diff --git a/cache/Nsfocus.dat b/cache/Nsfocus.dat index cb181d426cc..9174cbee56f 100644 --- a/cache/Nsfocus.dat +++ b/cache/Nsfocus.dat @@ -149,3 +149,18 @@ dc9e43ff5e0acfcd20356a687ef94147 7ebc028bb1f3d5657639851d2b95167a 42c4e2518c58fe647519d8767958596d a6d1f4fb1d75743cfff3575d3ff49e69 +c516ec73fb0dc686d7c20a0e7d64b5ec +481510e9cb01201b67a65b04cdd9f2cc +2c96e41e2fde6e43b5c04146dbaca7f1 +b38716e169cfeade640ff23c1e1c5868 +b3e9896203a2a079a00b11627aab6a05 +3d2a5dfe44d33156680d4045dd166a0e +4858349faea2ea461d53177fcc758e8a +634dd7b45e74c705827a43113608bdd4 +4c29ec9b4d965aa343f80486fc3e64b4 +7ced1c9d1e757ee2f41a306922e79b5d +f3e4b21b2423c87eb423c5a74243a61c +e800043b02f4a56c39995c39bf982362 +e9ef9629ae723eec1d67636c876aa1a4 +042b7a87e6cf17f62630fc23c4fff502 +219f76a5f9bf1b4e361fcbf9572c59ce diff --git a/data/cves.db b/data/cves.db index 75f4531e907..9cb24951525 100644 Binary files a/data/cves.db and b/data/cves.db differ diff --git a/docs/index.html b/docs/index.html index c38270ba630..e882b064add 100644 --- a/docs/index.html +++ b/docs/index.html @@ -1,4 +1,4 @@ - + @@ -366,7 +366,7 @@

眈眈探求 | + 2024-11-04 14:15:17 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WPDeveloper BetterLinks allows SQL Injection.This issue affects BetterLinks: from n/a through 2.1.7. 详情 @@ -374,7 +374,7 @@

眈眈探求 | + 2024-11-04 14:15:16 Server-Side Request Forgery (SSRF) vulnerability in Noor alam Magical Addons For Elementor allows Server Side Request Forgery.This issue affects Magical Addons For Elementor: from n/a through 1.2.1. 详情 @@ -382,7 +382,7 @@

眈眈探求 | + 2024-11-04 14:15:16 Path Traversal: '.../...//' vulnerability in ThimPress WP Hotel Booking allows PHP Local File Inclusion.This issue affects WP Hotel Booking: from n/a through 2.1.4. 详情 @@ -390,7 +390,7 @@

眈眈探求 | + 2024-11-04 14:15:16 AppSmith Community 1.8.3 before 1.46 allows SSRF via New DataSource for application/json requests to 169.254.169.254 to retrieve AWS metadata credentials. 详情 @@ -398,7 +398,7 @@

眈眈探求 | + 2024-11-04 14:15:16 In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doL2TP function. 详情 @@ -406,7 +406,7 @@

眈眈探求 | + 2024-11-04 14:15:16 In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the backup function. 详情 @@ -414,7 +414,7 @@

眈眈探求 | + 2024-11-04 14:15:16 In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the reboot function. 详情 @@ -422,7 +422,7 @@

眈眈探求 | + 2024-11-04 14:15:16 In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doPPTP function. 详情 @@ -430,7 +430,7 @@

眈眈探求 | + 2024-11-04 14:15:16 Unrestricted Upload of File with Dangerous Type vulnerability in David F. Carr RSVPMaker for Toastmasters allows Upload a Web Shell to a Web Server.This issue affects RSVPMaker for Toastmasters: from n/a through 6.2.4. 详情 @@ -438,7 +438,7 @@

眈眈探求 | + 2024-11-04 14:15:15 Unrestricted Upload of File with Dangerous Type vulnerability in Myriad Solutionz Stars SMTP Mailer allows Upload a Web Shell to a Web Server.This issue affects Stars SMTP Mailer: from n/a through 1.7. 详情 @@ -2100,123 +2100,123 @@

眈眈探求 | - WordPress Dynamic Featured Image Plugin跨站脚本漏洞 - 详情 + c516ec73fb0dc686d7c20a0e7d64b5ec + CVE-2024-41565 + 2024-11-05 03:24:47 + JustEnoughItems验证错误漏洞 + 详情 - 47885a50d91a5d7098785f3c43332d19 - CVE-2024-42416 - 2024-11-04 12:44:01 - FreeBSD越界写入漏洞 - 详情 + 481510e9cb01201b67a65b04cdd9f2cc + CVE-2024-44760 + 2024-11-05 03:24:47 + Shenzhou News Union Enterprise Management System访问控制漏洞 + 详情 - 27ae78a45c3761f0ef57d78aa8cc53fc - CVE-2024-33454 - 2024-11-04 06:32:20 - Espressif Systems ESP-IDF缓冲区溢出漏洞 - 详情 + 2c96e41e2fde6e43b5c04146dbaca7f1 + CVE-2024-29726 + 2024-11-05 03:24:47 + SportsNET SQL注入漏洞 + 详情 - d75c6044b1392f4ccafc244a1d6d63af - CVE-2024-35118 - 2024-11-04 06:32:20 - IBM MaaS360信任管理问题漏洞 - 详情 + b38716e169cfeade640ff23c1e1c5868 + CVE-2024-42793 + 2024-11-05 03:24:47 + Kashipara Music Management System跨站请求伪造漏洞 + 详情 - 84ea9c87b177a3e909a8d547a043e596 - CVE-2024-33956 - 2024-11-04 06:32:20 - WordPress plugin Custom WooCommerce Checkout Fields Editor授权错误漏洞 - 详情 + b3e9896203a2a079a00b11627aab6a05 + CVE-2024-29725 + 2024-11-05 03:24:47 + SportsNET SQL注入漏洞 + 详情 - a2c6905aada38de6e253603be37b09b7 - CVE-2024-43941 - 2024-11-04 06:32:20 - WordPress插件Propovoice Pro SQL注入漏洞 - 详情 + 3d2a5dfe44d33156680d4045dd166a0e + CVE-2023-52045 + 2024-11-05 03:24:47 + Studio 42 elFinder跨站脚本漏洞 + 详情 - 19deb1ca812ecf2ed46cc48512f23d4f - CVE-2024-34222 - 2024-11-04 06:32:20 - Sourcecodester Human Resource Management System SQL注入漏洞 - 详情 + 4858349faea2ea461d53177fcc758e8a + CVE-2024-28759 + 2024-11-05 03:24:47 + Wind River VxWorks缓冲区溢出漏洞 + 详情 - 864e8ea68ba0af12a7a7c166c7d40e51 - CVE-2024-32874 - 2024-11-04 06:32:20 - Blake Blackshear Frigate拒绝服务漏洞 - 详情 + 634dd7b45e74c705827a43113608bdd4 + CVE-2024-7744 + 2024-11-05 03:24:47 + Progress Software Ipswitch WS_FTP Server任意文件下载漏洞 + 详情 - bf66c99d00c397ac71059457f32e91cf - CVE-2024-32999 - 2024-11-04 06:32:20 - Huawei HarmonyOS破解漏洞 - 详情 + 4c29ec9b4d965aa343f80486fc3e64b4 + CVE-2024-50347 + 2024-11-05 03:24:47 + The Laravel Framework Laravel Reverb数据伪造问题漏洞 + 详情 - f3e42d10a7df860100f949eaec27dc55 - CVE-2024-33774 - 2024-11-04 06:32:20 - D-Link DIR-619缓冲区溢出漏洞 - 详情 + 7ced1c9d1e757ee2f41a306922e79b5d + CVE-2024-6053 + 2024-11-05 03:24:47 + TeamViewer Full Client访问控制错误漏洞 + 详情 - 950f6f9e2ccd1cf4ba31d5dc5217f60e - CVE-2024-43942 - 2024-11-04 06:32:20 - WordPress插件Query and Meta Addon SQL注入漏洞 - 详情 + f3e4b21b2423c87eb423c5a74243a61c + CVE-2024-45046 + 2024-11-05 03:24:47 + PHPSpreadsheet 任意脚本注入漏洞 + 详情 - ddcd3908606927cbb9eb911fcab99c9a - CVE-2024-32996 - 2024-11-04 06:32:20 - Huawei HarmonyOS 权限提升漏洞 - 详情 + e800043b02f4a56c39995c39bf982362 + CVE-2024-29724 + 2024-11-05 03:24:47 + SportsNET SQL注入漏洞 + 详情 - 83ee632bb3b41aba63928287bd2de12b - CVE-2024-33433 - 2024-11-04 06:32:20 - TOTOLINK X2000R跨站脚本漏洞 - 详情 + e9ef9629ae723eec1d67636c876aa1a4 + CVE-2024-29723 + 2024-11-05 03:24:47 + SportsNET SQL注入漏洞 + 详情 - 9ba4fd07f6b97cee208aa6f55a825e09 - CVE-2024-33250 - 2024-11-04 06:32:20 - Simple Realtime Server任意代码执行漏洞 - 详情 + 042b7a87e6cf17f62630fc23c4fff502 + CVE-2024-27839 + 2024-11-05 03:24:47 + Apple iOS/iPadOS信息泄露漏洞 + 详情 - 1d138d748fdb4a0e15481c97b1ac9786 - CVE-2024-33819 - 2024-11-04 06:32:20 - Globitel SpeechLog Analytics存储型跨站脚本漏洞 - 详情 + 219f76a5f9bf1b4e361fcbf9572c59ce + CVE-2024-8198 + 2024-11-05 03:24:47 + Google Chrome Skia堆缓冲区溢出漏洞 + 详情