Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 354 500

Количество 354 500

github логотип

GHSA-xvhr-7q4q-qjgp

около 4 лет назад

thinkphp SQL Injection via the index.php s parameter

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xvhr-5h5w-3gx4

около 4 лет назад

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Information Disclosure Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

CVSS3: 5.5
EPSS: Средний
github логотип

GHSA-xvhr-3rcv-j8f8

больше 2 лет назад

A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthenticated attackers to inject arbitrary SQL commands via the PmbOpac-LOGIN cookie value.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xvhq-v5ww-mmhx

около 4 лет назад

SQL injection vulnerability in the Intellectual Property (aka IProperty or com_iproperty) component 1.5.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an agentproperties action to index.php.

EPSS: Низкий
github логотип

GHSA-xvhq-qx4p-j8j9

около 4 лет назад

Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2099.

EPSS: Низкий
github логотип

GHSA-xvhq-qrmp-cx9w

7 месяцев назад

Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by exploiting a stack overflow in the messenger's protocol. Attackers can send specially crafted XML packets to port 10883 with a malicious payload to trigger the vulnerability and execute commands with system privileges.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xvhq-9p7m-5c3c

больше 4 лет назад

Buffer underflow in redlight.sys in BufferZone 2.1 and 2.5 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by sending a small buffer size value to the FsSetVolumeInformation IOCTL handler code with a FsSetDirectoryInformation subcode containing a large buffer.

EPSS: Низкий
github логотип

GHSA-xvhq-4mp3-f354

больше 4 лет назад

SQL injection vulnerability in modules.php in NukeJokes 1.7 and 2 Beta allows remote attackers to execute arbitrary SQL via the jokeid parameter.

EPSS: Низкий
github логотип

GHSA-xvhp-xj53-p6h7

около 2 лет назад

An improper access control vulnerability exists in lunary-ai/lunary versions up to and including 1.2.2, where an admin can update any organization user to the organization owner. This vulnerability allows the elevated user to delete projects within the organization. The issue is resolved in version 1.2.7.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xvhp-cm9x-2m2h

около 4 лет назад

A vulnerability in the web-based management interface for Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to impact the integrity of an affected system by executing arbitrary SQL queries. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending crafted input that includes SQL statements to an affected system. A successful exploit could allow the attacker to modify entries in some database tables, affecting the integrity of the data.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xvhp-2844-v475

больше 2 лет назад

An issue in angel coffee mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xvhm-h729-47f2

около 4 лет назад

Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality and integrity via vectors related to File Folders / URL Attachment.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xvhj-83gv-vjmg

больше 4 лет назад

Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.

EPSS: Низкий
github логотип

GHSA-xvhh-x8q7-xrxj

15 дней назад

Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server, MySQL Cluster accessible data. CVSS 3.1 Base Score 2.9 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N).

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-xvhg-w6qc-m3qq

почти 3 года назад

Yaklang Plugin's Fuzztag Component Allows Unauthorized Local File Reading

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xvhg-pwg9-qp4r

около 4 лет назад

PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 does not properly handle errors while reading a protocol message, which allows remote attackers to conduct SQL injection attacks via crafted binary data in a parameter and causing an error, which triggers the loss of synchronization and part of the protocol message to be treated as a new message, as demonstrated by causing a timeout or query cancellation.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xvhg-76qh-24v9

11 дней назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() hci_abort_conn() read hci_skb_event(hdev->sent_cmd) when a connection was pending, but hdev->sent_cmd can be NULL while req_status is still HCI_REQ_PEND, leading to a NULL pointer dereference and a general protection fault from the hci_rx_work() receive path. Instead of inspecting hdev->sent_cmd, track the in-flight create connection command with a new per-connection HCI_CONN_CREATE flag and route all cancellation through hci_cancel_connect_sync(), which dispatches to a dedicated per-type cancel function. The create command is in exactly one of two states: still queued, or in flight. The cancel function holds cmd_sync_work_lock across the whole decision: the worker takes this lock to dequeue every entry, so while it is held a queued command cannot start running and an in-flight command cannot complete and let the next command become pending. This keeps t...

EPSS: Низкий
github логотип

GHSA-xvhf-x56f-2hpp

6 месяцев назад

OpenClaw exec approvals: safeBins could bypass stdin-only constraints via shell expansion

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-xvhf-q744-5xm8

около 4 лет назад

XXE vulnerability in NUnit Plugin

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-xvhc-r5q4-hcgj

около 2 месяцев назад

InCopy versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xvhr-7q4q-qjgp

thinkphp SQL Injection via the index.php s parameter

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xvhr-5h5w-3gx4

An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory, aka "Windows GDI Information Disclosure Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

CVSS3: 5.5
59%
Средний
около 4 лет назад
github логотип
GHSA-xvhr-3rcv-j8f8

A SQL Injection vulnerability in /pmb/opac_css/includes/sessions.inc.php in PMB 7.4.7 and earlier allows remote unauthenticated attackers to inject arbitrary SQL commands via the PmbOpac-LOGIN cookie value.

CVSS3: 9.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xvhq-v5ww-mmhx

SQL injection vulnerability in the Intellectual Property (aka IProperty or com_iproperty) component 1.5.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an agentproperties action to index.php.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xvhq-qx4p-j8j9

Adobe Reader and Acrobat 8.x before 8.3, 9.x before 9.4.5, and 10.x before 10.1 on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-2099.

7%
Низкий
около 4 лет назад
github логотип
GHSA-xvhq-qrmp-cx9w

Inbit Messenger 4.6.0 - 4.9.0 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands by exploiting a stack overflow in the messenger's protocol. Attackers can send specially crafted XML packets to port 10883 with a malicious payload to trigger the vulnerability and execute commands with system privileges.

CVSS3: 9.8
1%
Низкий
7 месяцев назад
github логотип
GHSA-xvhq-9p7m-5c3c

Buffer underflow in redlight.sys in BufferZone 2.1 and 2.5 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by sending a small buffer size value to the FsSetVolumeInformation IOCTL handler code with a FsSetDirectoryInformation subcode containing a large buffer.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xvhq-4mp3-f354

SQL injection vulnerability in modules.php in NukeJokes 1.7 and 2 Beta allows remote attackers to execute arbitrary SQL via the jokeid parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xvhp-xj53-p6h7

An improper access control vulnerability exists in lunary-ai/lunary versions up to and including 1.2.2, where an admin can update any organization user to the organization owner. This vulnerability allows the elevated user to delete projects within the organization. The issue is resolved in version 1.2.7.

CVSS3: 8.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-xvhp-cm9x-2m2h

A vulnerability in the web-based management interface for Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to impact the integrity of an affected system by executing arbitrary SQL queries. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending crafted input that includes SQL statements to an affected system. A successful exploit could allow the attacker to modify entries in some database tables, affecting the integrity of the data.

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-xvhp-2844-v475

An issue in angel coffee mini-app on Line v13.6.1 allows attackers to send crafted malicious notifications via leakage of the channel access token.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xvhm-h729-47f2

Unspecified vulnerability in the Oracle Agile PLM component in Oracle Supply Chain Products Suite 9.3.4 and 9.3.5 allows remote authenticated users to affect confidentiality and integrity via vectors related to File Folders / URL Attachment.

CVSS3: 5.4
1%
Низкий
около 4 лет назад
github логотип
GHSA-xvhj-83gv-vjmg

Buffer overflow in L0pht AntiSniff allows remote attackers to execute arbitrary commands via a malformed DNS response packet.

8%
Низкий
больше 4 лет назад
github логотип
GHSA-xvhh-x8q7-xrxj

Vulnerability in the MySQL Server, MySQL Cluster product of Oracle MySQL (component: Server: Pluggable Auth). Supported versions that are affected are MySQL Server: 8.4.0-8.4.10, 9.7.0-9.7.1; MySQL Cluster: 8.0.0-8.0.47, 8.4.0-8.4.10 and 9.7.0-9.7.1. Difficult to exploit vulnerability allows unauthenticated attacker with logon to the infrastructure where MySQL Server, MySQL Cluster executes to compromise MySQL Server, MySQL Cluster. Successful attacks of this vulnerability can result in unauthorized update, insert or delete access to some of MySQL Server, MySQL Cluster accessible data. CVSS 3.1 Base Score 2.9 (Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N).

CVSS3: 2.9
0%
Низкий
15 дней назад
github логотип
GHSA-xvhg-w6qc-m3qq

Yaklang Plugin's Fuzztag Component Allows Unauthorized Local File Reading

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-xvhg-pwg9-qp4r

PostgreSQL before 9.0.19, 9.1.x before 9.1.15, 9.2.x before 9.2.10, 9.3.x before 9.3.6, and 9.4.x before 9.4.1 does not properly handle errors while reading a protocol message, which allows remote attackers to conduct SQL injection attacks via crafted binary data in a parameter and causing an error, which triggers the loss of synchronization and part of the protocol message to be treated as a new message, as demonstrated by causing a timeout or query cancellation.

CVSS3: 9.8
4%
Низкий
около 4 лет назад
github логотип
GHSA-xvhg-76qh-24v9

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: Fix null ptr deref in hci_abort_conn() hci_abort_conn() read hci_skb_event(hdev->sent_cmd) when a connection was pending, but hdev->sent_cmd can be NULL while req_status is still HCI_REQ_PEND, leading to a NULL pointer dereference and a general protection fault from the hci_rx_work() receive path. Instead of inspecting hdev->sent_cmd, track the in-flight create connection command with a new per-connection HCI_CONN_CREATE flag and route all cancellation through hci_cancel_connect_sync(), which dispatches to a dedicated per-type cancel function. The create command is in exactly one of two states: still queued, or in flight. The cancel function holds cmd_sync_work_lock across the whole decision: the worker takes this lock to dequeue every entry, so while it is held a queued command cannot start running and an in-flight command cannot complete and let the next command become pending. This keeps t...

0%
Низкий
11 дней назад
github логотип
GHSA-xvhf-x56f-2hpp

OpenClaw exec approvals: safeBins could bypass stdin-only constraints via shell expansion

CVSS3: 5.7
0%
Низкий
6 месяцев назад
github логотип
GHSA-xvhf-q744-5xm8

XXE vulnerability in NUnit Plugin

CVSS3: 7.6
1%
Низкий
около 4 лет назад
github логотип
GHSA-xvhc-r5q4-hcgj

InCopy versions 21.3, 20.5.3 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу