Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-2vgm-64p8-7fv2

больше 3 лет назад

There is XSS in BoostIO Boostnote 0.11.15 via a label named mermaid, as demonstrated by a crafted SRC attribute of an IFRAME element.

EPSS: Низкий
github логотип

GHSA-2vgj-xcrr-vp37

больше 3 лет назад

Meteocontrol WEB'log Basic 100, Light, Pro, and Pro Unlimited allows remote attackers to obtain sensitive cleartext information via unspecified vectors.

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-2vgj-m9p7-c6jm

почти 3 года назад

IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of the agentrelay.properties file. IBM X-Force ID: 240148.

CVSS3: 5.1
EPSS: Низкий
github логотип

GHSA-2vgj-j756-9gpx

больше 3 лет назад

ipa-kra-install in FreeIPA before 4.2.2 puts the CA agent certificate and private key in /etc/httpd/alias/kra-agent.pem, which is world readable.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2vgj-6cm5-qr57

10 месяцев назад

WGS-80HPT-V2 and WGS-4215-8T2S are missing authentication that could allow an attacker to create an administrator account without knowing any existing credentials.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2vgj-5cmq-q6q3

больше 1 года назад

A vulnerability in Cisco Expressway Edge (Expressway-E) could allow an authenticated, remote attacker to masquerade as another user on an affected system. This vulnerability is due to inadequate authorization checks for Mobile and Remote Access (MRA) users. An attacker could exploit this vulnerability by running a series of crafted commands. A successful exploit could allow the attacker to intercept calls that are destined for a particular phone number or to make phone calls and have that phone number appear on the caller ID. To successfully exploit this vulnerability, the attacker must be an MRA user on an affected system.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2vgj-3pvg-xh4w

больше 1 года назад

Duplicate Advisory: Gogs allows deletion of internal files

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-2vgg-rc6p-wr66

около 2 лет назад

Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, leading to privilege escalation. This only occurs if the configuration omits the required restSettings.AuthorizedClientId and restSettings.AuthorizedSecret fields (for the POST /api/Deployment/ExportConfiguration and POST /api/Deployment endpoints).

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2vgg-c8q8-87vg

больше 3 лет назад

An arbitrary file upload vulnerability in the Upload Photos module of Wedding Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2vgg-9h6w-m454

почти 2 года назад

Bypassing Rate Limit and Brute Force Protection Using Cache Overflow

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2vgf-4cjr-cq76

больше 3 лет назад

Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a crafted directory name in a CWD command reply.

EPSS: Низкий
github логотип

GHSA-2vgf-299m-xvm7

больше 3 лет назад

"HCL Connections is vulnerable to possible information leakage and could disclose sensitive information via stack trace to a local user."

EPSS: Низкий
github логотип

GHSA-2vgc-pr6w-4gq9

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check link_index before accessing dc->links[] [WHY & HOW] dc->links[] has max size of MAX_LINKS and NULL is return when trying to access with out-of-bound index. This fixes 3 OVERRUN and 1 RESOURCE_LEAK issues reported by Coverity.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2vgc-gm64-jwcg

почти 4 года назад

Buffer overflow in SmartHTML Interpreter (shtml.dll) in Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to cause a denial of service (CPU consumption) or run arbitrary code, respectively, via a certain type of web file request.

EPSS: Средний
github логотип

GHSA-2vgc-685m-w42v

около 3 лет назад

An issue was discovered in Simmeth Lieferantenmanager before 5.6. An attacker can inject raw SQL queries. By activating MSSQL features, the attacker is able to execute arbitrary commands on the MSSQL server via the xp_cmdshell extended procedure.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2vg8-pj5q-762f

2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential cfid UAF in smb2_query_info_compound When smb2_query_info_compound() retries, a previously allocated cfid may have been freed in the first attempt. Because cfid wasn't reset on replay, later cleanup could act on a stale pointer, leading to a potential use-after-free. Reinitialize cfid to NULL under the replay label. Example trace (trimmed): refcount_t: underflow; use-after-free. WARNING: CPU: 1 PID: 11224 at ../lib/refcount.c:28 refcount_warn_saturate+0x9c/0x110 [...] RIP: 0010:refcount_warn_saturate+0x9c/0x110 [...] Call Trace: <TASK> smb2_query_info_compound+0x29c/0x5c0 [cifs f90b72658819bd21c94769b6a652029a07a7172f] ? step_into+0x10d/0x690 ? __legitimize_path+0x28/0x60 smb2_queryfs+0x6a/0xf0 [cifs f90b72658819bd21c94769b6a652029a07a7172f] smb311_queryfs+0x12d/0x140 [cifs f90b72658819bd21c94769b6a652029a07a7172f] ? kmem_cache_alloc+0x18a/0x340 ? getname_flags+0x46/0x1e0 cif...

EPSS: Низкий
github логотип

GHSA-2vg8-mhwg-wq3f

больше 3 лет назад

m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-2vg7-q8hg-5f79

больше 3 лет назад

A potential vulnerability in the SMI callback function used in the EEPROM driver in some Lenovo Desktops and ThinkStation models may allow arbitrary code execution

EPSS: Низкий
github логотип

GHSA-2vg6-vx3w-m2r4

почти 4 года назад

A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trigger out-of-bounds reads and writes in the host kernel via a malicious VMGEXIT for a string I/O instruction (for example, outs or ins) using the exit reason SVM_EXIT_IOIO. This issue results in a crash of the entire system or a potential guest-to-host escape scenario.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2vg6-3mr6-w5mp

почти 4 года назад

lib/pk-libgcrypt.c in libgnutls in GnuTLS before 2.6.6 does not properly handle invalid DSA signatures, which allows remote attackers to cause a denial of service (application crash) and possibly have unspecified other impact via a malformed DSA key that triggers a (1) free of an uninitialized pointer or (2) double free.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2vgm-64p8-7fv2

There is XSS in BoostIO Boostnote 0.11.15 via a label named mermaid, as demonstrated by a crafted SRC attribute of an IFRAME element.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2vgj-xcrr-vp37

Meteocontrol WEB'log Basic 100, Light, Pro, and Pro Unlimited allows remote attackers to obtain sensitive cleartext information via unspecified vectors.

CVSS3: 9.8
73%
Высокий
больше 3 лет назад
github логотип
GHSA-2vgj-m9p7-c6jm

IBM UrbanCode Deploy (UCD) versions up to 7.3.0.1 could disclose sensitive password information during a manual edit of the agentrelay.properties file. IBM X-Force ID: 240148.

CVSS3: 5.1
0%
Низкий
почти 3 года назад
github логотип
GHSA-2vgj-j756-9gpx

ipa-kra-install in FreeIPA before 4.2.2 puts the CA agent certificate and private key in /etc/httpd/alias/kra-agent.pem, which is world readable.

CVSS3: 9.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2vgj-6cm5-qr57

WGS-80HPT-V2 and WGS-4215-8T2S are missing authentication that could allow an attacker to create an administrator account without knowing any existing credentials.

CVSS3: 9.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-2vgj-5cmq-q6q3

A vulnerability in Cisco Expressway Edge (Expressway-E) could allow an authenticated, remote attacker to masquerade as another user on an affected system. This vulnerability is due to inadequate authorization checks for Mobile and Remote Access (MRA) users. An attacker could exploit this vulnerability by running a series of crafted commands. A successful exploit could allow the attacker to intercept calls that are destined for a particular phone number or to make phone calls and have that phone number appear on the caller ID. To successfully exploit this vulnerability, the attacker must be an MRA user on an affected system.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2vgj-3pvg-xh4w

Duplicate Advisory: Gogs allows deletion of internal files

CVSS3: 9.9
больше 1 года назад
github логотип
GHSA-2vgg-rc6p-wr66

Netwrix Usercube before 6.0.215, in certain misconfigured on-premises installations, allows authentication bypass on deployment endpoints, leading to privilege escalation. This only occurs if the configuration omits the required restSettings.AuthorizedClientId and restSettings.AuthorizedSecret fields (for the POST /api/Deployment/ExportConfiguration and POST /api/Deployment endpoints).

CVSS3: 9.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-2vgg-c8q8-87vg

An arbitrary file upload vulnerability in the Upload Photos module of Wedding Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

CVSS3: 7.2
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2vgg-9h6w-m454

Bypassing Rate Limit and Brute Force Protection Using Cache Overflow

CVSS3: 5.4
0%
Низкий
почти 2 года назад
github логотип
GHSA-2vgf-4cjr-cq76

Stack-based buffer overflow in Core FTP before 2.2 build 1785 allows remote FTP servers to execute arbitrary code via a crafted directory name in a CWD command reply.

2%
Низкий
больше 3 лет назад
github логотип
GHSA-2vgf-299m-xvm7

"HCL Connections is vulnerable to possible information leakage and could disclose sensitive information via stack trace to a local user."

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2vgc-pr6w-4gq9

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Check link_index before accessing dc->links[] [WHY & HOW] dc->links[] has max size of MAX_LINKS and NULL is return when trying to access with out-of-bound index. This fixes 3 OVERRUN and 1 RESOURCE_LEAK issues reported by Coverity.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-2vgc-gm64-jwcg

Buffer overflow in SmartHTML Interpreter (shtml.dll) in Microsoft FrontPage Server Extensions (FPSE) 2000 and 2002 allows remote attackers to cause a denial of service (CPU consumption) or run arbitrary code, respectively, via a certain type of web file request.

38%
Средний
почти 4 года назад
github логотип
GHSA-2vgc-685m-w42v

An issue was discovered in Simmeth Lieferantenmanager before 5.6. An attacker can inject raw SQL queries. By activating MSSQL features, the attacker is able to execute arbitrary commands on the MSSQL server via the xp_cmdshell extended procedure.

CVSS3: 9.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-2vg8-pj5q-762f

In the Linux kernel, the following vulnerability has been resolved: smb: client: fix potential cfid UAF in smb2_query_info_compound When smb2_query_info_compound() retries, a previously allocated cfid may have been freed in the first attempt. Because cfid wasn't reset on replay, later cleanup could act on a stale pointer, leading to a potential use-after-free. Reinitialize cfid to NULL under the replay label. Example trace (trimmed): refcount_t: underflow; use-after-free. WARNING: CPU: 1 PID: 11224 at ../lib/refcount.c:28 refcount_warn_saturate+0x9c/0x110 [...] RIP: 0010:refcount_warn_saturate+0x9c/0x110 [...] Call Trace: <TASK> smb2_query_info_compound+0x29c/0x5c0 [cifs f90b72658819bd21c94769b6a652029a07a7172f] ? step_into+0x10d/0x690 ? __legitimize_path+0x28/0x60 smb2_queryfs+0x6a/0xf0 [cifs f90b72658819bd21c94769b6a652029a07a7172f] smb311_queryfs+0x12d/0x140 [cifs f90b72658819bd21c94769b6a652029a07a7172f] ? kmem_cache_alloc+0x18a/0x340 ? getname_flags+0x46/0x1e0 cif...

0%
Низкий
2 месяца назад
github логотип
GHSA-2vg8-mhwg-wq3f

m_cat in slirp/mbuf.c in Qemu has a heap-based buffer overflow via incoming fragmented datagrams.

CVSS3: 8.2
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2vg7-q8hg-5f79

A potential vulnerability in the SMI callback function used in the EEPROM driver in some Lenovo Desktops and ThinkStation models may allow arbitrary code execution

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2vg6-vx3w-m2r4

A flaw was found in the KVM's AMD code for supporting the Secure Encrypted Virtualization-Encrypted State (SEV-ES). A KVM guest using SEV-ES can trigger out-of-bounds reads and writes in the host kernel via a malicious VMGEXIT for a string I/O instruction (for example, outs or ins) using the exit reason SVM_EXIT_IOIO. This issue results in a crash of the entire system or a potential guest-to-host escape scenario.

CVSS3: 8.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-2vg6-3mr6-w5mp

lib/pk-libgcrypt.c in libgnutls in GnuTLS before 2.6.6 does not properly handle invalid DSA signatures, which allows remote attackers to cause a denial of service (application crash) and possibly have unspecified other impact via a malformed DSA key that triggers a (1) free of an uninitialized pointer or (2) double free.

18%
Средний
почти 4 года назад

Уязвимостей на страницу