Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-3xvw-vxfc-rgc7

около 2 лет назад

Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3xvw-ccwr-vmvg

больше 3 лет назад

CMS Made Simple 2.1.6, 2.2, 2.2.1 are vulnerable to Smarty Template Injection in some core components, resulting in local file read before 2.2, and local file inclusion since 2.2.1

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3xvw-2m79-hr7w

6 месяцев назад

The Nexter Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 4.5.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3xvv-xjhm-3gvf

7 месяцев назад

IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3xvv-h6m4-9qgx

больше 3 лет назад

The open_by_handle_at function in vzkernel before 042stab090.5 in the OpenVZ modification for the Linux kernel 2.6.32, when using simfs, might allow local container users with CAP_DAC_READ_SEARCH capability to bypass an intended container protection mechanism and access arbitrary files on a filesystem via vectors related to use of the file_handle structure.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3xvr-7cqm-9j53

почти 2 года назад

An issue in SUPERAntiSyware Professional X 10.0.1262 and 10.0.1264 allows unprivileged attackers to escalate privileges via a restore of a crafted DLL file into the C:\Program Files\SUPERAntiSpyware folder.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3xvr-5rgg-f99f

почти 4 года назад

Directory traversal vulnerability in index.php in In-Portal 4.3.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the env parameter.

EPSS: Низкий
github логотип

GHSA-3xvp-fcxr-3mvq

больше 3 лет назад

A spoofing vulnerability exists in Visual Studio Live Share when a guest connected to a Live Share session is redirected to an arbitrary URL specified by the session host, aka 'Visual Studio Live Share Spoofing Vulnerability'.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3xvp-8qg2-x43w

почти 3 года назад

Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4.60 through 5.35, and ATP series firmware versions 4.60 through 5.35, which could allow an unauthenticated attacker to execute some OS commands remotely by sending crafted packets to an affected device.

CVSS3: 9.8
EPSS: Критический
github логотип

GHSA-3xvm-4g57-gvj6

больше 2 лет назад

A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel. This flaw allows a local attacker with user privilege to trigger a Denial of Service threat.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3xvh-jpg9-3hgm

почти 4 года назад

QuickTime Streaming Server in Apple Mac OS X 10.3.9 and 10.4.6 allows remote attackers to cause a denial of service (crash and connection interruption) via a QuickTime movie with a missing track, which triggers a null dereference.

EPSS: Низкий
github логотип

GHSA-3xvh-448x-pgv5

больше 3 лет назад

SQL injection vulnerability in the Submit_News module for PHP-Nuke 8.3 allows remote attackers to execute arbitrary SQL commands via the topics[] parameter to modules.php.

EPSS: Низкий
github логотип

GHSA-3xvg-x47j-x75w

больше 3 лет назад

Ansible Improper Input Validation vulnerability

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3xvg-65vh-g47p

больше 3 лет назад

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

EPSS: Низкий
github логотип

GHSA-3xvc-wfvf-2p2f

4 месяца назад

Deck Mate 2 lacks a verified secure-boot chain and runtime integrity validation for its controller and display modules. Without cryptographic boot verification, an attacker with physical access can modify or replace the bootloader, kernel, or filesystem and gain persistent code execution on reboot. This weakness allows long-term firmware tampering that survives power cycles. The vendor indicates that more recent firmware updates strengthen update-chain integrity and disable physical update ports to mitigate related attack avenues.

EPSS: Низкий
github логотип

GHSA-3xv9-qrjx-w927

почти 4 года назад

Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

EPSS: Низкий
github логотип

GHSA-3xv9-mv3f-9xmc

больше 3 лет назад

H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateSnat.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3xv8-84fj-hhg4

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: ACPI: video: Fix use-after-free in acpi_video_switch_brightness() The switch_brightness_work delayed work accesses device->brightness and device->backlight, freed by acpi_video_dev_unregister_backlight() during device removal. If the work executes after acpi_video_bus_unregister_backlight() frees these resources, it causes a use-after-free when acpi_video_switch_brightness() dereferences device->brightness or device->backlight. Fix this by calling cancel_delayed_work_sync() for each device's switch_brightness_work in acpi_video_bus_remove_notify_handler() after removing the notify handler that queues the work. This ensures the work completes before the memory is freed. [ rjw: Changelog edit ]

EPSS: Низкий
github логотип

GHSA-3xv8-3j54-hgrp

больше 4 лет назад

Out-of-bounds read in Pillow

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3xv6-f2f8-6gf4

больше 3 лет назад

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services). The supported version that is affected is 10.3.6.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3xvw-vxfc-rgc7

Dell vApp Manager, versions prior to 9.2.4.x contain a command injection vulnerability. A remote malicious user with high privileges could potentially exploit this vulnerability leading to the execution of arbitrary OS commands on the affected system.

CVSS3: 7.2
0%
Низкий
около 2 лет назад
github логотип
GHSA-3xvw-ccwr-vmvg

CMS Made Simple 2.1.6, 2.2, 2.2.1 are vulnerable to Smarty Template Injection in some core components, resulting in local file read before 2.2, and local file inclusion since 2.2.1

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3xvw-2m79-hr7w

The Nexter Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via multiple widgets in all versions up to, and including, 4.5.4 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-3xvv-xjhm-3gvf

IBM Informix Dynamic Server 12.10 and 14.10 uses an inadequate account lockout setting that could allow a remote attacker to brute force account credentials.

CVSS3: 7.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-3xvv-h6m4-9qgx

The open_by_handle_at function in vzkernel before 042stab090.5 in the OpenVZ modification for the Linux kernel 2.6.32, when using simfs, might allow local container users with CAP_DAC_READ_SEARCH capability to bypass an intended container protection mechanism and access arbitrary files on a filesystem via vectors related to use of the file_handle structure.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3xvr-7cqm-9j53

An issue in SUPERAntiSyware Professional X 10.0.1262 and 10.0.1264 allows unprivileged attackers to escalate privileges via a restore of a crafted DLL file into the C:\Program Files\SUPERAntiSpyware folder.

CVSS3: 7.8
3%
Низкий
почти 2 года назад
github логотип
GHSA-3xvr-5rgg-f99f

Directory traversal vulnerability in index.php in In-Portal 4.3.1, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the env parameter.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3xvp-fcxr-3mvq

A spoofing vulnerability exists in Visual Studio Live Share when a guest connected to a Live Share session is redirected to an arbitrary URL specified by the session host, aka 'Visual Studio Live Share Spoofing Vulnerability'.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3xvp-8qg2-x43w

Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4.60 through 5.35, and ATP series firmware versions 4.60 through 5.35, which could allow an unauthenticated attacker to execute some OS commands remotely by sending crafted packets to an affected device.

CVSS3: 9.8
94%
Критический
почти 3 года назад
github логотип
GHSA-3xvm-4g57-gvj6

A vulnerability was found due to missing lock for IOPOLL flaw in io_cqring_event_overflow() in io_uring.c in Linux Kernel. This flaw allows a local attacker with user privilege to trigger a Denial of Service threat.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3xvh-jpg9-3hgm

QuickTime Streaming Server in Apple Mac OS X 10.3.9 and 10.4.6 allows remote attackers to cause a denial of service (crash and connection interruption) via a QuickTime movie with a missing track, which triggers a null dereference.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3xvh-448x-pgv5

SQL injection vulnerability in the Submit_News module for PHP-Nuke 8.3 allows remote attackers to execute arbitrary SQL commands via the topics[] parameter to modules.php.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-3xvg-x47j-x75w

Ansible Improper Input Validation vulnerability

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3xvg-65vh-g47p

The FrameFetchContext::updateTimingInfoForIFrameNavigation function in core/loader/FrameFetchContext.cpp in Blink, as used in Google Chrome before 45.0.2454.85, does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to obtain sensitive information via crafted JavaScript code that leverages a history.back call.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-3xvc-wfvf-2p2f

Deck Mate 2 lacks a verified secure-boot chain and runtime integrity validation for its controller and display modules. Without cryptographic boot verification, an attacker with physical access can modify or replace the bootloader, kernel, or filesystem and gain persistent code execution on reboot. This weakness allows long-term firmware tampering that survives power cycles. The vendor indicates that more recent firmware updates strengthen update-chain integrity and disable physical update ports to mitigate related attack avenues.

0%
Низкий
4 месяца назад
github логотип
GHSA-3xv9-qrjx-w927

Multiple interpretation error in unspecified versions of Kaspersky Antivirus allows remote attackers to bypass virus detection via a malicious executable in a specially crafted RAR file with malformed central and local headers, which can still be opened by products such as Winrar and PowerZip, even though they are rejected as corrupted by Winzip and BitZipper.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3xv9-mv3f-9xmc

H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateSnat.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3xv8-84fj-hhg4

In the Linux kernel, the following vulnerability has been resolved: ACPI: video: Fix use-after-free in acpi_video_switch_brightness() The switch_brightness_work delayed work accesses device->brightness and device->backlight, freed by acpi_video_dev_unregister_backlight() during device removal. If the work executes after acpi_video_bus_unregister_backlight() frees these resources, it causes a use-after-free when acpi_video_switch_brightness() dereferences device->brightness or device->backlight. Fix this by calling cancel_delayed_work_sync() for each device's switch_brightness_work in acpi_video_bus_remove_notify_handler() after removing the notify handler that queues the work. This ensures the work completes before the memory is freed. [ rjw: Changelog edit ]

0%
Низкий
3 месяца назад
github логотип
GHSA-3xv8-3j54-hgrp

Out-of-bounds read in Pillow

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3xv6-f2f8-6gf4

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: WLS Web Services). The supported version that is affected is 10.3.6.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via T3 to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle WebLogic Server accessible data. CVSS 3.0 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).

CVSS3: 7.5
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу