Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 306 231

Количество 306 231

github логотип

GHSA-2424-q483-wgpq

больше 2 лет назад

Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2424-8qh4-3ggg

больше 3 лет назад

SmartFilter Web Gateway Security 4.2.1.00 stores user credentials in cleartext in config.txt and uses insecure permissions for this file, which allows local users to gain privileges.

EPSS: Низкий
github логотип

GHSA-2424-5f9c-864m

больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in DeltaScripts Pro Publish allow remote attackers to inject arbitrary web script or HTML via the (1) artid parameter in art.php and the (2) catname parameter in cat.php.

EPSS: Низкий
github логотип

GHSA-2424-29jp-qgw2

больше 3 лет назад

MetaCart2.sql stores the user database under the web document root without access controls, which allows remote attackers to obtain sensitive information such as passwords and credit card numbers via a direct request for metacart.mdb.

EPSS: Низкий
github логотип

GHSA-2423-333r-g3m8

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in doku.php in DokuWiki 2012-01-25 Angua allows remote attackers to inject arbitrary web script or HTML via the target parameter in an edit action.

EPSS: Низкий
github логотип

GHSA-2423-2c9w-8vgr

12 месяцев назад

File Upload vulnerability in ChestnutCMS through 1.5.0. Based on the code analysis, it was determined that the /api/member/avatar API endpoint receives a base64 string as input. This string is then passed to the memberService.uploadAvatarByBase64 method for processing. Within the service, the base64-encoded image is parsed. For example, given a string like: data:image/html;base64,PGh0bWw+PGltZyBzcmM9eCBvbmVycm9yPWFsZXJ0KDEpPjwvaHRtbD4= the content after the comma is extracted and decoded using Base64.getDecoder().decode(). The substring from the 11th character up to the first occurrence of a semicolon (;) is assigned to the suffix variable (representing the file extension). The decoded content is then written to a file. However, the file extension is not validated, and since this functionality is exposed to the frontend, it poses significant security risks.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2422-39jf-m5cr

больше 3 лет назад

The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4388, CVE-2016-4389, and CVE-2016-4390.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-23xx-r9hm-q9g9

около 2 лет назад

A vulnerability classified as critical has been found in OpenRapid RapidCMS 1.3.1. This affects an unknown part of the file /resource/addgood.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-240867.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-23xw-ccm5-g9pf

больше 3 лет назад

baijiacms V3 has CSRF via index.php?mod=site&op=edituser&name=manager&do=user to add an administrator account.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-23xv-rh65-95rq

больше 3 лет назад

SQL injection vulnerability in Room.php in Francisco Charrua Photo-Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

EPSS: Низкий
github логотип

GHSA-23xv-3xmf-w354

больше 3 лет назад

Integer overflow in the aio_suspend function in Sun Solaris 8 through 10 and OpenSolaris, when 32-bit mode is enabled, allows local users to cause a denial of service (panic) via a large integer value in the second argument (aka nent argument).

EPSS: Низкий
github логотип

GHSA-23xr-9xxr-vg3c

больше 3 лет назад

Improper authorization vulnerability in Jenkins Mesos Plugin

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-23xp-j737-282v

около 7 лет назад

Path Traversal in takeapeek

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-23xp-gwgx-qmr4

больше 3 лет назад

The HTTP framework on Cisco SPA300, SPA500, and SPA51x devices allows remote attackers to cause a denial of service (device outage) via a series of malformed HTTP requests, aka Bug ID CSCut67385.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-23xp-c8gg-3439

больше 3 лет назад

The sell function of a smart contract implementation for ENTER (ENTR) (Contract Name: EnterCoin), an Ethereum token, has an integer overflow in which "amount * sellPrice" can be zero, consequently reducing a seller's assets.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-23xp-397m-q9rx

больше 3 лет назад

The administrative web interface (STEMWADM) for SurfControl SuperScout Email Filter allows users to obtain usernames and plaintext passwords via a request to the userlist.asp program, which includes the passwords in a user editing form.

EPSS: Низкий
github логотип

GHSA-23xm-cf42-h7f9

около 3 лет назад

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function mptcp_limit_get_set of the file ip/ipmptcp.c of the component iproute2. The manipulation leads to memory leak. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. VDB-211362 is the identifier assigned to this vulnerability.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-23xm-3rwj-r45h

больше 3 лет назад

Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a malicious file in the chat.

EPSS: Низкий
github логотип

GHSA-23xj-w5qm-57j6

больше 3 лет назад

Untrusted search path vulnerability in Installer of HIBUN Confidential File Viewer prior to 11.20.0001 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-23xh-x244-cxmg

больше 3 лет назад

Unspecified vulnerability in the Siebel Core - System Management component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Server Infrastructure.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2424-q483-wgpq

Race condition in some Intel(R) NUC BIOS firmware may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2424-8qh4-3ggg

SmartFilter Web Gateway Security 4.2.1.00 stores user credentials in cleartext in config.txt and uses insecure permissions for this file, which allows local users to gain privileges.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2424-5f9c-864m

Multiple cross-site scripting (XSS) vulnerabilities in DeltaScripts Pro Publish allow remote attackers to inject arbitrary web script or HTML via the (1) artid parameter in art.php and the (2) catname parameter in cat.php.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2424-29jp-qgw2

MetaCart2.sql stores the user database under the web document root without access controls, which allows remote attackers to obtain sensitive information such as passwords and credit card numbers via a direct request for metacart.mdb.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2423-333r-g3m8

Cross-site scripting (XSS) vulnerability in doku.php in DokuWiki 2012-01-25 Angua allows remote attackers to inject arbitrary web script or HTML via the target parameter in an edit action.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-2423-2c9w-8vgr

File Upload vulnerability in ChestnutCMS through 1.5.0. Based on the code analysis, it was determined that the /api/member/avatar API endpoint receives a base64 string as input. This string is then passed to the memberService.uploadAvatarByBase64 method for processing. Within the service, the base64-encoded image is parsed. For example, given a string like: data:image/html;base64,PGh0bWw+PGltZyBzcmM9eCBvbmVycm9yPWFsZXJ0KDEpPjwvaHRtbD4= the content after the comma is extracted and decoded using Base64.getDecoder().decode(). The substring from the 11th character up to the first occurrence of a semicolon (;) is assigned to the suffix variable (representing the file extension). The decoded content is then written to a file. However, the file extension is not validated, and since this functionality is exposed to the frontend, it poses significant security risks.

CVSS3: 9.8
0%
Низкий
12 месяцев назад
github логотип
GHSA-2422-39jf-m5cr

The Filter SDK in HPE KeyView 10.18 through 10.24 allows remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2016-4388, CVE-2016-4389, and CVE-2016-4390.

CVSS3: 8.1
2%
Низкий
больше 3 лет назад
github логотип
GHSA-23xx-r9hm-q9g9

A vulnerability classified as critical has been found in OpenRapid RapidCMS 1.3.1. This affects an unknown part of the file /resource/addgood.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-240867.

CVSS3: 6.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-23xw-ccm5-g9pf

baijiacms V3 has CSRF via index.php?mod=site&op=edituser&name=manager&do=user to add an administrator account.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-23xv-rh65-95rq

SQL injection vulnerability in Room.php in Francisco Charrua Photo-Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-23xv-3xmf-w354

Integer overflow in the aio_suspend function in Sun Solaris 8 through 10 and OpenSolaris, when 32-bit mode is enabled, allows local users to cause a denial of service (panic) via a large integer value in the second argument (aka nent argument).

0%
Низкий
больше 3 лет назад
github логотип
GHSA-23xr-9xxr-vg3c

Improper authorization vulnerability in Jenkins Mesos Plugin

CVSS3: 6.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-23xp-j737-282v

Path Traversal in takeapeek

CVSS3: 5.3
0%
Низкий
около 7 лет назад
github логотип
GHSA-23xp-gwgx-qmr4

The HTTP framework on Cisco SPA300, SPA500, and SPA51x devices allows remote attackers to cause a denial of service (device outage) via a series of malformed HTTP requests, aka Bug ID CSCut67385.

CVSS3: 7.5
2%
Низкий
больше 3 лет назад
github логотип
GHSA-23xp-c8gg-3439

The sell function of a smart contract implementation for ENTER (ENTR) (Contract Name: EnterCoin), an Ethereum token, has an integer overflow in which "amount * sellPrice" can be zero, consequently reducing a seller's assets.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-23xp-397m-q9rx

The administrative web interface (STEMWADM) for SurfControl SuperScout Email Filter allows users to obtain usernames and plaintext passwords via a request to the userlist.asp program, which includes the passwords in a user editing form.

7%
Низкий
больше 3 лет назад
github логотип
GHSA-23xm-cf42-h7f9

A vulnerability was found in Linux Kernel. It has been classified as problematic. Affected is the function mptcp_limit_get_set of the file ip/ipmptcp.c of the component iproute2. The manipulation leads to memory leak. It is possible to launch the attack remotely. It is recommended to apply a patch to fix this issue. VDB-211362 is the identifier assigned to this vulnerability.

CVSS3: 5.5
около 3 лет назад
github логотип
GHSA-23xm-3rwj-r45h

Stored XSS in InterMind iMind Server through 3.13.65 allows any user to hijack another user's session by sending a malicious file in the chat.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-23xj-w5qm-57j6

Untrusted search path vulnerability in Installer of HIBUN Confidential File Viewer prior to 11.20.0001 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-23xh-x244-cxmg

Unspecified vulnerability in the Siebel Core - System Management component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Server Infrastructure.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу