Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 380

Количество 355 380

github логотип

GHSA-xrrj-cr4g-f623

около 2 лет назад

The Ultimate Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xrrj-7vm6-5fhv

больше 4 лет назад

Stack-based buffer overflow in Sorinara Soritong MP3 Player 1.0 allows remote attackers to execute arbitrary code via a crafted .m3u file.

EPSS: Низкий
github логотип

GHSA-xrrh-p7f2-27vm

4 месяца назад

decolua 9router vulnerable to authorization bypass

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-xrrh-h86w-pwfj

почти 3 года назад

Alluxio vulnerable to arbitrary code execution

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xrrh-2xgh-93p5

около 4 лет назад

House Arrest in Apple iOS before 8.1 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obtain sensitive information from a Documents directory by obtaining this UID.

EPSS: Низкий
github логотип

GHSA-xrrg-wfwc-c7r3

почти 6 лет назад

Malicious Package in bictoin-ops

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-xrrg-g9h8-vr6w

около 4 лет назад

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The password used for authentication for the LOGO! Website and the LOGO! Access Tool is sent in a recoverable format. An attacker with access to the network traffic could derive valid logins.

EPSS: Низкий
github логотип

GHSA-xrr9-rh8p-433v

больше 6 лет назад

Request smuggling is possible when both chunked TE and content length specified

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xrr8-pr2x-q64f

около 4 лет назад

The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to hit BUG conditions and cause a denial of service (NULL pointer dereference and host OS crash) by leveraging a system with access to a passed-through MSI or MSI-X capable physical PCI device and a crafted sequence of XEN_PCI_OP_* operations, aka "Linux pciback missing sanity checks."

CVSS3: 6
EPSS: Низкий
github логотип

GHSA-xrr8-pmp3-3j6q

4 месяца назад

The WP Shortcodes Plugin - Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the su_carousel shortcode in all versions up to, and including, 7.4.8. This is due to insufficient input sanitization and output escaping in the 'su_slide_link' attachment meta field. This makes it possible for authenticated attackers, with author level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-xrr8-p4pf-hfwr

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: nfsd: don't ignore the return code of svc_proc_register() Currently, nfsd_proc_stat_init() ignores the return value of svc_proc_register(). If the procfile creation fails, then the kernel will WARN when it tries to remove the entry later. Fix nfsd_proc_stat_init() to return the same type of pointer as svc_proc_register(), and fix up nfsd_net_init() to check that and fail the nfsd_net construction if it occurs. svc_proc_register() can fail if the dentry can't be allocated, or if an identical dentry already exists. The second case is pretty unlikely in the nfsd_net construction codepath, so if this happens, return -ENOMEM.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xrr8-23jx-fjvc

больше 2 лет назад

An information disclosure flaw was found in OpenShift Virtualization. The DownwardMetrics feature was introduced to expose host metrics to virtual machine guests and is enabled by default. This issue could expose limited host metrics of a node to any guest in any namespace without being explicitly enabled by an administrator.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xrr7-cwrw-39vw

17 дней назад

Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xrr7-82jr-v58x

около 1 месяца назад

nghttp2's nghttpx proxy through 1.69.0 forwards an HTTP/1.1 Upgrade request that also carries a Content-Length header and body onto reusable keep-alive backend connections, re-adding the Upgrade and Connection headers while passing Content-Length verbatim. A backend that resolves the resulting ambiguous message in the attacker's favor enables HTTP request/response smuggling and cross-client response-queue poisoning.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xrr7-3cjg-r4vj

больше 4 лет назад

Unspecified vulnerability in Apple QuickTime 7.2 on Windows XP allows remote attackers to execute arbitrary code via unknown attack vectors, probably a different vulnerability than CVE-2007-6166. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release advisories with actionable information. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. However, the organization has stated that this is different than CVE-2007-6166.

