Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 315 253

Количество 315 253

github логотип

GHSA-374j-m43w-98jg

около 1 года назад

The WP-Polls plugin for WordPress is vulnerable to SQL Injection via COOKIE in all versions up to, and including, 2.77.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries. Those queries are stored and results are not displayed to the attacker, which means they cannot be exploited to obtain any additional information about the database. However, a properly configured payload allows for the injection of malicious JavaScript resulting in Stored Cross-Site Scripting.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-374h-xqp9-v748

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in index.php in LEMON-S PHP Simple Oekaki BBS before 1.21 allows remote attackers to inject arbitrary web script or HTML via the oekakis parameter.

EPSS: Низкий
github логотип

GHSA-374h-j6g4-9hgp

22 дня назад

The anti-theft protection mechanism can be bypassed by attackers due to weak response generation algorithms for the head unit. It is possible to reveal all 32 corresponding responses by sniffing CAN traffic or by pre-calculating the values, which allow to bypass the protection. First identified on Nissan Leaf ZE1 manufactured in 2020.

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-374g-65fj-w32x

больше 3 лет назад

u'Null pointer dereference in HP OfficeJet Pro 8210 jbig2 filter due to lack of check of PDF font array leads to denial of service' in IPS PDF releases prior to IPS System 2020.2

EPSS: Низкий
github логотип

GHSA-374f-438q-472r

больше 1 года назад

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-374c-8gp8-mfvr

почти 4 года назад

Memory leak in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 through 2012, when Internet Explorer is used, allows remote attackers to cause a denial of service (memory consumption) via a URI with multiple references to the same name-value pair.

EPSS: Низкий
github логотип

GHSA-374c-5pj4-7v9c

почти 4 года назад

Microsoft Internet Explorer 6 through 9 allows user-assisted remote attackers to execute arbitrary code via a crafted HTML document that is not properly handled during a "Print table of links" print operation, aka "Print Feature Remote Code Execution Vulnerability."

EPSS: Средний
github логотип

GHSA-374c-2pvv-fxf5

2 месяца назад

A template injection vulnerability in the /vip/v1/file/save component of ChanCMS v3.3.4 allows attackers to execute arbitrary code via a crafted POST request.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3749-ghw9-m3mg

11 месяцев назад

PyTorch susceptible to local Denial of Service

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-3749-7fcp-r85v

больше 3 лет назад

BitTorrent and uTorrent allow remote attackers to inject command line parameters and execute arbitrary commands via a crafted URL using the (1) bittorrent or (2) magnet protocol.

EPSS: Низкий
github логотип

GHSA-3749-62f5-h6xh

около 1 года назад

Missing Authorization vulnerability in Fatcat Apps Landing Page Cat.This issue affects Landing Page Cat: from n/a through 1.7.4.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3748-f8pw-rvmr

почти 4 года назад

Multiple buffer overflows in the preparse function in asp2php 0.76.23 allow remote attackers to execute arbitrary code via crafted ASP scripts.

EPSS: Низкий
github логотип

GHSA-3748-24jp-3mgm

больше 1 года назад

Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputting a negative value into the dim parameter.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3747-q85x-9wjc

почти 4 года назад

Cross-site scripting (XSS) vulnerability in the Simple Gallery (sk_simplegallery) extension 0.0.9 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-3747-m732-g767

8 месяцев назад

A vulnerability has been found in PHPGurukul Complaint Management System 2.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/between-date-userreport.php. The manipulation of the argument fromdate/todate leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-3747-gjc9-vvg6

больше 3 лет назад

phpThumb is vulnerable to Server-Side Request Forgery (SSRF)

EPSS: Низкий
github логотип

GHSA-3747-557g-7h35

больше 3 лет назад

D-Link DIR-865L Ax 1.20B01 Beta devices allow CSRF.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3747-3v6r-p947

почти 4 года назад

It was found that samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8 did not enforce "SMB signing" when certain configuration options were enabled. A remote attacker could launch a man-in-the-middle attack and retrieve information in plain-text.

CVSS3: 7.4
EPSS: Средний
github логотип

GHSA-3747-237p-gqq2

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free in btrfs_encoded_read_endio() Shinichiro reported the following use-after free that sometimes is happening in our CI system when running fstests' btrfs/284 on a TCMU runner device: BUG: KASAN: slab-use-after-free in lock_release+0x708/0x780 Read of size 8 at addr ffff888106a83f18 by task kworker/u80:6/219 CPU: 8 UID: 0 PID: 219 Comm: kworker/u80:6 Not tainted 6.12.0-rc6-kts+ #15 Hardware name: Supermicro Super Server/X11SPi-TF, BIOS 3.3 02/21/2020 Workqueue: btrfs-endio btrfs_end_bio_work [btrfs] Call Trace: <TASK> dump_stack_lvl+0x6e/0xa0 ? lock_release+0x708/0x780 print_report+0x174/0x505 ? lock_release+0x708/0x780 ? __virt_addr_valid+0x224/0x410 ? lock_release+0x708/0x780 kasan_report+0xda/0x1b0 ? lock_release+0x708/0x780 ? __wake_up+0x44/0x60 lock_release+0x708/0x780 ? __pfx_lock_release+0x10/0x10 ? __pfx_do_raw_spin_lock+0x10/0x10 ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3746-rr4w-5qc8

почти 3 года назад

In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system execution privileges needed.

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-374j-m43w-98jg

The WP-Polls plugin for WordPress is vulnerable to SQL Injection via COOKIE in all versions up to, and including, 2.77.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries. Those queries are stored and results are not displayed to the attacker, which means they cannot be exploited to obtain any additional information about the database. However, a properly configured payload allows for the injection of malicious JavaScript resulting in Stored Cross-Site Scripting.

CVSS3: 5.4
1%
Низкий
около 1 года назад
github логотип
GHSA-374h-xqp9-v748

Cross-site scripting (XSS) vulnerability in index.php in LEMON-S PHP Simple Oekaki BBS before 1.21 allows remote attackers to inject arbitrary web script or HTML via the oekakis parameter.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-374h-j6g4-9hgp

The anti-theft protection mechanism can be bypassed by attackers due to weak response generation algorithms for the head unit. It is possible to reveal all 32 corresponding responses by sniffing CAN traffic or by pre-calculating the values, which allow to bypass the protection. First identified on Nissan Leaf ZE1 manufactured in 2020.

CVSS3: 4
0%
Низкий
22 дня назад
github логотип
GHSA-374g-65fj-w32x

u'Null pointer dereference in HP OfficeJet Pro 8210 jbig2 filter due to lack of check of PDF font array leads to denial of service' in IPS PDF releases prior to IPS System 2020.2

0%
Низкий
больше 3 лет назад
github логотип
GHSA-374f-438q-472r

Use after free in Autofill in Google Chrome prior to 128.0.6613.84 allowed a remote attacker who had convinced the user to engage in specific UI interactions to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-374c-8gp8-mfvr

Memory leak in the intu-help-qb (aka Intuit Help System Async Pluggable Protocol) handlers in HelpAsyncPluggableProtocol.dll in Intuit QuickBooks 2009 through 2012, when Internet Explorer is used, allows remote attackers to cause a denial of service (memory consumption) via a URI with multiple references to the same name-value pair.

0%
Низкий
почти 4 года назад
github логотип
GHSA-374c-5pj4-7v9c

Microsoft Internet Explorer 6 through 9 allows user-assisted remote attackers to execute arbitrary code via a crafted HTML document that is not properly handled during a "Print table of links" print operation, aka "Print Feature Remote Code Execution Vulnerability."

