Cobub Razor 漏洞列表
共找到 4 个与 Cobub Razor 相关的漏洞
📅 加载漏洞趋势中...
-
CVE-2018-8770: Cobub Razor 0.8.0 - Information Disclosure POC
Cobub Razor 0.8.0 is susceptible to information disclosure via generate.php, controllers/getConfigTest.php, controllers/getUpdateTest.php, controllers/postclientdataTest.php, controllers/posterrorTest.php, controllers/posteventTest.php, controllers/posttagTest.php, controllers/postusinglogTest.php, fixtures/Controller_fixt.php, fixtures/Controller_fixt2.php, fixtures/view_fixt2.php, libs/ipTest.php, or models/commonDbfix.php. An attacker can obtain sensitive information, modify data, and/or execute unauthorized operations. -
CVE-2018-8770: Cobub Razor 0.8.0 - Information Disclosure POC
Cobub Razor 0.8.0 is susceptible to information disclosure via generate.php, controllers/getConfigTest.php, controllers/getUpdateTest.php, controllers/postclientdataTest.php, controllers/posterrorTest.php, controllers/posteventTest.php, controllers/posttagTest.php, controllers/postusinglogTest.php, fixtures/Controller_fixt.php, fixtures/Controller_fixt2.php, fixtures/view_fixt2.php, libs/ipTest.php, or models/commonDbfix.php. An attacker can obtain sensitive information, modify data, and/or execute unauthorized operations. -
Cobub Razor 0.8.0 addsychannel-SQL注入 无POC
【漏洞对象】Oracle Weblogic Server 【涉及版本】10.0.2.0, 10.3.6.0 【漏洞描述】 该软件实现上存在“channel_name”和“ platform”参数将导致SQL注入漏洞的存在,可能导致信息泄露。 -
Cobub Razor 0.8.0 addchannel-SQL注入(CVE-2018-8057) 无POC
【漏洞对象】Western Bridge Cobub Razor 【涉及版本】 Cobub Razor 0.8.0 【漏洞描述】由于'channel_name'和'platform'参数传输的字符串未经严格地检查和过滤导致SQL注入漏洞的存在