#漏洞 POC for CVE-2021-1656, an information disclosure in tpm.sys.
https://github.com/waleedassar/CVE-2021-1656
https://github.com/waleedassar/CVE-2021-1656
GitHub
GitHub - waleedassar/CVE-2021-1656
Contribute to waleedassar/CVE-2021-1656 development by creating an account on GitHub.
#漏洞 DD-WRT 缓冲区溢出漏洞(CVE-2021-27137)
https://ssd-disclosure.com/ssd-advisory-dd-wrt-upnp-buffer-overflow/
https://ssd-disclosure.com/ssd-advisory-dd-wrt-upnp-buffer-overflow/
SSD Secure Disclosure
SSD Advisory – DD-WRT UPNP Buffer Overflow - SSD Secure Disclosure
TL;DR Find out how a vulnerability in DD-WRT allows an unauthenticated attacker to overflow an internal buffer used by UPNP and trigger a code execution vulnerability. Vulnerability Summary DD-WRT is “is Linux-based firmware for wireless routers and access…
#漏洞 北京致远G6政务协同系统V6.1SP1 反射性xss漏洞 CVE-2020-20545
https://note.youdao.com/ynoteshare1/index.html?id=29f908204968a79233c1c0c80a59f8ff&type=note
https://note.youdao.com/ynoteshare1/index.html?id=29f908204968a79233c1c0c80a59f8ff&type=note
#漏洞 VMware vRealize Operations Manager API SSRF漏洞 (CVE-2021-21975)
https://github.com/projectdiscovery/nuclei-templates/blob/master/cves/2021/CVE-2021-21975.yaml
https://github.com/projectdiscovery/nuclei-templates/blob/master/cves/2021/CVE-2021-21975.yaml
GitHub
projectdiscovery/nuclei-templates
Community curated list of templates for the nuclei engine to find security vulnerabilities. - projectdiscovery/nuclei-templates
#漏洞 POC for CVE-2021-24098, a Denial Of Service bug in condrv.sys.
https://github.com/waleedassar/CVE-2021-24098
https://github.com/waleedassar/CVE-2021-24098
GitHub
GitHub - waleedassar/CVE-2021-24098: POC for CVE-2021-24098
POC for CVE-2021-24098. Contribute to waleedassar/CVE-2021-24098 development by creating an account on GitHub.
#漏洞 mongo-express中的远程代码执行-CVE-2020-24391
https://securitylab.github.com/advisories/GHSL-2020-131-mongo-express/
https://securitylab.github.com/advisories/GHSL-2020-131-mongo-express/
GitHub Security Lab
GHSL-2020-131: Remote Code Execution in mongo-express - CVE-2020-24391
Mongo-express uses safer-eval to validate user supplied javascript. Unfortunately safer-eval sandboxing capabilities are easily bypassed leading to RCE in the context of the node server.
#漏洞 Zero click vulnerability in Apple’s macOS Mail
https://mikko-kenttala.medium.com/zero-click-vulnerability-in-apples-macos-mail-59e0c14b106c
https://mikko-kenttala.medium.com/zero-click-vulnerability-in-apples-macos-mail-59e0c14b106c
Medium
Zero click vulnerability in Apple’s macOS Mail
Zero-Click Zip TL;DR