Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-2jvm-ch9q-pwc4

почти 4 года назад

Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbitrary code via the (1) Keyword and (2) Title fields, related to string length fields.

EPSS: Низкий
github логотип

GHSA-2jvj-mhf2-g99w

больше 3 лет назад

SilverStripe CSV Excel Macro Injection

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2jvj-gqwv-f9w3

больше 3 лет назад

Pandora FMS ? 7.42 suffers from a remote code execution vulnerability. To exploit the vulnerability, an authenticated user should create a new folder with a "tricky" name in the filemanager. The exploit works when the php-fileinfo extension is disabled on the host system. The attacker must include shell metacharacters in the content type.

EPSS: Низкий
github логотип

GHSA-2jvj-8cfx-j4f9

почти 4 года назад

Multiple cross-site scripting (XSS) vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) login/login.asp or (2) login/register.asp.

EPSS: Низкий
github логотип

GHSA-2jvj-2rqx-36qc

почти 4 года назад

mycontacts.php in V3 Chat allows remote authenticated users to gain privileges as other users via a modified membername parameter.

EPSS: Низкий
github логотип

GHSA-2jvj-298c-h5x3

больше 3 лет назад

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code execution due to lack of proper validation of user-supplied data, when a malicious CGF file is imported to IGSS Definition.

EPSS: Низкий
github логотип

GHSA-2jvh-v7p9-q42p

больше 3 лет назад

A Stack-based Buffer Overflow issue was discovered in Schneider Electric InduSoft Web Studio v8.0 SP2 Patch 1 and prior versions, and InTouch Machine Edition v8.0 SP2 Patch 1 and prior versions. The stack-based buffer overflow vulnerability has been identified, which may allow remote code execution with high privileges.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2jvh-95r9-r8rh

почти 4 года назад

tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.

EPSS: Низкий
github логотип

GHSA-2jvg-w8m6-w797

почти 4 года назад

There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2jvf-xc8m-3fhq

26 дней назад

In the Linux kernel, the following vulnerability has been resolved: media: iris: Add sanity check for stop streaming Add sanity check in iris_vb2_stop_streaming. If inst->state is already IRIS_INST_ERROR, we should skip the stream_off operation because it would still send packets to the firmware. In iris_kill_session, inst->state is set to IRIS_INST_ERROR and session_close is executed, which will kfree(inst_hfi_gen2->packet). If stop_streaming is called afterward, it will cause a crash. [bod: remove qcom from patch title]

EPSS: Низкий
github логотип

GHSA-2jvf-qvqx-mrwj

почти 4 года назад

Trend Micro Control Manager 3.0 Enterprise Edition allows remote attackers to gain privileges via a replay attack of the encrypted username and password.

EPSS: Низкий
github логотип

GHSA-2jvc-fw3x-6gp3

больше 3 лет назад

Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is only partially initialized because the stack overflowed while creating the frame. This leads to a crash in the code sending the stack frame to the debugger.

EPSS: Низкий
github логотип

GHSA-2jvc-33pv-cq2m

больше 3 лет назад

The Curl_input_negotiate function in http_negotiate.c in libcurl 7.10.6 through 7.21.6, as used in curl and other products, always performs credential delegation during GSSAPI authentication, which allows remote servers to impersonate clients via GSSAPI requests.

EPSS: Низкий
github логотип

GHSA-2jv9-jhfm-qj68

3 месяца назад

Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the Alert Heatmap report and the “My Reports” listing of the web interface. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2jv9-h994-74rx

около 2 лет назад

In media service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-2jv8-77qv-pf96

больше 2 лет назад

Reflected Cross Site Scripting (XSS) in the view dashboard detail feature in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the URL directly.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2jv7-c5x2-xf95

больше 3 лет назад

D-Link DIR-822 Rev.Bx devices with firmware v.202KRb06 and older allow a buffer overflow via long MacAddress data in a /HNAP1/SetClientInfo HNAP protocol message, which is mishandled in /usr/sbin/udhcpd during reading of the /var/servd/LAN-1-udhcpd.conf file.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2jv7-9rj6-jp68

около 2 лет назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tribulant Slideshow Gallery LITE.This issue affects Slideshow Gallery LITE: from n/a through 1.7.6.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-2jv6-v65m-qjx7

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: powercap: intel_rapl: Fix a NULL pointer dereference A NULL pointer dereference is triggered when probing the MMIO RAPL driver on platforms with CPU ID not listed in intel_rapl_common CPU model list. This is because the intel_rapl_common module still probes on such platforms even if 'defaults_msr' is not set after commit 1488ac990ac8 ("powercap: intel_rapl: Allow probing without CPUID match"). Thus the MMIO RAPL rp->priv->defaults is NULL when registering to RAPL framework. Fix the problem by adding sanity check to ensure rp->priv->rapl_defaults is always valid.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2jv6-pf8r-vf3g

почти 4 года назад

NETxAutomation NETxEIB OPC Server before 3.0.1300 does not properly validate OLE for Process Control (OPC) server handles, which allows attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors involving the (1) IOPCSyncIO::Read, (2) IOPCSyncIO::Write, (3) IOPCServer::AddGroup, (4) IOPCServer::RemoveGroup, (5) IOPCCommon::SetClientName, and (6) IOPCGroupStateMgt::CloneGroup functions, which allow access to arbitrary memory. NOTE: the vectors might be limited to attackers with physical access.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2jvm-ch9q-pwc4

Buffer overflow in JustSystems Hanako 2004 through 2006, Hanako viewer 1.x, Ichitaro 2004, Ichitaro 2005, Ichitaro Lite2, Ichitaro viewer 4.x, and Sanshiro 2005 allows remote attackers to execute arbitrary code via the (1) Keyword and (2) Title fields, related to string length fields.

6%
Низкий
почти 4 года назад
github логотип
GHSA-2jvj-mhf2-g99w

SilverStripe CSV Excel Macro Injection

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2jvj-gqwv-f9w3

Pandora FMS ? 7.42 suffers from a remote code execution vulnerability. To exploit the vulnerability, an authenticated user should create a new folder with a "tricky" name in the filemanager. The exploit works when the php-fileinfo extension is disabled on the host system. The attacker must include shell metacharacters in the content type.

4%
Низкий
больше 3 лет назад
github логотип
GHSA-2jvj-8cfx-j4f9

Multiple cross-site scripting (XSS) vulnerabilities in Outfront Spooky Login 2.7 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) login/login.asp or (2) login/register.asp.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2jvj-2rqx-36qc

mycontacts.php in V3 Chat allows remote authenticated users to gain privileges as other users via a modified membername parameter.

3%
Низкий
почти 4 года назад
github логотип
GHSA-2jvj-298c-h5x3

A CWE-787: Out-of-bounds write vulnerability exists inIGSS Definition (Def.exe) V15.0.0.21140 and prior that could result in loss of data or remote code execution due to lack of proper validation of user-supplied data, when a malicious CGF file is imported to IGSS Definition.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2jvh-v7p9-q42p

A Stack-based Buffer Overflow issue was discovered in Schneider Electric InduSoft Web Studio v8.0 SP2 Patch 1 and prior versions, and InTouch Machine Edition v8.0 SP2 Patch 1 and prior versions. The stack-based buffer overflow vulnerability has been identified, which may allow remote code execution with high privileges.

CVSS3: 9.8
4%
Низкий
больше 3 лет назад
github логотип
GHSA-2jvh-95r9-r8rh

tinc 1.0pre3 and 1.0pre4 allows remote attackers to inject data into user sessions by sniffing and replaying packets.

0%
Низкий
почти 4 года назад
github логотип
GHSA-2jvg-w8m6-w797

There is a heap-based and stack-based buffer overflow vulnerability in the video framework. Successful exploitation of this vulnerability may affect availability.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-2jvf-xc8m-3fhq

In the Linux kernel, the following vulnerability has been resolved: media: iris: Add sanity check for stop streaming Add sanity check in iris_vb2_stop_streaming. If inst->state is already IRIS_INST_ERROR, we should skip the stream_off operation because it would still send packets to the firmware. In iris_kill_session, inst->state is set to IRIS_INST_ERROR and session_close is executed, which will kfree(inst_hfi_gen2->packet). If stop_streaming is called afterward, it will cause a crash. [bod: remove qcom from patch title]

0%
Низкий
26 дней назад
github логотип
GHSA-2jvf-qvqx-mrwj

Trend Micro Control Manager 3.0 Enterprise Edition allows remote attackers to gain privileges via a replay attack of the encrypted username and password.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2jvc-fw3x-6gp3

Heap buffer overflow at moddable/xs/sources/xsDebug.c in Moddable SDK before before 20200903. The top stack frame is only partially initialized because the stack overflowed while creating the frame. This leads to a crash in the code sending the stack frame to the debugger.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2jvc-33pv-cq2m

The Curl_input_negotiate function in http_negotiate.c in libcurl 7.10.6 through 7.21.6, as used in curl and other products, always performs credential delegation during GSSAPI authentication, which allows remote servers to impersonate clients via GSSAPI requests.

2%
Низкий
больше 3 лет назад
github логотип
GHSA-2jv9-jhfm-qj68

Nagios XI versions prior to 2011R1.9 are vulnerable to cross-site scripting (XSS) via the Alert Heatmap report and the “My Reports” listing of the web interface. Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of a victim's browser.

CVSS3: 5.4
1%
Низкий
3 месяца назад
github логотип
GHSA-2jv9-h994-74rx

In media service, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service with System execution privileges needed

CVSS3: 4.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-2jv8-77qv-pf96

Reflected Cross Site Scripting (XSS) in the view dashboard detail feature in Microworld Technologies eScan management console 14.0.1400.2281 allows remote attacker to inject arbitrary code via the URL directly.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2jv7-c5x2-xf95

D-Link DIR-822 Rev.Bx devices with firmware v.202KRb06 and older allow a buffer overflow via long MacAddress data in a /HNAP1/SetClientInfo HNAP protocol message, which is mishandled in /usr/sbin/udhcpd during reading of the /var/servd/LAN-1-udhcpd.conf file.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2jv7-9rj6-jp68

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tribulant Slideshow Gallery LITE.This issue affects Slideshow Gallery LITE: from n/a through 1.7.6.

CVSS3: 6.7
0%
Низкий
около 2 лет назад
github логотип
GHSA-2jv6-v65m-qjx7

In the Linux kernel, the following vulnerability has been resolved: powercap: intel_rapl: Fix a NULL pointer dereference A NULL pointer dereference is triggered when probing the MMIO RAPL driver on platforms with CPU ID not listed in intel_rapl_common CPU model list. This is because the intel_rapl_common module still probes on such platforms even if 'defaults_msr' is not set after commit 1488ac990ac8 ("powercap: intel_rapl: Allow probing without CPUID match"). Thus the MMIO RAPL rp->priv->defaults is NULL when registering to RAPL framework. Fix the problem by adding sanity check to ensure rp->priv->rapl_defaults is always valid.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-2jv6-pf8r-vf3g

NETxAutomation NETxEIB OPC Server before 3.0.1300 does not properly validate OLE for Process Control (OPC) server handles, which allows attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors involving the (1) IOPCSyncIO::Read, (2) IOPCSyncIO::Write, (3) IOPCServer::AddGroup, (4) IOPCServer::RemoveGroup, (5) IOPCCommon::SetClientName, and (6) IOPCGroupStateMgt::CloneGroup functions, which allow access to arbitrary memory. NOTE: the vectors might be limited to attackers with physical access.

3%
Низкий
почти 4 года назад

Уязвимостей на страницу