46%
Средний
почти 4 года назад
github логотип
GHSA-374c-2pvv-fxf5

A template injection vulnerability in the /vip/v1/file/save component of ChanCMS v3.3.4 allows attackers to execute arbitrary code via a crafted POST request.

CVSS3: 9.8
0%
Низкий
2 месяца назад
github логотип
GHSA-3749-ghw9-m3mg

PyTorch susceptible to local Denial of Service

CVSS3: 3.3
0%
Низкий
11 месяцев назад
github логотип
GHSA-3749-7fcp-r85v

BitTorrent and uTorrent allow remote attackers to inject command line parameters and execute arbitrary commands via a crafted URL using the (1) bittorrent or (2) magnet protocol.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-3749-62f5-h6xh

Missing Authorization vulnerability in Fatcat Apps Landing Page Cat.This issue affects Landing Page Cat: from n/a through 1.7.4.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-3748-f8pw-rvmr

Multiple buffer overflows in the preparse function in asp2php 0.76.23 allow remote attackers to execute arbitrary code via crafted ASP scripts.

7%
Низкий
почти 4 года назад
github логотип
GHSA-3748-24jp-3mgm

Improper input validation in OneFlow-Inc. Oneflow v0.9.1 allows attackers to cause a Denial of Service (DoS) via inputting a negative value into the dim parameter.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3747-q85x-9wjc

Cross-site scripting (XSS) vulnerability in the Simple Gallery (sk_simplegallery) extension 0.0.9 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

0%
Низкий
почти 4 года назад
github логотип
GHSA-3747-m732-g767

A vulnerability has been found in PHPGurukul Complaint Management System 2.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/between-date-userreport.php. The manipulation of the argument fromdate/todate leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 6.3
0%
Низкий
8 месяцев назад
github логотип
GHSA-3747-gjc9-vvg6

phpThumb is vulnerable to Server-Side Request Forgery (SSRF)

0%
Низкий
больше 3 лет назад
github логотип
GHSA-3747-557g-7h35

D-Link DIR-865L Ax 1.20B01 Beta devices allow CSRF.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-3747-3v6r-p947

It was found that samba before 4.4.16, 4.5.x before 4.5.14, and 4.6.x before 4.6.8 did not enforce "SMB signing" when certain configuration options were enabled. A remote attacker could launch a man-in-the-middle attack and retrieve information in plain-text.

CVSS3: 7.4
19%
Средний
почти 4 года назад
github логотип
GHSA-3747-237p-gqq2

In the Linux kernel, the following vulnerability has been resolved: btrfs: fix use-after-free in btrfs_encoded_read_endio() Shinichiro reported the following use-after free that sometimes is happening in our CI system when running fstests' btrfs/284 on a TCMU runner device: BUG: KASAN: slab-use-after-free in lock_release+0x708/0x780 Read of size 8 at addr ffff888106a83f18 by task kworker/u80:6/219 CPU: 8 UID: 0 PID: 219 Comm: kworker/u80:6 Not tainted 6.12.0-rc6-kts+ #15 Hardware name: Supermicro Super Server/X11SPi-TF, BIOS 3.3 02/21/2020 Workqueue: btrfs-endio btrfs_end_bio_work [btrfs] Call Trace: <TASK> dump_stack_lvl+0x6e/0xa0 ? lock_release+0x708/0x780 print_report+0x174/0x505 ? lock_release+0x708/0x780 ? __virt_addr_valid+0x224/0x410 ? lock_release+0x708/0x780 kasan_report+0xda/0x1b0 ? lock_release+0x708/0x780 ? __wake_up+0x44/0x60 lock_release+0x708/0x780 ? __pfx_lock_release+0x10/0x10 ? __pfx_do_raw_spin_lock+0x10/0x10 ...

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-3746-rr4w-5qc8

In telephone service, there is a missing permission check. This could lead to local escalation of privilege with system execution privileges needed.

CVSS3: 6.7
0%
Низкий
почти 3 года назад

Уязвимостей на страницу