Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 529

Количество 314 529

github логотип

GHSA-3c6h-p7mj-5m9j

больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.

EPSS: Низкий
github логотип

GHSA-3c6h-f6m9-jghc

больше 2 лет назад

The AI ChatBot WordPress plugin before 4.6.1 does not adequately escape some settings, allowing high-privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-3c6h-653r-qh3f

больше 3 лет назад

IBM Data Risk Manager (iDNA) 2.0.6 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 184983.

EPSS: Низкий
github логотип

GHSA-3c6g-x8mc-8hqx

больше 3 лет назад

The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android does not properly restrict the URI scheme during a ServiceWorker registration, which allows remote attackers to gain privileges via a filesystem: URI.

EPSS: Низкий
github логотип

GHSA-3c6g-pvg8-gqw2

почти 5 лет назад

trentm/json vulnerable to command injection

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3c6g-f7wv-rh98

больше 3 лет назад

XPDF commit ffaf11c was discovered to contain a segmentation violation via Lexer::getObj(Object*) at /xpdf/Lexer.cc.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3c6g-c26j-3686

около 2 лет назад

The Post Grid Combo – 36+ Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the custom JS parameter in all versions up to, and including, 2.2.64 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3c6g-7v4g-5xcm

больше 1 года назад

Time-of-check Time-of-use (TOCTOU) race condition in pg_dump in PostgreSQL allows an object creator to execute arbitrary SQL functions as the user running pg_dump, which is often a superuser. The attack involves replacing another relation type with a view or foreign table. The attack requires waiting for pg_dump to start, but winning the race condition is trivial if the attacker retains an open transaction. Versions before PostgreSQL 16.4, 15.8, 14.13, 13.16, and 12.20 are affected.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3c6f-r64x-4f7r

больше 1 года назад

A vulnerability in the logging component of Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an authenticated, remote attacker to view sensitive information in clear text on an affected system. This vulnerability is due to the storage of unencrypted credentials in certain logs. An attacker could exploit this vulnerability by accessing the logs on an affected system and obtaining credentials that they may not normally have access to. A successful exploit could allow the attacker to access sensitive information from the device.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3c6f-2796-jxc4

8 месяцев назад

A vulnerability classified as critical has been found in TP-Link TL-IPC544EP-W4 1.0.9 Build 240428 Rel 69493n. Affected is the function sub_69064 of the file /bin/main. The manipulation of the argument text leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3c6c-vv76-h53v

почти 4 года назад

SimpNews 2.41.03 allows remote attackers to obtain sensitive information via (1) an invalid lang parameter to admin/index.php; or a direct request to (2) admin/dbg_infos.php, (3) admin/heading.php, or (4) evsearch.php; which reveals the path in various error messages.

EPSS: Низкий
github логотип

GHSA-3c6c-gjpg-qq92

почти 4 года назад

xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3c6c-24gr-prmj

почти 4 года назад

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows remote attackers to upload and execute arbitrary PHP code in the img/ folder.

EPSS: Низкий
github логотип

GHSA-3c69-vjm9-xgc7

больше 3 лет назад

Integer overflow in the GatewayService component in 3S CoDeSys 3.4 SP4 Patch 2 allows remote attackers to execute arbitrary code via a large size value in the packet header, which triggers a heap-based buffer overflow.

EPSS: Низкий
github логотип

GHSA-3c69-m56m-795w

больше 3 лет назад

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the SoulSeek dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-slsk.c by making loop bounds more explicit.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3c69-j5vj-xf6p

почти 4 года назад

Multiple SQL injection vulnerabilities in the Kose_Yazilari module for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the artid parameter in a (1) viewarticle or (2) printpage action to modules.php.

EPSS: Низкий
github логотип

GHSA-3c69-6w5j-4xrh

больше 3 лет назад

An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16913.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3c68-7mfh-fv9v

около 4 лет назад

In Open5GS 2.4.0, a crafted packet from UE can crash SGW-U/UPF.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3c68-5wgm-9f52

больше 3 лет назад

Insufficient validation of untrusted input in navigation in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

EPSS: Низкий
github логотип

GHSA-3c67-gc48-983w

почти 5 лет назад

Path Traversal in Ansible

CVSS3: 5.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3c6h-p7mj-5m9j

Cross-site request forgery (CSRF) vulnerability in Apache CouchDB 0.8.0 through 0.11.0 allows remote attackers to hijack the authentication of administrators for direct requests to an installation URL.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3c6h-f6m9-jghc

The AI ChatBot WordPress plugin before 4.6.1 does not adequately escape some settings, allowing high-privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVSS3: 4.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3c6h-653r-qh3f

IBM Data Risk Manager (iDNA) 2.0.6 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 184983.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3c6g-x8mc-8hqx

The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android does not properly restrict the URI scheme during a ServiceWorker registration, which allows remote attackers to gain privileges via a filesystem: URI.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-3c6g-pvg8-gqw2

trentm/json vulnerable to command injection

CVSS3: 7.2
1%
Низкий
почти 5 лет назад
github логотип
GHSA-3c6g-f7wv-rh98

XPDF commit ffaf11c was discovered to contain a segmentation violation via Lexer::getObj(Object*) at /xpdf/Lexer.cc.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3c6g-c26j-3686

The Post Grid Combo – 36+ Gutenberg Blocks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the custom JS parameter in all versions up to, and including, 2.2.64 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor access or higher to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-3c6g-7v4g-5xcm

Time-of-check Time-of-use (TOCTOU) race condition in pg_dump in PostgreSQL allows an object creator to execute arbitrary SQL functions as the user running pg_dump, which is often a superuser. The attack involves replacing another relation type with a view or foreign table. The attack requires waiting for pg_dump to start, but winning the race condition is trivial if the attacker retains an open transaction. Versions before PostgreSQL 16.4, 15.8, 14.13, 13.16, and 12.20 are affected.

CVSS3: 8.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-3c6f-r64x-4f7r

A vulnerability in the logging component of Cisco Unified Communications Manager IM & Presence Service (Unified CM IM&P) could allow an authenticated, remote attacker to view sensitive information in clear text on an affected system. This vulnerability is due to the storage of unencrypted credentials in certain logs. An attacker could exploit this vulnerability by accessing the logs on an affected system and obtaining credentials that they may not normally have access to. A successful exploit could allow the attacker to access sensitive information from the device.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3c6f-2796-jxc4

A vulnerability classified as critical has been found in TP-Link TL-IPC544EP-W4 1.0.9 Build 240428 Rel 69493n. Affected is the function sub_69064 of the file /bin/main. The manipulation of the argument text leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
github логотип
GHSA-3c6c-vv76-h53v

SimpNews 2.41.03 allows remote attackers to obtain sensitive information via (1) an invalid lang parameter to admin/index.php; or a direct request to (2) admin/dbg_infos.php, (3) admin/heading.php, or (4) evsearch.php; which reveals the path in various error messages.

1%
Низкий
почти 4 года назад
github логотип
GHSA-3c6c-gjpg-qq92

xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.

CVSS3: 9.8
9%
Низкий
почти 4 года назад
github логотип
GHSA-3c6c-24gr-prmj

uploadimg.php in the Expose RC35 and earlier (com_expose) component for Joomla! sends an error message but does not exit when it detects an attempt to upload a non-JPEG file, which allows remote attackers to upload and execute arbitrary PHP code in the img/ folder.

4%
Низкий
почти 4 года назад
github логотип
GHSA-3c69-vjm9-xgc7

Integer overflow in the GatewayService component in 3S CoDeSys 3.4 SP4 Patch 2 allows remote attackers to execute arbitrary code via a large size value in the packet header, which triggers a heap-based buffer overflow.

9%
Низкий
больше 3 лет назад
github логотип
GHSA-3c69-m56m-795w

In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the SoulSeek dissector could go into an infinite loop. This was addressed in epan/dissectors/packet-slsk.c by making loop bounds more explicit.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-3c69-j5vj-xf6p

Multiple SQL injection vulnerabilities in the Kose_Yazilari module for PHP-Nuke allow remote attackers to execute arbitrary SQL commands via the artid parameter in a (1) viewarticle or (2) printpage action to modules.php.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3c69-6w5j-4xrh

An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory, aka 'Win32k Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-16913.

CVSS3: 7.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-3c68-7mfh-fv9v

In Open5GS 2.4.0, a crafted packet from UE can crash SGW-U/UPF.

CVSS3: 7.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-3c68-5wgm-9f52

Insufficient validation of untrusted input in navigation in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3c67-gc48-983w

Path Traversal in Ansible

CVSS3: 5.2
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу