Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-33hj-36q7-m72x

больше 3 лет назад

A vulnerability in the web management interface of Cisco Secure Email and Web Manager, formerly Cisco Security Management Appliance (SMA), and Cisco Email Security Appliance (ESA) could allow an authenticated, remote attacker to retrieve sensitive information from a Lightweight Directory Access Protocol (LDAP) external authentication server connected to an affected device. This vulnerability is due to a lack of proper input sanitization while querying the external authentication server. An attacker could exploit this vulnerability by sending a crafted query through an external authentication web page. A successful exploit could allow the attacker to gain access to sensitive information, including user credentials from the external authentication server. To exploit this vulnerability, an attacker would need valid operator-level (or higher) credentials.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-33hj-353r-q5fv

около 4 лет назад

AHheap-based Buffer Overflow vulnerabiity exists in GNU inetutils 2.2 in cmds.c, which caused a denial of service.

EPSS: Низкий
github логотип

GHSA-33hj-29w7-25fv

больше 3 лет назад

arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not prevent executable DMA mappings, which might allow local users to gain privileges via a crafted application, aka Android internal bug 28803642 and Qualcomm internal bug CR642735.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-33hh-733x-w24m

больше 3 лет назад

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33hg-cqpj-624f

больше 3 лет назад

Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryption key. This key is shared across all ClickShare Buttons of model R9861500D01.

EPSS: Низкий
github логотип

GHSA-33hg-679x-g4vw

больше 3 лет назад

_s_/sprm/_s_/dyn/Player_setScriptFile in Sahi Pro 8.0.0 allows command execution. It allows one to run ".sah" scripts via Sahi Launcher. Also, one can create a new script with an editor. It is possible to execute commands on the server using the _execute() function.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-33hf-j99j-jxg5

больше 3 лет назад

Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33hf-cc48-qxc6

больше 3 лет назад

Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to conduct XML External Entity (XXE) attacks and obtain the information stored in the product via unspecified vectors. This issue occurs only when using Mozilla Firefox.

EPSS: Низкий
github логотип

GHSA-33hc-wv7x-jxjc

больше 3 лет назад

An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions to take control of other portions of the NFX platform they should not be able to access, and execute commands outside their authorized scope of control. This leads to the attacker being able to take control of the entire system. This issue affects: Juniper Networks Junos OS versions prior to 18.2R1 on NFX Series.

EPSS: Низкий
github логотип

GHSA-33hc-jm79-92r9

почти 4 года назад

The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.

EPSS: Низкий
github логотип

GHSA-33hc-fc7h-48c7

7 месяцев назад

In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-33hc-85x3-8vj6

почти 4 года назад

SQL injection vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to execute arbitrary SQL statements via the instory parameter.

EPSS: Низкий
github логотип

GHSA-33h9-8fc9-rxv2

больше 3 лет назад

The ElForro.com (aka com.tapatalk.elforrocom) application 2.4.3.10 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-33h9-6q8v-jm62

больше 3 лет назад

In Gxlcms QY v1.0.0713, Lib\Lib\Action\Home\HitsAction.class.php allows remote attackers to read data from a database by embedding a FROM clause in a query string within a Home-Hits request, as demonstrated hy sid=user,password%20from%20mysql.user%23.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33h8-xqwf-f73x

около 2 лет назад

libheif v1.17.5 was discovered to contain a segmentation violation via the function find_exif_tag at /libheif/exif.cc.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-33h8-vgj5-957w

почти 4 года назад

Directory traversal vulnerability in index.php in Sava's Link Manager 2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the q parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS: Низкий
github логотип

GHSA-33h8-vfvx-rpgx

12 месяцев назад

The SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.5.10 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. By default, this can only be exploited by administrators, but the ability to upload SVG files can be extended to authors.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-33h5-8f42-7frx

больше 3 лет назад

Pydio Cells before 1.5.0 does incomplete cleanup of a user's data upon deletion. This allows a new user, holding the same User ID as a deleted user, to restore the deleted user's data.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33h3-qhjg-4qmf

больше 3 лет назад

In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u \#$((0xffffffff))" command.

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-33h3-8669-hjwx

больше 3 лет назад

curl before version 7.51.0 uses outdated IDNA 2003 standard to handle International Domain Names and this may lead users to potentially and unknowingly issue network transfer requests to the wrong host.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-33hj-36q7-m72x

A vulnerability in the web management interface of Cisco Secure Email and Web Manager, formerly Cisco Security Management Appliance (SMA), and Cisco Email Security Appliance (ESA) could allow an authenticated, remote attacker to retrieve sensitive information from a Lightweight Directory Access Protocol (LDAP) external authentication server connected to an affected device. This vulnerability is due to a lack of proper input sanitization while querying the external authentication server. An attacker could exploit this vulnerability by sending a crafted query through an external authentication web page. A successful exploit could allow the attacker to gain access to sensitive information, including user credentials from the external authentication server. To exploit this vulnerability, an attacker would need valid operator-level (or higher) credentials.

CVSS3: 7.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-33hj-353r-q5fv

AHheap-based Buffer Overflow vulnerabiity exists in GNU inetutils 2.2 in cmds.c, which caused a denial of service.

около 4 лет назад
github логотип
GHSA-33hj-29w7-25fv

arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not prevent executable DMA mappings, which might allow local users to gain privileges via a crafted application, aka Android internal bug 28803642 and Qualcomm internal bug CR642735.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-33hh-733x-w24m

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-33hg-cqpj-624f

Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryption key. This key is shared across all ClickShare Buttons of model R9861500D01.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-33hg-679x-g4vw

_s_/sprm/_s_/dyn/Player_setScriptFile in Sahi Pro 8.0.0 allows command execution. It allows one to run ".sah" scripts via Sahi Launcher. Also, one can create a new script with an editor. It is possible to execute commands on the server using the _execute() function.

CVSS3: 9.8
50%
Средний
больше 3 лет назад
github логотип
GHSA-33hf-j99j-jxg5

Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-33hf-cc48-qxc6

Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to conduct XML External Entity (XXE) attacks and obtain the information stored in the product via unspecified vectors. This issue occurs only when using Mozilla Firefox.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-33hc-wv7x-jxjc

An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions to take control of other portions of the NFX platform they should not be able to access, and execute commands outside their authorized scope of control. This leads to the attacker being able to take control of the entire system. This issue affects: Juniper Networks Junos OS versions prior to 18.2R1 on NFX Series.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-33hc-jm79-92r9

The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.

1%
Низкий
почти 4 года назад
github логотип
GHSA-33hc-fc7h-48c7

In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration

CVSS3: 3.7
0%
Низкий
7 месяцев назад
github логотип
GHSA-33hc-85x3-8vj6

SQL injection vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to execute arbitrary SQL statements via the instory parameter.

0%
Низкий
почти 4 года назад
github логотип
GHSA-33h9-8fc9-rxv2

The ElForro.com (aka com.tapatalk.elforrocom) application 2.4.3.10 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-33h9-6q8v-jm62

In Gxlcms QY v1.0.0713, Lib\Lib\Action\Home\HitsAction.class.php allows remote attackers to read data from a database by embedding a FROM clause in a query string within a Home-Hits request, as demonstrated hy sid=user,password%20from%20mysql.user%23.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-33h8-xqwf-f73x

libheif v1.17.5 was discovered to contain a segmentation violation via the function find_exif_tag at /libheif/exif.cc.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-33h8-vgj5-957w

Directory traversal vulnerability in index.php in Sava's Link Manager 2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the q parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

0%
Низкий
почти 4 года назад
github логотип
GHSA-33h8-vfvx-rpgx

The SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 2.5.10 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. By default, this can only be exploited by administrators, but the ability to upload SVG files can be extended to authors.

CVSS3: 6.4
0%
Низкий
12 месяцев назад
github логотип
GHSA-33h5-8f42-7frx

Pydio Cells before 1.5.0 does incomplete cleanup of a user's data upon deletion. This allows a new user, holding the same User ID as a deleted user, to restore the deleted user's data.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-33h3-qhjg-4qmf

In Sudo before 1.8.28, an attacker with access to a Runas ALL sudoer account can bypass certain policy blacklists and session PAM modules, and can cause incorrect logging, by invoking sudo with a crafted user ID. For example, this allows bypass of !root configuration, and USER= logging, for a "sudo -u \#$((0xffffffff))" command.

CVSS3: 8.8
86%
Высокий
больше 3 лет назад
github логотип
GHSA-33h3-8669-hjwx

curl before version 7.51.0 uses outdated IDNA 2003 standard to handle International Domain Names and this may lead users to potentially and unknowingly issue network transfer requests to the wrong host.

CVSS3: 7.5
2%
Низкий
больше 3 лет назад

Уязвимостей на страницу