Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 306 694

Количество 306 694

github логотип

GHSA-2528-h86j-954v

больше 3 лет назад

In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project.

EPSS: Низкий
github логотип

GHSA-2527-g53r-vw26

больше 3 лет назад

In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmful app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205595291

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-2526-24jx-77pp

больше 3 лет назад

Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2524-6f4r-2jq9

больше 3 лет назад

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.

EPSS: Низкий
github логотип

GHSA-2524-2jp2-r468

больше 1 года назад

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2523-xvgc-mmh8

около 1 года назад

Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2523-vcxw-6v95

больше 3 лет назад

In libhidcommand_jni, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the USB service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111363077

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-2523-v9j2-g44c

почти 4 года назад

Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerability discovered in Download Monitor WordPress plugin (versions <= 4.4.6) Vulnerable parameters: &post_title, &downloadable_file_version[0].

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-2523-mx65-hm92

больше 2 лет назад

NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2522-v35m-2r22

почти 4 года назад

jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2522-mrjc-m688

больше 1 года назад

Apache Airflow: Sensitive configuration for providers displayed when "non-sensitive-only" config used

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2522-8f97-8gg8

больше 3 лет назад

Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing."

EPSS: Низкий
github логотип

GHSA-24xx-mgc5-v24w

4 месяца назад

The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 67.7.0 via the 'page' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. The Local File Inclusion exploit can be chained to include various dashboard view files in the plugin. One in particular reported by the researcher can be leveraged to update the password of Super Administrator accounts in Multisite environments making privilege escalation possible.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-24xx-h3r4-557m

больше 3 лет назад

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24xx-ff7h-g5rx

больше 3 лет назад

scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application.

EPSS: Низкий
github логотип

GHSA-24xx-35j6-m7x4

больше 3 лет назад

Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.

EPSS: Низкий
github логотип

GHSA-24xw-x4fw-fmcw

больше 3 лет назад

IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-24xv-wv3m-hcqm

больше 3 лет назад

Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.

EPSS: Низкий
github логотип

GHSA-24xv-qrr3-8vjf

больше 3 лет назад

The Windows Hyper-V component on Microsoft Windows 8.1, Windows Server 2012 Gold and R2,, Windows 10 1607, and Windows Server 2016 allows a remote code execution vulnerability when it fails to properly validate input from an authenticated user on a guest operating system, aka "Remote Desktop Virtual Host Remote Code Execution Vulnerability".

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24xv-7qh2-7x7v

11 месяцев назад

The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.5.2 via the register_controls function in widgets/offcanvas-rometheme.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft template data.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2528-h86j-954v

In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2527-g53r-vw26

In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmful app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205595291

CVSS3: 7.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2526-24jx-77pp

Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.

CVSS3: 6.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2524-6f4r-2jq9

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2524-2jp2-r468

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

CVSS3: 8.8
2%
Низкий
больше 1 года назад
github логотип
GHSA-2523-xvgc-mmh8

Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability

CVSS3: 7.8
4%
Низкий
около 1 года назад
github логотип
GHSA-2523-vcxw-6v95

In libhidcommand_jni, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the USB service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111363077

CVSS3: 6.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2523-v9j2-g44c

Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerability discovered in Download Monitor WordPress plugin (versions <= 4.4.6) Vulnerable parameters: &post_title, &downloadable_file_version[0].

CVSS3: 4.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-2523-mx65-hm92

NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2522-v35m-2r22

jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.

CVSS3: 9.8
2%
Низкий
почти 4 года назад
github логотип
GHSA-2522-mrjc-m688

Apache Airflow: Sensitive configuration for providers displayed when "non-sensitive-only" config used

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2522-8f97-8gg8

Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing."

3%
Низкий
больше 3 лет назад
github логотип
GHSA-24xx-mgc5-v24w

The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 67.7.0 via the 'page' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. The Local File Inclusion exploit can be chained to include various dashboard view files in the plugin. One in particular reported by the researcher can be leveraged to update the password of Super Administrator accounts in Multisite environments making privilege escalation possible.

CVSS3: 8.8
0%
Низкий
4 месяца назад
github логотип
GHSA-24xx-h3r4-557m

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xx-ff7h-g5rx

scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xx-35j6-m7x4

Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xw-x4fw-fmcw

IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xv-wv3m-hcqm

Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.

6%
Низкий
больше 3 лет назад
github логотип
GHSA-24xv-qrr3-8vjf

The Windows Hyper-V component on Microsoft Windows 8.1, Windows Server 2012 Gold and R2,, Windows 10 1607, and Windows Server 2016 allows a remote code execution vulnerability when it fails to properly validate input from an authenticated user on a guest operating system, aka "Remote Desktop Virtual Host Remote Code Execution Vulnerability".

CVSS3: 7.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-24xv-7qh2-7x7v

The RomethemeKit For Elementor plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.5.2 via the register_controls function in widgets/offcanvas-rometheme.php. This makes it possible for authenticated attackers, with Contributor-level access and above, to extract sensitive private, pending, and draft template data.

CVSS3: 4.3
0%
Низкий
11 месяцев назад

Уязвимостей на страницу