Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 928

Количество 314 928

github логотип

GHSA-xv5v-4g23-pxj9

почти 4 года назад

Buffer overflow in blaxxun 3D 7.0 allows remote attackers to execute arbitrary code via a long URL property inside an object tag.

EPSS: Низкий
github логотип

GHSA-xv5r-jf97-8xjm

около 4 лет назад

An information disclosure vulnerability in the login page of Huntflow Enterprise before 3.10.4 could allow an unauthenticated, remote user to get information about the domain name of the configured LDAP server. An attacker could exploit this vulnerability by requesting the login page and searching for the "isLdap" JavaScript parameter in the HTML source code.

EPSS: Низкий
github логотип

GHSA-xv5r-44m2-6q3g

больше 1 года назад

An Cross site scripting vulnerability in the EDR XConsole before this release allowed an attacker to potentially leverage an XSS/HTML-Injection using command line variables. A malicious threat actor could execute commands on the victim's browser for sending carefully crafted malicious links to the EDR XConsole end user.

CVSS3: 4.1
EPSS: Низкий
github логотип

GHSA-xv5q-xvvq-gvcm

больше 2 лет назад

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Greg Ross Schedule Posts Calendar plugin <= 5.2 versions.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xv5q-r8xx-69mw

больше 3 лет назад

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow (1) remote attackers to execute arbitrary SQL commands via the number parameter to opac-tags_subject.pl in the OPAC interface or (2) remote authenticated users to execute arbitrary SQL commands via the Filter or (3) Criteria parameter to reports/borrowers_out.pl in the Staff interface.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xv5p-prx7-chgr

больше 3 лет назад

Protection Mechanism Failure in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows a local attacker to duplicate an authentication factor via cloning.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xv5p-fjw5-vrj6

3 месяца назад

Fugue is Vulnerable to Remote Code Execution by Pickle Deserialization via FlaskRPCServer

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xv5j-xw3x-cwr6

больше 3 лет назад

Use after free in ANGLE in Google Chrome prior to 101.0.4951.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xv5j-gfm8-3c7j

больше 3 лет назад

BigTree 4.2.23 on Windows, when Advanced or Simple Rewrite routing is enabled, allows remote attackers to bypass authentication via a ..\ substring, as demonstrated by a launch.php?bigtree_htaccess_url=admin/images/..\ URI.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xv5h-v7jh-p2qh

почти 5 лет назад

Authentication bypass for specific endpoint

EPSS: Критический
github логотип

GHSA-xv5h-j798-x927

около 3 лет назад

Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via UI interactions. (Chromium security severity: Medium)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xv5g-r83r-j2g9

больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in apply.cgi in Belkin N300 (F7D7301v1) router allows remote attackers to hijack the authentication of administrators for requests that modify configuration.

EPSS: Низкий
github логотип

GHSA-xv5g-jfvh-hgph

почти 2 года назад

Inappropriate pointer order of map_sub_ and map_free(map_) (amcl_node.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions leads to a use-after-free.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xv5g-h355-j9v9

больше 3 лет назад

Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks. A bounds check which was supposed to test for chunk offsets smaller than the beginning of the request did not work because of signed/unsigned confusion. If one of these chunks contains a negative offset then data under control of the server is written to memory before the read buffer supplied by the client. If the read buffer is located on the stack then this allows the stack return address from nbd_pread() to be trivially modified, allowing arbitrary code execution under the control of the server. If the buffer is located on the heap then other memory objects before the buffer can be overwritten, which again would usually lead to arbitrary code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xv5g-cq95-4rcm

около 2 лет назад

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xv5g-36c6-hqwj

7 месяцев назад

Deserialization of Untrusted Data vulnerability in jetmonsters JetFormBuilder allows Object Injection. This issue affects JetFormBuilder: from n/a through 3.5.1.2.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xv5f-2997-qhrq

больше 3 лет назад

Craft CMS XSS Vulnerability

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xv5c-vg59-hj7x

8 месяцев назад

There is a "Use After Free" vulnerability in Qt's QHttp2ProtocolHandler in the QtNetwork module. This only affects HTTP/2 handling, HTTP handling is not affected by this at all. This happens due to a race condition between how QHttp2Stream uploads the body of a POST request and the simultaneous handling of HTTP error responses. This issue only affects Qt 6.9.0 and has been fixed for Qt 6.9.1.

EPSS: Низкий
github логотип

GHSA-xv59-gc3r-rf92

больше 3 лет назад

Insufficient Session Expiration in Nakama

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xv59-3gpf-c92h

больше 3 лет назад

There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system does not sufficiently verify the permission, an attacker could do a certain operation on certain step of setup wizard. Successful exploit could allow the attacker bypass the FRP protection. Affected products: Mate 20 X, versions earlier than Ever-AL00B 9.0.0.200(C00E200R2P1); Mate 20, versions earlier than Hima-AL00B/Hima-TL00B 9.0.0.200(C00E200R2P1); Honor Magic 2, versions earlier than Tony-AL00B/Tony-TL00B 9.0.0.182(C00E180R2P2).

CVSS3: 4.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xv5v-4g23-pxj9

Buffer overflow in blaxxun 3D 7.0 allows remote attackers to execute arbitrary code via a long URL property inside an object tag.

6%
Низкий
почти 4 года назад
github логотип
GHSA-xv5r-jf97-8xjm

An information disclosure vulnerability in the login page of Huntflow Enterprise before 3.10.4 could allow an unauthenticated, remote user to get information about the domain name of the configured LDAP server. An attacker could exploit this vulnerability by requesting the login page and searching for the "isLdap" JavaScript parameter in the HTML source code.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xv5r-44m2-6q3g

An Cross site scripting vulnerability in the EDR XConsole before this release allowed an attacker to potentially leverage an XSS/HTML-Injection using command line variables. A malicious threat actor could execute commands on the victim's browser for sending carefully crafted malicious links to the EDR XConsole end user.

CVSS3: 4.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-xv5q-xvvq-gvcm

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Greg Ross Schedule Posts Calendar plugin <= 5.2 versions.

CVSS3: 5.9
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xv5q-r8xx-69mw

Multiple SQL injection vulnerabilities in Koha 3.14.x before 3.14.16, 3.16.x before 3.16.12, 3.18.x before 3.18.08, and 3.20.x before 3.20.1 allow (1) remote attackers to execute arbitrary SQL commands via the number parameter to opac-tags_subject.pl in the OPAC interface or (2) remote authenticated users to execute arbitrary SQL commands via the Filter or (3) Criteria parameter to reports/borrowers_out.pl in the Staff interface.

CVSS3: 9.8
4%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5p-prx7-chgr

Protection Mechanism Failure in ECOS Secure Boot Stick (aka SBS) 5.6.5 allows a local attacker to duplicate an authentication factor via cloning.

CVSS3: 5.9
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5p-fjw5-vrj6

Fugue is Vulnerable to Remote Code Execution by Pickle Deserialization via FlaskRPCServer

CVSS3: 8.8
1%
Низкий
3 месяца назад
github логотип
GHSA-xv5j-xw3x-cwr6

Use after free in ANGLE in Google Chrome prior to 101.0.4951.64 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5j-gfm8-3c7j

BigTree 4.2.23 on Windows, when Advanced or Simple Rewrite routing is enabled, allows remote attackers to bypass authentication via a ..\ substring, as demonstrated by a launch.php?bigtree_htaccess_url=admin/images/..\ URI.

CVSS3: 8.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5h-v7jh-p2qh

Authentication bypass for specific endpoint

94%
Критический
почти 5 лет назад
github логотип
GHSA-xv5h-j798-x927

Type confusion in DevTools in Google Chrome prior to 110.0.5481.77 allowed a remote attacker who convinced a user to engage in specific UI interactions to potentially exploit heap corruption via UI interactions. (Chromium security severity: Medium)

CVSS3: 8.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-xv5g-r83r-j2g9

Cross-site request forgery (CSRF) vulnerability in apply.cgi in Belkin N300 (F7D7301v1) router allows remote attackers to hijack the authentication of administrators for requests that modify configuration.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5g-jfvh-hgph

Inappropriate pointer order of map_sub_ and map_free(map_) (amcl_node.cpp) in Open Robotics Robotic Operating Sytstem 2 (ROS2) and Nav2 humble versions leads to a use-after-free.

CVSS3: 8.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-xv5g-h355-j9v9

Structured reply is a feature of the newstyle NBD protocol allowing the server to send a reply in chunks. A bounds check which was supposed to test for chunk offsets smaller than the beginning of the request did not work because of signed/unsigned confusion. If one of these chunks contains a negative offset then data under control of the server is written to memory before the read buffer supplied by the client. If the read buffer is located on the stack then this allows the stack return address from nbd_pread() to be trivially modified, allowing arbitrary code execution under the control of the server. If the buffer is located on the heap then other memory objects before the buffer can be overwritten, which again would usually lead to arbitrary code execution.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5g-cq95-4rcm

An attacker sending specially crafted data packets to the Mobile Device Server can cause memory corruption which could result to a Denial of Service (DoS).

CVSS3: 7.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-xv5g-36c6-hqwj

Deserialization of Untrusted Data vulnerability in jetmonsters JetFormBuilder allows Object Injection. This issue affects JetFormBuilder: from n/a through 3.5.1.2.

CVSS3: 7.2
0%
Низкий
7 месяцев назад
github логотип
GHSA-xv5f-2997-qhrq

Craft CMS XSS Vulnerability

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xv5c-vg59-hj7x

There is a "Use After Free" vulnerability in Qt's QHttp2ProtocolHandler in the QtNetwork module. This only affects HTTP/2 handling, HTTP handling is not affected by this at all. This happens due to a race condition between how QHttp2Stream uploads the body of a POST request and the simultaneous handling of HTTP error responses. This issue only affects Qt 6.9.0 and has been fixed for Qt 6.9.1.

0%
Низкий
8 месяцев назад
github логотип
GHSA-xv59-gc3r-rf92

Insufficient Session Expiration in Nakama

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xv59-3gpf-c92h

There is a Factory Reset Protection (FRP) bypass vulnerability on several smartphones. The system does not sufficiently verify the permission, an attacker could do a certain operation on certain step of setup wizard. Successful exploit could allow the attacker bypass the FRP protection. Affected products: Mate 20 X, versions earlier than Ever-AL00B 9.0.0.200(C00E200R2P1); Mate 20, versions earlier than Hima-AL00B/Hima-TL00B 9.0.0.200(C00E200R2P1); Honor Magic 2, versions earlier than Tony-AL00B/Tony-TL00B 9.0.0.182(C00E180R2P2).

CVSS3: 4.6
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу