Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 375

Количество 314 375

github логотип

GHSA-3hxx-hmh7-hxpr

4 месяца назад

FelixRiddle dev-jobs-handlebars 1.0 uses absolute password-reset (magic) links using the untrusted `req.headers.host` header and forces the `http://` scheme. An attacker who can control the `Host` header (or exploit a misconfigured proxy/load-balancer that forwards the header unchanged) can cause reset links to point to attacker-controlled domains or be delivered via insecure HTTP, enabling token theft, phishing, and account takeover.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-3hxx-7wff-xwh8

почти 4 года назад

WebKit, as used in Google Chrome before 4.0.249.78 and Apple Safari, allows remote attackers to bypass intended restrictions on popup windows via crafted use of a mouse click event.

EPSS: Низкий
github логотип

GHSA-3hxw-g85p-qgxm

больше 3 лет назад

PharStreamWrapper for Typo3 unsafe deserialization vulnerability

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3hxw-4626-cm6f

6 месяцев назад

This vulnerability exists in ZKTeco WL20 due to storage of admin and user credentials without encryption in the device firmware. An attacker with physical access could exploit this vulnerability by extracting the firmware and reverse engineer the binary data to access the unencrypted credentials stored in the firmware of targeted device.

EPSS: Низкий
github логотип

GHSA-3hxr-9gc8-927w

почти 4 года назад

Buffer overflow in the SetUp function in socket/request.c in CrossFire 1.9.0 allows remote attackers to execute arbitrary code via a long setup sound command, a different vulnerability than CVE-2006-1010.

EPSS: Средний
github логотип

GHSA-3hxq-v55q-xvxq

около 4 лет назад

Persistent Cross Site Scripting in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 via the Search Functionality allows authenticated users with Object Modification privileges to inject arbitrary HTML and JavaScript in object attributes, which is then rendered in the Search Functionality, to alter the intended functionality and steal cookies, the latter allowing for account takeover.

EPSS: Низкий
github логотип

GHSA-3hxq-f9p6-ww56

12 месяцев назад

An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo Vantage on SMB notebook devices which could allow a local attacker to elevate privileges on the system. This vulnerability only affects Vantage installed on these devices: * Lenovo V Series (Gen 5) * ThinkBook 14 (Gen 6, 7) * ThinkBook 16 (Gen 6, 7) * ThinkPad E Series (Gen 1)

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3hxq-37g6-vgvh

около 1 года назад

Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3hxp-x9v3-rrq4

больше 3 лет назад

The Amazon AWS module before 7.x-1.3 for Drupal uses the base URL and AWS access key to generate the access token, which makes it easier for remote attackers to guess the token value and create backups via a crafted URL.

EPSS: Низкий
github логотип

GHSA-3hxp-v5gh-hxgj

больше 3 лет назад

3S-Smart CODESYS Gateway Server before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted (1) GET or (2) POST request.

EPSS: Низкий
github логотип

GHSA-3hxp-qjj8-fm85

12 дней назад

Incorrect access control in the importUser function of SpringBlade v4.5.0 allows attackers with low-level privileges to arbitrarily import sensitive user data.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-3hxp-29c8-25h6

почти 4 года назад

An issue was discovered in PONTON X/P Messenger before 3.11.2. Several functions are vulnerable to reflected XSS, as demonstrated by private/index.jsp?partners/ShowNonLocalPartners.do?localID= or private/index.jsp or private/index.jsp?database/databaseTab.jsp or private/index.jsp?activation/activationMainTab.jsp or private/index.jsp?communication/serverTab.jsp or private/index.jsp?emailNotification/notificationTab.jsp.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3hxm-xw7j-7rgj

почти 4 года назад

The Photo Gallery by 10Web WordPress plugin before 1.6.0 does not validate and escape the bwg_tag_id_bwg_thumbnails_0 parameter before using it in a SQL statement via the bwg_frontend_data AJAX action (available to unauthenticated and authenticated users), leading to an unauthenticated SQL injection

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-3hxh-mh53-wv9q

около 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Imbasynergy ImbaChat allows DOM-Based XSS.This issue affects ImbaChat: from n/a through 3.1.4.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3hxh-g2hm-fh38

6 месяцев назад

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author’ parameter in all versions up to, and including, 5.80.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3hxh-8cp2-g4hg

больше 4 лет назад

Use after free and segfault in shape inference functions

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-3hxh-7jxm-59x4

больше 3 лет назад

AtomicBucket<T> unconditionally implements Send/Sync

EPSS: Низкий
github логотип

GHSA-3hxg-qg6f-x2wp

почти 4 года назад

GPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a stack-overflow vulnerability in function gf_isom_get_sample_for_movie_time of mp4box.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3hxg-fxwm-8gf7

больше 1 года назад

CRLF injection in Refit's [Header], [HeaderCollection] and [Authorize] attributes

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3hxf-p384-rmc6

больше 2 лет назад

A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass content filters that are configured on an affected device. The vulnerability is due to improper handling of password-protected zip files. An attacker could exploit this vulnerability by sending a malicious file inside a crafted zip-compressed file to an affected device. A successful exploit could allow the attacker to bypass configured content filters that would normally drop the email.

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3hxx-hmh7-hxpr

FelixRiddle dev-jobs-handlebars 1.0 uses absolute password-reset (magic) links using the untrusted `req.headers.host` header and forces the `http://` scheme. An attacker who can control the `Host` header (or exploit a misconfigured proxy/load-balancer that forwards the header unchanged) can cause reset links to point to attacker-controlled domains or be delivered via insecure HTTP, enabling token theft, phishing, and account takeover.

CVSS3: 8.2
0%
Низкий
4 месяца назад
github логотип
GHSA-3hxx-7wff-xwh8

WebKit, as used in Google Chrome before 4.0.249.78 and Apple Safari, allows remote attackers to bypass intended restrictions on popup windows via crafted use of a mouse click event.

2%
Низкий
почти 4 года назад
github логотип
GHSA-3hxw-g85p-qgxm

PharStreamWrapper for Typo3 unsafe deserialization vulnerability

CVSS3: 9.8
3%
Низкий
больше 3 лет назад
github логотип
GHSA-3hxw-4626-cm6f

This vulnerability exists in ZKTeco WL20 due to storage of admin and user credentials without encryption in the device firmware. An attacker with physical access could exploit this vulnerability by extracting the firmware and reverse engineer the binary data to access the unencrypted credentials stored in the firmware of targeted device.

0%
Низкий
6 месяцев назад
github логотип
GHSA-3hxr-9gc8-927w

Buffer overflow in the SetUp function in socket/request.c in CrossFire 1.9.0 allows remote attackers to execute arbitrary code via a long setup sound command, a different vulnerability than CVE-2006-1010.

12%
Средний
почти 4 года назад
github логотип
GHSA-3hxq-v55q-xvxq

Persistent Cross Site Scripting in Web Applications operating on Business-DNA Solutions GmbH’s TopEase® Platform Version <= 7.1.27 via the Search Functionality allows authenticated users with Object Modification privileges to inject arbitrary HTML and JavaScript in object attributes, which is then rendered in the Search Functionality, to alter the intended functionality and steal cookies, the latter allowing for account takeover.

0%
Низкий
около 4 лет назад
github логотип
GHSA-3hxq-f9p6-ww56

An improper privilege vulnerability was reported in a BIOS customization feature of Lenovo Vantage on SMB notebook devices which could allow a local attacker to elevate privileges on the system. This vulnerability only affects Vantage installed on these devices: * Lenovo V Series (Gen 5) * ThinkBook 14 (Gen 6, 7) * ThinkBook 16 (Gen 6, 7) * ThinkPad E Series (Gen 1)

CVSS3: 7.8
0%
Низкий
12 месяцев назад
github логотип
GHSA-3hxq-37g6-vgvh

Buffer Overflow vulnerability in radarorg radare2 v.5.8.8 allows an attacker to execute arbitrary code via the parse_die function.

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-3hxp-x9v3-rrq4

The Amazon AWS module before 7.x-1.3 for Drupal uses the base URL and AWS access key to generate the access token, which makes it easier for remote attackers to guess the token value and create backups via a crafted URL.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3hxp-v5gh-hxgj

3S-Smart CODESYS Gateway Server before 2.3.9.48 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted (1) GET or (2) POST request.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-3hxp-qjj8-fm85

Incorrect access control in the importUser function of SpringBlade v4.5.0 allows attackers with low-level privileges to arbitrarily import sensitive user data.

CVSS3: 9.9
0%
Низкий
12 дней назад
github логотип
GHSA-3hxp-29c8-25h6

An issue was discovered in PONTON X/P Messenger before 3.11.2. Several functions are vulnerable to reflected XSS, as demonstrated by private/index.jsp?partners/ShowNonLocalPartners.do?localID= or private/index.jsp or private/index.jsp?database/databaseTab.jsp or private/index.jsp?activation/activationMainTab.jsp or private/index.jsp?communication/serverTab.jsp or private/index.jsp?emailNotification/notificationTab.jsp.

CVSS3: 5.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-3hxm-xw7j-7rgj

The Photo Gallery by 10Web WordPress plugin before 1.6.0 does not validate and escape the bwg_tag_id_bwg_thumbnails_0 parameter before using it in a SQL statement via the bwg_frontend_data AJAX action (available to unauthenticated and authenticated users), leading to an unauthenticated SQL injection

CVSS3: 9.8
81%
Высокий
почти 4 года назад
github логотип
GHSA-3hxh-mh53-wv9q

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Imbasynergy ImbaChat allows DOM-Based XSS.This issue affects ImbaChat: from n/a through 3.1.4.

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-3hxh-g2hm-fh38

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author’ parameter in all versions up to, and including, 5.80.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-3hxh-8cp2-g4hg

Use after free and segfault in shape inference functions

CVSS3: 6.6
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3hxh-7jxm-59x4

AtomicBucket<T> unconditionally implements Send/Sync

больше 3 лет назад
github логотип
GHSA-3hxg-qg6f-x2wp

GPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a stack-overflow vulnerability in function gf_isom_get_sample_for_movie_time of mp4box.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-3hxg-fxwm-8gf7

CRLF injection in Refit's [Header], [HeaderCollection] and [Authorize] attributes

CVSS3: 9.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-3hxf-p384-rmc6

A vulnerability in the zip decompression engine of Cisco AsyncOS Software for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to bypass content filters that are configured on an affected device. The vulnerability is due to improper handling of password-protected zip files. An attacker could exploit this vulnerability by sending a malicious file inside a crafted zip-compressed file to an affected device. A successful exploit could allow the attacker to bypass configured content filters that would normally drop the email.

CVSS3: 5.8
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу