Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 453

Количество 375 453

github логотип

GHSA-xrvg-9c6x-8hxj

8 месяцев назад

Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthManager.Php. This issue affects MediaWiki: from * before 1.39.13, 1.42.7, 1.43.2, 1.44.0.

EPSS: Низкий
github логотип

GHSA-xrvg-8wch-xgxg

больше 3 лет назад

The GS Products Slider for WooCommerce WordPress plugin before 1.5.9 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xrvf-qx2p-xmvr

больше 4 лет назад

An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xrvf-p45p-f98w

больше 4 лет назад

In all Android releases from CAF using the Linux kernel, a memory structure in a camera driver is not properly protected.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xrvf-mp7h-9hr7

около 1 года назад

Meridian Technique Materialise OrthoView through 7.5.1 allows OS Command Injection when servlet sharing is enabled.

EPSS: Низкий
github логотип

GHSA-xrvf-m29v-829x

около 3 лет назад

An Authorization Bypass vulnerability was found in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual version <= 2.13.3. An authenticated remote user with low privileges can change the password of any user in the same account. This allows to take over the admin user and therefore fully compromise the account.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrvc-mqhc-wxg7

больше 4 лет назад

The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets.

EPSS: Низкий
github логотип

GHSA-xrvc-m3hh-hp9h

больше 4 лет назад

Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

EPSS: Средний
github логотип

GHSA-xrvc-5f74-4x4x

больше 4 лет назад

The CLUEVO LMS, E-Learning Platform WordPress plugin before 1.8.1 does not sanitise and escape Course's module, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

EPSS: Низкий
github логотип

GHSA-xrv9-h656-4rpq

больше 2 лет назад

A vulnerability regarding buffer copy without checking the size of input ('Classic Buffer Overflow') has been found in the login component. This allows remote attackers to conduct denial-of-service attacks via unspecified vectors. This attack only affects the login service which will automatically restart. The following models with Synology Camera Firmware versions before 1.1.1-0383 may be affected: BC500 and TC500.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xrv8-2pf5-f3q7

10 месяцев назад

nitro-tpm-pcr-compute may allow kernel command line modification by an account operator

CVSS3: 6
EPSS: Низкий
github логотип

GHSA-xrv7-w6wq-5f4g

больше 4 лет назад

The "http-client" egg always used a HTTP_PROXY environment variable to determine whether HTTP traffic should be routed via a proxy, even when running as a CGI process. Under several web servers this would mean a user-supplied "Proxy" header could allow an attacker to direct all HTTP requests through a proxy (also known as a "httpoxy" attack). This affects all versions of http-client before 0.10.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xrv7-5mq8-pxvp

около 3 лет назад

In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263783565References: N/A

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-xrv6-3vg3-5pm7

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leetoo Toocheke Companion allows Stored XSS. This issue affects Toocheke Companion: from n/a through 1.166.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xrv5-vhqh-hwxh

больше 1 года назад

Cross Site Scripting vulnerability in PecanProject pecan v.1.7.2 allows a remote attacker to execute arbitrary code via the crafted payload to the hostname, sitegroupid, lat, lon and sitename parameters.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xrv5-2wwg-jp3r

около 1 года назад

A multi-vendor cache poisoning vulnerability named 'Rebirthday Attack' has been discovered in caching resolvers that support EDNS Client Subnet (ECS). Unbound is also vulnerable when compiled with ECS support, i.e., '--enable-subnet', AND configured to send ECS information along with queries to upstream name servers, i.e., at least one of the 'send-client-subnet', 'client-subnet-zone' or 'client-subnet-always-forward' options is used. Resolvers supporting ECS need to segregate outgoing queries to accommodate for different outgoing ECS information. This re-opens up resolvers to a birthday paradox attack (Rebirthday Attack) that tries to match the DNS transaction ID in order to cache non-ECS poisonous replies.

EPSS: Низкий
github логотип

GHSA-xrv4-xm8w-pm47

около 3 лет назад

An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::cvtGlyph function.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xrv4-rvr5-75gv

4 месяца назад

Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: Critical)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrv3-jmcp-374j

около 2 лет назад

zerovec incorrectly uses `#[repr(packed)]`

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-xrv2-p88f-5qw2

больше 4 лет назад

A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.5. A local user may be able to read kernel memory.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xrvg-9c6x-8hxj

Vulnerability in Wikimedia Foundation MediaWiki. This vulnerability is associated with program files includes/auth/AuthManager.Php. This issue affects MediaWiki: from * before 1.39.13, 1.42.7, 1.43.2, 1.44.0.

1%
Низкий
8 месяцев назад
github логотип
GHSA-xrvg-8wch-xgxg

The GS Products Slider for WooCommerce WordPress plugin before 1.5.9 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xrvf-qx2p-xmvr

An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Jitsi 2.5.5061 - 2.9.5544.

CVSS3: 5.9
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xrvf-p45p-f98w

In all Android releases from CAF using the Linux kernel, a memory structure in a camera driver is not properly protected.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-xrvf-mp7h-9hr7

Meridian Technique Materialise OrthoView through 7.5.1 allows OS Command Injection when servlet sharing is enabled.

2%
Низкий
около 1 года назад
github логотип
GHSA-xrvf-m29v-829x

An Authorization Bypass vulnerability was found in MB Connect Lines mbCONNECT24, mymbCONNECT24 and Helmholz' myREX24 and myREX24.virtual version <= 2.13.3. An authenticated remote user with low privileges can change the password of any user in the same account. This allows to take over the admin user and therefore fully compromise the account.

CVSS3: 8.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-xrvc-mqhc-wxg7

The FTP server on Siemens SCALANCE X-300 switches with firmware before 4.0 and SCALANCE X 408 switches with firmware before 4.0 allows remote authenticated users to cause a denial of service (reboot) via crafted FTP packets.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xrvc-m3hh-hp9h

Double free vulnerability for the error_prog_name string in CVS 1.12.x through 1.12.8, and 1.11.x through 1.11.16, may allow remote attackers to execute arbitrary code.

13%
Средний
больше 4 лет назад
github логотип
GHSA-xrvc-5f74-4x4x

The CLUEVO LMS, E-Learning Platform WordPress plugin before 1.8.1 does not sanitise and escape Course's module, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xrv9-h656-4rpq

A vulnerability regarding buffer copy without checking the size of input ('Classic Buffer Overflow') has been found in the login component. This allows remote attackers to conduct denial-of-service attacks via unspecified vectors. This attack only affects the login service which will automatically restart. The following models with Synology Camera Firmware versions before 1.1.1-0383 may be affected: BC500 and TC500.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xrv8-2pf5-f3q7

nitro-tpm-pcr-compute may allow kernel command line modification by an account operator

CVSS3: 6
10 месяцев назад
github логотип
GHSA-xrv7-w6wq-5f4g

The "http-client" egg always used a HTTP_PROXY environment variable to determine whether HTTP traffic should be routed via a proxy, even when running as a CGI process. Under several web servers this would mean a user-supplied "Proxy" header could allow an attacker to direct all HTTP requests through a proxy (also known as a "httpoxy" attack). This affects all versions of http-client before 0.10.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xrv7-5mq8-pxvp

In Parse of simdata.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-263783565References: N/A

CVSS3: 6.7
0%
Низкий
около 3 лет назад
github логотип
GHSA-xrv6-3vg3-5pm7

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Leetoo Toocheke Companion allows Stored XSS. This issue affects Toocheke Companion: from n/a through 1.166.

CVSS3: 5.9
0%
Низкий
больше 1 года назад
github логотип
GHSA-xrv5-vhqh-hwxh

Cross Site Scripting vulnerability in PecanProject pecan v.1.7.2 allows a remote attacker to execute arbitrary code via the crafted payload to the hostname, sitegroupid, lat, lon and sitename parameters.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-xrv5-2wwg-jp3r

A multi-vendor cache poisoning vulnerability named 'Rebirthday Attack' has been discovered in caching resolvers that support EDNS Client Subnet (ECS). Unbound is also vulnerable when compiled with ECS support, i.e., '--enable-subnet', AND configured to send ECS information along with queries to upstream name servers, i.e., at least one of the 'send-client-subnet', 'client-subnet-zone' or 'client-subnet-always-forward' options is used. Resolvers supporting ECS need to segregate outgoing queries to accommodate for different outgoing ECS information. This re-opens up resolvers to a birthday paradox attack (Rebirthday Attack) that tries to match the DNS transaction ID in order to cache non-ECS poisonous replies.

0%
Низкий
около 1 года назад
github логотип
GHSA-xrv4-xm8w-pm47

An issue was discovered in freedesktop poppler version 20.12.1, allows remote attackers to cause a denial of service (DoS) via crafted .pdf file to FoFiType1C::cvtGlyph function.

CVSS3: 6.5
1%
Низкий
около 3 лет назад
github логотип
GHSA-xrv4-rvr5-75gv

Use after free in Cast in Google Chrome prior to 149.0.7827.53 allowed an attacker on the local network segment to potentially exploit heap corruption via malicious network traffic. (Chromium security severity: Critical)

CVSS3: 8.8
0%
Низкий
4 месяца назад
github логотип
GHSA-xrv3-jmcp-374j

zerovec incorrectly uses `#[repr(packed)]`

CVSS3: 6.2
около 2 лет назад
github логотип
GHSA-xrv2-p88f-5qw2

A memory initialization issue was addressed with improved memory handling. This issue is fixed in macOS Catalina 10.15.5. A local user may be able to read kernel memory.

0%
Низкий
больше 4 лет назад

Уязвимостей на страницу