Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-3chv-hrqx-p726

около 1 года назад

On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3chv-6x2g-3m83

больше 3 лет назад

Unspecified vulnerability in Oracle OpenSolaris allows local users to affect integrity and availability via unknown vectors related to Tooltalk.

EPSS: Низкий
github логотип

GHSA-3chr-56pg-h55f

больше 3 лет назад

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Mojave 10.14.4. A malicious application may be able to read restricted memory.

EPSS: Низкий
github логотип

GHSA-3chq-9j6h-w56c

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check for inline inode Yanming reported a kernel bug in Bugzilla kernel [1], which can be reproduced. The bug message is: The kernel message is shown below: kernel BUG at fs/inode.c:611! Call Trace: evict+0x282/0x4e0 __dentry_kill+0x2b2/0x4d0 dput+0x2dd/0x720 do_renameat2+0x596/0x970 __x64_sys_rename+0x78/0x90 do_syscall_64+0x3b/0x90 [1] https://bugzilla.kernel.org/show_bug.cgi?id=215895 The bug is due to fuzzed inode has both inline_data and encrypted flags. During f2fs_evict_inode(), as the inode was deleted by rename(), it will cause inline data conversion due to conflicting flags. The page cache will be polluted and the panic will be triggered in clear_inode(). Try fixing the bug by doing more sanity checks for inline data inode in sanity_check_inode().

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3chq-78vx-cp74

почти 4 года назад

Early termination vulnerability in the IMAP service in E-Post Mail 4.05 and SPA-PRO Mail 4.05 allows remote attackers to cause a denial of service (infinite loop) by sending an APPEND command and disconnecting before the expected amount of data is sent.

EPSS: Низкий
github логотип

GHSA-3chh-q8fx-pc2w

больше 1 года назад

Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword API.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3chh-93gv-xf67

почти 4 года назад

SQL injection vulnerability in showflat.php in Groupee (formerly known as Infopop) UBB.threads 6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Number parameter.

EPSS: Низкий
github логотип

GHSA-3chf-r576-v3g8

почти 4 года назад

Open redirect vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL, aka "UAG Blind HTTP Redirect Vulnerability."

EPSS: Средний
github логотип

GHSA-3chf-9q2g-qc3v

почти 4 года назад

Buffer overflow in ptexec in the Sun Validation Test Suite 4.3 and earlier allows a local user to gain privileges via a long -o argument.

EPSS: Низкий
github логотип

GHSA-3chf-937f-8rvm

больше 3 лет назад

The Iptanus WordPress File Upload plugin before 4.3.4 for WordPress mishandles Settings attributes, leading to XSS.

CVSS3: 6.1
EPSS: Средний
github логотип

GHSA-3chc-p3xj-mv7h

больше 3 лет назад

Microsoft Excel Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-24068, CVE-2021-24069, CVE-2021-24070.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3chc-mx35-j8gg

больше 3 лет назад

Kibana versions prior to 5.6.1 had a cross-site scripting (XSS) vulnerability in Timelion that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3chc-844q-fxqw

11 месяцев назад

The Event post plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'events_list' shortcodes in all versions up to, and including, 5.9.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3chc-6q4p-r3mr

почти 4 года назад

Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.

EPSS: Средний
github логотип

GHSA-3ch9-xmrm-hh92

около 3 лет назад

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21546, CVE-2023-21555, CVE-2023-21556, CVE-2023-21679.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-3ch9-x7v9-qhxv

около 3 лет назад

An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3ch8-4f9p-q5p6

около 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Tussendoor internet & marketing Call me Now allows Stored XSS.This issue affects Call me Now: from n/a through 1.0.5.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3ch7-w6x4-f69f

почти 4 года назад

The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.

EPSS: Низкий
github логотип

GHSA-3ch6-fjmw-mj86

2 месяца назад

A vulnerability was identified in Himool ERP up to 2.2. Affected by this issue is the function update_account of the file /api/admin/update_account/ of the component AdminActionViewSet. Such manipulation leads to improper authorization. The attack may be performed from remote. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-3ch6-f277-559q

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send In emac_mac_tx_buf_send, it calls emac_tx_fill_tpd(..,skb,..). If some error happens in emac_tx_fill_tpd(), the skb will be freed via dev_kfree_skb(skb) in error branch of emac_tx_fill_tpd(). But the freed skb is still used via skb->len by netdev_sent_queue(,skb->len). As i observed that emac_tx_fill_tpd() haven't modified the value of skb->len, thus my patch assigns skb->len to 'len' before the possible free and use 'len' instead of skb->len later.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3chv-hrqx-p726

On some hardware revisions where VP9 decoding is hardware-accelerated, the frame size is not programmed correctly into the decoder hardware which can lead to an invalid memory access by the decoder.

CVSS3: 9.8
0%
Низкий
около 1 года назад
github логотип
GHSA-3chv-6x2g-3m83

Unspecified vulnerability in Oracle OpenSolaris allows local users to affect integrity and availability via unknown vectors related to Tooltalk.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3chr-56pg-h55f

An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in macOS Mojave 10.14.4. A malicious application may be able to read restricted memory.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3chq-9j6h-w56c

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to do sanity check for inline inode Yanming reported a kernel bug in Bugzilla kernel [1], which can be reproduced. The bug message is: The kernel message is shown below: kernel BUG at fs/inode.c:611! Call Trace: evict+0x282/0x4e0 __dentry_kill+0x2b2/0x4d0 dput+0x2dd/0x720 do_renameat2+0x596/0x970 __x64_sys_rename+0x78/0x90 do_syscall_64+0x3b/0x90 [1] https://bugzilla.kernel.org/show_bug.cgi?id=215895 The bug is due to fuzzed inode has both inline_data and encrypted flags. During f2fs_evict_inode(), as the inode was deleted by rename(), it will cause inline data conversion due to conflicting flags. The page cache will be polluted and the panic will be triggered in clear_inode(). Try fixing the bug by doing more sanity checks for inline data inode in sanity_check_inode().

CVSS3: 5.5
0%
Низкий
4 месяца назад
github логотип
GHSA-3chq-78vx-cp74

Early termination vulnerability in the IMAP service in E-Post Mail 4.05 and SPA-PRO Mail 4.05 allows remote attackers to cause a denial of service (infinite loop) by sending an APPEND command and disconnecting before the expected amount of data is sent.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3chh-q8fx-pc2w

Shenzhen Guoxin Synthesis image system before 8.3.0 allows unauthorized password resets via the resetPassword API.

CVSS3: 9.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-3chh-93gv-xf67

SQL injection vulnerability in showflat.php in Groupee (formerly known as Infopop) UBB.threads 6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Number parameter.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3chf-r576-v3g8

Open redirect vulnerability in Microsoft Forefront Unified Access Gateway (UAG) 2010 SP1 and SP1 Update 1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a crafted URL, aka "UAG Blind HTTP Redirect Vulnerability."

25%
Средний
почти 4 года назад
github логотип
GHSA-3chf-9q2g-qc3v

Buffer overflow in ptexec in the Sun Validation Test Suite 4.3 and earlier allows a local user to gain privileges via a long -o argument.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3chf-937f-8rvm

The Iptanus WordPress File Upload plugin before 4.3.4 for WordPress mishandles Settings attributes, leading to XSS.

CVSS3: 6.1
11%
Средний
больше 3 лет назад
github логотип
GHSA-3chc-p3xj-mv7h

Microsoft Excel Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-24068, CVE-2021-24069, CVE-2021-24070.

CVSS3: 7.8
8%
Низкий
больше 3 лет назад
github логотип
GHSA-3chc-mx35-j8gg

Kibana versions prior to 5.6.1 had a cross-site scripting (XSS) vulnerability in Timelion that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.

CVSS3: 6.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3chc-844q-fxqw

The Event post plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'events_list' shortcodes in all versions up to, and including, 5.9.9 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 5.4
0%
Низкий
11 месяцев назад
github логотип
GHSA-3chc-6q4p-r3mr

Windows NT TCP/IP processes fragmented IP packets improperly, causing a denial of service.

12%
Средний
почти 4 года назад
github логотип
GHSA-3ch9-xmrm-hh92

Windows Layer 2 Tunneling Protocol (L2TP) Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2023-21546, CVE-2023-21555, CVE-2023-21556, CVE-2023-21679.

CVSS3: 8.1
6%
Низкий
около 3 лет назад
github логотип
GHSA-3ch9-x7v9-qhxv

An out-of-bounds read in Organization Specific TLV was found in various versions of OpenvSwitch.

CVSS3: 9.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-3ch8-4f9p-q5p6

Cross-Site Request Forgery (CSRF) vulnerability in Tussendoor internet & marketing Call me Now allows Stored XSS.This issue affects Call me Now: from n/a through 1.0.5.

CVSS3: 7.1
0%
Низкий
около 1 года назад
github логотип
GHSA-3ch7-w6x4-f69f

The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3ch6-fjmw-mj86

A vulnerability was identified in Himool ERP up to 2.2. Affected by this issue is the function update_account of the file /api/admin/update_account/ of the component AdminActionViewSet. Such manipulation leads to improper authorization. The attack may be performed from remote. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
0%
Низкий
2 месяца назад
github логотип
GHSA-3ch6-f277-559q

In the Linux kernel, the following vulnerability has been resolved: net:emac/emac-mac: Fix a use after free in emac_mac_tx_buf_send In emac_mac_tx_buf_send, it calls emac_tx_fill_tpd(..,skb,..). If some error happens in emac_tx_fill_tpd(), the skb will be freed via dev_kfree_skb(skb) in error branch of emac_tx_fill_tpd(). But the freed skb is still used via skb->len by netdev_sent_queue(,skb->len). As i observed that emac_tx_fill_tpd() haven't modified the value of skb->len, thus my patch assigns skb->len to 'len' before the possible free and use 'len' instead of skb->len later.

CVSS3: 7.8
0%
Низкий
почти 2 года назад

Уязвимостей на страницу