Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 453

Количество 375 453

github логотип

GHSA-xv3m-vvvg-7mcg

больше 4 лет назад

An issue was discovered on TerraMaster FS-210 4.0.19 devices. An authenticated remote non-administrative user can read unauthorized shared files, as demonstrated by the filename=*public*%25252Fadmin_OnlyRead.txt substring.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xv3m-73qx-8fg5

больше 3 лет назад

H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the AddMacList interface at /goform/aspForm.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xv3j-qc59-2c8j

больше 4 лет назад

The Cisco Linksys WAG54GS Wireless-G ADSL Gateway with 1.01.03 and earlier firmware has "admin" as its default password for the "admin" account, which makes it easier for remote attackers to obtain access.

EPSS: Низкий
github логотип

GHSA-xv3j-m88m-58h7

больше 4 лет назад

XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x00000000003283eb.

EPSS: Низкий
github логотип

GHSA-xv3j-5xmw-q95p

больше 4 лет назад

ACEweb Online Portal 3.5.065 was discovered to contain a SQL injection vulnerability via the criteria parameter in showschedule.awp.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xv3h-pcqm-3253

больше 1 года назад

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. If a target visits a malicious page or opens a malicious file an attacker can leverage this vulnerability to execute code in the context of the current process.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xv3h-4844-9h36

больше 3 лет назад

HTTP Multiline Header Termination

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xv3f-rvh8-r59c

больше 4 лет назад

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

EPSS: Средний
github логотип

GHSA-xv3f-8p4h-3w2r

больше 4 лет назад

In CMS Made Simple (CMSMS) through 2.2.7, the "file unpack" operation in the admin dashboard contains a remote code execution vulnerability exploitable by an admin user because a .php file can be present in the extracted ZIP archive.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xv39-4768-vprw

11 дней назад

In the Linux kernel, the following vulnerability has been resolved: fs: fix user path of nested backing files backing_file_open() derives the path to be stored in the new backing file from user_file->f_path. This is incorrect when user_file itself is a backing file, which is the case for nested stacking filesystems, e.g. overlayfs mounts where the lowerdir of one overlayfs is the merged directory of another. Since commit def3ae83da02 ("fs: store real path instead of fake path in backing file f_path") the f_path of a backing file holds the real path of the intermediate layer, not the path that the user opened. Commit 924577e4f6ca ("ovl: Fix nested backing file paths") fixed this for such configurations by passing file_user_path() from ovl_open_realfile(). However, commit 6af36aeb147a ("lsm: add backing_file LSM hooks") changed the first argument of backing_file_open() from the user path back to the user file and derived the path from user_file->f_path again, silently re-introdu...

EPSS: Низкий
github логотип

GHSA-xv38-ph7h-p3qw

больше 4 лет назад

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

EPSS: Средний
github логотип

GHSA-xv38-944c-p763

больше 4 лет назад

Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via large arguments in a function invocation from a WASM module, when GOARCH=wasm GOOS=js is used.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-xv37-xpc4-25wq

больше 4 лет назад

Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-4370 and CVE-2011-4372.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-xv37-j243-7jfv

больше 3 лет назад

Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers to launch processes with elevated privileges.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xv36-fxmx-5mpc

больше 1 года назад

A vulnerability classified as critical was found in mymagicpower AIAS 20250308. This vulnerability affects unknown code of the file training_platform/train-platform/src/main/java/top/aias/training/controller/LocalStorageController.java. The manipulation of the argument File leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xv35-w389-wr74

больше 1 года назад

HCL SX v21 is affected by usage of a weak cryptographic algorithm. An attacker could exploit this weakness to gain access to sensitive information, modify data, or other impacts.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xv35-3wcg-v2qf

больше 2 лет назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin.This issue affects JS Help Desk – Best Help Desk & Support Plugin: from n/a through 2.7.1.

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-xv34-wq27-w2wm

больше 4 лет назад

tcpdf before 6.2.0 uploads files from the server generating PDF-files to an external FTP.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xv34-vpcm-23p2

больше 1 года назад

A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN admin privileges can with admin privileges can inject shell command arguments to upload a file on the appliance.

CVSS3: 7.1
EPSS: Средний
github логотип

GHSA-xv34-39fc-6ghr

больше 4 лет назад

There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xv3m-vvvg-7mcg

An issue was discovered on TerraMaster FS-210 4.0.19 devices. An authenticated remote non-administrative user can read unauthorized shared files, as demonstrated by the filename=*public*%25252Fadmin_OnlyRead.txt substring.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xv3m-73qx-8fg5

H3C Magic R300 version R300-2100MV100R004 was discovered to contain a stack overflow via the AddMacList interface at /goform/aspForm.

CVSS3: 7.2
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xv3j-qc59-2c8j

The Cisco Linksys WAG54GS Wireless-G ADSL Gateway with 1.01.03 and earlier firmware has "admin" as its default password for the "admin" account, which makes it easier for remote attackers to obtain access.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xv3j-m88m-58h7

XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x00000000003283eb.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xv3j-5xmw-q95p

ACEweb Online Portal 3.5.065 was discovered to contain a SQL injection vulnerability via the criteria parameter in showschedule.awp.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xv3h-pcqm-3253

Delta Electronics CNCSoft-G2 lacks proper validation of the length of user-supplied data prior to copying it to a fixed-length heap-based buffer. If a target visits a malicious page or opens a malicious file an attacker can leverage this vulnerability to execute code in the context of the current process.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-xv3h-4844-9h36

HTTP Multiline Header Termination

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xv3f-rvh8-r59c

Buffer overflow in the date_from_ISO8601 function in the mkgmtime implementation in libxmlrpc/xmlrpc.c in the XMLRPC extension in PHP before 5.4.34, 5.5.x before 5.5.18, and 5.6.x before 5.6.2 allows remote attackers to cause a denial of service (application crash) via (1) a crafted first argument to the xmlrpc_set_type function or (2) a crafted argument to the xmlrpc_decode function, related to an out-of-bounds read operation.

27%
Средний
больше 4 лет назад
github логотип
GHSA-xv3f-8p4h-3w2r

In CMS Made Simple (CMSMS) through 2.2.7, the "file unpack" operation in the admin dashboard contains a remote code execution vulnerability exploitable by an admin user because a .php file can be present in the extracted ZIP archive.

CVSS3: 7.2
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xv39-4768-vprw

In the Linux kernel, the following vulnerability has been resolved: fs: fix user path of nested backing files backing_file_open() derives the path to be stored in the new backing file from user_file->f_path. This is incorrect when user_file itself is a backing file, which is the case for nested stacking filesystems, e.g. overlayfs mounts where the lowerdir of one overlayfs is the merged directory of another. Since commit def3ae83da02 ("fs: store real path instead of fake path in backing file f_path") the f_path of a backing file holds the real path of the intermediate layer, not the path that the user opened. Commit 924577e4f6ca ("ovl: Fix nested backing file paths") fixed this for such configurations by passing file_user_path() from ovl_open_realfile(). However, commit 6af36aeb147a ("lsm: add backing_file LSM hooks") changed the first argument of backing_file_open() from the user path back to the user file and derived the path from user_file->f_path again, silently re-introdu...

0%
Низкий
11 дней назад
github логотип
GHSA-xv38-ph7h-p3qw

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a use-after-free vulnerability in the processing of Format event actions that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

11%
Средний
больше 4 лет назад
github логотип
GHSA-xv38-944c-p763

Go before 1.16.9 and 1.17.x before 1.17.2 has a Buffer Overflow via large arguments in a function invocation from a WASM module, when GOARCH=wasm GOOS=js is used.

CVSS3: 9.8
11%
Средний
больше 4 лет назад
github логотип
GHSA-xv37-xpc4-25wq

Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on Windows and Mac OS X allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2011-4370 and CVE-2011-4372.

CVSS3: 9.8
30%
Средний
больше 4 лет назад
github логотип
GHSA-xv37-j243-7jfv

Wondershare Filmora 12 (Build 12.2.1.2088) was discovered to contain an unquoted service path vulnerability via the component NativePushService. This vulnerability allows attackers to launch processes with elevated privileges.

CVSS3: 7.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xv36-fxmx-5mpc

A vulnerability classified as critical was found in mymagicpower AIAS 20250308. This vulnerability affects unknown code of the file training_platform/train-platform/src/main/java/top/aias/training/controller/LocalStorageController.java. The manipulation of the argument File leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-xv35-w389-wr74

HCL SX v21 is affected by usage of a weak cryptographic algorithm. An attacker could exploit this weakness to gain access to sensitive information, modify data, or other impacts.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-xv35-3wcg-v2qf

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin.This issue affects JS Help Desk – Best Help Desk & Support Plugin: from n/a through 2.7.1.

CVSS3: 8.6
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xv34-wq27-w2wm

tcpdf before 6.2.0 uploads files from the server generating PDF-files to an external FTP.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xv34-vpcm-23p2

A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN admin privileges can with admin privileges can inject shell command arguments to upload a file on the appliance.

CVSS3: 7.1
20%
Средний
больше 1 года назад
github логотип
GHSA-xv34-39fc-6ghr

There is a memory leak triggered in the function dcinit of util/decompile.c in libming 0.4.8, which will lead to a denial of service attack.

CVSS3: 7.5
2%
Низкий
больше 4 лет назад

Уязвимостей на страницу