Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 289 610

Количество 289 610

github логотип

GHSA-29ph-vc5w-7vvg

больше 3 лет назад

unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a directory traversal vulnerability for RAR v2 archives: pathnames of the form ../[filename] are unpacked into the upper directory.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-29ph-m85v-2qfv

около 3 лет назад

Shanghai Feixun Data Communication Technology Co., Ltd router fir302b A2 was discovered to contain a remote command execution (RCE) vulnerability via the Ping function.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-29ph-hfjm-vrf7

больше 2 лет назад

Adobe Premiere Rush version 2.6 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-29ph-fjf3-c5cm

больше 3 лет назад

Apache NiFi XSS issue in context path handling

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29ph-8jj3-f6p6

больше 2 лет назад

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, Exynos Auto T5123, and Exynos W920. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding operator-defined access category definitions.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29pg-f8vr-x2wh

больше 3 лет назад

GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.

EPSS: Низкий
github логотип

GHSA-29pg-6wgv-66x3

8 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: ionic: Fix netdev notifier unregister on failure If register_netdev() fails, then the driver leaks the netdev notifier. Fix this by calling ionic_lif_unregister() on register_netdev() failure. This will also call ionic_lif_unregister_phc() if it has already been registered.

EPSS: Низкий
github логотип

GHSA-29pg-266p-f6j2

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in Reset Your Password module in Exponent CMS before 2.3.5 allows remote attackers to inject arbitrary web script or HTML via the Username/Email.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-29pf-5g7p-h6r2

больше 3 лет назад

TCP RST denial of service in FreeBSD.

EPSS: Низкий
github логотип

GHSA-29pf-2r42-58qj

7 месяцев назад

Cross-Site Request Forgery (CSRF) vulnerability in David Marcucci Password Protect Plugin for WordPress allows Stored XSS.This issue affects Password Protect Plugin for WordPress: from n/a through 0.8.1.0.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-29pc-j6wp-67wc

около 1 месяца назад

The Secure Password extension in One Identity Password Manager before 5.14.4 allows local privilege escalation. The issue arises from a flawed security hardening mechanism within the kiosk browser used to display the Password Self-Service site to end users. Specifically, the application attempts to restrict privileged actions by overriding the native window.print() function. However, this protection can be bypassed by an attacker who accesses the Password Self-Service site from the lock screen and navigates to an attacker-controlled webpage via the Help function. By hosting a crafted web page with JavaScript, the attacker can restore and invoke the window.print() function, launching a SYSTEM-privileged print dialog. From this dialog, the attacker can exploit standard Windows functionality - such as the Print to PDF or Add Printer wizard - to spawn a command prompt with SYSTEM privileges. Successful exploitation allows a local attacker (with access to a locked workstation) to gain SY...

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-29pc-4j9r-26vc

4 месяца назад

Cross-Site Request Forgery (CSRF) vulnerability in WPSolr free WPSolr allows Privilege Escalation. This issue affects WPSolr: from n/a through 24.0.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-29p9-chjc-5c6w

больше 3 лет назад

The dashbuilder in Red Hat JBoss BPM Suite 6.3.2 does not properly handle CSRF tokens generated during an active session and includes them in query strings, which makes easier for remote attackers to (1) bypass CSRF protection mechanisms or (2) conduct cross-site request forgery (CSRF) attacks by obtaining an old token.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-29p9-8g79-v8jp

около 3 лет назад

Multiple out-of-bounds read issues have been identified in the way the application processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution on the Tellus Lite V-Simulator and V-Server Lite (versions prior to 4.0.10.0).

EPSS: Низкий
github логотип

GHSA-29p9-47jw-cjm2

больше 3 лет назад

Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and 1400 devices before B FRN 15.003 allow remote authenticated users to insert the content of an arbitrary file into a FRAME element via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-29p9-2mj3-cp4j

6 месяцев назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NotFound Social Links allows Blind SQL Injection. This issue affects Social Links: from n/a through 1.2.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-29p8-v995-43v6

больше 3 лет назад

Buffer over-read vulnerabilities in an older version of ASN.1 parser in Snapdragon Mobile in versions SD 600.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-29p8-pmq2-84v3

больше 3 лет назад

SQL injection vulnerability in elkagroup Image Gallery allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI under news/.

EPSS: Низкий
github логотип

GHSA-29p8-p94j-7f9c

больше 3 лет назад

HP System Management Homepage (SMH) before 2.1.9 for Linux, when used with Novell eDirectory, assigns the eDirectory members to the root group, which allows remote authenticated eDirectory users to gain privileges.

EPSS: Низкий
github логотип

GHSA-29p8-776w-hr3v

около 2 лет назад

A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary code.

CVSS3: 6.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-29ph-vc5w-7vvg

unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a directory traversal vulnerability for RAR v2 archives: pathnames of the form ../[filename] are unpacked into the upper directory.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-29ph-m85v-2qfv

Shanghai Feixun Data Communication Technology Co., Ltd router fir302b A2 was discovered to contain a remote command execution (RCE) vulnerability via the Ping function.

CVSS3: 8.8
32%
Средний
около 3 лет назад
github логотип
GHSA-29ph-hfjm-vrf7

Adobe Premiere Rush version 2.6 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-29ph-fjf3-c5cm

Apache NiFi XSS issue in context path handling

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-29ph-8jj3-f6p6

An issue was discovered in Samsung Mobile Chipset and Baseband Modem Chipset for Exynos 850, Exynos 980, Exynos 1080, Exynos 1280, Exynos 2200, Exynos Modem 5123, Exynos Modem 5300, Exynos Auto T5123, and Exynos W920. A heap-based buffer overflow in the 5G MM message codec can occur due to insufficient parameter validation when decoding operator-defined access category definitions.

CVSS3: 9.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-29pg-f8vr-x2wh

GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-29pg-6wgv-66x3

In the Linux kernel, the following vulnerability has been resolved: ionic: Fix netdev notifier unregister on failure If register_netdev() fails, then the driver leaks the netdev notifier. Fix this by calling ionic_lif_unregister() on register_netdev() failure. This will also call ionic_lif_unregister_phc() if it has already been registered.

0%
Низкий
8 месяцев назад
github логотип
GHSA-29pg-266p-f6j2

Cross-site scripting (XSS) vulnerability in Reset Your Password module in Exponent CMS before 2.3.5 allows remote attackers to inject arbitrary web script or HTML via the Username/Email.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-29pf-5g7p-h6r2

TCP RST denial of service in FreeBSD.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-29pf-2r42-58qj

Cross-Site Request Forgery (CSRF) vulnerability in David Marcucci Password Protect Plugin for WordPress allows Stored XSS.This issue affects Password Protect Plugin for WordPress: from n/a through 0.8.1.0.

CVSS3: 7.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-29pc-j6wp-67wc

The Secure Password extension in One Identity Password Manager before 5.14.4 allows local privilege escalation. The issue arises from a flawed security hardening mechanism within the kiosk browser used to display the Password Self-Service site to end users. Specifically, the application attempts to restrict privileged actions by overriding the native window.print() function. However, this protection can be bypassed by an attacker who accesses the Password Self-Service site from the lock screen and navigates to an attacker-controlled webpage via the Help function. By hosting a crafted web page with JavaScript, the attacker can restore and invoke the window.print() function, launching a SYSTEM-privileged print dialog. From this dialog, the attacker can exploit standard Windows functionality - such as the Print to PDF or Add Printer wizard - to spawn a command prompt with SYSTEM privileges. Successful exploitation allows a local attacker (with access to a locked workstation) to gain SY...

CVSS3: 7.6
0%
Низкий
около 1 месяца назад
github логотип
GHSA-29pc-4j9r-26vc

Cross-Site Request Forgery (CSRF) vulnerability in WPSolr free WPSolr allows Privilege Escalation. This issue affects WPSolr: from n/a through 24.0.

CVSS3: 8.8
0%
Низкий
4 месяца назад
github логотип
GHSA-29p9-chjc-5c6w

The dashbuilder in Red Hat JBoss BPM Suite 6.3.2 does not properly handle CSRF tokens generated during an active session and includes them in query strings, which makes easier for remote attackers to (1) bypass CSRF protection mechanisms or (2) conduct cross-site request forgery (CSRF) attacks by obtaining an old token.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-29p9-8g79-v8jp

Multiple out-of-bounds read issues have been identified in the way the application processes project files, allowing an attacker to craft a special project file that may allow arbitrary code execution on the Tellus Lite V-Simulator and V-Server Lite (versions prior to 4.0.10.0).

0%
Низкий
около 3 лет назад
github логотип
GHSA-29p9-47jw-cjm2

Allen-Bradley MicroLogix 1100 devices before B FRN 15.000 and 1400 devices before B FRN 15.003 allow remote authenticated users to insert the content of an arbitrary file into a FRAME element via unspecified vectors.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-29p9-2mj3-cp4j

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in NotFound Social Links allows Blind SQL Injection. This issue affects Social Links: from n/a through 1.2.

CVSS3: 7.6
0%
Низкий
6 месяцев назад
github логотип
GHSA-29p8-v995-43v6

Buffer over-read vulnerabilities in an older version of ASN.1 parser in Snapdragon Mobile in versions SD 600.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-29p8-pmq2-84v3

SQL injection vulnerability in elkagroup Image Gallery allows remote attackers to execute arbitrary SQL commands via the id parameter to the default URI under news/.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-29p8-p94j-7f9c

HP System Management Homepage (SMH) before 2.1.9 for Linux, when used with Novell eDirectory, assigns the eDirectory members to the root group, which allows remote authenticated eDirectory users to gain privileges.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-29p8-776w-hr3v

A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary code.

CVSS3: 6.4
0%
Низкий
около 2 лет назад

Уязвимостей на страницу