Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 375

Количество 314 375

github логотип

GHSA-xw2c-pmxf-295h

больше 2 лет назад

Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via crafted file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xw29-mcqh-6v78

около 1 года назад

Missing Authorization vulnerability in G5Theme Grid Plus allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grid Plus: from n/a through 1.3.2.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xw28-c23x-fjj4

больше 3 лет назад

A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local users to obtain sensitive information from process memory or possibly gain privileges via crafted use of an application that relies on this module, as demonstrated by su and sudo.

EPSS: Низкий
github логотип

GHSA-xw28-8m8c-883v

больше 3 лет назад

An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xw27-x7r9-mg3q

10 месяцев назад

Cross-Site Request Forgery (CSRF) vulnerability in Lora77 WpZon – Amazon Affiliate Plugin allows Reflected XSS. This issue affects WpZon – Amazon Affiliate Plugin: from n/a through 1.3.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xw27-hxmj-gm8p

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: pstore/platform: Add check for kstrdup Add check for the return value of kstrdup() and return the error if it fails in order to avoid NULL pointer dereference.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xw27-78pr-xvhr

около 3 лет назад

The Icegram Express WordPress plugin before 5.5.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by any authenticated users, such as subscriber

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw27-367x-744q

больше 3 лет назад

Multiple open redirect vulnerabilities in the Suricata package before 1.0.6 for pfSense through 2.1.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the referer parameter to suricata_rules_flowbits.php or (2) the returl parameter to suricata_select_alias.php.

EPSS: Низкий
github логотип

GHSA-xw26-rv7f-j6w8

больше 3 лет назад

Windows Update Stack Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xw24-w9w2-xw4q

больше 3 лет назад

A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to increased privileges. An attacker can send a malicious IRP to trigger this vulnerability.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xw24-hc25-wx4x

4 месяца назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Chibueze Okechukwu SEO Pyramid seo-pyramid allows Reflected XSS.This issue affects SEO Pyramid: from n/a through <= 1.9.8.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw24-fjv7-8w94

больше 2 лет назад

A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw24-f63w-vq32

больше 3 лет назад

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue involves the "ATS" component. It allows attackers to obtain sensitive information by leveraging symlink mishandling.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xw24-98q7-5jvx

больше 3 лет назад

AVM Fritz!Box allows remote attackers to execute arbitrary commands via shell metacharacters in the var:lang parameter to cgi-bin/webcm.

EPSS: Высокий
github логотип

GHSA-xw22-wv29-3299

почти 5 лет назад

ApiKey secret could be revelated on network issue

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xvxx-vrh7-xh3v

больше 3 лет назад

A use after free in ANGLE in Google Chrome prior to 57.0.2987.98 for Windows allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xvxx-4fr3-55xv

около 1 месяца назад

Panda3D versions up to and including 1.10.16 deploy-stub contains a denial of service vulnerability due to unbounded stack allocation. The deploy-stub executable allocates argv_copy and argv_copy2 using alloca() based directly on the attacker-controlled argc value without validation. Supplying a large number of command-line arguments can exhaust stack space and propagate uninitialized stack memory into Python interpreter initialization, resulting in a reliable crash and undefined behavior.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xvxv-v375-9q9p

больше 3 лет назад

The Secure Kernel Mode feature in Microsoft Windows 10 Gold and 1511 allows local users to obtain sensitive information via a crafted application, aka "Windows Secure Kernel Mode Information Disclosure Vulnerability."

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-xvxv-2qp5-99vx

4 дня назад

Insecure Permissions vulnerability in avanquest Driver Updater v.9.1.57803.1174 allows a local attacker to escalate privileges via the Driver Updater Service windows component.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xvxr-rrxw-rfp9

11 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: EDAC/highbank: Fix memory leak in highbank_mc_probe() When devres_open_group() fails, it returns -ENOMEM without freeing memory allocated by edac_mc_alloc(). Call edac_mc_free() on the error handling path to avoid a memory leak. [ bp: Massage commit message. ]

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xw2c-pmxf-295h

Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via crafted file.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xw29-mcqh-6v78

Missing Authorization vulnerability in G5Theme Grid Plus allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grid Plus: from n/a through 1.3.2.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-xw28-c23x-fjj4

A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local users to obtain sensitive information from process memory or possibly gain privileges via crafted use of an application that relies on this module, as demonstrated by su and sudo.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-xw28-8m8c-883v

An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xw27-x7r9-mg3q

Cross-Site Request Forgery (CSRF) vulnerability in Lora77 WpZon – Amazon Affiliate Plugin allows Reflected XSS. This issue affects WpZon – Amazon Affiliate Plugin: from n/a through 1.3.

CVSS3: 7.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-xw27-hxmj-gm8p

In the Linux kernel, the following vulnerability has been resolved: pstore/platform: Add check for kstrdup Add check for the return value of kstrdup() and return the error if it fails in order to avoid NULL pointer dereference.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-xw27-78pr-xvhr

The Icegram Express WordPress plugin before 5.5.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by any authenticated users, such as subscriber

CVSS3: 8.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-xw27-367x-744q

Multiple open redirect vulnerabilities in the Suricata package before 1.0.6 for pfSense through 2.1.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the referer parameter to suricata_rules_flowbits.php or (2) the returl parameter to suricata_select_alias.php.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-xw26-rv7f-j6w8

Windows Update Stack Elevation of Privilege Vulnerability

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xw24-w9w2-xw4q

A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to increased privileges. An attacker can send a malicious IRP to trigger this vulnerability.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xw24-hc25-wx4x

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Chibueze Okechukwu SEO Pyramid seo-pyramid allows Reflected XSS.This issue affects SEO Pyramid: from n/a through <= 1.9.8.

CVSS3: 8.8
0%
Низкий
4 месяца назад
github логотип
GHSA-xw24-fjv7-8w94

A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request.

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xw24-f63w-vq32

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue involves the "ATS" component. It allows attackers to obtain sensitive information by leveraging symlink mishandling.

CVSS3: 5.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xw24-98q7-5jvx

AVM Fritz!Box allows remote attackers to execute arbitrary commands via shell metacharacters in the var:lang parameter to cgi-bin/webcm.

87%
Высокий
больше 3 лет назад
github логотип
GHSA-xw22-wv29-3299

ApiKey secret could be revelated on network issue

CVSS3: 8.1
0%
Низкий
почти 5 лет назад
github логотип
GHSA-xvxx-vrh7-xh3v

A use after free in ANGLE in Google Chrome prior to 57.0.2987.98 for Windows allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xvxx-4fr3-55xv

Panda3D versions up to and including 1.10.16 deploy-stub contains a denial of service vulnerability due to unbounded stack allocation. The deploy-stub executable allocates argv_copy and argv_copy2 using alloca() based directly on the attacker-controlled argc value without validation. Supplying a large number of command-line arguments can exhaust stack space and propagate uninitialized stack memory into Python interpreter initialization, resulting in a reliable crash and undefined behavior.

CVSS3: 5.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-xvxv-v375-9q9p

The Secure Kernel Mode feature in Microsoft Windows 10 Gold and 1511 allows local users to obtain sensitive information via a crafted application, aka "Windows Secure Kernel Mode Information Disclosure Vulnerability."

CVSS3: 3.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xvxv-2qp5-99vx

Insecure Permissions vulnerability in avanquest Driver Updater v.9.1.57803.1174 allows a local attacker to escalate privileges via the Driver Updater Service windows component.

CVSS3: 7.8
0%
Низкий
4 дня назад
github логотип
GHSA-xvxr-rrxw-rfp9

In the Linux kernel, the following vulnerability has been resolved: EDAC/highbank: Fix memory leak in highbank_mc_probe() When devres_open_group() fails, it returns -ENOMEM without freeing memory allocated by edac_mc_alloc(). Call edac_mc_free() on the error handling path to avoid a memory leak. [ bp: Massage commit message. ]

CVSS3: 5.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу