diff --git a/cache/Tenable (Nessus).dat b/cache/Tenable (Nessus).dat index c9cef6c01b6..8a848c29927 100644 --- a/cache/Tenable (Nessus).dat +++ b/cache/Tenable (Nessus).dat @@ -110,3 +110,11 @@ b43a3c1adf4b73a84a7f08c7884ac754 ade6aea0eabac5dd052166664db80e27 0487694e96a32b018b402bc6a3c1afde 8bd4e638fd93d384e254024bcf0d69ed +e06b7f31f7e95d61e3c590929fb78aaf +386a1ca73c958ebc1c7593eac7ec7f7f +0c74bc416d35e99057aa485e34042ac6 +d67d18f4f091b4254f51d85161939ca0 +4d448ad7c628cf8f80010a55aca7bc62 +dadaf9bb405058212d1c71f06d95ea59 +b53a1f01f88188e5cf796ab64f39e3ba +91b3b46fcd53438c089d99cdf8412d03 diff --git a/data/cves.db b/data/cves.db index adea5f4db0b..edb8a630a7d 100644 Binary files a/data/cves.db and b/data/cves.db differ diff --git a/docs/index.html b/docs/index.html index 5ce8e743081..da5bd61467a 100644 --- a/docs/index.html +++ b/docs/index.html @@ -1,4 +1,4 @@ - + @@ -283,6 +283,70 @@

眈眈探求 | TITLE URL + + e06b7f31f7e95d61e3c590929fb78aaf + CVE-2024-11858 + 2024-12-15 14:15:22 + A flaw was found in Radare2, which contains a command injection vulnerability caused by insufficient input validation when handling Pebble Application files. Maliciously crafted inputs can inject shell commands during command parsing, leading to unintended behavior during file processing​ + 详情 + + + + 386a1ca73c958ebc1c7593eac7ec7f7f + CVE-2024-7701 + 2024-12-15 11:15:05 + Use of Password Hash With Insufficient Computational Effort vulnerability in percona percona-toolkit allows Encryption Brute Forcing.This issue affects percona-toolkit: 3.6.0. + 详情 + + + + 0c74bc416d35e99057aa485e34042ac6 + CVE-2024-56082 + 2024-12-15 05:15:05 + ChatBar.tsx in Lumos before 1.0.17 parses raw HTML in Markdown because the markdown-to-jsx package is used without disableParsingRawHTML set to true. + 详情 + + + + d67d18f4f091b4254f51d85161939ca0 + CVE-2024-56074 + 2024-12-15 04:15:05 + gitingest before 9996a06 mishandles symbolic links that point outside of the base directory. + 详情 + + + + 4d448ad7c628cf8f80010a55aca7bc62 + CVE-2024-55969 + 2024-12-15 04:15:04 + DocIO in Syncfusion Essential Studio for ASP.NET MVC before 27.1.55 throws XMLException during the resaving of a DOCX document with an external reference XML, aka I640714. + 详情 + + + + dadaf9bb405058212d1c71f06d95ea59 + CVE-2024-56073 + 2024-12-15 03:15:16 + An issue was discovered in FastNetMon Community Edition through 1.2.7. Zero-length templates for Netflow v9 allow remote attackers to cause a denial of service (divide-by-zero error and application crash). + 详情 + + + + b53a1f01f88188e5cf796ab64f39e3ba + CVE-2024-56072 + 2024-12-15 03:15:16 + An issue was discovered in FastNetMon Community Edition through 1.2.7. The sFlow v5 plugin allows remote attackers to cause a denial of service (application crash) via a crafted packet that specifies many sFlow samples. + 详情 + + + + 91b3b46fcd53438c089d99cdf8412d03 + CVE-2024-55970 + 2024-12-15 03:15:15 + File Manager in Syncfusion Essential Studio for ASP.NET MVC before 27.1.55 has a traversal issue that is related to the request parameter, aka I644734. + 详情 + + 907f974c546b5467e1304aba0fc1fbcf CVE-2024-31892 @@ -366,7 +430,7 @@

眈眈探求 | + 2024-12-13 14:15:22 phpMyFAQ is an open source FAQ web application. Prior to version 3.2.10, a vulnerability exists in the FAQ Record component where a privileged attacker can trigger a file download on a victim's machine upon page visit by embedding it in an