CVE PUSH ⚠️
432 subscribers
2 videos
752 links
Github CVE push
Github CVE 推送
Cve/Rce/Exploit/Redteam/漏洞利用/红队

Channel push 24/7 (real time)
频道全天候推送(实时)

This channel will be used to push CVEs.
If you need CVE and red team resource push please join @CVEhub
该频道将用于推送 CVE。需要CVE和红队资源推送请加入 @CVEhub
Download Telegram
** mimikatz ** 🔧Tool update
Tools name:mimikatz
Tools url:https://github.com/gentilkiwi/mimikatz/commit/c78b1cf37c517ae9d0e872447bb103da9fa6034a
commitUpdate log:
Revert to Visual Studio 2013 (due to an error in Microsoft headers, can't build in Win32)
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-34721
Github: https://github.com/sandpix/CVE-2022-34721-RCE-POC
Describe:
Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-34722.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-41049
Github: https://github.com/NathanScottGithub/CVE-2022-41049-POC
Describe:
Windows Mark of the Web Security Feature Bypass Vulnerability. This CVE ID is unique from CVE-2022-41091.
👏1
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-24491
Github: https://github.com/corelight/CVE-2022-24491
Describe:
Windows Network File System Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-24497.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-31007
Github: https://github.com/gscharf/CVE-2022-31007-Python-POC
Describe:
eLabFTW is an electronic lab notebook manager for research teams. Prior to version 4.3.0, a vulnerability allows an authenticated user with an administrator role in a team to assign itself system administrator privileges within the application, or create a new system administrator account. The issue has been corrected in eLabFTW version 4.3.0. In the context of eLabFTW, an administrator is a user account with certain privileges to manage users and content in their assigned team/teams. A system administrator account can manage all accounts, teams and edit system-wide settings within the application. The impact is not deemed as high, as it requires the attacker to have access to an administrator account. Regular user accounts cannot exploit this to gain admin rights. A workaround for one if the issues is removing the ability of administrators to create accounts.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-26265
Github: https://github.com/Inplex-sys/CVE-2022-26265
Describe:
Contao Managed Edition v1.5.0 was discovered to contain a remote command execution (RCE) vulnerability via the component php_cli parameter.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-43680
Github: https://github.com/nidhi7598/G3_expat-2.2.6_CVE-2022-43680
Describe:
In libexpat through 2.4.9, there is a use-after free caused by overeager destruction of a shared DTD in XML_ExternalEntityParserCreate in out-of-memory situations.
👍1
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-44721
Github: https://github.com/purplededa/CVE-2022-44721-CsFalconUninstaller
Describe:
**
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-24112
Github: https://github.com/Acczdy/CVE-2022-24112_POC
Describe:
An attacker can abuse the batch-requests plugin to send requests to bypass the IP restriction of Admin API. A default configuration of Apache APISIX (with default API key) is vulnerable to remote code execution. When the admin key was changed or the port of Admin API was changed to a port different from the data panel, the impact is lower. But there is still a risk to bypass the IP restriction of Apache APISIX's data panel. There is a check in the batch-requests plugin which overrides the client IP with its real remote IP. But due to a bug in the code, this check can be bypassed.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-2022
Github: https://github.com/sdfbjaksff/CVE-2022-2022
Describe:
Cross-site Scripting (XSS) - Stored in GitHub repository nocodb/nocodb prior to 0.91.7.
** xray ** 🔧Tool update
Tools name:xray
Tools url:https://github.com/chaitin/xray/commit/4f47fb13a2454590309eaf2279ba2c9a3b1150fe
commitUpdate log:
Fix Python3 Flask bug: ImportError: cannot import name 'escape' from 'jinja2' (/usr/local/lib/python3.9/dist-packages/jinja2/__init__.py) (#1680)

Signed-off-by: DroidKali <DroidKali@users.noreply.github.com>

Signed-off-by: DroidKali <DroidKali@users.noreply.github.com>
Co-authored-by: DroidKali <DroidKali@users.noreply.github.com>
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-31626
Github: https://github.com/amitlttwo/CVE-2022-31626
Describe:
In PHP versions 7.4.x below 7.4.30, 8.0.x below 8.0.20, and 8.1.x below 8.1.7, when pdo_mysql extension with mysqlnd driver, if the third party is allowed to supply host to connect to and the password for the connection, password of excessive length can trigger a buffer overflow in PHP, which can lead to a remote code execution vulnerability.
👾CVE SERVICE 🏷#CVE
Mumber: CVE-2022-20441
Github: https://github.com/nidhi7598/frameworks_base_AOSP_10_r33_CVE-2022-20441
Describe:
In navigateUpTo of Task.java, there is a possible way to launch an unexported intent handler due to a logic error in the code. This could lead to local escalation of privilege if the targeted app has an intent trampoline, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12L Android-13Android ID: A-238605611