nuclei-templates/cves
GwanYeong Kim 2d53221aea Create CVE-2022-23178.yaml
An issue was discovered on Crestron HD-MD4X2-4K-E 1.0.0.2159 devices. When the administrative web interface of the HDMI switcher is accessed unauthenticated, user credentials are disclosed that are valid to authenticate to the web interface. Specifically, aj.html sends a JSON document with uname and upassword fields.

Signed-off-by: GwanYeong Kim <gy741.kim@gmail.com>
2022-01-23 20:28:25 +09:00
..
2000 Added additional path 2021-11-26 22:17:35 +05:30
2001 Enhancement: cves/2001/CVE-2001-1473.yaml by Chris 2022-01-21 13:58:26 -05:00
2002 Update CVE-2002-1131.yaml 2021-11-16 15:40:56 +05:30
2004 Update CVE-2004-0519.yaml 2021-11-16 15:43:03 +05:30
2005 Merge branch 'master' into dynamic_attributes 2021-08-19 16:23:26 +03:00
2006 Update CVE-2006-2842.yaml 2021-11-16 15:43:43 +05:30
2007 Updated all templates tags with technologies (#3478) 2022-01-05 01:04:16 +05:30
2008 Updated all templates tags with technologies (#3478) 2022-01-05 01:04:16 +05:30
2009 Added CVE-2012-4547 / CVE-2009-5020 (#3575) 2022-01-21 16:37:41 +05:30
2010 Updated all templates tags with technologies (#3478) 2022-01-05 01:04:16 +05:30
2011 updates 2021-09-28 16:12:51 +05:30
2012 Added CVE-2012-4547 / CVE-2009-5020 (#3575) 2022-01-21 16:37:41 +05:30
2013 [Add] - Zimbra unauthenticated LFI (#3571) 2022-01-21 13:02:08 +05:30
2014 Update CVE-2014-3206.yaml 2022-01-11 14:57:24 +05:30
2015 Network template updates & fixes (#3497) 2022-01-07 12:58:37 +05:30
2016 Network template updates & fixes (#3497) 2022-01-07 12:58:37 +05:30
2017 Auto Generated CVE annotations [Sat Jan 15 20:36:52 UTC 2022] 🤖 2022-01-15 20:36:52 +00:00
2018 Network template updates & fixes (#3497) 2022-01-07 12:58:37 +05:30
2019 Network template updates & fixes (#3497) 2022-01-07 12:58:37 +05:30
2020 Create check for cve-2020-24391 mongo-express RCE (#3566) 2022-01-20 14:55:01 +05:30
2021 more updates 2022-01-22 23:27:52 +05:30
2022 Create CVE-2022-23178.yaml 2022-01-23 20:28:25 +09:00