Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 380

Количество 355 380

github логотип

GHSA-xrpv-p27x-5mvw

больше 1 года назад

This vulnerability allows appliance compromise at boot time.

EPSS: Низкий
github логотип

GHSA-xrpv-9rfm-8rj3

больше 4 лет назад

Multiple SQL injection vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) user parameter in the Login action, and remote authenticated users via the (2) TicketID and (3) ArticleID parameters of the AgentTicketPlain action.

EPSS: Низкий
github логотип

GHSA-xrpr-v2xp-cjm4

больше 2 лет назад

The Drop Shadow Boxes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dropshadowbox' shortcode in versions up to, and including, 1.7.13 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-xrpr-pc4j-r3pr

больше 3 лет назад

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Contempoinc Real Estate 7 WordPress theme <= 3.3.1 versions.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xrpr-mm6f-2gg7

около 4 лет назад

PHPRAP 1.0.4 through 1.0.8 has SQL Injection via the application/home/controller/project.php search() function.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xrpr-8xpg-cf34

больше 2 лет назад

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541757.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-xrpq-x3c2-8r2w

около 4 лет назад

Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 11.3, tvOS 11.3, watchOS 4.3, Safari 11.1, iTunes 12.7.4 for Windows, iCloud for Windows 7.4.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrpq-wjfc-cj2f

около 4 лет назад

NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which an input data size is not validated, which may lead to tampering or denial of service. This affects vGPU version 8.x (prior to 8.4), version 9.x (prior to 9.4) and version 10.x (prior to 10.3).

EPSS: Низкий
github логотип

GHSA-xrpq-r56p-r4mq

около 4 лет назад

GPAC 0.7.1 has a buffer overflow issue in gf_import_message() in media_import.c.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xrpq-63mp-9vcw

больше 4 лет назад

phpMyAdmin HTTP Response Splitting Vulnerability

EPSS: Низкий
github логотип

GHSA-xrpq-4g9w-qrwj

около 1 года назад

Jenkins Health Advisor by CloudBees Plugin Vulnerable to Cross-Site Scripting

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrpp-vwp4-q9hp

около 4 лет назад

An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootp_input() function and could occur while processing a udp packet that is smaller than the size of the 'bootp_t' structure. A malicious guest could use this flaw to leak 10 bytes of uninitialized heap memory from the host. The highest threat from this vulnerability is to data confidentiality. This flaw affects libslirp versions prior to 4.6.0.

CVSS3: 3.8
EPSS: Низкий
github логотип

GHSA-xrpp-vm79-f74q

около 4 лет назад

Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Oct-2021 Release 1 allows attackers to write file as system UID via BT remote socket.

EPSS: Низкий
github логотип

GHSA-xrpp-3rf6-w42j

почти 3 года назад

Docker Desktop before 4.12.0 is vulnerable to RCE via a crafted extension description or changelog. This issue affects Docker Desktop: before 4.12.0.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xrpm-hccg-28x7

почти 3 года назад

Improper Input Validation in nocodb

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xrpm-74v3-f6fq

больше 4 лет назад

The Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold and SP1, and Visual C++ 2005 SP1 and 2008 Gold and SP1; and Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2; does not properly restrict use of OleLoadFromStream in instantiating objects from data streams, which allows remote attackers to execute arbitrary code via a crafted HTML document with an ATL (1) component or (2) control, related to ATL headers and bypassing security policies, aka "ATL COM Initialization Vulnerability."

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-xrpj-w92h-g66g

6 месяцев назад

Missing Authorization vulnerability in GhostPool Aardvark Plugin aardvark-plugin allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Aardvark Plugin: from n/a through <= 2.19.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xrpj-f9v6-2332

почти 5 лет назад

CSV injection in Craft CMS

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrph-fg7m-g22g

больше 4 лет назад

NDMP server in Veritas NetBackup 5.1 allows attackers to cause a denial of service via a CONFIG message with an out-of-range timestamp, which triggers a null dereference.

EPSS: Низкий
github логотип

GHSA-xrph-cp3c-jgmh

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix a race between readers and resize checks The reader code in rb_get_reader_page() swaps a new reader page into the ring buffer by doing cmpxchg on old->list.prev->next to point it to the new page. Following that, if the operation is successful, old->list.next->prev gets updated too. This means the underlying doubly-linked list is temporarily inconsistent, page->prev->next or page->next->prev might not be equal back to page for some page in the ring buffer. The resize operation in ring_buffer_resize() can be invoked in parallel. It calls rb_check_pages() which can detect the described inconsistency and stop further tracing: [ 190.271762] ------------[ cut here ]------------ [ 190.271771] WARNING: CPU: 1 PID: 6186 at kernel/trace/ring_buffer.c:1467 rb_check_pages.isra.0+0x6a/0xa0 [ 190.271789] Modules linked in: [...] [ 190.271991] Unloaded tainted modules: intel_uncore_frequency(E):1 skx_edac(...

CVSS3: 4.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xrpv-p27x-5mvw

This vulnerability allows appliance compromise at boot time.

0%
Низкий
больше 1 года назад
github логотип
GHSA-xrpv-9rfm-8rj3

Multiple SQL injection vulnerabilities in index.pl in Open Ticket Request System (OTRS) 1.0.0 through 1.3.2 and 2.0.0 through 2.0.3 allow remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) user parameter in the Login action, and remote authenticated users via the (2) TicketID and (3) ArticleID parameters of the AgentTicketPlain action.

7%
Низкий
больше 4 лет назад
github логотип
GHSA-xrpr-v2xp-cjm4

The Drop Shadow Boxes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'dropshadowbox' shortcode in versions up to, and including, 1.7.13 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xrpr-pc4j-r3pr

Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Contempoinc Real Estate 7 WordPress theme <= 3.3.1 versions.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xrpr-mm6f-2gg7

PHPRAP 1.0.4 through 1.0.8 has SQL Injection via the application/home/controller/project.php search() function.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xrpr-8xpg-cf34

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541757.

CVSS3: 4.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xrpq-x3c2-8r2w

Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 11.3, tvOS 11.3, watchOS 4.3, Safari 11.1, iTunes 12.7.4 for Windows, iCloud for Windows 7.4.

CVSS3: 8.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-xrpq-wjfc-cj2f

NVIDIA Virtual GPU Manager contains a vulnerability in the vGPU plugin, in which an input data size is not validated, which may lead to tampering or denial of service. This affects vGPU version 8.x (prior to 8.4), version 9.x (prior to 9.4) and version 10.x (prior to 10.3).

0%
Низкий
около 4 лет назад
github логотип
GHSA-xrpq-r56p-r4mq

GPAC 0.7.1 has a buffer overflow issue in gf_import_message() in media_import.c.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xrpq-63mp-9vcw

phpMyAdmin HTTP Response Splitting Vulnerability

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xrpq-4g9w-qrwj

Jenkins Health Advisor by CloudBees Plugin Vulnerable to Cross-Site Scripting

CVSS3: 8.8
1%
Низкий
около 1 года назад
github логотип
GHSA-xrpp-vwp4-q9hp

An invalid pointer initialization issue was found in the SLiRP networking implementation of QEMU. The flaw exists in the bootp_input() function and could occur while processing a udp packet that is smaller than the size of the 'bootp_t' structure. A malicious guest could use this flaw to leak 10 bytes of uninitialized heap memory from the host. The highest threat from this vulnerability is to data confidentiality. This flaw affects libslirp versions prior to 4.6.0.

CVSS3: 3.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-xrpp-vm79-f74q

Path traversal vulnerability in FactoryAirCommnadManger prior to SMR Oct-2021 Release 1 allows attackers to write file as system UID via BT remote socket.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xrpp-3rf6-w42j

Docker Desktop before 4.12.0 is vulnerable to RCE via a crafted extension description or changelog. This issue affects Docker Desktop: before 4.12.0.

CVSS3: 9.8
1%
Низкий
почти 3 года назад
github логотип
GHSA-xrpm-hccg-28x7

Improper Input Validation in nocodb

CVSS3: 6.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-xrpm-74v3-f6fq

The Active Template Library (ATL) in Microsoft Visual Studio .NET 2003 SP1, Visual Studio 2005 SP1 and 2008 Gold and SP1, and Visual C++ 2005 SP1 and 2008 Gold and SP1; and Windows 2000 SP4, XP SP2 and SP3, Server 2003 SP2, Vista Gold, SP1, and SP2, and Server 2008 Gold and SP2; does not properly restrict use of OleLoadFromStream in instantiating objects from data streams, which allows remote attackers to execute arbitrary code via a crafted HTML document with an ATL (1) component or (2) control, related to ATL headers and bypassing security policies, aka "ATL COM Initialization Vulnerability."

CVSS3: 8.8
38%
Средний
больше 4 лет назад
github логотип
GHSA-xrpj-w92h-g66g

Missing Authorization vulnerability in GhostPool Aardvark Plugin aardvark-plugin allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Aardvark Plugin: from n/a through <= 2.19.

CVSS3: 7.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-xrpj-f9v6-2332

CSV injection in Craft CMS

CVSS3: 8.8
почти 5 лет назад
github логотип
GHSA-xrph-fg7m-g22g

NDMP server in Veritas NetBackup 5.1 allows attackers to cause a denial of service via a CONFIG message with an out-of-range timestamp, which triggers a null dereference.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xrph-cp3c-jgmh

In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix a race between readers and resize checks The reader code in rb_get_reader_page() swaps a new reader page into the ring buffer by doing cmpxchg on old->list.prev->next to point it to the new page. Following that, if the operation is successful, old->list.next->prev gets updated too. This means the underlying doubly-linked list is temporarily inconsistent, page->prev->next or page->next->prev might not be equal back to page for some page in the ring buffer. The resize operation in ring_buffer_resize() can be invoked in parallel. It calls rb_check_pages() which can detect the described inconsistency and stop further tracing: [ 190.271762] ------------[ cut here ]------------ [ 190.271771] WARNING: CPU: 1 PID: 6186 at kernel/trace/ring_buffer.c:1467 rb_check_pages.isra.0+0x6a/0xa0 [ 190.271789] Modules linked in: [...] [ 190.271991] Unloaded tainted modules: intel_uncore_frequency(E):1 skx_edac(...

CVSS3: 4.7
0%
Низкий
около 2 лет назад

Уязвимостей на страницу