Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 288 099

Количество 288 099

github логотип

GHSA-246p-xmg8-wmcq

больше 1 года назад

OneUptime Vulnerable to a Privilege Escalation via Local Storage Key Manipulation

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-246p-m32j-f38r

около 3 лет назад

Multiple integer overflows in the evbuffer API in Libevent 1.4.x before 1.4.15, 2.0.x before 2.0.22, and 2.1.x before 2.1.5-beta allow context-dependent attackers to cause a denial of service or possibly have other unspecified impact via "insanely large inputs" to the (1) evbuffer_add, (2) evbuffer_expand, or (3) bufferevent_write function, which triggers a heap-based buffer overflow or an infinite loop. NOTE: this identifier has been SPLIT per ADT3 due to different affected versions. See CVE-2015-6525 for the functions that are only affected in 2.0 and later.

EPSS: Низкий
github логотип

GHSA-246p-f5jm-57hh

около 3 лет назад

IBM solidDB 4.5.x before 4.5.182, 6.0.x before 6.0.1069, 6.1.x and 6.3.x before 6.3 FP8 (aka 6.3.49), and 6.5.x before 6.5 FP4 (aka 6.5.0.4) does not properly handle the (1) rpc_test_svc_readwrite and (2) rpc_test_svc_done commands, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted command.

EPSS: Низкий
github логотип

GHSA-246p-56fr-j339

больше 1 года назад

Unrestricted Upload of File with Dangerous Type vulnerability in JoomUnited WP Media folder.This issue affects WP Media folder: from n/a through 5.7.2.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-246j-mq27-gjm4

больше 3 лет назад

PHP remote file inclusion vulnerability in admin.lurm_constructor.php in the Lurm Constructor component (com_lurm_constructor) 0.6b and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.

EPSS: Низкий
github логотип

GHSA-246j-93ww-rg57

около 3 лет назад

The rfbProcessClientNormalMessage function in libvncserver/rfbserver.c in LibVNCServer 0.9.9 and earlier allows remote attackers to cause a denial of service (divide-by-zero error and server crash) via a zero value in the scaling factor in a (1) PalmVNCSetScaleFactor or (2) SetScale message.

EPSS: Средний
github логотип

GHSA-246h-5xw7-rvcg

около 3 лет назад

A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Controller (Cloud APIC) could allow an authenticated, remote attacker with Administrator read-only credentials to elevate privileges on an affected system. This vulnerability is due to an insufficient role-based access control (RBAC). An attacker with Administrator read-only credentials could exploit this vulnerability by sending a specific API request using an app with admin write credentials. A successful exploit could allow the attacker to elevate privileges to Administrator with write privileges on the affected device.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-246f-fqrw-2v49

больше 3 лет назад

An issue was discovered in Open Ticket Request System (OTRS) 5.x before 5.0.34, 6.x before 6.0.16, and 7.x before 7.0.4. An attacker who is logged into OTRS as an agent or a customer user may upload a carefully crafted resource in order to cause execution of JavaScript in the context of OTRS. This is related to Content-type mishandling in Kernel/Modules/PictureUpload.pm.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-246c-vh44-43m2

больше 3 лет назад

SQL injection vulnerability in recept.php in the Recepies (Recept) module 1.1 for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the kat_id parameter in a kategorier action. NOTE: some of these details are obtained from third party information.

EPSS: Низкий
github логотип

GHSA-246c-q58f-ccm9

около 3 лет назад

Versions of Foreman as shipped with Red Hat Satellite 6 does not check for a correct CSRF token in the logout action. Therefore, an attacker can log out a user by having them view specially crafted content.

EPSS: Низкий
github логотип

GHSA-2469-2h7x-fmhh

2 месяца назад

An OS Command Injection issue exists in wivia 5 all versions. If this vulnerability is exploited, an arbitrary OS command may be executed by a logged-in administrative user.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-2468-6hhw-x65x

около 3 лет назад

An issue when unzipping docx, pptx, and xlsx documents in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have resulted in an out-of-memory denial of service. This issue would have required the receiver to explicitly open the attachment if it was received from a number not in the receiver's WhatsApp contacts.

EPSS: Низкий
github логотип

GHSA-2468-4cfj-qfq3

около 3 лет назад

Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2467-jr62-j23f

около 2 месяцев назад

A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been classified as problematic. Affected is the function OnDataCount of the file src/interp/binary-reader-interp.cc. The manipulation leads to resource consumption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. A similar issue reported during the same timeframe was disputed by the code maintainer because it might not affect "real world wasm programs". Therefore, this entry might get disputed as well in the future.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-2467-h365-j7hm

больше 3 лет назад

Improper Input Validation in Apache Solr

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2467-gpx7-r99c

около 3 лет назад

A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash objects. By itself, this bypass vulnerability does not allow arbitrary code execution, aka 'Microsoft Edge Security Feature Bypass Vulnerability'.

CVSS3: 5.3
EPSS: Средний
github логотип

GHSA-2467-cw25-7vww

больше 1 года назад

IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 255075.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-2466-4485-4pxj

5 месяцев назад

LocalS3 Project Bucket Operations Vulnerable to XML External Entity (XXE) Injection

EPSS: Низкий
github логотип

GHSA-2465-pwjf-6h5f

больше 3 лет назад

SQL injection vulnerability in signup.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the email parameter.

EPSS: Низкий
github логотип

GHSA-2463-wg6r-r9mf

почти 3 года назад

PNGDec commit 8abf6be was discovered to contain a memory allocation problem via asan_malloc_linux.cpp.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-246p-xmg8-wmcq

OneUptime Vulnerable to a Privilege Escalation via Local Storage Key Manipulation

CVSS3: 8.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-246p-m32j-f38r

Multiple integer overflows in the evbuffer API in Libevent 1.4.x before 1.4.15, 2.0.x before 2.0.22, and 2.1.x before 2.1.5-beta allow context-dependent attackers to cause a denial of service or possibly have other unspecified impact via "insanely large inputs" to the (1) evbuffer_add, (2) evbuffer_expand, or (3) bufferevent_write function, which triggers a heap-based buffer overflow or an infinite loop. NOTE: this identifier has been SPLIT per ADT3 due to different affected versions. See CVE-2015-6525 for the functions that are only affected in 2.0 and later.

1%
Низкий
около 3 лет назад
github логотип
GHSA-246p-f5jm-57hh

IBM solidDB 4.5.x before 4.5.182, 6.0.x before 6.0.1069, 6.1.x and 6.3.x before 6.3 FP8 (aka 6.3.49), and 6.5.x before 6.5 FP4 (aka 6.5.0.4) does not properly handle the (1) rpc_test_svc_readwrite and (2) rpc_test_svc_done commands, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted command.

2%
Низкий
около 3 лет назад
github логотип
GHSA-246p-56fr-j339

Unrestricted Upload of File with Dangerous Type vulnerability in JoomUnited WP Media folder.This issue affects WP Media folder: from n/a through 5.7.2.

CVSS3: 9.9
1%
Низкий
больше 1 года назад
github логотип
GHSA-246j-mq27-gjm4

PHP remote file inclusion vulnerability in admin.lurm_constructor.php in the Lurm Constructor component (com_lurm_constructor) 0.6b and earlier for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the lm_absolute_path parameter.

2%
Низкий
больше 3 лет назад
github логотип
GHSA-246j-93ww-rg57

The rfbProcessClientNormalMessage function in libvncserver/rfbserver.c in LibVNCServer 0.9.9 and earlier allows remote attackers to cause a denial of service (divide-by-zero error and server crash) via a zero value in the scaling factor in a (1) PalmVNCSetScaleFactor or (2) SetScale message.

44%
Средний
около 3 лет назад
github логотип
GHSA-246h-5xw7-rvcg

A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Controller (Cloud APIC) could allow an authenticated, remote attacker with Administrator read-only credentials to elevate privileges on an affected system. This vulnerability is due to an insufficient role-based access control (RBAC). An attacker with Administrator read-only credentials could exploit this vulnerability by sending a specific API request using an app with admin write credentials. A successful exploit could allow the attacker to elevate privileges to Administrator with write privileges on the affected device.

CVSS3: 8.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-246f-fqrw-2v49

An issue was discovered in Open Ticket Request System (OTRS) 5.x before 5.0.34, 6.x before 6.0.16, and 7.x before 7.0.4. An attacker who is logged into OTRS as an agent or a customer user may upload a carefully crafted resource in order to cause execution of JavaScript in the context of OTRS. This is related to Content-type mishandling in Kernel/Modules/PictureUpload.pm.

CVSS3: 5.4
1%
Низкий
больше 3 лет назад
github логотип
GHSA-246c-vh44-43m2

SQL injection vulnerability in recept.php in the Recepies (Recept) module 1.1 for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the kat_id parameter in a kategorier action. NOTE: some of these details are obtained from third party information.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-246c-q58f-ccm9

Versions of Foreman as shipped with Red Hat Satellite 6 does not check for a correct CSRF token in the logout action. Therefore, an attacker can log out a user by having them view specially crafted content.

0%
Низкий
около 3 лет назад
github логотип
GHSA-2469-2h7x-fmhh

An OS Command Injection issue exists in wivia 5 all versions. If this vulnerability is exploited, an arbitrary OS command may be executed by a logged-in administrative user.

CVSS3: 6.7
0%
Низкий
2 месяца назад
github логотип
GHSA-2468-6hhw-x65x

An issue when unzipping docx, pptx, and xlsx documents in WhatsApp for iOS prior to v2.20.61 and WhatsApp Business for iOS prior to v2.20.61 could have resulted in an out-of-memory denial of service. This issue would have required the receiver to explicitly open the attachment if it was received from a number not in the receiver's WhatsApp contacts.

0%
Низкий
около 3 лет назад
github логотип
GHSA-2468-4cfj-qfq3

Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible for the installer to load a malicious DLL located in the current working directory of the installer.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-2467-jr62-j23f

A vulnerability was found in WebAssembly wabt up to 1.0.37. It has been classified as problematic. Affected is the function OnDataCount of the file src/interp/binary-reader-interp.cc. The manipulation leads to resource consumption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. A similar issue reported during the same timeframe was disputed by the code maintainer because it might not affect "real world wasm programs". Therefore, this entry might get disputed as well in the future.

CVSS3: 3.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-2467-h365-j7hm

Improper Input Validation in Apache Solr

CVSS3: 8.8
2%
Низкий
больше 3 лет назад
github логотип
GHSA-2467-gpx7-r99c

A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash objects. By itself, this bypass vulnerability does not allow arbitrary code execution, aka 'Microsoft Edge Security Feature Bypass Vulnerability'.

CVSS3: 5.3
14%
Средний
около 3 лет назад
github логотип
GHSA-2467-cw25-7vww

IBM Maximo Application Suite 8.10, 8.11 and IBM Maximo Asset Management 7.6.1.3 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 255075.

CVSS3: 3.7
0%
Низкий
больше 1 года назад
github логотип
GHSA-2466-4485-4pxj

LocalS3 Project Bucket Operations Vulnerable to XML External Entity (XXE) Injection

5 месяцев назад
github логотип
GHSA-2465-pwjf-6h5f

SQL injection vulnerability in signup.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the email parameter.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2463-wg6r-r9mf

PNGDec commit 8abf6be was discovered to contain a memory allocation problem via asan_malloc_linux.cpp.

CVSS3: 6.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу