Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 727

Количество 375 727

github логотип

GHSA-xrmp-x8vm-qcmh

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: remove station if connection prep fails If connection preparation fails for MLO connections, then the interface is completely reset to non-MLD. In this case, we must not keep the station since it's related to the link of the vif being removed. Delete an existing station. Any "new_sta" is already being removed, so that doesn't need changes. This fixes a use-after-free/double-free in debugfs if that's enabled, because a vif going from MLD (and to MLD, but that's not relevant here) recreates its entire debugfs.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrmp-pcg8-5q9v

около 2 месяцев назад

In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xrmp-99wj-p6jc

больше 7 лет назад

Prototype Pollution in deap

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-xrmp-96p2-c668

28 дней назад

Buffer overflow in Blink in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xrmm-q45r-f6gr

больше 4 лет назад

Multiple SQL injection vulnerabilities in eshop-orders.php in the eShop plugin 6.3.14 for WordPress allow (1) remote administrators to execute arbitrary SQL commands via the delid parameter or remote authenticated users to execute arbitrary SQL commands via the (2) view, (3) mark, or (4) change parameter.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrmj-xm38-42wc

около 1 года назад

An issue has been discovered in GitLab EE affecting all versions from 18.0 before 18.0.4 and 18.1 before 18.1.2 that could have allowed authenticated maintainers to bypass group-level user invitation restrictions by sending crafted API requests.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-xrmj-v7v7-vhq3

больше 4 лет назад

Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges via a crafted shared library, related to a "pointer overwrite vulnerability."

EPSS: Низкий
github логотип

GHSA-xrmj-c7vj-9c4m

больше 4 лет назад

The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an aufs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xrmj-5g4g-8987

около 2 месяцев назад

@dynatrace-oss/dynatrace-mcp-server has a workflow template injection via create_workflow_for_notification

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-xrmh-cph2-4343

9 месяцев назад

Quick.CMS 6.7 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating the login form. Attackers can inject specific SQL payloads like ' or '1'='1 to gain unauthorized administrative access to the system.

EPSS: Низкий
github логотип

GHSA-xrmh-26m7-8f7p

около 2 лет назад

The Product Enquiry for WooCommerce WordPress plugin before 3.1.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xrmg-9fq7-8w6h

5 месяцев назад

A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown function of the file /index.php?page=categories. Performing a manipulation of the argument ID results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xrmg-5x28-jv6w

почти 4 года назад

SWFTools commit 772e55a2 was discovered to contain a segmentation violation via FoFiTrueType::writeTTF at /xpdf/FoFiTrueType.cc.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xrmf-4mwm-vr8j

почти 3 года назад

GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leaks in extract_attributes media_tools/m3u8.c:329.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xrmc-c5cg-rv7x

2 месяца назад

SafeInstall agent guard shell parsing can miss raw package execution

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xrmc-6wqq-99wc

больше 4 лет назад

The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).

EPSS: Низкий
github логотип

GHSA-xrm7-9mcw-9wr5

больше 1 года назад

A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xrm7-6c5j-p27r

больше 4 лет назад

chan_sip.c in the SIP channel driver in Asterisk Open Source 1.6.x before 1.6.2.18.1 and 1.8.x before 1.8.4.3 does not properly handle '\0' characters in SIP packets, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted packet.

EPSS: Низкий
github логотип

GHSA-xrm5-ch2w-5mr5

около 1 месяца назад

Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hyperion Data Relationship Management executes to compromise Oracle Hyperion Data Relationship Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Hyperion Data Relationship Management accessible data as well as unauthorized access to critical data or complete access to all Oracle Hyperion Data Relationship Management accessible data. CVSS 3.1 Base Score 7.7 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-xrm5-74w8-cr3j

больше 4 лет назад

The Add Sidebar WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the add parameter in the ~/wp_sidebarMenu.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 2.0.0.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xrmp-x8vm-qcmh

In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: remove station if connection prep fails If connection preparation fails for MLO connections, then the interface is completely reset to non-MLD. In this case, we must not keep the station since it's related to the link of the vif being removed. Delete an existing station. Any "new_sta" is already being removed, so that doesn't need changes. This fixes a use-after-free/double-free in debugfs if that's enabled, because a vif going from MLD (and to MLD, but that's not relevant here) recreates its entire debugfs.

CVSS3: 8.8
0%
Низкий
4 месяца назад
github логотип
GHSA-xrmp-pcg8-5q9v

In Bouncy Castle for Java before 1.85, MLS hash-ratchet honours arbitrary 32-bit generation counter from sender.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xrmp-99wj-p6jc

Prototype Pollution in deap

CVSS3: 7.3
больше 7 лет назад
github логотип
GHSA-xrmp-96p2-c668

Buffer overflow in Blink in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 7.5
0%
Низкий
28 дней назад
github логотип
GHSA-xrmm-q45r-f6gr

Multiple SQL injection vulnerabilities in eshop-orders.php in the eShop plugin 6.3.14 for WordPress allow (1) remote administrators to execute arbitrary SQL commands via the delid parameter or remote authenticated users to execute arbitrary SQL commands via the (2) view, (3) mark, or (4) change parameter.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xrmj-xm38-42wc

An issue has been discovered in GitLab EE affecting all versions from 18.0 before 18.0.4 and 18.1 before 18.1.2 that could have allowed authenticated maintainers to bypass group-level user invitation restrictions by sending crafted API requests.

CVSS3: 2.7
0%
Низкий
около 1 года назад
github логотип
GHSA-xrmj-v7v7-vhq3

Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges via a crafted shared library, related to a "pointer overwrite vulnerability."

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xrmj-c7vj-9c4m

The aufs module for the Linux kernel 3.x and 4.x does not properly restrict the mount namespace, which allows local users to gain privileges by mounting an aufs filesystem on top of a FUSE filesystem, and then executing a crafted setuid program.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xrmj-5g4g-8987

@dynatrace-oss/dynatrace-mcp-server has a workflow template injection via create_workflow_for_notification

CVSS3: 4.2
около 2 месяцев назад
github логотип
GHSA-xrmh-cph2-4343

Quick.CMS 6.7 contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating the login form. Attackers can inject specific SQL payloads like ' or '1'='1 to gain unauthorized administrative access to the system.

1%
Низкий
9 месяцев назад
github логотип
GHSA-xrmh-26m7-8f7p

The Product Enquiry for WooCommerce WordPress plugin before 3.1.8 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVSS3: 5.9
0%
Низкий
около 2 лет назад
github логотип
GHSA-xrmg-9fq7-8w6h

A vulnerability was detected in SourceCodester Pharmacy Sales and Inventory System 1.0. Impacted is an unknown function of the file /index.php?page=categories. Performing a manipulation of the argument ID results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used.

CVSS3: 4.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-xrmg-5x28-jv6w

SWFTools commit 772e55a2 was discovered to contain a segmentation violation via FoFiTrueType::writeTTF at /xpdf/FoFiTrueType.cc.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xrmf-4mwm-vr8j

GPAC 2.3-DEV-rev617-g671976fcc-master is vulnerable to memory leaks in extract_attributes media_tools/m3u8.c:329.

CVSS3: 7.1
0%
Низкий
почти 3 года назад
github логотип
GHSA-xrmc-c5cg-rv7x

SafeInstall agent guard shell parsing can miss raw package execution

CVSS3: 8.8
2 месяца назад
github логотип
GHSA-xrmc-6wqq-99wc

The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xrm7-9mcw-9wr5

A maliciously crafted CATPRODUCT file, when parsed through Autodesk AutoCAD, can force an Uninitialized Variable vulnerability. A malicious actor can leverage this vulnerability to cause a crash, read sensitive data, or execute arbitrary code in the context of the current process.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-xrm7-6c5j-p27r

chan_sip.c in the SIP channel driver in Asterisk Open Source 1.6.x before 1.6.2.18.1 and 1.8.x before 1.8.4.3 does not properly handle '\0' characters in SIP packets, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted packet.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-xrm5-ch2w-5mr5

Vulnerability in the Oracle Hyperion Data Relationship Management product of Oracle Hyperion (component: Access and security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure where Oracle Hyperion Data Relationship Management executes to compromise Oracle Hyperion Data Relationship Management. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Hyperion Data Relationship Management accessible data as well as unauthorized access to critical data or complete access to all Oracle Hyperion Data Relationship Management accessible data. CVSS 3.1 Base Score 7.7 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N).

CVSS3: 7.7
0%
Низкий
около 1 месяца назад
github логотип
GHSA-xrm5-74w8-cr3j

The Add Sidebar WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the add parameter in the ~/wp_sidebarMenu.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 2.0.0.

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу