Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 691

Количество 314 691

github логотип

GHSA-43rr-89mr-2rvg

больше 3 лет назад

Channel accessible by non-endpoint vulnerability in privacy page in Synology Android Moments before 1.2.3-199 allows man-in-the-middle attackers to execute arbitrary code via unspecified vectors.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-43rq-98qh-8hx4

6 месяцев назад

A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convince the library to read a file to trigger this vulnerability.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-43rq-36x6-grmq

почти 3 года назад

A stored cross-site scripting (XSS) vulnerability in TotalJS OpenPlatform commit b80b09d allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the platform name field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-43rp-qmpv-m433

больше 3 лет назад

In libpbc.a in PBC through 2017-03-02, there is a Segmentation fault in _pbcB_register_fields in bootstrap.c.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-43rm-m793-9q62

почти 4 года назад

ownCloud owncloud/android before 2.20 has Incorrect Access Control for physically proximate attackers.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-43rm-gxmf-pr64

около 2 месяцев назад

Bus Reservation System 1.1 contains a SQL injection vulnerability in the pickup_id parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, and time-based blind SQL injection techniques to steal information from the database.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-43rm-fv4g-cmj8

больше 3 лет назад

A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-43rj-vhj3-86r7

около 2 лет назад

IBM Planning Analytics Local 2.0 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions. By sending a specially crafted HTTP request, a remote attacker could exploit this vulnerability to upload a malicious script, which could allow the attacker to execute arbitrary code on the vulnerable system. IBM X-Force ID: 265567.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-43rj-qwvh-fmqx

почти 3 года назад

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-43rj-h44p-4j25

больше 1 года назад

SAP BusinessObjects Business Intelligence Platform allows a high privilege user to run client desktop applications even if some of the DLLs are not digitally signed or if the signature is broken. The attacker needs to have local access to the vulnerable system to perform DLL related tasks. This could result in a high impact on confidentiality and integrity of the application.

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-43rh-v97q-9pr6

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: iio: temperature: mlx90635: Fix ERR_PTR dereference in mlx90635_probe() When devm_regmap_init_i2c() fails, regmap_ee could be error pointer, instead of checking for IS_ERR(regmap_ee), regmap is checked which looks like a copy paste error.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-43rg-xghf-cjwh

7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Avoid overflow with array index The variable index is modified and reused as array index when modify register EIOINTC_ENABLE. There will be array index overflow problem.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-43rg-mf7q-jmp2

больше 3 лет назад

CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authentication and insert XSS sequences or possibly have unspecified other impact.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-43rg-56cq-gxxw

почти 2 года назад

swftools v0.9.2 was discovered to contain a segmentation violation via the function state_free at swftools/src/swfc-history.c.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-43rf-fwx9-64w8

больше 3 лет назад

In Gradle Enterprise through 2021.3, probing of the server-side network environment can occur via an SMTP configuration test. The installation configuration user interface available to administrators allows testing the configured SMTP server settings. This test function can be used to identify the listening TCP ports available to the server, revealing information about the internal network environment.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-43rc-vwh5-26j7

больше 3 лет назад

The Xelex MobileTrack application 2.3.7 and earlier for Android uses hardcoded credentials, which allows remote attackers to obtain sensitive information via an unencrypted (1) FTP or (2) HTTP session.

EPSS: Низкий
github логотип

GHSA-43rc-rp87-3q62

больше 3 лет назад

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. These vulnerabilities are due to improper validation of user-supplied input in the web-based management interface. An attacker could exploit these vulnerabilities by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the root user on the underlying operating system or cause the device to reload, resulting in a denial of service (DoS) condition. To exploit these vulnerabilities, an attacker would need to have valid administrator credentials on the affected device.

EPSS: Низкий
github логотип

GHSA-43rc-pcmf-f3g4

больше 3 лет назад

An issue was discovered in Simple Machines Forum (SMF) before release 2.0.17. There is SSRF related to Subs-Package.php and Subs.php because user-supplied data is used directly in curl calls.

EPSS: Низкий
github логотип

GHSA-43r8-qvvq-25fr

больше 3 лет назад

An issue was discovered in OFCMS before 1.1.3. Remote attackers can execute arbitrary code because blocking of .jsp and .jspx files does not consider (for example) file.jsp::$DATA to the admin/ueditor/uploadFile URI.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-43r8-mvrp-6q9c

больше 3 лет назад

The ap_pregsub function in server/util.c in the Apache HTTP Server 2.0.x through 2.0.64 and 2.2.x through 2.2.21, when the mod_setenvif module is enabled, does not restrict the size of values of environment variables, which allows local users to cause a denial of service (memory consumption or NULL pointer dereference) via a .htaccess file with a crafted SetEnvIf directive, in conjunction with a crafted HTTP request header, related to (1) the "len +=" statement and (2) the apr_pcalloc function call, a different vulnerability than CVE-2011-3607.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-43rr-89mr-2rvg

Channel accessible by non-endpoint vulnerability in privacy page in Synology Android Moments before 1.2.3-199 allows man-in-the-middle attackers to execute arbitrary code via unspecified vectors.

CVSS3: 8.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-43rq-98qh-8hx4

A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convince the library to read a file to trigger this vulnerability.

CVSS3: 8.8
0%
Низкий
6 месяцев назад
github логотип
GHSA-43rq-36x6-grmq

A stored cross-site scripting (XSS) vulnerability in TotalJS OpenPlatform commit b80b09d allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the platform name field.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
github логотип
GHSA-43rp-qmpv-m433

In libpbc.a in PBC through 2017-03-02, there is a Segmentation fault in _pbcB_register_fields in bootstrap.c.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-43rm-m793-9q62

ownCloud owncloud/android before 2.20 has Incorrect Access Control for physically proximate attackers.

CVSS3: 6.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-43rm-gxmf-pr64

Bus Reservation System 1.1 contains a SQL injection vulnerability in the pickup_id parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, and time-based blind SQL injection techniques to steal information from the database.

CVSS3: 9.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-43rm-fv4g-cmj8

A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-43rj-vhj3-86r7

IBM Planning Analytics Local 2.0 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions. By sending a specially crafted HTTP request, a remote attacker could exploit this vulnerability to upload a malicious script, which could allow the attacker to execute arbitrary code on the vulnerable system. IBM X-Force ID: 265567.

CVSS3: 8
0%
Низкий
около 2 лет назад
github логотип
GHSA-43rj-qwvh-fmqx

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-43rj-h44p-4j25

SAP BusinessObjects Business Intelligence Platform allows a high privilege user to run client desktop applications even if some of the DLLs are not digitally signed or if the signature is broken. The attacker needs to have local access to the vulnerable system to perform DLL related tasks. This could result in a high impact on confidentiality and integrity of the application.

CVSS3: 5.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-43rh-v97q-9pr6

In the Linux kernel, the following vulnerability has been resolved: iio: temperature: mlx90635: Fix ERR_PTR dereference in mlx90635_probe() When devm_regmap_init_i2c() fails, regmap_ee could be error pointer, instead of checking for IS_ERR(regmap_ee), regmap is checked which looks like a copy paste error.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-43rg-xghf-cjwh

In the Linux kernel, the following vulnerability has been resolved: LoongArch: KVM: Avoid overflow with array index The variable index is modified and reused as array index when modify register EIOINTC_ENABLE. There will be array index overflow problem.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-43rg-mf7q-jmp2

CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authentication and insert XSS sequences or possibly have unspecified other impact.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-43rg-56cq-gxxw

swftools v0.9.2 was discovered to contain a segmentation violation via the function state_free at swftools/src/swfc-history.c.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-43rf-fwx9-64w8

In Gradle Enterprise through 2021.3, probing of the server-side network environment can occur via an SMTP configuration test. The installation configuration user interface available to administrators allows testing the configured SMTP server settings. This test function can be used to identify the listening TCP ports available to the server, revealing information about the internal network environment.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-43rc-vwh5-26j7

The Xelex MobileTrack application 2.3.7 and earlier for Android uses hardcoded credentials, which allows remote attackers to obtain sensitive information via an unencrypted (1) FTP or (2) HTTP session.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-43rc-rp87-3q62

Multiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to execute arbitrary code or cause an affected device to restart unexpectedly. These vulnerabilities are due to improper validation of user-supplied input in the web-based management interface. An attacker could exploit these vulnerabilities by sending crafted HTTP requests to an affected device. A successful exploit could allow the attacker to execute arbitrary code as the root user on the underlying operating system or cause the device to reload, resulting in a denial of service (DoS) condition. To exploit these vulnerabilities, an attacker would need to have valid administrator credentials on the affected device.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-43rc-pcmf-f3g4

An issue was discovered in Simple Machines Forum (SMF) before release 2.0.17. There is SSRF related to Subs-Package.php and Subs.php because user-supplied data is used directly in curl calls.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-43r8-qvvq-25fr

An issue was discovered in OFCMS before 1.1.3. Remote attackers can execute arbitrary code because blocking of .jsp and .jspx files does not consider (for example) file.jsp::$DATA to the admin/ueditor/uploadFile URI.

CVSS3: 8.8
2%
Низкий
больше 3 лет назад
github логотип
GHSA-43r8-mvrp-6q9c

The ap_pregsub function in server/util.c in the Apache HTTP Server 2.0.x through 2.0.64 and 2.2.x through 2.2.21, when the mod_setenvif module is enabled, does not restrict the size of values of environment variables, which allows local users to cause a denial of service (memory consumption or NULL pointer dereference) via a .htaccess file with a crafted SetEnvIf directive, in conjunction with a crafted HTTP request header, related to (1) the "len +=" statement and (2) the apr_pcalloc function call, a different vulnerability than CVE-2011-3607.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу