.59.22
112.13.87.3
221.227.86.193
20.225.3.88
54.206.97.67
103.118.55.2
94.156.67.200
114.132.153.23
47.120.57.207
119.194.149.177
128.14.227.67
45.156.130.8
116.255.241.142
154.26.158.172
49.232.227.129
36.40.88.142
64.62.197.15
88.214.26.54
121.40.171.96
103.197.112.179
115.55.248.220
118.99.2.9
82.156.219.235
121.40.212.132
116.213.38.178
211.90.236.43
114.119.130.67
154.26.154.251
104.234.140.163
146.56.224.174
124.90.86.28
120.55.60.187
58.87.78.60
218.60.117.242
114.236.93.18
45.79.120.183
222.182.52.193
101.34.79.85
140.249.15.165
121.40.212.246
47.92.113.49
123.14.154.221
140.249.15.177
121.204.188.105
140.249.15.170
123.57.234.233
209.210.153.60
116.179.33.141
52.184.71.175
114.132.64.195
61.160.236.32
91.92.255.248
119.45.135.98
123.162.190.217
112.248.83.143
51.254.53.14
47.92.137.29
185.142.236.43
27.155.196.200
35.216.167.104
165.154.129.130
27.115.124.34
43.143.10.95
182.92.243.111
87.236.176.223
13.91.179.102
94.156.68.92
211.193.31.52
34.222.120.115
165.154.72.193
39.107.73.25
39.106.59.150
47.108.145.56
209.38.46.178
8.130.21.221
150.138.125.96
54.188.214.129
64.62.156.86
47.95.0.13
124.222.24.208
45.149.92.100
182.92.232.85
87.236.176.219
64.62.156.91
101.67.29.123
45.143.199.145
101.35.217.117
146.56.201.123
43.143.120.16
47.100.232.40
15.188.88.75
39.105.14.16
47.92.163.80
113.2.164.197
52.167.144.67
39.180.88.140
134.122.196.6
195.128.249.3
162.216.149.69
61.1.180.60
134.122.196.19
121.43.40.114
45.145.228.157
68.183.53.77
87.236.176.157
4.151.218.179
157.148.120.98
71.105.100.70
101.6.15.130
119.164.93.44
121.40.170.195
213.180.203.190
34.243.9.124
113.2.165.191
129.28.178.227
8.220.192.59
112.235.248.24
156.236.70.244
112.0.129.25
198.235.24.57
119.180.28.27
223.104.79.66
205.210.31.51
170.64.181.220
1.63.60.192
42.227.201.142
1.63.60.191
39.128.106.253
205.210.31.47
135.125.149.207
198.235.24.5
44.204.141.81
52.36.88.202
39.98.157.4
162.191.9.139
47.92.240.8
147.185.132.19
119.160.166.237
202.170.201.186
2024Hvv专栏
目前纷传已更新漏洞如下:
1. U8cloud系统MeasureQueryframeAction SQL注入漏洞 2. 用友 GRP-A-Cloud 政府财务云 selectGlaDatasourcePreview SQL注入漏洞 3. 北京致远互联软件股份有限公司AnalyticsCloud分析云存在任意文件读取漏洞
4. 蓝凌KEP前台RCE漏洞
6. 1Panel面板最新前台RCE漏洞(CVE
7. SuiteCRM系统接口responseEntryPoint存在SQL注入漏洞(CVE
8. Netgear-WN604接口downloadFile.php信息泄露漏洞(CVE
9. Nacos远程代码执行漏洞
10. LiveNVR流媒体服务软件接口存在未授权访问漏洞 livenvr 青柿视频管理系统 channeltree 存在未授权访问漏洞
11. fogproject系统接口export.php存在远程命令执行漏洞(CVE
12. 全息AI网络运维平台ajax_cloud_router_config.php存在命令执行漏洞
13. 广联达OA接口ArchiveWebService存在XML实体注入漏洞
14. 亿赛通数据泄露防护(DLP)系统NetSecConfigAjax SQL 注入 漏洞
15. 亿赛通数据泄露防护(DLP)系统 NoticeAjax SQL 注入漏洞
16. 用友CRM系统import.php任意文件上传漏洞
17. 用友GRP A++Cloud政府财务云存在任意文件读取漏洞
18. 瑞友天翼应用虚拟化系统hmrao.php存在SQL注入漏洞
19. 红海云eHR-PtFjk.mob存在任意文件上传漏洞
20. 福建科立讯通信指挥调度管理平台ajax_users.php存在SQL注入漏洞
21. 泛微OA E-Cology ln.FileDownload文件读取漏洞
22. 大华DSS数字监控系统存在SQL注入漏洞
1. TOTOLINK A6000R 命令执行漏洞
2. Sharp 多功能打印机 未授权访问漏洞
3.科讯一卡通管理系统dormitoryHealthRanking存在SQL注入漏洞
4. 泛微E-Mobile-installOperate.do存在SSRF漏洞
5. 科讯一卡通管理系统get_kq_tj_today存在SQL注入漏洞
6. 天问物业ERP系统ContractDownLoad.aspx存在任意文件读取漏洞
7. 润乾报表存在⽂件上传漏洞
8. 华磊科技物流-modifyInsurance-delay-pg-sql注⼊漏
9. 有友NCquerygoodsgridbycode存在SQL注⼊漏洞
10. 万⼾协同办公平台ezofficeDocumentEdit_unite. jspSQL注⼊漏洞
11. 用友NC-Cloud blobRefClassSearch接口存在反序列化漏洞
12. QM-vpn-download-client-任意文件读取
13. Bazarr swaggerui 组件 目录穿越导致任意文件读取漏洞
14. 海康威视综合安防管理平台detection前台远程命令执行
15. 建文工程项目管理软件 SQL 注入漏洞
1. 金和OAC6GeneralXmlhttpPage.aspx SQL注入漏洞
2. 锐捷统一上网行为管理与审计系统 static_convert.php 命令注 入漏洞
3. 飞讯云 WMS/MyDown/MyImportData 前台SQL注入
4. 云课网校系统 uploadlmage 任意文件上传漏洞
5. 数字通云平台智慧政务 timeSQL注入漏洞
6. 用友时空 PreviewKPQT sql注入漏洞
7. 用友NC LoggingConfigServlet 反序列化漏洞
8. 泛微e-cology getFileViewUrl SSRF漏洞
9. 湖南众合百易信息技术有限公司 资产管理运营系统 comfileup.php 前台文件上传漏洞
10. 科荣AIO moffice 存在SQL注入漏洞
11. F-logic DataCube3存在命令执行漏洞(CVE-2024-7066)
12. JeePlus快速开发平台resetpassword存在SQL注入漏洞
13. Laravel v11.x 存在PHP反序列化漏洞(CVE-2024-40075)
14. 泛微e-cology9接口WorkPlanService前台SQL注入漏洞(XVE-2024-18112)
15. 华磊科技物流getOrderTrackingNumber存在SQL注入漏洞
16. 汇智ERP-filehandle.aspx存在任意文件读取漏洞
17. 用友NC-querygoodsgridbycode.json存在SQL注入漏洞
2024-07-30 总更新漏洞如下:
推荐站内搜索:最好用的开发软件、免费开源系统、渗透测试工具云盘下载、最新渗透测试资料、最新黑客工具下载……
还没有评论,来说两句吧...