Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-3jh4-xfq2-x9w9

больше 3 лет назад

Directory traversal vulnerability in AnyConnect 1.2.3.0, and possibly earlier, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename.

EPSS: Низкий
github логотип

GHSA-3jh4-vm9g-v8q4

почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in jax_guestbook.php in Jax Guestbook 3.1 and 3.31 allow remote attackers to inject arbitrary web script or HTML via the (1) gmt_ofs and (2) language parameters. NOTE: the page parameter is already covered by CVE-2006-1913. NOTE: it was later reported that 3.50 is also affected.

EPSS: Низкий
github логотип

GHSA-3jh3-33p7-v8h9

больше 3 лет назад

phpABook 0.9i is vulnerable to SQL Injection due to insufficient sanitization of user-supplied data in the "auth_user" parameter in index.php script.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3jh2-wmv7-m932

больше 3 лет назад

LibreNMS stored Cross-site Scripting via Schedule Maintenance `Title` parameter

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3jh2-p3qq-v4p3

больше 3 лет назад

The mintToken function of a smart contract implementation for DaddyToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3jh2-34x2-mr98

почти 4 года назад

Unknown "front page vulnerability with Moodle servers" for Moodle before 1.3.2 has unknown impact and attack vectors.

EPSS: Низкий
github логотип

GHSA-3jgx-j97r-g3gv

около 1 года назад

Microsoft/Muzic Remote Code Execution Vulnerability

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-3jgw-g36w-mxm7

больше 3 лет назад

The resample_gauss function in resample.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted mid file. NOTE: a crash might be relevant when using the --background option. NOTE: the TiMidity++ README.alsaseq documentation suggests a setuid-root installation.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3jgv-wwhq-3278

больше 3 лет назад

Doctor Search Script 1.0 has SQL Injection via the /list city parameter.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3jgv-pfqj-v626

почти 2 года назад

Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Batch-Issue Exam Tickets function.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3jgv-8wx7-rw7p

больше 3 лет назад

An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_ioctl in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Linux kernel through 4.19.13. A local attacker can craft a malicious IOCTL function call to overwrite arbitrary kernel memory, resulting in a Denial of Service or privilege escalation.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3jgv-277j-g3m7

5 месяцев назад

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Denial of Service vulnerability. Successful exploit could allow an unauthenticated attacker to cause a Denial of Service on the Admin node.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3jgr-qggx-qpqx

больше 3 лет назад

Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0306.

EPSS: Средний
github логотип

GHSA-3jgp-624h-phx4

около 3 лет назад

It may be possible for an attacker to craft an email message that causes Thunderbird to perform an out-of-bounds write of one byte when processing the message. This vulnerability affects Thunderbird < 91.6.1.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3jgm-wf2v-2mpq

почти 2 года назад

The MasterStudy LMS plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.3 via the 'template' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-3jgm-v75x-gfc2

почти 3 года назад

In adsp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07696134; Issue ID: ALPS07696134.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-3jgj-6r4f-qgcx

больше 3 лет назад

SQL injection vulnerability in default.asp in Cyberhost allows remote attackers to execute arbitrary SQL commands via the id parameter.

EPSS: Низкий
github логотип

GHSA-3jgj-55q7-3rwv

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: drm/sched: Check scheduler work queue before calling timeout handling During an IGT GPU reset test we see again oops despite of commit 0c8c901aaaebc9 (drm/sched: Check scheduler ready before calling timeout handling). It uses ready condition whether to call drm_sched_fault which unwind the TDR leads to GPU reset. However it looks the ready condition is overloaded with other meanings, for example, for the following stack is related GPU reset : 0 gfx_v9_0_cp_gfx_start 1 gfx_v9_0_cp_gfx_resume 2 gfx_v9_0_cp_resume 3 gfx_v9_0_hw_init 4 gfx_v9_0_resume 5 amdgpu_device_ip_resume_phase2 does the following: /* start the ring */ gfx_v9_0_cp_gfx_start(adev); ring->sched.ready = true; The same approach is for other ASICs as well : gfx_v8_0_cp_gfx_resume gfx_v10_0_kiq_resume, etc... As a result, our GPU reset test causes GPU fault which calls unconditionally gfx_v9_0_fault and then drm_sched_fault. However now i...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3jgh-cx2h-h5xp

около 1 года назад

An issue was discovered in Logpoint UniversalNormalizer before 5.7.0. Authenticated users can inject payloads while creating Universal Normalizer. These are executed, leading to Remote Code Execution.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3jgg-vqj7-2c3r

больше 3 лет назад

Puppet Module Tool (PMT), as used in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x before 3.0.1, installs modules with weak permissions if those permissions were used when the modules were originally built, which might allow local users to read or modify those modules depending on the original permissions.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3jh4-xfq2-x9w9

Directory traversal vulnerability in AnyConnect 1.2.3.0, and possibly earlier, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jh4-vm9g-v8q4

Multiple cross-site scripting (XSS) vulnerabilities in jax_guestbook.php in Jax Guestbook 3.1 and 3.31 allow remote attackers to inject arbitrary web script or HTML via the (1) gmt_ofs and (2) language parameters. NOTE: the page parameter is already covered by CVE-2006-1913. NOTE: it was later reported that 3.50 is also affected.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3jh3-33p7-v8h9

phpABook 0.9i is vulnerable to SQL Injection due to insufficient sanitization of user-supplied data in the "auth_user" parameter in index.php script.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jh2-wmv7-m932

LibreNMS stored Cross-site Scripting via Schedule Maintenance `Title` parameter

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jh2-p3qq-v4p3

The mintToken function of a smart contract implementation for DaddyToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jh2-34x2-mr98

Unknown "front page vulnerability with Moodle servers" for Moodle before 1.3.2 has unknown impact and attack vectors.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3jgx-j97r-g3gv

Microsoft/Muzic Remote Code Execution Vulnerability

CVSS3: 8.4
0%
Низкий
около 1 года назад
github логотип
GHSA-3jgw-g36w-mxm7

The resample_gauss function in resample.c in TiMidity++ 2.14.0 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted mid file. NOTE: a crash might be relevant when using the --background option. NOTE: the TiMidity++ README.alsaseq documentation suggests a setuid-root installation.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jgv-wwhq-3278

Doctor Search Script 1.0 has SQL Injection via the /list city parameter.

CVSS3: 9.8
3%
Низкий
больше 3 лет назад
github логотип
GHSA-3jgv-pfqj-v626

Server-Side Template Injection (SSTI) vulnerability in inducer relate before v.2024.1 allows a remote attacker to execute arbitrary code via a crafted payload to the Batch-Issue Exam Tickets function.

CVSS3: 7.5
4%
Низкий
почти 2 года назад
github логотип
GHSA-3jgv-8wx7-rw7p

An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_ioctl in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Linux kernel through 4.19.13. A local attacker can craft a malicious IOCTL function call to overwrite arbitrary kernel memory, resulting in a Denial of Service or privilege escalation.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3jgv-277j-g3m7

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Denial of Service vulnerability. Successful exploit could allow an unauthenticated attacker to cause a Denial of Service on the Admin node.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-3jgr-qggx-qpqx

Adobe Flash Player before 13.0.0.260 and 14.x through 16.x before 16.0.0.257 on Windows and OS X and before 11.2.202.429 on Linux, Adobe AIR before 16.0.0.245 on Windows and OS X and before 16.0.0.272 on Android, Adobe AIR SDK before 16.0.0.272, and Adobe AIR SDK & Compiler before 16.0.0.272 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2015-0306.

11%
Средний
больше 3 лет назад
github логотип
GHSA-3jgp-624h-phx4

It may be possible for an attacker to craft an email message that causes Thunderbird to perform an out-of-bounds write of one byte when processing the message. This vulnerability affects Thunderbird < 91.6.1.

CVSS3: 8.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-3jgm-wf2v-2mpq

The MasterStudy LMS plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 3.3.3 via the 'template' parameter. This makes it possible for unauthenticated attackers to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included.

CVSS3: 9.8
45%
Средний
почти 2 года назад
github логотип
GHSA-3jgm-v75x-gfc2

In adsp, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07696134; Issue ID: ALPS07696134.

CVSS3: 6.7
0%
Низкий
почти 3 года назад
github логотип
GHSA-3jgj-6r4f-qgcx

SQL injection vulnerability in default.asp in Cyberhost allows remote attackers to execute arbitrary SQL commands via the id parameter.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-3jgj-55q7-3rwv

In the Linux kernel, the following vulnerability has been resolved: drm/sched: Check scheduler work queue before calling timeout handling During an IGT GPU reset test we see again oops despite of commit 0c8c901aaaebc9 (drm/sched: Check scheduler ready before calling timeout handling). It uses ready condition whether to call drm_sched_fault which unwind the TDR leads to GPU reset. However it looks the ready condition is overloaded with other meanings, for example, for the following stack is related GPU reset : 0 gfx_v9_0_cp_gfx_start 1 gfx_v9_0_cp_gfx_resume 2 gfx_v9_0_cp_resume 3 gfx_v9_0_hw_init 4 gfx_v9_0_resume 5 amdgpu_device_ip_resume_phase2 does the following: /* start the ring */ gfx_v9_0_cp_gfx_start(adev); ring->sched.ready = true; The same approach is for other ASICs as well : gfx_v8_0_cp_gfx_resume gfx_v10_0_kiq_resume, etc... As a result, our GPU reset test causes GPU fault which calls unconditionally gfx_v9_0_fault and then drm_sched_fault. However now i...

CVSS3: 5.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-3jgh-cx2h-h5xp

An issue was discovered in Logpoint UniversalNormalizer before 5.7.0. Authenticated users can inject payloads while creating Universal Normalizer. These are executed, leading to Remote Code Execution.

CVSS3: 7.1
2%
Низкий
около 1 года назад
github логотип
GHSA-3jgg-vqj7-2c3r

Puppet Module Tool (PMT), as used in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x before 3.0.1, installs modules with weak permissions if those permissions were used when the modules were originally built, which might allow local users to read or modify those modules depending on the original permissions.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу