Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 324 360

Количество 324 360

github логотип

GHSA-xrvj-fcp5-3rm2

почти 4 года назад

A NULL pointer dereference was discovered in ifilter_bank of libfaad/filtbank.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The vulnerability causes a segmentation fault and application crash, which leads to denial of service because adding to windowed output is mishandled in the LONG_START_SEQUENCE case.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xrvj-3vx6-wwh7

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: net/tls: Fix use-after-free after the TLS device goes down and up When a netdev with active TLS offload goes down, tls_device_down is called to stop the offload and tear down the TLS context. However, the socket stays alive, and it still points to the TLS context, which is now deallocated. If a netdev goes up, while the connection is still active, and the data flow resumes after a number of TCP retransmissions, it will lead to a use-after-free of the TLS context. This commit addresses this bug by keeping the context alive until its normal destruction, and implements the necessary fallbacks, so that the connection can resume in software (non-offloaded) kTLS mode. On the TX side tls_sw_fallback is used to encrypt all packets. The RX side already has all the necessary fallbacks, because receiving non-decrypted packets is supported. The thing needed on the RX side is to block resync requests, which are normally prod...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xrvj-2hqc-4255

около 1 года назад

Missing Authorization vulnerability in Metagauss Event Kikfyre allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Event Kikfyre: from n/a through 2.1.8.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xrvj-239r-5xw7

почти 4 года назад

Web content could access information in the HTTP cache if e10s is disabled. This can reveal some visited URLs and the contents of those pages. This issue affects Firefox 48 and 49. This vulnerability affects Firefox < 49.0.2.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xrvh-rvc4-5m43

около 2 лет назад

Kirby vulnerable to unrestricted file upload of user avatar images

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-xrvh-jj58-rj6p

почти 4 года назад

An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1155, CVE-2020-1156, CVE-2020-1158, CVE-2020-1164.

EPSS: Средний
github логотип

GHSA-xrvh-hj29-j7h9

почти 4 года назад

/usr/local/cm/bin/pktCap_protectData in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6, 7, and 8 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in a request to the administrative interface, aka Bug IDs CSCti52041 and CSCti74930.

EPSS: Низкий
github логотип

GHSA-xrvh-c235-ph9w

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: i2c: img-scb: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected to be incremented on return in functions img_i2c_xfer and img_i2c_init. However, pm_runtime_get_sync will increment the PM reference count even failed. Forgetting to putting operation will result in a reference leak here. Replace it with pm_runtime_resume_and_get to keep usage counter balanced.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xrvg-vg5w-7ch7

почти 4 года назад

Memory write mechanism in NCR S1 Dispenser controller before firmware version 0x0156 allows an unauthenticated user to upgrade or downgrade the firmware of the device, including to older versions with known vulnerabilities.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xrvg-9c6x-8hxj

2 месяца назад

Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthManager.Php. This issue affects MediaWiki: from * before 1.39.13, 1.42.7, 1.43.2, 1.44.0.

EPSS: Низкий
github логотип

GHSA-xrvg-8wch-xgxg

около 3 лет назад

The GS Products Slider for WooCommerce WordPress plugin before 1.5.9 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xrvf-qx2p-xmvr

почти 4 года назад

An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xrvf-p45p-f98w

почти 4 года назад

In all Android releases from CAF using the Linux kernel, a memory structure in a camera driver is not properly protected.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xrvf-mp7h-9hr7

9 месяцев назад

Meridian Technique Materialise OrthoView through 7.5.1 allows OS Command Injection when servlet sharing is enabled.

EPSS: Низкий
github логотип

GHSA-xrvf-m29v-829x

больше 2 лет назад

An Authorization Bypass vulnerability was found in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual version <= 2.13.3. An authenticated remote user with low privileges can change the password of any user in the same account. This allows to take over the admin user and therefore fully compromise the account.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrvc-mqhc-wxg7

почти 4 года назад

The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets.

EPSS: Низкий
github логотип

GHSA-xrvc-m3hh-hp9h

почти 4 года назад

Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

EPSS: Средний
github логотип

GHSA-xrvc-5f74-4x4x

около 4 лет назад

The CLUEVO LMS, E-Learning Platform WordPress plugin before 1.8.1 does not sanitise and escape Course's module, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

EPSS: Низкий
github логотип

GHSA-xrv9-h656-4rpq

почти 2 года назад

A vulnerability regarding buffer copy without checking the size of input ('Classic Buffer Overflow') has been found in the login component. This allows remote attackers to conduct denial-of-service attacks via unspecified vectors. This attack only affects the login service which will automatically restart. The following models with Synology Camera Firmware versions before 1.1.1-0383 may be affected: BC500 and TC500.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xrv8-2pf5-f3q7

4 месяца назад

nitro-tpm-pcr-compute may allow kernel command line modification by an account operator

CVSS3: 6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xrvj-fcp5-3rm2

A NULL pointer dereference was discovered in ifilter_bank of libfaad/filtbank.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The vulnerability causes a segmentation fault and application crash, which leads to denial of service because adding to windowed output is mishandled in the LONG_START_SEQUENCE case.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xrvj-3vx6-wwh7

In the Linux kernel, the following vulnerability has been resolved: net/tls: Fix use-after-free after the TLS device goes down and up When a netdev with active TLS offload goes down, tls_device_down is called to stop the offload and tear down the TLS context. However, the socket stays alive, and it still points to the TLS context, which is now deallocated. If a netdev goes up, while the connection is still active, and the data flow resumes after a number of TCP retransmissions, it will lead to a use-after-free of the TLS context. This commit addresses this bug by keeping the context alive until its normal destruction, and implements the necessary fallbacks, so that the connection can resume in software (non-offloaded) kTLS mode. On the TX side tls_sw_fallback is used to encrypt all packets. The RX side already has all the necessary fallbacks, because receiving non-decrypted packets is supported. The thing needed on the RX side is to block resync requests, which are normally prod...

CVSS3: 7.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-xrvj-2hqc-4255

Missing Authorization vulnerability in Metagauss Event Kikfyre allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Event Kikfyre: from n/a through 2.1.8.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-xrvj-239r-5xw7

Web content could access information in the HTTP cache if e10s is disabled. This can reveal some visited URLs and the contents of those pages. This issue affects Firefox 48 and 49. This vulnerability affects Firefox < 49.0.2.

CVSS3: 5.9
1%
Низкий
почти 4 года назад
github логотип
GHSA-xrvh-rvc4-5m43

Kirby vulnerable to unrestricted file upload of user avatar images

CVSS3: 4.6
0%
Низкий
около 2 лет назад
github логотип
GHSA-xrvh-jj58-rj6p

An elevation of privilege vulnerability exists when the Windows Runtime improperly handles objects in memory, aka 'Windows Runtime Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1077, CVE-2020-1086, CVE-2020-1090, CVE-2020-1125, CVE-2020-1139, CVE-2020-1149, CVE-2020-1151, CVE-2020-1155, CVE-2020-1156, CVE-2020-1158, CVE-2020-1164.

12%
Средний
почти 4 года назад
github логотип
GHSA-xrvh-hj29-j7h9

/usr/local/cm/bin/pktCap_protectData in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6, 7, and 8 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in a request to the administrative interface, aka Bug IDs CSCti52041 and CSCti74930.

3%
Низкий
почти 4 года назад
github логотип
GHSA-xrvh-c235-ph9w

In the Linux kernel, the following vulnerability has been resolved: i2c: img-scb: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected to be incremented on return in functions img_i2c_xfer and img_i2c_init. However, pm_runtime_get_sync will increment the PM reference count even failed. Forgetting to putting operation will result in a reference leak here. Replace it with pm_runtime_resume_and_get to keep usage counter balanced.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xrvg-vg5w-7ch7

Memory write mechanism in NCR S1 Dispenser controller before firmware version 0x0156 allows an unauthenticated user to upgrade or downgrade the firmware of the device, including to older versions with known vulnerabilities.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xrvg-9c6x-8hxj

Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthManager.Php. This issue affects MediaWiki: from * before 1.39.13, 1.42.7, 1.43.2, 1.44.0.

0%
Низкий
2 месяца назад
github логотип
GHSA-xrvg-8wch-xgxg

The GS Products Slider for WooCommerce WordPress plugin before 1.5.9 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVSS3: 5.4
0%
Низкий
около 3 лет назад
github логотип
GHSA-xrvf-qx2p-xmvr

An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.

CVSS3: 5.9
0%
Низкий
почти 4 года назад
github логотип
GHSA-xrvf-p45p-f98w

In all Android releases from CAF using the Linux kernel, a memory structure in a camera driver is not properly protected.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xrvf-mp7h-9hr7

Meridian Technique Materialise OrthoView through 7.5.1 allows OS Command Injection when servlet sharing is enabled.

0%
Низкий
9 месяцев назад
github логотип
GHSA-xrvf-m29v-829x

An Authorization Bypass vulnerability was found in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual version <= 2.13.3. An authenticated remote user with low privileges can change the password of any user in the same account. This allows to take over the admin user and therefore fully compromise the account.

CVSS3: 8.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xrvc-mqhc-wxg7

The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xrvc-m3hh-hp9h

Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

41%
Средний
почти 4 года назад
github логотип
GHSA-xrvc-5f74-4x4x

The CLUEVO LMS, E-Learning Platform WordPress plugin before 1.8.1 does not sanitise and escape Course's module, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

0%
Низкий
около 4 лет назад
github логотип
GHSA-xrv9-h656-4rpq

A vulnerability regarding buffer copy without checking the size of input ('Classic Buffer Overflow') has been found in the login component. This allows remote attackers to conduct denial-of-service attacks via unspecified vectors. This attack only affects the login service which will automatically restart. The following models with Synology Camera Firmware versions before 1.1.1-0383 may be affected: BC500 and TC500.

CVSS3: 6.5
2%
Низкий
почти 2 года назад
github логотип
GHSA-xrv8-2pf5-f3q7

nitro-tpm-pcr-compute may allow kernel command line modification by an account operator

CVSS3: 6
4 месяца назад

Уязвимостей на страницу