EPSS: Низкий
github логотип

GHSA-xrr6-r4jq-rrhc

около 4 лет назад

On Juniper Networks EX Series Ethernet Switches running affected Junos OS versions, a vulnerability in IPv6 processing has been discovered that may allow a specially crafted IPv6 Neighbor Discovery (ND) packet destined to an EX Series Ethernet Switch to cause a slow memory leak. A malicious network-based packet flood of these crafted IPv6 NDP packets may eventually lead to resource exhaustion and a denial of service. The affected Junos OS versions are: 12.3 prior to 12.3R12-S4, 12.3R13; 13.3 prior to 13.3R10; 14.1 prior to 14.1R8-S3, 14.1R9; 14.1X53 prior ro 14.1X53-D12, 14.1X53-D40; 14.1X55 prior to 14.1X55-D35; 14.2 prior to 14.2R6-S4, 14.2R7-S6, 14.2R8; 15.1 prior to 15.1R5; 16.1 before 16.1R3; 16.2 before 16.2R1-S3, 16.2R2. 17.1R1 and all subsequent releases have a resolution for this vulnerability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xrr6-c8rc-c2wp

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.

EPSS: Низкий
github логотип

GHSA-xrr6-6ww3-f3qm

почти 6 лет назад

Sandbox Breakout / Arbitrary Code Execution in value-censorship

EPSS: Низкий
github логотип

GHSA-xrr6-69ww-5ggj

около 4 лет назад

Cross-site scripting (XSS) vulnerability in clickstream.js in Y! Toolbar plugin for FireFox 3.1.0.20130813024103 for Mac, and 2.5.9.2013418100420 for Windows, allows remote attackers to inject arbitrary web script or HTML via a crafted URL that is stored by the victim.

EPSS: Низкий
github логотип

GHSA-xrr6-3pc4-m447

почти 9 лет назад

Active Record Improper Access Control

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xrrj-cr4g-f623

The Ultimate Blocks WordPress plugin before 3.1.7 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVSS3: 5.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-xrrj-7vm6-5fhv

Stack-based buffer overflow in Sorinara Soritong MP3 Player 1.0 allows remote attackers to execute arbitrary code via a crafted .m3u file.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-xrrh-p7f2-27vm

decolua 9router vulnerable to authorization bypass

CVSS3: 7.3
0%
Низкий
4 месяца назад
github логотип
GHSA-xrrh-h86w-pwfj

Alluxio vulnerable to arbitrary code execution

CVSS3: 9.8
1%
Низкий
почти 3 года назад
github логотип
GHSA-xrrh-2xgh-93p5

House Arrest in Apple iOS before 8.1 relies on the hardware UID for its encryption key, which makes it easier for physically proximate attackers to obtain sensitive information from a Documents directory by obtaining this UID.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xrrg-wfwc-c7r3

Malicious Package in bictoin-ops

CVSS3: 9.1
почти 6 лет назад
github логотип
GHSA-xrrg-g9h8-vr6w

A vulnerability has been identified in LOGO! 8 BM (incl. SIPLUS variants) (All versions < V8.3). The password used for authentication for the LOGO! Website and the LOGO! Access Tool is sent in a recoverable format. An attacker with access to the network traffic could derive valid logins.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xrr9-rh8p-433v

Request smuggling is possible when both chunked TE and content length specified

CVSS3: 5.4
1%
Низкий
больше 6 лет назад
github логотип
GHSA-xrr8-pr2x-q64f

The PCI backend driver in Xen, when running on an x86 system and using Linux 3.1.x through 4.3.x as the driver domain, allows local guest administrators to hit BUG conditions and cause a denial of service (NULL pointer dereference and host OS crash) by leveraging a system with access to a passed-through MSI or MSI-X capable physical PCI device and a crafted sequence of XEN_PCI_OP_* operations, aka "Linux pciback missing sanity checks."

CVSS3: 6
0%
Низкий
около 4 лет назад
github логотип
GHSA-xrr8-pmp3-3j6q

The WP Shortcodes Plugin - Shortcodes Ultimate plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the su_carousel shortcode in all versions up to, and including, 7.4.8. This is due to insufficient input sanitization and output escaping in the 'su_slide_link' attachment meta field. This makes it possible for authenticated attackers, with author level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
4 месяца назад
github логотип
GHSA-xrr8-p4pf-hfwr

In the Linux kernel, the following vulnerability has been resolved: nfsd: don't ignore the return code of svc_proc_register() Currently, nfsd_proc_stat_init() ignores the return value of svc_proc_register(). If the procfile creation fails, then the kernel will WARN when it tries to remove the entry later. Fix nfsd_proc_stat_init() to return the same type of pointer as svc_proc_register(), and fix up nfsd_net_init() to check that and fail the nfsd_net construction if it occurs. svc_proc_register() can fail if the dentry can't be allocated, or if an identical dentry already exists. The second case is pretty unlikely in the nfsd_net construction codepath, so if this happens, return -ENOMEM.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-xrr8-23jx-fjvc

An information disclosure flaw was found in OpenShift Virtualization. The DownwardMetrics feature was introduced to expose host metrics to virtual machine guests and is enabled by default. This issue could expose limited host metrics of a node to any guest in any namespace without being explicitly enabled by an administrator.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xrr7-cwrw-39vw

Memory safety bugs present in Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.

CVSS3: 9.8
0%
Низкий
17 дней назад
github логотип
GHSA-xrr7-82jr-v58x

nghttp2's nghttpx proxy through 1.69.0 forwards an HTTP/1.1 Upgrade request that also carries a Content-Length header and body onto reusable keep-alive backend connections, re-adding the Upgrade and Connection headers while passing Content-Length verbatim. A backend that resolves the resulting ambiguous message in the attacker's favor enables HTTP request/response smuggling and cross-client response-queue poisoning.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
github логотип
GHSA-xrr7-3cjg-r4vj

Unspecified vulnerability in Apple QuickTime 7.2 on Windows XP allows remote attackers to execute arbitrary code via unknown attack vectors, probably a different vulnerability than CVE-2007-6166. NOTE: this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release advisories with actionable information. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine. However, the organization has stated that this is different than CVE-2007-6166.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-xrr6-r4jq-rrhc

On Juniper Networks EX Series Ethernet Switches running affected Junos OS versions, a vulnerability in IPv6 processing has been discovered that may allow a specially crafted IPv6 Neighbor Discovery (ND) packet destined to an EX Series Ethernet Switch to cause a slow memory leak. A malicious network-based packet flood of these crafted IPv6 NDP packets may eventually lead to resource exhaustion and a denial of service. The affected Junos OS versions are: 12.3 prior to 12.3R12-S4, 12.3R13; 13.3 prior to 13.3R10; 14.1 prior to 14.1R8-S3, 14.1R9; 14.1X53 prior ro 14.1X53-D12, 14.1X53-D40; 14.1X55 prior to 14.1X55-D35; 14.2 prior to 14.2R6-S4, 14.2R7-S6, 14.2R8; 15.1 prior to 15.1R5; 16.1 before 16.1R3; 16.2 before 16.2R1-S3, 16.2R2. 17.1R1 and all subsequent releases have a resolution for this vulnerability.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-xrr6-c8rc-c2wp

Multiple cross-site scripting (XSS) vulnerabilities in the HTTP server in Cisco IOS 11.0 through 12.4 allow remote attackers to inject arbitrary web script or HTML via (1) the query string to the ping program or (2) unspecified other aspects of the URI.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-xrr6-6ww3-f3qm

Sandbox Breakout / Arbitrary Code Execution in value-censorship

почти 6 лет назад
github логотип
GHSA-xrr6-69ww-5ggj

Cross-site scripting (XSS) vulnerability in clickstream.js in Y! Toolbar plugin for FireFox 3.1.0.20130813024103 for Mac, and 2.5.9.2013418100420 for Windows, allows remote attackers to inject arbitrary web script or HTML via a crafted URL that is stored by the victim.

2%
Низкий
около 4 лет назад
github логотип
GHSA-xrr6-3pc4-m447

Active Record Improper Access Control

CVSS3: 5.3
4%
Низкий
почти 9 лет назад

Уязвимостей на страницу