Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 529

Количество 314 529

github логотип

GHSA-39rg-6496-pf73

около 1 месяца назад

In the Linux kernel, the following vulnerability has been resolved: tty: fix out-of-bounds access in tty_driver_lookup_tty() When specifying an invalid console= device like console=tty3270, tty_driver_lookup_tty() returns the tty struct without checking whether index is a valid number. To reproduce: qemu-system-x86_64 -enable-kvm -nographic -serial mon:stdio \ -kernel ../linux-build-x86/arch/x86/boot/bzImage \ -append "console=ttyS0 console=tty3270" This crashes with: [ 0.770599] BUG: kernel NULL pointer dereference, address: 00000000000000ef [ 0.771265] #PF: supervisor read access in kernel mode [ 0.771773] #PF: error_code(0x0000) - not-present page [ 0.772609] Oops: 0000 [#1] PREEMPT SMP PTI [ 0.774878] RIP: 0010:tty_open+0x268/0x6f0 [ 0.784013] chrdev_open+0xbd/0x230 [ 0.784444] ? cdev_device_add+0x80/0x80 [ 0.784920] do_dentry_open+0x1e0/0x410 [ 0.785389] path_openat+0xca9/0x1050 [ 0.785813] do_filp_open+0xaa/0x150 [ 0.786240] file_op...

EPSS: Низкий
github логотип

GHSA-39rf-q9wg-hfr6

около 1 года назад

An “out of bounds read” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to read beyond the boundaries of an allocated memory. If exploited, a threat actor could leverage this vulnerability to execute arbitrary code. To exploit this vulnerability, a legitimate user must execute the malicious code crafted by the threat actor.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-39rf-5f5g-vgx4

больше 3 лет назад

A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the ACRN Device Model emulates virtual NICs in VM. This flaw allows a local privileged attacker to leak unauthorized kernel information, causing a denial of service.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-39rc-mpw3-rrc5

почти 4 года назад

com_categories in Joomla! before 1.0.12 does not validate input, which has unknown impact and remote attack vectors.

EPSS: Низкий
github логотип

GHSA-39rc-9px7-4cc5

около 1 года назад

Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24473.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-39r8-jrrh-779p

больше 3 лет назад

A memory corruption issue was addressed with improved validation. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-39r8-9hvx-4c86

больше 3 лет назад

Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-3679, CVE-2015-3680, and CVE-2015-3682.

EPSS: Низкий
github логотип

GHSA-39r8-4962-j7vg

больше 2 лет назад

Stored XSS vulnerability in Jenkins Maven Repository Server Plugin

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-39r8-3fqx-c3cj

около 4 лет назад

Z-BlogPHP v1.6.1.2100 was discovered to contain an arbitrary file deletion vulnerability via \app_del.php.

EPSS: Низкий
github логотип

GHSA-39r6-8m72-v2p6

больше 2 лет назад

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-39r5-v68g-9x33

больше 3 лет назад

A ZTE product is impacted by the cryptographic issues vulnerability. The encryption algorithm is not properly used, so remote attackers could use this vulnerability for account credential enumeration attack or brute-force attack for password guessing. This affects: ZXIPTV, ZXIPTV-WEB-PV5.09.08.04.

EPSS: Низкий
github логотип

GHSA-39r5-2x63-hpq5

больше 1 года назад

In JetBrains TeamCity before 2024.03.3 private key could be exposed via testing GitHub App Connection

CVSS3: 4.1
EPSS: Низкий
github логотип

GHSA-39r4-84vq-pq25

почти 4 года назад

Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web script or HTML via the part parameter.

EPSS: Низкий
github логотип

GHSA-39r3-j54m-rvh3

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in Hastymail2 before 1.01 allows remote attackers to inject arbitrary web script or HTML via a crafted background attribute within a cell in a TABLE element, related to improper use of the htmLawed filter.

EPSS: Низкий
github логотип

GHSA-39r3-h8q6-2phq

больше 3 лет назад

Reflected Cross site scripting in Jenkins Embeddable Build Status Plugin

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-39r2-x2hc-xm9w

больше 3 лет назад

Adobe Acrobat and Reader versions , 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2017.011.30142 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

EPSS: Низкий
github логотип

GHSA-39r2-f9j9-hjq6

около 3 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in Booster for WooCommerce plugin <= 5.6.6 on WordPress.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-39qw-q897-rq4j

больше 3 лет назад

ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in coders\mpc.c.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-39qw-pvp7-hp57

больше 3 лет назад

Integer signedness error in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted QTVR movie file.

EPSS: Низкий
github логотип

GHSA-39qw-3w3g-23pr

около 1 года назад

A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file customerview.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-39rg-6496-pf73

In the Linux kernel, the following vulnerability has been resolved: tty: fix out-of-bounds access in tty_driver_lookup_tty() When specifying an invalid console= device like console=tty3270, tty_driver_lookup_tty() returns the tty struct without checking whether index is a valid number. To reproduce: qemu-system-x86_64 -enable-kvm -nographic -serial mon:stdio \ -kernel ../linux-build-x86/arch/x86/boot/bzImage \ -append "console=ttyS0 console=tty3270" This crashes with: [ 0.770599] BUG: kernel NULL pointer dereference, address: 00000000000000ef [ 0.771265] #PF: supervisor read access in kernel mode [ 0.771773] #PF: error_code(0x0000) - not-present page [ 0.772609] Oops: 0000 [#1] PREEMPT SMP PTI [ 0.774878] RIP: 0010:tty_open+0x268/0x6f0 [ 0.784013] chrdev_open+0xbd/0x230 [ 0.784444] ? cdev_device_add+0x80/0x80 [ 0.784920] do_dentry_open+0x1e0/0x410 [ 0.785389] path_openat+0xca9/0x1050 [ 0.785813] do_filp_open+0xaa/0x150 [ 0.786240] file_op...

0%
Низкий
около 1 месяца назад
github логотип
GHSA-39rf-q9wg-hfr6

An “out of bounds read” code execution vulnerability exists in the Rockwell Automation Arena® that could allow a threat actor to craft a DOE file and force the software to read beyond the boundaries of an allocated memory. If exploited, a threat actor could leverage this vulnerability to execute arbitrary code. To exploit this vulnerability, a legitimate user must execute the malicious code crafted by the threat actor.

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-39rf-5f5g-vgx4

A memory leak flaw was found in the Linux kernel in acrn_dev_ioctl in the drivers/virt/acrn/hsm.c function in how the ACRN Device Model emulates virtual NICs in VM. This flaw allows a local privileged attacker to leak unauthorized kernel information, causing a denial of service.

CVSS3: 7.1
0%
Низкий
больше 3 лет назад
github логотип
GHSA-39rc-mpw3-rrc5

com_categories in Joomla! before 1.0.12 does not validate input, which has unknown impact and remote attack vectors.

0%
Низкий
почти 4 года назад
github логотип
GHSA-39rc-9px7-4cc5

Tungsten Automation Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24473.

CVSS3: 3.3
0%
Низкий
около 1 года назад
github логотип
GHSA-39r8-jrrh-779p

A memory corruption issue was addressed with improved validation. This issue is fixed in watchOS 8.6, tvOS 15.5, macOS Monterey 12.4, iOS 15.5 and iPadOS 15.5. An attacker that has already achieved kernel code execution may be able to bypass kernel memory mitigations.

CVSS3: 4.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-39r8-9hvx-4c86

Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file, a different vulnerability than CVE-2015-3679, CVE-2015-3680, and CVE-2015-3682.

2%
Низкий
больше 3 лет назад
github логотип
GHSA-39r8-4962-j7vg

Stored XSS vulnerability in Jenkins Maven Repository Server Plugin

CVSS3: 5.4
4%
Низкий
больше 2 лет назад
github логотип
GHSA-39r8-3fqx-c3cj

Z-BlogPHP v1.6.1.2100 was discovered to contain an arbitrary file deletion vulnerability via \app_del.php.

0%
Низкий
около 4 лет назад
github логотип
GHSA-39r6-8m72-v2p6

In vowifiservice, there is a possible missing permission check.This could lead to local denial of service with no additional execution privileges

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-39r5-v68g-9x33

A ZTE product is impacted by the cryptographic issues vulnerability. The encryption algorithm is not properly used, so remote attackers could use this vulnerability for account credential enumeration attack or brute-force attack for password guessing. This affects: ZXIPTV, ZXIPTV-WEB-PV5.09.08.04.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-39r5-2x63-hpq5

In JetBrains TeamCity before 2024.03.3 private key could be exposed via testing GitHub App Connection

CVSS3: 4.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-39r4-84vq-pq25

Cross-site scripting (XSS) vulnerability in search.php in SonicBB 1.0 allows remote attackers to inject arbitrary web script or HTML via the part parameter.

1%
Низкий
почти 4 года назад
github логотип
GHSA-39r3-j54m-rvh3

Cross-site scripting (XSS) vulnerability in Hastymail2 before 1.01 allows remote attackers to inject arbitrary web script or HTML via a crafted background attribute within a cell in a TABLE element, related to improper use of the htmLawed filter.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-39r3-h8q6-2phq

Reflected Cross site scripting in Jenkins Embeddable Build Status Plugin

CVSS3: 8.8
16%
Средний
больше 3 лет назад
github логотип
GHSA-39r2-x2hc-xm9w

Adobe Acrobat and Reader versions , 2019.012.20035 and earlier, 2019.012.20035 and earlier, 2017.011.30142 and earlier, 2017.011.30143 and earlier, 2017.011.30142 and earlier, 2015.006.30497 and earlier, and 2015.006.30498 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure .

4%
Низкий
больше 3 лет назад
github логотип
GHSA-39r2-f9j9-hjq6

Cross-Site Request Forgery (CSRF) vulnerability in Booster for WooCommerce plugin <= 5.6.6 on WordPress.

CVSS3: 4.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-39qw-q897-rq4j

ImageMagick 7.0.6-1 has a memory leak vulnerability in ReadMPCImage in coders\mpc.c.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-39qw-pvp7-hp57

Integer signedness error in Apple QuickTime before 7.7.2 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted QTVR movie file.

4%
Низкий
больше 3 лет назад
github логотип
GHSA-39qw-3w3g-23pr

A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file customerview.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 6.3
0%
Низкий
около 1 года назад

Уязвимостей на страницу