Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 375

Количество 314 375

github логотип

GHSA-3q79-gjf7-rwwf

больше 3 лет назад

ZStack is open source IaaS(infrastructure as a service) software aiming to automate datacenters, managing resources of compute, storage, and networking all by APIs. Affected versions of ZStack REST API are vulnerable to post-authentication Remote Code Execution (RCE) via bypass of the Groovy shell sandbox. The REST API exposes the GET zstack/v1/batch-queries?script endpoint which is backed up by the BatchQueryAction class. Messages are represented by the APIBatchQueryMsg, dispatched to the QueryFacadeImpl facade and handled by the BatchQuery class. The HTTP request parameter script is mapped to the APIBatchQueryMsg.script property and evaluated as a Groovy script in BatchQuery.query the evaluation of the user-controlled Groovy script is sandboxed by SandboxTransformer which will apply the restrictions defined in the registered (sandbox.register()) GroovyInterceptor. Even though the sandbox heavily restricts the receiver types to a small set of allowed types, the sandbox is non effec...

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-3q79-7347-5532

10 месяцев назад

Deserialization of Untrusted Data vulnerability in djjmz Social Counter allows Object Injection. This issue affects Social Counter: from n/a through 2.0.5.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3q78-4j93-p8qr

больше 1 года назад

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the restore function.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-3q77-f5cm-vr2m

около 1 года назад

Insecure Permissions vulnerability in SecureSTATION v.2.5.5.3116-S50-SMA-B20160811A and before allows a physically proximate attacker to obtain sensitive information via the modification of user credentials.

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-3q77-c23g-8p2h

больше 3 лет назад

A Reflected XSS was found in the server selection box inside the login page at: enginemanager/loginfailed.html in Wowza Streaming Engine <= 4.x.x.

EPSS: Низкий
github логотип

GHSA-3q77-54x6-434x

больше 1 года назад

Secure Boot Security Feature Bypass Vulnerability

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-3q76-jq6m-573p

больше 2 лет назад

Archive_Tar contains Potential RCE if filename starts with phar://

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-3q76-jpjg-96ff

почти 3 года назад

A vulnerability in the bidirectional forwarding detection (BFD) hardware offload feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers, ASR 9902 Compact High-Performance Routers, and ASR 9903 Compact High-Performance Routers could allow an unauthenticated, remote attacker to cause a line card to reset, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of malformed BFD packets that are received on line cards where the BFD hardware offload feature is enabled. An attacker could exploit this vulnerability by sending a crafted IPv4 BFD packet to an affected device. A successful exploit could allow the attacker to cause line card exceptions or a hard reset, resulting in loss of traffic over that line card while the line card reloads.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3q76-8594-629m

почти 4 года назад

** DISPUTED ** Cross-site scripting (XSS) vulnerability in member.php in vBulletin 3.5.x allows remote attackers to inject arbitrary web script or HTML via the u parameter. NOTE: the vendor has disputed this report, stating that they have been unable to replicate the issue and that "the userid parameter is run through our filtering system as an unsigned integer."

EPSS: Низкий
github логотип

GHSA-3q75-rp5f-jff5

7 месяцев назад

In Plesk Obsidian 18.0.69, unauthenticated requests to /login_up.php can reveal an AWS accessKeyId, secretAccessKey, region, and endpoint.

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-3q75-gmh9-x7r6

больше 3 лет назад

IBM StoreIQ 7.6.0.0. through 7.6.0.18 could allow an authenticated user to obtain sensitive information that a privileged user should only be allowed to view. IBM X-Force ID: 158696.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-3q75-2gg2-99h4

больше 3 лет назад

The administration functionality in Wuzly 2.0 allows remote attackers to bypass authentication by setting the dXNlcm5hbWU cookie.

EPSS: Низкий
github логотип

GHSA-3q74-vrwv-v9x3

около 1 года назад

Missing Authorization vulnerability in theDotstore Advance Menu Manager.This issue affects Advance Menu Manager: from n/a through 3.1.1.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3q74-6f83-38mg

больше 3 лет назад

IBM Security Access Manager for Web allows web pages to be stored locally which can be read by another user on the system.

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-3q72-ch8q-5j47

больше 3 лет назад

NTFS TmaxSoft JEUS 5 before Fix 26 allows remote attackers to read the source code for scripts by appending ::$DATA to the URL, which accesses the alternate data stream.

EPSS: Низкий
github логотип

GHSA-3q6x-mjrg-68xw

около 2 месяцев назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in TalentSoft Software UNIS allows Reflected XSS.This issue affects UNIS: before 42957.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3q6x-j6f7-rvxv

10 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Website366.com WPSHARE247 Elementor Addons allows Stored XSS. This issue affects WPSHARE247 Elementor Addons: from n/a through 2.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3q6x-gxwh-88p9

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: lib/test_hmm.c: handle src_pfns and dst_pfns allocation failure The kcalloc() in dmirror_device_evict_chunk() will return null if the physical memory has run out. As a result, if src_pfns or dst_pfns is dereferenced, the null pointer dereference bug will happen. Moreover, the device is going away. If the kcalloc() fails, the pages mapping a chunk could not be evicted. So add a __GFP_NOFAIL flag in kcalloc(). Finally, as there is no need to have physically contiguous memory, Switch kcalloc() to kvcalloc() in order to avoid failing allocations.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3q6w-vp42-26vx

11 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Sharma wordpress login form to anywhere allows Stored XSS. This issue affects wordpress login form to anywhere: from n/a through 0.2.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-3q6v-mwhw-45h2

около 1 года назад

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.3. An app with root privileges may be able to execute arbitrary code with kernel privileges.

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3q79-gjf7-rwwf

ZStack is open source IaaS(infrastructure as a service) software aiming to automate datacenters, managing resources of compute, storage, and networking all by APIs. Affected versions of ZStack REST API are vulnerable to post-authentication Remote Code Execution (RCE) via bypass of the Groovy shell sandbox. The REST API exposes the GET zstack/v1/batch-queries?script endpoint which is backed up by the BatchQueryAction class. Messages are represented by the APIBatchQueryMsg, dispatched to the QueryFacadeImpl facade and handled by the BatchQuery class. The HTTP request parameter script is mapped to the APIBatchQueryMsg.script property and evaluated as a Groovy script in BatchQuery.query the evaluation of the user-controlled Groovy script is sandboxed by SandboxTransformer which will apply the restrictions defined in the registered (sandbox.register()) GroovyInterceptor. Even though the sandbox heavily restricts the receiver types to a small set of allowed types, the sandbox is non effec...

CVSS3: 9.9
2%
Низкий
больше 3 лет назад
github логотип
GHSA-3q79-7347-5532

Deserialization of Untrusted Data vulnerability in djjmz Social Counter allows Object Injection. This issue affects Social Counter: from n/a through 2.0.5.

CVSS3: 7.2
0%
Низкий
10 месяцев назад
github логотип
GHSA-3q78-4j93-p8qr

In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the restore function.

CVSS3: 8
0%
Низкий
больше 1 года назад
github логотип
GHSA-3q77-f5cm-vr2m

Insecure Permissions vulnerability in SecureSTATION v.2.5.5.3116-S50-SMA-B20160811A and before allows a physically proximate attacker to obtain sensitive information via the modification of user credentials.

CVSS3: 4.6
0%
Низкий
около 1 года назад
github логотип
GHSA-3q77-c23g-8p2h

A Reflected XSS was found in the server selection box inside the login page at: enginemanager/loginfailed.html in Wowza Streaming Engine <= 4.x.x.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3q77-54x6-434x

Secure Boot Security Feature Bypass Vulnerability

CVSS3: 8
2%
Низкий
больше 1 года назад
github логотип
GHSA-3q76-jq6m-573p

Archive_Tar contains Potential RCE if filename starts with phar://

CVSS3: 8.8
29%
Средний
больше 2 лет назад
github логотип
GHSA-3q76-jpjg-96ff

A vulnerability in the bidirectional forwarding detection (BFD) hardware offload feature of Cisco IOS XR Software for Cisco ASR 9000 Series Aggregation Services Routers, ASR 9902 Compact High-Performance Routers, and ASR 9903 Compact High-Performance Routers could allow an unauthenticated, remote attacker to cause a line card to reset, resulting in a denial of service (DoS) condition. This vulnerability is due to the incorrect handling of malformed BFD packets that are received on line cards where the BFD hardware offload feature is enabled. An attacker could exploit this vulnerability by sending a crafted IPv4 BFD packet to an affected device. A successful exploit could allow the attacker to cause line card exceptions or a hard reset, resulting in loss of traffic over that line card while the line card reloads.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-3q76-8594-629m

** DISPUTED ** Cross-site scripting (XSS) vulnerability in member.php in vBulletin 3.5.x allows remote attackers to inject arbitrary web script or HTML via the u parameter. NOTE: the vendor has disputed this report, stating that they have been unable to replicate the issue and that "the userid parameter is run through our filtering system as an unsigned integer."

7%
Низкий
почти 4 года назад
github логотип
GHSA-3q75-rp5f-jff5

In Plesk Obsidian 18.0.69, unauthenticated requests to /login_up.php can reveal an AWS accessKeyId, secretAccessKey, region, and endpoint.

CVSS3: 5.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-3q75-gmh9-x7r6

IBM StoreIQ 7.6.0.0. through 7.6.0.18 could allow an authenticated user to obtain sensitive information that a privileged user should only be allowed to view. IBM X-Force ID: 158696.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3q75-2gg2-99h4

The administration functionality in Wuzly 2.0 allows remote attackers to bypass authentication by setting the dXNlcm5hbWU cookie.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3q74-vrwv-v9x3

Missing Authorization vulnerability in theDotstore Advance Menu Manager.This issue affects Advance Menu Manager: from n/a through 3.1.1.

CVSS3: 7.1
0%
Низкий
около 1 года назад
github логотип
GHSA-3q74-6f83-38mg

IBM Security Access Manager for Web allows web pages to be stored locally which can be read by another user on the system.

CVSS3: 4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3q72-ch8q-5j47

NTFS TmaxSoft JEUS 5 before Fix 26 allows remote attackers to read the source code for scripts by appending ::$DATA to the URL, which accesses the alternate data stream.

10%
Низкий
больше 3 лет назад
github логотип
GHSA-3q6x-mjrg-68xw

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in TalentSoft Software UNIS allows Reflected XSS.This issue affects UNIS: before 42957.

CVSS3: 5.4
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-3q6x-j6f7-rvxv

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Website366.com WPSHARE247 Elementor Addons allows Stored XSS. This issue affects WPSHARE247 Elementor Addons: from n/a through 2.1.

CVSS3: 6.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-3q6x-gxwh-88p9

In the Linux kernel, the following vulnerability has been resolved: lib/test_hmm.c: handle src_pfns and dst_pfns allocation failure The kcalloc() in dmirror_device_evict_chunk() will return null if the physical memory has run out. As a result, if src_pfns or dst_pfns is dereferenced, the null pointer dereference bug will happen. Moreover, the device is going away. If the kcalloc() fails, the pages mapping a chunk could not be evicted. So add a __GFP_NOFAIL flag in kcalloc(). Finally, as there is no need to have physically contiguous memory, Switch kcalloc() to kvcalloc() in order to avoid failing allocations.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3q6w-vp42-26vx

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ajay Sharma wordpress login form to anywhere allows Stored XSS. This issue affects wordpress login form to anywhere: from n/a through 0.2.

CVSS3: 5.9
0%
Низкий
11 месяцев назад
github логотип
GHSA-3q6v-mwhw-45h2

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.3. An app with root privileges may be able to execute arbitrary code with kernel privileges.

CVSS3: 6.7
0%
Низкий
около 1 года назад

Уязвимостей на страницу