Skip to content
forked from Threekiii/CVE

Collection of CVE's with POC's

Notifications You must be signed in to change notification settings

senhaxor/CVE-INTEL

 
 

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

70 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

CVE

**[Disclaimer of Warranties] The technology, ideas and tools involved in this Warehouse are solely for the purpose of safety technology research and shall not be used by anyone for unauthorized penetration testing, for any unlawful purpose or for any profit, or at their own expense. **

No exp/poc, some with fixes

0x01 Project Navigation

  • 2022.12
  • CVE-2022-3328:Snapd Local Privilege Escalation vulnerability notification
  • CVE-2022-41080 41082:Microsoft Exchange Server OWASSRF Vulnerability Notice
  • CVE-2022-41966:XStream Denial of Service Vulnerability Announcement
  • CVE-2022-42475:Fortinet SSL VPN Remote Code Execution
  • CVE-2022-4262:Google Chrome V8 type obfuscation vulnerability advertisement
  • CVE-2022-45347:Apache ShardingSphere authentication bypass vulnerability advertisement
  • CVE-2022-46169:Cacti Command Injection Vulnerability
  • CVE-2022-47939:Linux Kernel ksmbd UAF Remote Code Execution vulnerability notice
  • 2023.01
  • CVE-2022-27596:QNAP QTSQuTS hero SQL Injection Vulnerability Notice
  • CVE-2022-39947 35845:Fortinet Command Injection Vulnerability Advertisement
  • CVE-2022-43396 44621:Apache Kylin Command Injection Vulnerability Advertisement
  • CVE-2022-43931:Synology VPN Plus Server Cross Border Write Vulnerability Notice
  • CVE-2022-45935:Apache James Server Information Disclosure Vulnerability Notice
  • CVE-2022-47966:Zoho ManageEngine OnPremise Multiple Products Remote Code Execution Vulnerability Notice
  • CVE-2023-21752:Windows Backup Service Privilege Escalation Vulnerability Notice
  • CVE-2023-21839:WebLogic Remote Code Execution vulnerability notice
  • CVE-2023-22602:Apache Shiro authentication bypass vulnerability advertisement
  • CVE-2023-23560:Lexmark Printer Server Side Request Spoofing Vulnerability Notice
  • VMware vRealize Log Insight Multiple High Risk Vulnerability Announcements
  • 2023.02
  • Microsoft Multiple Vulnerability Security Update Notice for Patch Day 2023-02
  • CVE-2021-42756 CVE-2022-39952:Fortinet Multiple Vulnerability Notices
  • CVE-2023-20858:VMware Carbon Black App Control Remote Code Execution vulnerability notice
  • CVE-2023-21608:Adobe Acrobat Reader Arbitrary Code Execution vulnerability notice
  • CVE-2023-22374:F5 BIG-IP Arbitrary Code Execution vulnerability notice
  • CVE-2023-22482 22736:Argo CD authentication bypass vulnerability advertisement
  • CVE-2023-22501:Jira Service Management ServerData Center Authentication Vulnerability Notice
  • CVE-2023-23477:IBM WebSphere Application Server Remote Code Execution vulnerability notice
  • CVE-2023-23529:Apple WebKit Arbitrary Code Execution vulnerability notice
  • CVE-2023-23752:Joomla Unauthorized Access Vulnerability Notice
  • CVE-2023-24998:Apache Commons FileUpload Denial of Service Vulnerability Announcement
  • CVE-2023-25194:Apache Kafka Connect Remote Code Execution vulnerability notice
  • CVE-2023-25725:HAProxy Request for Smuggling Vulnerability Notice
  • Generic e-cology9 SQL Injection Vulnerability Notice
  • 2023.03
  • Microsoft Multiple Vulnerability Security Update Notice for Patch Day 2023-03
  • CVE-2023-0050:GitLab Cross-Site Scripting Vulnerability Notice
  • CVE-2023-20860:Spring Framework authentication bypass vulnerability advertisement
  • CVE-2023-21716:Microsoft Word Remote Code Execution vulnerability notice
  • CVE-2023-21768:Windows Ancillary Function Local Privilege Escalation vulnerability notification
  • CVE-2023-22809:Sudo Privilege Escalation Vulnerability Notice
  • CVE-2023-23397:Microsoft Outlook Privilege Escalation Vulnerability Notice
  • CVE-2023-23638:Apache Dubbo Deserialization Vulnerability Advertisement
  • CVE-2023-25610:FortiOS & FortiProxy Remote Code Execution Vulnerability Notice
  • CVE-2023-27898 27905:Jenkins Cross-Site Scripting Vulnerability Notice
  • CVE-2023-28432:MinIO Information Disclosure Vulnerability Notice
  • CVE-2023-29059:3CXDesktop App Code Execution Vulnerability Notice
  • Smartbi Remote Command Execution Vulnerability Advertisement
  • 2023.04
  • Patch Day 2023-04: Oracle Multiple Product Vulnerability Security Risk Notices
  • Patch Day 2023-04: Microsoft Multiple Vulnerability Security Update Notice
  • CVE-2023-2033:Google Chrome V8 type obfuscation vulnerability advertisement
  • CVE-2023-20864 VMware Aria Operations for Logs Remote Code Execution
  • CVE-2023-20869 20870:VMware Workstation&Fusion Vulnerability Notice
  • CVE-2023-2136:Google Chrome Skia Integer Overflow Vulnerability Advertisement
  • CVE-2023-27524:Apache Superset authentication bypass vulnerability advertisement
  • CVE-2023-29017:vm2 Sandbox Escape Vulnerability Notification
  • RuiYou TianYi Application Virtualization System Remote Code Execution Vulnerability Notice
  • 2023.05
  • Microsoft Multiple Vulnerability Security Update Notice for Patch Day 2023-05
  • Apple WebKit Multiple Vulnerability Notices
  • CVE-2023-0386:Linux Kernel Privilege Escalation Vulnerability Notice
  • CVE-2023-2478:GitLab Code Execution Vulnerability Notice
  • CVE-2023-2825:GitLab Directory Traversal Vulnerability Advertisement
  • CVE-2023-29324:Windows MSHTML Platform security bypass vulnerability notification
  • CVE-2023-32233:Linux Kernel Privilege Escalation Vulnerability Notice
  • CVE-2023-33246:Apache RocketMQ Remote Code Execution vulnerability notice
  • Fanwei Multiple Vulnerability Notices
  • 2023.06
  • Patch Day 2023-06: Microsoft Multiple Vulnerability Security Update Notice
  • CVE-2023-1829:Linux Kernel Privilege Escalation Vulnerability Notice
  • CVE-2023-20887:VMware Aria Operations for Networks Command Injection Vulnerability Advertisement
  • CVE-2023-27997:Fortinet FortiOS SSL-VPN Remote Code Execution vulnerability notice
  • CVE-2023-3079:Google V8 type obfuscation vulnerability advertisement
  • CVE-2023-3128:Grafana authentication bypass vulnerability advertisement
  • CVE-2023-33299:FortiNAC Deserialization Vulnerability Advertisement
  • Nacos Cluster Raft Deserialization Vulnerability Advertisement
  • 2023.07
  • Microsoft Multiple Vulnerability Security Update Notice for Patch Day 2023-07
  • Atlassian Multiple Code Execution Vulnerability Notices
  • CVE-2023-31248:Linux Kernel Local Privilege Escalation vulnerability notification
  • CVE-2023-34478:Apache Shiro authentication bypass vulnerability advertisement
  • CVE-2023-3519:Citrix ADC Gateway Remote Code Execution vulnerability notice
  • CVE-2023-37582:Apache RocketMQ Remote Code Execution vulnerability notice
  • CVE-2023-38408:OpenSSH ssh-agent Remote Code Execution vulnerability notice
  • CVE-2023-38646:Metabase Remote Command Execution Vulnerability Advertisement
  • Smartbi Multiple High Risk Vulnerability Announcements
  • Generic E-Cology SQL Injection Vulnerability Security Notice
  • 2023.08
  • CVE-2023-36874:Windows Error Reporting Service privilege escalation vulnerability notification
  • CVE-2023-38831:RARLAB WinRAR Code Execution Vulnerability Notice
  • QNAP Multiple High Risk Vulnerability Announcements
  • Smartbi Authentication Bypass Vulnerability Advertisement-20230803
  • Smartbi Authentication Bypass Vulnerability Advertisement-20230824
  • VMware Aria Operations for Networks authentication bypass vulnerability advertisement
  • 2023.09
  • Patch Day 2023-09: Microsoft Multiple Vulnerability Security Update Notice
  • CVE-2023-26369:Adobe Acrobat Reader Code Execution Vulnerability Notice
  • CVE-2023-35359:Windows kernel privilege escalation vulnerability notification
  • CVE-2023-38146:Windows Themes Remote Code Execution vulnerability notice
  • CVE-2023-39361:Cacti Foreground SQL Injection Vulnerability Announcement
  • CVE-2023-42442:JumpServer Unauthorized Access Vulnerability Notice
  • CVE-2023-42820:JumpServer Password Reset Vulnerability
  • CVE-2023-4863:Google Chrome webp Heap Buffer Overflow Vulnerability Notification
  • CVE-2023-4998:GitLab authentication bypass vulnerability advertisement
  • CVE-2023-5217:Google Chrome libvpx Heap Buffer Overflow Vulnerability Notification
  • Remote OA Foreground Arbitrary User Password Reset Vulnerability Notice
  • 2023.10
  • 2023-10 Patch Day Oracle Multiple Product Vulnerability Security Risk Notices
  • Microsoft Multiple Vulnerability Security Update Notice for Patch Day 2023-10
  • Apache ActiveMQ Remote Code Execution vulnerability notice
  • CVE-2023-20198:Cisco IOS XE Web UI Privilege Escalation Vulnerability Notice
  • CVE-2023-34051:VMware Aria Operations for Logs Remote Code Execution vulnerability notice
  • CVE-2023-36802:Microsoft Streaming Agent Privilege Escalation Vulnerability Notice
  • CVE-2023-42824:Apple iOS iPadOS Local Privilege Escalation vulnerability notification
  • CVE-2023-46747:F5 BIG-IP Remote Code Execution vulnerability notice
  • CVE-2023-4966:Citrix NetScaler Information Disclosure Vulnerability Notice
  • 2023.11
  • Patch Day 2023-11: Microsoft Multiple Vulnerability Security Update Notice
  • CVE-2023-22518:Atlassian Confluence authentication bypass vulnerability advertisement
  • CVE-2023-4357:Google Chrome Information Disclosure Vulnerability Notice
  • CVE-2023-6345:Google Chrome skia integer overflow vulnerability advertisement
  • 2023.12
  • CVE-2022-41678:Apache ActiveMQ Jolokia Remote Code Execution vulnerability notice

0x02 Declaration

This project collects CVE vulnerability alerts /POC/EXP all from the Internet:

About

Collection of CVE's with POC's

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published