Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 311 321

Количество 311 321

github логотип

GHSA-2w53-3qhg-wqq3

7 месяцев назад

A Server-Side Request Forgery (SSRF) in the component TunnelServlet of agorum Software GmbH Agorum core open v11.9.2 & v11.10.1 allows attackers to forcefully initiate connections to arbitrary internal and external resources via a crafted request. This can lead to sensitive data exposure.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2w52-p6rg-2493

почти 4 года назад

Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).

EPSS: Критический
github логотип

GHSA-2w52-h5q8-4cwq

больше 3 лет назад

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012, and Windows RT allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."

EPSS: Низкий
github логотип

GHSA-2w4x-rxp7-grg7

больше 3 лет назад

Exposure of Sensitive Information to an Unauthorized Actor in Jenkins

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2w4w-qvp3-4g7g

9 месяцев назад

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-2w4w-4385-vh4h

9 месяцев назад

wgp race condition in inner::drop

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-2w4r-h739-965w

почти 2 года назад

D-Link DAP-2622 DDP Get SSID List WPA PSK Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2622 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the DDP service. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-20078.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-2w4r-fj83-hjp4

около 3 лет назад

Windows Bind Filter Driver Elevation of Privilege Vulnerability.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-2w4r-8725-xcxv

почти 2 года назад

An issue was discovered in AMCS Group Trux Waste Management Software before version 7.19.0018.26912, allows local attackers to obtain sensitive information via a static, hard-coded AES Key-IV pair in the TxUtilities.dll and TruxUser.cfg components.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-2w4r-7g95-jpmw

больше 3 лет назад

LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed_image_t)+T.tlength) occurs without validating T.tlength.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4r-5ff7-6h3j

больше 3 лет назад

Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows remote code execution if a user opens a specially crafted PDF file, aka "Windows PDF Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0292.

CVSS3: 7.8
EPSS: Средний
github логотип

GHSA-2w4q-4463-64h2

больше 3 лет назад

An exploitable denial-of-service vulnerability exists in the thumbnail display functionality of the NT9665X Chipset firmware, running on the Anker Roav A1 Dashcam, version RoavA1SWV1.9. A specially crafted packet can cause a null pointer dereference, resulting in a device reboot.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4p-mxxg-4x58

около 3 лет назад

Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterGet function.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4p-2hf7-gh8x

больше 1 года назад

Alpine allows URL access filter bypass

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4m-xhc4-2cxx

больше 3 лет назад

A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions < V4.1), SIMATIC S7-300 PN/DP CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V6 and below CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants) (All versions). Affected devices contain a vulnerability that could cause a Denial-of-Service condition of the web server by sending specially crafted HTTP requests to ports 80/tcp and 443/tcp. The security vulnerability could be exploited by an attacker with network access to an affected device. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise the availability of the device’s web server. Beyond the web service, no other functions or interfaces are affected by the Denial-of-Service condition.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4m-xg3v-rm3m

почти 4 года назад

Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.

EPSS: Низкий
github логотип

GHSA-2w4m-rf78-pvxh

больше 1 года назад

An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-2w4j-r5v6-3vgr

больше 3 лет назад

A flaw was found in the USB redirector device emulation of QEMU in versions prior to 6.1.0-rc2. It occurs when dropping packets during a bulk transfer from a SPICE client due to the packet queue being full. A malicious SPICE client could use this flaw to make QEMU call free() with faked heap chunk metadata, resulting in a crash of QEMU or potential code execution with the privileges of the QEMU process on the host.

CVSS3: 8.5
EPSS: Низкий
github логотип

GHSA-2w4j-j38j-hjcx

около 3 лет назад

D-Link DIR823G 1.02B05 is vulnerable to Commad Injection.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2w4h-wj52-qhcp

больше 3 лет назад

Vulnerability in the Oracle Hospitality Cruise Materials Management product of Oracle Hospitality Applications (component: MMS All). The supported version that is affected is 7.30.567. Difficult to exploit vulnerability allows physical access to compromise Oracle Hospitality Cruise Materials Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality Cruise Materials Management accessible data. CVSS 3.0 Base Score 4.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N).

CVSS3: 4.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2w53-3qhg-wqq3

A Server-Side Request Forgery (SSRF) in the component TunnelServlet of agorum Software GmbH Agorum core open v11.9.2 & v11.10.1 allows attackers to forcefully initiate connections to arbitrary internal and external resources via a crafted request. This can lead to sensitive data exposure.

CVSS3: 6.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-2w52-p6rg-2493

Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).

90%
Критический
почти 4 года назад
github логотип
GHSA-2w52-h5q8-4cwq

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012, and Windows RT allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."

1%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4x-rxp7-grg7

Exposure of Sensitive Information to an Unauthorized Actor in Jenkins

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4w-qvp3-4g7g

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

CVSS3: 6.2
0%
Низкий
9 месяцев назад
github логотип
GHSA-2w4w-4385-vh4h

wgp race condition in inner::drop

CVSS3: 2.9
0%
Низкий
9 месяцев назад
github логотип
GHSA-2w4r-h739-965w

D-Link DAP-2622 DDP Get SSID List WPA PSK Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2622 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the DDP service. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-20078.

CVSS3: 7.4
0%
Низкий
почти 2 года назад
github логотип
GHSA-2w4r-fj83-hjp4

Windows Bind Filter Driver Elevation of Privilege Vulnerability.

CVSS3: 7
1%
Низкий
около 3 лет назад
github логотип
GHSA-2w4r-8725-xcxv

An issue was discovered in AMCS Group Trux Waste Management Software before version 7.19.0018.26912, allows local attackers to obtain sensitive information via a static, hard-coded AES Key-IV pair in the TxUtilities.dll and TruxUser.cfg components.

CVSS3: 6.2
3%
Низкий
почти 2 года назад
github логотип
GHSA-2w4r-7g95-jpmw

LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed_image_t)+T.tlength) occurs without validating T.tlength.

CVSS3: 7.5
4%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4r-5ff7-6h3j

Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows remote code execution if a user opens a specially crafted PDF file, aka "Windows PDF Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0292.

CVSS3: 7.8
29%
Средний
больше 3 лет назад
github логотип
GHSA-2w4q-4463-64h2

An exploitable denial-of-service vulnerability exists in the thumbnail display functionality of the NT9665X Chipset firmware, running on the Anker Roav A1 Dashcam, version RoavA1SWV1.9. A specially crafted packet can cause a null pointer dereference, resulting in a device reboot.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4p-mxxg-4x58

Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterGet function.

CVSS3: 7.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-2w4p-2hf7-gh8x

Alpine allows URL access filter bypass

CVSS3: 7.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-2w4m-xhc4-2cxx

A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions < V4.1), SIMATIC S7-300 PN/DP CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V6 and below CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants) (All versions). Affected devices contain a vulnerability that could cause a Denial-of-Service condition of the web server by sending specially crafted HTTP requests to ports 80/tcp and 443/tcp. The security vulnerability could be exploited by an attacker with network access to an affected device. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise the availability of the device’s web server. Beyond the web service, no other functions or interfaces are affected by the Denial-of-Service condition.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4m-xg3v-rm3m

Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.

2%
Низкий
почти 4 года назад
github логотип
GHSA-2w4m-rf78-pvxh

An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.

CVSS3: 4.9
0%
Низкий
больше 1 года назад
github логотип
GHSA-2w4j-r5v6-3vgr

A flaw was found in the USB redirector device emulation of QEMU in versions prior to 6.1.0-rc2. It occurs when dropping packets during a bulk transfer from a SPICE client due to the packet queue being full. A malicious SPICE client could use this flaw to make QEMU call free() with faked heap chunk metadata, resulting in a crash of QEMU or potential code execution with the privileges of the QEMU process on the host.

CVSS3: 8.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4j-j38j-hjcx

D-Link DIR823G 1.02B05 is vulnerable to Commad Injection.

CVSS3: 9.8
2%
Низкий
около 3 лет назад
github логотип
GHSA-2w4h-wj52-qhcp

Vulnerability in the Oracle Hospitality Cruise Materials Management product of Oracle Hospitality Applications (component: MMS All). The supported version that is affected is 7.30.567. Difficult to exploit vulnerability allows physical access to compromise Oracle Hospitality Cruise Materials Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality Cruise Materials Management accessible data. CVSS 3.0 Base Score 4.2 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:P/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N).

CVSS3: 4.2
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу