References http://www.nic.bjchyedu.cn/xxaq/aqtg/202404/P020240416555032924698.xlsx https://distrowatch.com/dwres.php?resource=compare-packages&firstlist=deepin&secondlist=devuan&firstversions=0&secondversions=0&showall=yes https://hacktricks.wiki/en/linux-hardening/privilege-escalation/d-bus-enumeration-and-command-injection-privilege-escalation.html
Related VulnerabilitiesPoCCVE-2026-81578: PaperCut NG/MF <=26.0.4 - Unauthenticated ConfigEditor Access via Tapestry Complex-DirectPoCCVE-2026-87820: CyberPanel 2.4.3-2.4.5 - AI Scanner Debug DisclosurePoCnuget-config-exposure: NuGet.config Package Source Credentials - ExposurePoCCVE-2020-10221: rConfig <= 3.9.4 - Authenticated OS Command InjectionPoCCVE-2026-56270: Flowise <= 3.0.13 - Unauthenticated OAuth Configuration DisclosurePoCccm-detect: Clear-Com Core Configuration Manager Panel - DetectPoCweb-config: Web Configuration File - DetectPoCaspx-debug-mode: ASP.NET Debugging EnabledPoCfastly-debug-headers: Fastly CDN Debug Headers ExposurePoCmonitorr-file-upload: Monitorr Services Configuration - Arbitrary File UploadPoCclaude-code-agents: Claude Code Subagent Configuration - ExposureKestra /api/v1/main/flows/configs 命令执行漏洞(CVE-2026-53576)PoC大华智慧园区综合管理平台 config_changePort SQL注入漏洞