Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 323 339

Количество 323 339

github логотип

GHSA-xwmv-w8ff-6vr2

почти 4 года назад

Comodo Firewall Pro before 3.0 does not properly validate certain parameters to hooked System Service Descriptor Table (SSDT) functions, which allows local users to cause a denial of service (system crash) via (1) a crafted OBJECT_ATTRIBUTES structure in a call to the NtDeleteFile function, which leads to improper validation of a ZwQueryObject result; and unspecified calls to the (2) NtCreateFile and (3) NtSetThreadContext functions, different vectors than CVE-2007-0709.

EPSS: Низкий
github логотип

GHSA-xwmv-cx7p-fqfc

около 2 лет назад

caddy-security plugin for Caddy vulnerable to reflected Cross-site Scripting

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xwmv-cv85-273r

больше 2 лет назад

A vulnerability was found in Beijing Baichuo S210 up to 20231121. It has been classified as critical. This affects an unknown part of the file /Tool/repair.php of the component HTTP POST Request Handler. The manipulation of the argument txt leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-247155. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xwmr-ccg5-4jf3

почти 4 года назад

The DHC Online Shop App for Android version 3.2.0 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-xwmp-g6vx-f3x4

почти 4 года назад

The (1) lost password and (2) account pending features in GForge 4.5 do not properly set a limit on the number of e-mails sent to an e-mail address, which allows remote attackers to send a large number of messages to arbitrary e-mail addresses (aka mail bomb).

EPSS: Низкий
github логотип

GHSA-xwmm-qmxv-wfh3

2 месяца назад

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) ship with a predefined default password for a built-in authentication account that is not required to be changed during initial configuration. An attacker can leverage these default credentials to gain authenticated access to the management interface.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xwmm-6jfq-vvfp

почти 4 года назад

IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142967.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xwmj-j245-94g9

почти 4 года назад

The Quick Buttons feature in Konversation 0.15 allows remote attackers to execute certain IRC commands via a channel name containing "%" variables, which are recursively expanded by the Server::parseWildcards function when the Part Button is selected.

EPSS: Средний
github логотип

GHSA-xwmg-2g98-w7v9

9 месяцев назад

Nimbus JOSE + JWT is vulnerable to DoS attacks when processing deeply nested JSON

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-xwmf-vq46-mhwp

почти 4 года назад

Integer overflow in Adobe Shockwave Player before 11.5.7.609 might allow remote attackers to execute arbitrary code via a crafted .dir (aka Director) file.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xwmc-cj49-wgpx

почти 4 года назад

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint. This CVE ID is unique from CVE-2018-8431.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xwm9-v4gv-cw38

почти 4 года назад

IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address controls Branch Selection starting at PDF!xmlParserInputRead+0x00000000001168a1."

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xwm9-c4jc-crcp

почти 4 года назад

A code execution vulnerability exists in the dwgCompressor::copyCompBytes21 functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dwg file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xwm9-3855-qxw3

почти 4 года назад

Cross-Site Scripting (XSS) vulnerability has been identified in Micro Focus Operations Manager i, versions 10.60, 10.61, 10.62. The vulnerability could be remotely exploited to allow Cross-Site Scripting (XSS).

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xwm8-ff5h-57g6

почти 4 года назад

Stack-based buffer overflow in the Core Foundation Library in Mac OS X 10.3.5 and 10.3.6, and possibly earlier versions, allows local users to execute arbitrary code via a long CF_CHARSET_PATH environment variable.

EPSS: Низкий
github логотип

GHSA-xwm8-c743-c377

почти 4 года назад

SaltOS 3.1 r8126 allows action=login&querystring=&user=[SQL] SQL Injection.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xwm7-qf33-7c64

почти 4 года назад

Xythos Enterprise Document Manager (XEDM), Digital Locker (XDL), and possibly WebFile Server before 6.0.46.1 allow remote authenticated users to associate arbitrary Content-Type HTTP headers with documents, which might facilitate malware distribution.

EPSS: Низкий
github логотип

GHSA-xwm7-6hf7-46pp

почти 4 года назад

Buffer overflow in the legacy client support for AFP Server for Mac OS X 10.4.1 allows attackers to execute arbitrary code.

EPSS: Низкий
github логотип

GHSA-xwm6-w9x3-p4hx

почти 4 года назад

Some Lenovo brand notebook systems do not have write protections properly configured in the system BIOS. This could enable an attacker with physical or administrative access to a system to be able to flash the BIOS with an arbitrary image and potentially run malicious BIOS code.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-xwm6-35hh-fmxm

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ext4: set goal start correctly in ext4_mb_normalize_request We need to set ac_g_ex to notify the goal start used in ext4_mb_find_by_goal. Set ac_g_ex instead of ac_f_ex in ext4_mb_normalize_request. Besides we should assure goal start is in range [first_data_block, blocks_count) as ext4_mb_initialize_context does. [ Added a check to make sure size is less than ar->pright; otherwise we could end up passing an underflowed value of ar->pright - size to ext4_get_group_no_and_offset(), which will trigger a BUG_ON later on. - TYT ]

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xwmv-w8ff-6vr2

Comodo Firewall Pro before 3.0 does not properly validate certain parameters to hooked System Service Descriptor Table (SSDT) functions, which allows local users to cause a denial of service (system crash) via (1) a crafted OBJECT_ATTRIBUTES structure in a call to the NtDeleteFile function, which leads to improper validation of a ZwQueryObject result; and unspecified calls to the (2) NtCreateFile and (3) NtSetThreadContext functions, different vectors than CVE-2007-0709.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xwmv-cx7p-fqfc

caddy-security plugin for Caddy vulnerable to reflected Cross-site Scripting

CVSS3: 6.1
1%
Низкий
около 2 лет назад
github логотип
GHSA-xwmv-cv85-273r

A vulnerability was found in Beijing Baichuo S210 up to 20231121. It has been classified as critical. This affects an unknown part of the file /Tool/repair.php of the component HTTP POST Request Handler. The manipulation of the argument txt leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-247155. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xwmr-ccg5-4jf3

The DHC Online Shop App for Android version 3.2.0 and earlier does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS3: 7.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-xwmp-g6vx-f3x4

The (1) lost password and (2) account pending features in GForge 4.5 do not properly set a limit on the number of e-mails sent to an e-mail address, which allows remote attackers to send a large number of messages to arbitrary e-mail addresses (aka mail bomb).

1%
Низкий
почти 4 года назад
github логотип
GHSA-xwmm-qmxv-wfh3

Shenzhen Tenda W30E V2 firmware versions up to and including V16.01.0.19(5037) ship with a predefined default password for a built-in authentication account that is not required to be changed during initial configuration. An attacker can leverage these default credentials to gain authenticated access to the management interface.

CVSS3: 9.8
0%
Низкий
2 месяца назад
github логотип
GHSA-xwmm-6jfq-vvfp

IBM Sterling B2B Integrator Standard Edition (IBM Sterling File Gateway 2.2.0 through 2.2.6) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 142967.

CVSS3: 5.4
2%
Низкий
почти 4 года назад
github логотип
GHSA-xwmj-j245-94g9

The Quick Buttons feature in Konversation 0.15 allows remote attackers to execute certain IRC commands via a channel name containing "%" variables, which are recursively expanded by the Server::parseWildcards function when the Part Button is selected.

15%
Средний
почти 4 года назад
github логотип
GHSA-xwmg-2g98-w7v9

Nimbus JOSE + JWT is vulnerable to DoS attacks when processing deeply nested JSON

CVSS3: 5.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-xwmf-vq46-mhwp

Integer overflow in Adobe Shockwave Player before 11.5.7.609 might allow remote attackers to execute arbitrary code via a crafted .dir (aka Director) file.

CVSS3: 8.8
10%
Низкий
почти 4 года назад
github логотип
GHSA-xwmc-cj49-wgpx

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint. This CVE ID is unique from CVE-2018-8431.

CVSS3: 5.4
1%
Низкий
почти 4 года назад
github логотип
GHSA-xwm9-v4gv-cw38

IrfanView version 4.44 (32bit) with PDF plugin version 4.43 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .pdf file, related to "Data from Faulting Address controls Branch Selection starting at PDF!xmlParserInputRead+0x00000000001168a1."

CVSS3: 7.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-xwm9-c4jc-crcp

A code execution vulnerability exists in the dwgCompressor::copyCompBytes21 functionality of LibreCad libdxfrw 2.2.0-rc2-19-ge02f3580. A specially-crafted .dwg file can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 8.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-xwm9-3855-qxw3

Cross-Site Scripting (XSS) vulnerability has been identified in Micro Focus Operations Manager i, versions 10.60, 10.61, 10.62. The vulnerability could be remotely exploited to allow Cross-Site Scripting (XSS).

CVSS3: 5.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-xwm8-ff5h-57g6

Stack-based buffer overflow in the Core Foundation Library in Mac OS X 10.3.5 and 10.3.6, and possibly earlier versions, allows local users to execute arbitrary code via a long CF_CHARSET_PATH environment variable.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xwm8-c743-c377

SaltOS 3.1 r8126 allows action=login&querystring=&user=[SQL] SQL Injection.

CVSS3: 9.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-xwm7-qf33-7c64

Xythos Enterprise Document Manager (XEDM), Digital Locker (XDL), and possibly WebFile Server before 6.0.46.1 allow remote authenticated users to associate arbitrary Content-Type HTTP headers with documents, which might facilitate malware distribution.

1%
Низкий
почти 4 года назад
github логотип
GHSA-xwm7-6hf7-46pp

Buffer overflow in the legacy client support for AFP Server for Mac OS X 10.4.1 allows attackers to execute arbitrary code.

1%
Низкий
почти 4 года назад
github логотип
GHSA-xwm6-w9x3-p4hx

Some Lenovo brand notebook systems do not have write protections properly configured in the system BIOS. This could enable an attacker with physical or administrative access to a system to be able to flash the BIOS with an arbitrary image and potentially run malicious BIOS code.

CVSS3: 6.7
0%
Низкий
почти 4 года назад
github логотип
GHSA-xwm6-35hh-fmxm

In the Linux kernel, the following vulnerability has been resolved: ext4: set goal start correctly in ext4_mb_normalize_request We need to set ac_g_ex to notify the goal start used in ext4_mb_find_by_goal. Set ac_g_ex instead of ac_f_ex in ext4_mb_normalize_request. Besides we should assure goal start is in range [first_data_block, blocks_count) as ext4_mb_initialize_context does. [ Added a check to make sure size is less than ar->pright; otherwise we could end up passing an underflowed value of ar->pright - size to ext4_get_group_no_and_offset(), which will trigger a BUG_ON later on. - TYT ]

0%
Низкий
3 месяца назад

Уязвимостей на страницу