Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 354 225

Количество 354 225

github логотип

GHSA-xw2g-jpwv-r627

11 месяцев назад

A vulnerability was identified in itsourcecode Online Petshop Management System 1.0. Impacted is an unknown function of the file addcnp.php of the component Available Products Page. The manipulation of the argument name/description leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-xw2f-wfxf-vxq4

около 4 лет назад

An issue was discovered in STOPzilla AntiMalware 6.5.2.59. The driver file szkg64.sys contains a Denial of Service vulnerability due to not validating the output buffer address value from IOCtl 0x8000204F.

EPSS: Низкий
github логотип

GHSA-xw2f-vfw3-vvpp

больше 2 лет назад

PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-20621.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-xw2f-f9v2-gh6f

больше 4 лет назад

Authenticated administrators may override the system configuration file and cause a denial of service.

EPSS: Низкий
github логотип

GHSA-xw2f-57pj-jjw5

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to config/edituser.php; (2) location, (3) sessionid, and (4) vmname parameters to console.php; (5) vmrefid and (6) vmname parameters to forcerestart.php; and (7) vmname and (8) vmrefid parameters to forcesd.php. NOTE: some of these details are obtained from third party information.

EPSS: Низкий
github логотип

GHSA-xw2c-pmxf-295h

почти 3 года назад

Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via crafted file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xw2c-hrr9-4xwr

17 дней назад

SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the signin and signup operations of the RPC API without recursively validating it for non-computed values. When a record access method defines a SIGNIN or SIGNUP query and the RPC API is exposed to untrusted users, an unauthenticated attacker can encode a binary object containing a subquery using the bincode serialization format and supply it in place of credentials. The subquery is then executed within the database owner's SIGNIN/SIGNUP query under a system user session with the editor role, allowing the attacker to select, create, update, and delete non-IAM resources (though not view the query results directly, and not affect IAM resources, which require the owner role).

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw29-mcqh-6v78

больше 1 года назад

Missing Authorization vulnerability in G5Theme Grid Plus allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grid Plus: from n/a through 1.3.2.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xw28-c23x-fjj4

около 4 лет назад

A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local users to obtain sensitive information from process memory or possibly gain privileges via crafted use of an application that relies on this module, as demonstrated by su and sudo.

EPSS: Низкий
github логотип

GHSA-xw28-8m8c-883v

около 4 лет назад

An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xw27-x7r9-mg3q

больше 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Lora77 WpZon – Amazon Affiliate Plugin allows Reflected XSS. This issue affects WpZon – Amazon Affiliate Plugin: from n/a through 1.3.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xw27-hxmj-gm8p

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: pstore/platform: Add check for kstrdup Add check for the return value of kstrdup() and return the error if it fails in order to avoid NULL pointer dereference.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xw27-78pr-xvhr

больше 3 лет назад

The Icegram Express WordPress plugin before 5.5.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by any authenticated users, such as subscriber

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw27-367x-744q

около 4 лет назад

Multiple open redirect vulnerabilities in the Suricata package before 1.0.6 for pfSense through 2.1.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the referer parameter to suricata_rules_flowbits.php or (2) the returl parameter to suricata_select_alias.php.

EPSS: Низкий
github логотип

GHSA-xw26-rv7f-j6w8

около 4 лет назад

Windows Update Stack Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xw24-w9w2-xw4q

около 4 лет назад

A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to increased privileges. An attacker can send a malicious IRP to trigger this vulnerability.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xw24-hc25-wx4x

10 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Chibueze Okechukwu SEO Pyramid seo-pyramid allows Reflected XSS.This issue affects SEO Pyramid: from n/a through <= 1.9.8.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw24-fjv7-8w94

почти 3 года назад

A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xw24-f63w-vq32

около 4 лет назад

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue involves the "ATS" component. It allows attackers to obtain sensitive information by leveraging symlink mishandling.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xw24-98q7-5jvx

около 4 лет назад

AVM Fritz!Box allows remote attackers to execute arbitrary commands via shell metacharacters in the var:lang parameter to cgi-bin/webcm.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xw2g-jpwv-r627

A vulnerability was identified in itsourcecode Online Petshop Management System 1.0. Impacted is an unknown function of the file addcnp.php of the component Available Products Page. The manipulation of the argument name/description leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

CVSS3: 3.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-xw2f-wfxf-vxq4

An issue was discovered in STOPzilla AntiMalware 6.5.2.59. The driver file szkg64.sys contains a Denial of Service vulnerability due to not validating the output buffer address value from IOCtl 0x8000204F.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xw2f-vfw3-vvpp

PDF-XChange Editor XPS File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of XPS files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-20621.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xw2f-f9v2-gh6f

Authenticated administrators may override the system configuration file and cause a denial of service.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xw2f-57pj-jjw5

Multiple cross-site scripting (XSS) vulnerabilities in sample code in the XenServer Resource Kit in Citrix XenCenterWeb allow remote attackers to inject arbitrary web script or HTML via the (1) username parameter to config/edituser.php; (2) location, (3) sessionid, and (4) vmname parameters to console.php; (5) vmrefid and (6) vmname parameters to forcerestart.php; and (7) vmname and (8) vmrefid parameters to forcesd.php. NOTE: some of these details are obtained from third party information.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xw2c-pmxf-295h

Buffer overflow vulnerability in quote_for_pmake in asm/nasm.c in nasm before 2.15.05 allows attackers to cause a denial of service via crafted file.

CVSS3: 5.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-xw2c-hrr9-4xwr

SurrealDB before 1.5.5 (and 2.0.0-beta before 2.0.0-beta.3) accepts an arbitrary object in the signin and signup operations of the RPC API without recursively validating it for non-computed values. When a record access method defines a SIGNIN or SIGNUP query and the RPC API is exposed to untrusted users, an unauthenticated attacker can encode a binary object containing a subquery using the bincode serialization format and supply it in place of credentials. The subquery is then executed within the database owner's SIGNIN/SIGNUP query under a system user session with the editor role, allowing the attacker to select, create, update, and delete non-IAM resources (though not view the query results directly, and not affect IAM resources, which require the owner role).

CVSS3: 8.8
0%
Низкий
17 дней назад
github логотип
GHSA-xw29-mcqh-6v78

Missing Authorization vulnerability in G5Theme Grid Plus allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grid Plus: from n/a through 1.3.2.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-xw28-c23x-fjj4

A certain Red Hat build of the pam_ssh_agent_auth module on Red Hat Enterprise Linux (RHEL) 6 and Fedora Rawhide calls the glibc error function instead of the error function in the OpenSSH codebase, which allows local users to obtain sensitive information from process memory or possibly gain privileges via crafted use of an application that relies on this module, as demonstrated by su and sudo.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xw28-8m8c-883v

An issue was discovered in BTITeam XBTIT 2.5.4. When a user logs in, their password hash is rehashed using a predictable salt and stored in the "pass" cookie, which is not flagged as HTTPOnly. Due to the weak and predictable salt that is in place, an attacker who successfully steals this cookie can efficiently brute-force it to retrieve the user's cleartext password.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xw27-x7r9-mg3q

Cross-Site Request Forgery (CSRF) vulnerability in Lora77 WpZon – Amazon Affiliate Plugin allows Reflected XSS. This issue affects WpZon – Amazon Affiliate Plugin: from n/a through 1.3.

CVSS3: 7.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-xw27-hxmj-gm8p

In the Linux kernel, the following vulnerability has been resolved: pstore/platform: Add check for kstrdup Add check for the return value of kstrdup() and return the error if it fails in order to avoid NULL pointer dereference.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xw27-78pr-xvhr

The Icegram Express WordPress plugin before 5.5.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by any authenticated users, such as subscriber

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xw27-367x-744q

Multiple open redirect vulnerabilities in the Suricata package before 1.0.6 for pfSense through 2.1.4 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via (1) the referer parameter to suricata_rules_flowbits.php or (2) the returl parameter to suricata_select_alias.php.

2%
Низкий
около 4 лет назад
github логотип
GHSA-xw26-rv7f-j6w8

Windows Update Stack Elevation of Privilege Vulnerability

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xw24-w9w2-xw4q

A privilege escalation vulnerability exists in the IOCTL 0x9c406144 handling of IOBit Advanced SystemCare Ultimate 14.2.0.220. A specially crafted I/O request packet (IRP) can lead to increased privileges. An attacker can send a malicious IRP to trigger this vulnerability.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-xw24-hc25-wx4x

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Chibueze Okechukwu SEO Pyramid seo-pyramid allows Reflected XSS.This issue affects SEO Pyramid: from n/a through <= 1.9.8.

CVSS3: 8.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-xw24-fjv7-8w94

A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request.

CVSS3: 8.8
1%
Низкий
почти 3 года назад
github логотип
GHSA-xw24-f63w-vq32

An issue was discovered in certain Apple products. macOS before 10.13.4 is affected. The issue involves the "ATS" component. It allows attackers to obtain sensitive information by leveraging symlink mishandling.

CVSS3: 5.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-xw24-98q7-5jvx

AVM Fritz!Box allows remote attackers to execute arbitrary commands via shell metacharacters in the var:lang parameter to cgi-bin/webcm.

72%
Высокий
около 4 лет назад

Уязвимостей на страницу