Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-3h69-fjjv-586m

больше 3 лет назад

Buffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-3h69-8qf2-5hg7

7 месяцев назад

The WoodMart plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8.2.3 via the 'layout' attribute. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary .php files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where .php files can be uploaded and included.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h69-7jmr-q5h4

почти 4 года назад

AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request.

EPSS: Низкий
github логотип

GHSA-3h69-4frw-g2jm

больше 3 лет назад

Magento 2 Community Unrestricted File Upload

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3h68-wvv6-8r5h

около 4 лет назад

Improper Removal of Sensitive Information Before Storage or Transfer in Apache Jackrabbit Oak

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3h67-wjhc-r8m7

почти 4 года назад

Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in Authentication functionality in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via unspecified vectors.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3h67-j53j-m22p

7 месяцев назад

A URL redirection in Pinokio v3.6.23 allows attackers to redirect victim users to attacker-controlled pages.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3h67-9pvc-gvv9

больше 3 лет назад

updatejail in jailer 0.4 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/#####.updatejail temporary file.

EPSS: Низкий
github логотип

GHSA-3h67-687r-7fpc

6 месяцев назад

The ICTBroadcast application unsafely passes session cookie data to shell processing, allowing an attacker to inject shell commands into a session cookie that get executed on the server. This results in unauthenticated remote code execution in the session handling. Versions 7.4 and below are known to be vulnerable.

EPSS: Средний
github логотип

GHSA-3h66-9xgh-v229

7 месяцев назад

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h66-68qg-wvwr

почти 4 года назад

Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the pet parameter in a sign action.

EPSS: Низкий
github логотип

GHSA-3h65-qjq4-488h

больше 2 лет назад

The Doneren met Mollie plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.8.5 via the dmm_export_donations() function which is called via the admin_post_dmm_export hook due to missing capability checks. This can allow authenticated attackers to extract a CSV file that contains sensitive information about the donors.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3h65-3mjq-qqj8

больше 3 лет назад

WebExtensions with the "ActiveTab" permission are able to access frames hosted within the active tab even if the frames are cross-origin. Malicious extensions can inject frames from arbitrary origins into the loaded page and then interact with them, bypassing same-origin user expectations with this permission. This vulnerability affects Firefox < 58.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3h64-fx5v-2f3q

около 2 месяцев назад

The WP User Manager plugin for WordPress is vulnerable to Arbitrary File Deletion in all versions up to, and including, 2.9.12. This is due to insufficient validation of user-supplied file paths in the profile update functionality combined with improper handling of array inputs by PHP's filter_input() function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete arbitrary files on the server via the 'current_user_avatar' parameter in a two-stage attack which can make remote code execution possible. This only affects sites with the custom avatar setting enabled.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-3h64-ff22-jvm6

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: media: amphion: Set video drvdata before register video device The video drvdata should be set before the video device is registered, otherwise video_drvdata() may return NULL in the open() file ops, and led to oops.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3h64-25x5-v8wv

больше 3 лет назад

Multiple SQL injection vulnerabilities in Blogs Manager 1.101 and earlier allow remote attackers to execute arbitrary SQL commands via the SearchField parameter in a search action to (1) _authors_list.php, (2) _blogs_list.php, (3) _category_list.php, (4) _comments_list.php, (5) _policy_list.php, (6) _rate_list.php, (7) categoriesblogs_list.php, (8) chosen_authors_list.php, (9) chosen_blogs_list.php, (10) chosen_comments_list.php, and (11) help_list.php in blogs/.

EPSS: Низкий
github логотип

GHSA-3h63-pxm6-2x4m

почти 4 года назад

Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.

CVSS3: 5.6
EPSS: Низкий
github логотип

GHSA-3h63-p63p-w54v

7 месяцев назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopiplus iFrame Images Gallery allows SQL Injection. This issue affects iFrame Images Gallery: from n/a through 9.0.

CVSS3: 8.5
EPSS: Низкий
github логотип

GHSA-3h62-xc6m-rwqv

почти 4 года назад

Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for Microsoft DirectX 7.0 through 10.0 allows remote attackers to execute arbitrary code via a crafted SAMI file.

EPSS: Высокий
github логотип

GHSA-3h5w-8f3f-63f2

больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in addlink.php in AXScripts AxsLinks 0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) url or (2) title parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3h69-fjjv-586m

Buffer overflow in XiongMai uc-httpd 1.0.0 has unspecified impact and attack vectors, a different vulnerability than CVE-2017-16725.

CVSS3: 9.8
90%
Высокий
больше 3 лет назад
github логотип
GHSA-3h69-8qf2-5hg7

The WoodMart plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 8.2.3 via the 'layout' attribute. This makes it possible for authenticated attackers, with Contributor-level access and above, to include and execute arbitrary .php files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where .php files can be uploaded and included.

CVSS3: 8.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-3h69-7jmr-q5h4

AJ-Fork 167 does not restrict access to directories such as (1) data, (2) inc, (3) plugins, (4) skins, or (5) tools, which allows remote attackers to list files in those directories via a direct HTTP request.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3h69-4frw-g2jm

Magento 2 Community Unrestricted File Upload

CVSS3: 7.2
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3h68-wvv6-8r5h

Improper Removal of Sensitive Information Before Storage or Transfer in Apache Jackrabbit Oak

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-3h67-wjhc-r8m7

Buffer copy without checking size of input ('Classic Buffer Overflow') vulnerability in Authentication functionality in Synology DiskStation Manager (DSM) before 6.2.3-25426-3 allows remote attackers to execute arbitrary code via unspecified vectors.

CVSS3: 9.8
5%
Низкий
почти 4 года назад
github логотип
GHSA-3h67-j53j-m22p

A URL redirection in Pinokio v3.6.23 allows attackers to redirect victim users to attacker-controlled pages.

CVSS3: 5.4
0%
Низкий
7 месяцев назад
github логотип
GHSA-3h67-9pvc-gvv9

updatejail in jailer 0.4 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/#####.updatejail temporary file.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3h67-687r-7fpc

The ICTBroadcast application unsafely passes session cookie data to shell processing, allowing an attacker to inject shell commands into a session cookie that get executed on the server. This results in unauthenticated remote code execution in the session handling. Versions 7.4 and below are known to be vulnerable.

43%
Средний
6 месяцев назад
github логотип
GHSA-3h66-9xgh-v229

Heap-based buffer overflow in Windows Routing and Remote Access Service (RRAS) allows an unauthorized attacker to execute code over a network.

CVSS3: 8.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-3h66-68qg-wvwr

Cross-site scripting (XSS) vulnerability in index.php in the beamospetition (com_beamospetition) 1.0.12 component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the pet parameter in a sign action.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3h65-qjq4-488h

The Doneren met Mollie plugin for WordPress is vulnerable to Sensitive Data Exposure in versions up to, and including, 2.8.5 via the dmm_export_donations() function which is called via the admin_post_dmm_export hook due to missing capability checks. This can allow authenticated attackers to extract a CSV file that contains sensitive information about the donors.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3h65-3mjq-qqj8

WebExtensions with the "ActiveTab" permission are able to access frames hosted within the active tab even if the frames are cross-origin. Malicious extensions can inject frames from arbitrary origins into the loaded page and then interact with them, bypassing same-origin user expectations with this permission. This vulnerability affects Firefox < 58.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3h64-fx5v-2f3q

The WP User Manager plugin for WordPress is vulnerable to Arbitrary File Deletion in all versions up to, and including, 2.9.12. This is due to insufficient validation of user-supplied file paths in the profile update functionality combined with improper handling of array inputs by PHP's filter_input() function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to delete arbitrary files on the server via the 'current_user_avatar' parameter in a two-stage attack which can make remote code execution possible. This only affects sites with the custom avatar setting enabled.

CVSS3: 6.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-3h64-ff22-jvm6

In the Linux kernel, the following vulnerability has been resolved: media: amphion: Set video drvdata before register video device The video drvdata should be set before the video device is registered, otherwise video_drvdata() may return NULL in the open() file ops, and led to oops.

CVSS3: 5.5
0%
Низкий
около 1 года назад
github логотип
GHSA-3h64-25x5-v8wv

Multiple SQL injection vulnerabilities in Blogs Manager 1.101 and earlier allow remote attackers to execute arbitrary SQL commands via the SearchField parameter in a search action to (1) _authors_list.php, (2) _blogs_list.php, (3) _category_list.php, (4) _comments_list.php, (5) _policy_list.php, (6) _rate_list.php, (7) categoriesblogs_list.php, (8) chosen_authors_list.php, (9) chosen_blogs_list.php, (10) chosen_comments_list.php, and (11) help_list.php in blogs/.

3%
Низкий
больше 3 лет назад
github логотип
GHSA-3h63-pxm6-2x4m

Hyper-Threading technology, as used in FreeBSD and other operating systems that are run on Intel Pentium and other processors, allows local users to use a malicious thread to create covert channels, monitor the execution of other threads, and obtain sensitive information such as cryptographic keys, via a timing attack on memory cache misses.

CVSS3: 5.6
0%
Низкий
почти 4 года назад
github логотип
GHSA-3h63-p63p-w54v

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in gopiplus iFrame Images Gallery allows SQL Injection. This issue affects iFrame Images Gallery: from n/a through 9.0.

CVSS3: 8.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-3h62-xc6m-rwqv

Stack-based buffer overflow in the DirectShow Synchronized Accessible Media Interchange (SAMI) parser in quartz.dll for Microsoft DirectX 7.0 through 10.0 allows remote attackers to execute arbitrary code via a crafted SAMI file.

75%
Высокий
почти 4 года назад
github логотип
GHSA-3h5w-8f3f-63f2

Multiple cross-site scripting (XSS) vulnerabilities in addlink.php in AXScripts AxsLinks 0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) url or (2) title parameter.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу