Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-3j4m-48vr-7w3h

больше 3 лет назад

A vulnerability classified as critical has been found in Demokratian. This affects an unknown part of the file install/install3.php. The manipulation leads to privilege escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3j4j-xg7r-jh7c

9 месяцев назад

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 4.5 before 6.1.2.23.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3j4j-7q69-wj53

больше 3 лет назад

Nagios Core through 4.3.4 initially executes /usr/sbin/nagios as root but supports configuration options in which this file is owned by a non-root account (and similarly can have nagios.cfg owned by a non-root account), which allows local users to gain privileges by leveraging access to this non-root account.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3j4j-2gx4-3jqg

около 1 месяца назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-3j4h-h3fp-vwww

больше 1 года назад

LNbits improperly handles potential network and payment failures when using Eclair backend

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-3j4h-62vw-5645

около 2 лет назад

Authorization Bypass Through User-Controlled Key vulnerability in XWP Stream.This issue affects Stream: from n/a through 3.9.2.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-3j4f-wx4w-q2cq

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: erofs: fix inconsistent per-file compression format EROFS can select compression algorithms on a per-file basis, and each per-file compression algorithm needs to be marked in the on-disk superblock for initialization. However, syzkaller can generate inconsistent crafted images that use an unsupported algorithmtype for specific inodes, e.g. use MicroLZMA algorithmtype even it's not set in `sbi->available_compr_algs`. This can lead to an unexpected "BUG: kernel NULL pointer dereference" if the corresponding decompressor isn't built-in. Fix this by checking against `sbi->available_compr_algs` for each m_algorithmformat request. Incorrect !erofs_sb_has_compr_cfgs preset bitmap is now fixed together since it was harmless previously.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3j4f-9mvw-3h5f

больше 3 лет назад

IBM Resilient SOAR 38 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 167236.

EPSS: Низкий
github логотип

GHSA-3j4c-jhfg-648f

больше 3 лет назад

client/consumer/cli.py in Pulp before 2.8.3 writes consumer private keys to etc/pki/pulp/consumer/consumer-cert.pem as world-readable, which allows remote authenticated users to obtain the consumer private keys and escalate privileges by reading /etc/pki/pulp/consumer/consumer-cert, and authenticating as a consumer user.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3j4c-6c9j-p6jj

12 месяцев назад

Insecure direct object reference (IDOR) vulnerability in Anapi Group's h6web, allows an authenticated attacker to access other users' information by making a POST request and modifying the “pkrelated” parameter in the “/h6web/ha_datos_hermano.php” endpoint to refer to another user. In addition, the first request could also allow the attacker to impersonate other users. As a result, all requests made after exploitation of the IDOR vulnerability will be executed with the privileges of the impersonated user.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-3j4c-5xc5-gq99

больше 3 лет назад

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the filepath parameter for the download-file URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3j49-vwhx-x2h7

больше 3 лет назад

A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 which is publicly available. The user supplied input containing polyglot payload is echoed back in javascript code in HTML response. This allows an attacker to input malicious JavaScript which can steal cookie, redirect them to other malicious website, etc.

EPSS: Низкий
github логотип

GHSA-3j48-8jpp-xpwx

больше 2 лет назад

An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-3j48-6389-rp2g

больше 3 лет назад

IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3j48-3wc6-hcmv

почти 4 года назад

Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.

EPSS: Средний
github логотип

GHSA-3j47-5x58-8672

почти 4 года назад

The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.

EPSS: Низкий
github логотип

GHSA-3j45-pgff-92h5

почти 4 года назад

CRLF injection vulnerability in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary IMAP commands via newline characters in the mailbox parameter of the sqimap_mailbox_select command, aka "IMAP injection."

EPSS: Низкий
github логотип

GHSA-3j45-2pqx-6qf3

больше 3 лет назад

Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of service (memory consumption) via a large number of SIP INVITE requests, which trigger the creation of many sessions.

CVSS3: 5.3
EPSS: Высокий
github логотип

GHSA-3j44-xcrg-v77q

почти 4 года назад

SQL injection vulnerability in rss.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary SQL commands via the selectedCal parameter in a SwitchCal action.

EPSS: Низкий
github логотип

GHSA-3j44-rhhg-r43v

около 1 года назад

The Scratch & Win – Giveaways and Contests. Boost subscribers, traffic, repeat visits, referrals, sales and more plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.7.1. This is due to missing nonce validation on the reset_installation() function. This makes it possible for unauthenticated attackers to reset the plugin’s installation via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3j4m-48vr-7w3h

A vulnerability classified as critical has been found in Demokratian. This affects an unknown part of the file install/install3.php. The manipulation leads to privilege escalation. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3j4j-xg7r-jh7c

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in RTI Connext Professional (Core Libraries) allows Overflow Variables and Tags.This issue affects Connext Professional: from 7.4.0 before 7.5.0, from 7.0.0 before 7.3.0.7, from 4.5 before 6.1.2.23.

CVSS3: 7.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-3j4j-7q69-wj53

Nagios Core through 4.3.4 initially executes /usr/sbin/nagios as root but supports configuration options in which this file is owned by a non-root account (and similarly can have nagios.cfg owned by a non-root account), which allows local users to gain privileges by leveraging access to this non-root account.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3j4j-2gx4-3jqg

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

около 1 месяца назад
github логотип
GHSA-3j4h-h3fp-vwww

LNbits improperly handles potential network and payment failures when using Eclair backend

CVSS3: 8.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-3j4h-62vw-5645

Authorization Bypass Through User-Controlled Key vulnerability in XWP Stream.This issue affects Stream: from n/a through 3.9.2.

CVSS3: 4.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-3j4f-wx4w-q2cq

In the Linux kernel, the following vulnerability has been resolved: erofs: fix inconsistent per-file compression format EROFS can select compression algorithms on a per-file basis, and each per-file compression algorithm needs to be marked in the on-disk superblock for initialization. However, syzkaller can generate inconsistent crafted images that use an unsupported algorithmtype for specific inodes, e.g. use MicroLZMA algorithmtype even it's not set in `sbi->available_compr_algs`. This can lead to an unexpected "BUG: kernel NULL pointer dereference" if the corresponding decompressor isn't built-in. Fix this by checking against `sbi->available_compr_algs` for each m_algorithmformat request. Incorrect !erofs_sb_has_compr_cfgs preset bitmap is now fixed together since it was harmless previously.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-3j4f-9mvw-3h5f

IBM Resilient SOAR 38 uses incomplete blacklisting for input validation which allows attackers to bypass application controls resulting in direct impact to the system and data integrity. IBM X-Force ID: 167236.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3j4c-jhfg-648f

client/consumer/cli.py in Pulp before 2.8.3 writes consumer private keys to etc/pki/pulp/consumer/consumer-cert.pem as world-readable, which allows remote authenticated users to obtain the consumer private keys and escalate privileges by reading /etc/pki/pulp/consumer/consumer-cert, and authenticating as a consumer user.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3j4c-6c9j-p6jj

Insecure direct object reference (IDOR) vulnerability in Anapi Group's h6web, allows an authenticated attacker to access other users' information by making a POST request and modifying the “pkrelated” parameter in the “/h6web/ha_datos_hermano.php” endpoint to refer to another user. In addition, the first request could also allow the attacker to impersonate other users. As a result, all requests made after exploitation of the IDOR vulnerability will be executed with the privileges of the impersonated user.

CVSS3: 9.1
0%
Низкий
12 месяцев назад
github логотип
GHSA-3j4c-5xc5-gq99

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the filepath parameter for the download-file URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

CVSS3: 7.5
4%
Низкий
больше 3 лет назад
github логотип
GHSA-3j49-vwhx-x2h7

A Stored Cross Site Scripting(XSS) Vulnerability was discovered in PEEL SHOPPING 9.3.0 which is publicly available. The user supplied input containing polyglot payload is echoed back in javascript code in HTML response. This allows an attacker to input malicious JavaScript which can steal cookie, redirect them to other malicious website, etc.

4%
Низкий
больше 3 лет назад
github логотип
GHSA-3j48-8jpp-xpwx

An improper input validation in IpcTxCfgSetSimlockPayload in libsec-ril prior to SMR Aug-2023 Release 1 allows attacker to cause out-of-bounds write.

CVSS3: 4.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3j48-6389-rp2g

IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.

CVSS3: 8.8
3%
Низкий
больше 3 лет назад
github логотип
GHSA-3j48-3wc6-hcmv

Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields.

13%
Средний
почти 4 года назад
github логотип
GHSA-3j47-5x58-8672

The web interface on Cisco IOS 12.3(8)JA and 12.3(8)JA1, as used on the Cisco Wireless Access Point and Wireless Bridge, reconfigures itself when it is changed to use the "Local User List Only (Individual Passwords)" setting, which removes all security and password configurations and allows remote attackers to access the system.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3j45-pgff-92h5

CRLF injection vulnerability in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary IMAP commands via newline characters in the mailbox parameter of the sqimap_mailbox_select command, aka "IMAP injection."

2%
Низкий
почти 4 года назад
github логотип
GHSA-3j45-2pqx-6qf3

Microsoft Communicator, and Communicator in Microsoft Office 2010 beta, allows remote attackers to cause a denial of service (memory consumption) via a large number of SIP INVITE requests, which trigger the creation of many sessions.

CVSS3: 5.3
82%
Высокий
больше 3 лет назад
github логотип
GHSA-3j44-xcrg-v77q

SQL injection vulnerability in rss.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary SQL commands via the selectedCal parameter in a SwitchCal action.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3j44-rhhg-r43v

The Scratch & Win – Giveaways and Contests. Boost subscribers, traffic, repeat visits, referrals, sales and more plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.7.1. This is due to missing nonce validation on the reset_installation() function. This makes it possible for unauthenticated attackers to reset the plugin’s installation via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 5.4
0%
Низкий
около 1 года назад

Уязвимостей на страницу