Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 314 458

Количество 314 458

github логотип

GHSA-2j3r-x22c-hqx9

3 месяца назад

Nagios Log Server versions prior to 2024R1.0.2 contain a local privilege escalation vulnerability that allows an attacker who could execute commands as the Apache web user (or the backend shell user) to escalate to root on the host.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2j3r-j4h7-v6hh

больше 3 лет назад

The web application component of piSignage before 2.6.4 allows a remote attacker (authenticated as a low-privilege user) to download arbitrary files from the Raspberry Pi via api/settings/log?file=../ path traversal. In other words, this issue is in the player API for log download.

EPSS: Средний
github логотип

GHSA-2j3q-vc9h-xvcv

почти 4 года назад

PHPChain 1.0 and earlier allows remote attackers to obtain the installation path via invalid values of the catid parameter to (1) settings.php or (2) cat.php, as demonstrated by XSS manipulations.

EPSS: Низкий
github логотип

GHSA-2j3q-chq2-h2fc

больше 2 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload – Contact Form 7 plugin <= 1.3.6.5 versions.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2j3p-vpp9-9f53

около 1 года назад

An unbounded resource search path in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote authenticated attacker with admin privileges to achieve remote code execution.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-2j3m-rxqm-r548

почти 4 года назад

Microsoft Windows Media Player 11 does not properly perform colorspace conversion, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .AVI file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS: Средний
github логотип

GHSA-2j3m-gwxg-45rx

около 3 лет назад

Improper restriction of XML external entity reference (XXE) vulnerability exists in OMRON CX-Motion Pro 1.4.6.013 and earlier. If a user opens a specially crafted project file created by an attacker, sensitive information in the file system where CX-Motion Pro is installed may be disclosed.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2j3j-g2v5-fh5c

больше 3 лет назад

A vulnerability has been identified in Mendix Applications using Mendix 8 (All versions < V8.18.13), Mendix Applications using Mendix 9 (All versions < V9.6.2). Applications built with affected versions of Mendix Studio Pro do not properly control read access for certain client actions. This could allow authenticated attackers to retrieve the changedDate attribute of arbitrary objects, even when they don't have read access to them.

EPSS: Низкий
github логотип

GHSA-2j3h-j2q3-wxp3

почти 2 года назад

Splinefont in FontForge through 20230101 allows command injection via crafted archives or compressed files.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2j3h-78mv-5phm

почти 2 года назад

Cleartext Storage of Sensitive Information in Gambio 4.9.2.0 allows attackers to obtain sensitive information via error-handler.log.json and legacy-error-handler.log.txt under the webroot.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-2j3h-74w8-wpxm

больше 3 лет назад

This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.5, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave. A malicious application may be able to access restricted files.

EPSS: Низкий
github логотип

GHSA-2j3h-55rq-rj48

больше 3 лет назад

The URI.decode_www_form_component method in Ruby before 1.9.2-p330 allows remote attackers to cause a denial of service (catastrophic regular expression backtracking, resource consumption, or application crash) via a crafted string.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2j3g-rxwp-8rq5

больше 3 лет назад

LuaUPnP in Vera Edge Home Controller 1.7.4452 allows remote unauthenticated users to execute arbitrary OS commands via the code parameter to /port_3480/data_request because the "No unsafe lua allowed" code block is skipped.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2j3g-pf25-9mr9

почти 2 года назад

Kofax Power PDF PNG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-20458.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2j3g-p2x2-c94q

больше 2 лет назад

The Import XML and RSS Feeds WordPress plugin before 2.1.5 contains a web shell, allowing unauthenticated attackers to perform RCE. The plugin/vendor was not compromised and the files are the result of running a PoC for a previously reported issue (https://wpscan.com/vulnerability/d4220025-2272-4d5f-9703-4b2ac4a51c42) and not deleting the created files when releasing the new version.

CVSS3: 9.8
EPSS: Критический
github логотип

GHSA-2j3g-mmqf-22pf

больше 3 лет назад

vos in OpenAFS before 1.6.13, when updating VLDB entries, allows remote attackers to obtain stack data by sniffing the network.

EPSS: Низкий
github логотип

GHSA-2j3g-cq99-w5x4

почти 4 года назад

** DISPUTED ** PHP remote file inclusion vulnerability in upgrader.php in Vanilla CMS 1.0.1 and earlier, when /conf/old_settings.php exists, allows remote attackers to execute arbitrary PHP code via a URL in the RootDirectory parameter. NOTE: this issue has been disputed by a third party who states that the RootDirectory parameter is initialized before being used, for version 1.0. CVE analysis concurs with the dispute, but it is unclear whether older versions are affected.

EPSS: Низкий
github логотип

GHSA-2j3g-9pf6-phh4

больше 2 лет назад

Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to heap-based buffer overflow, which could allow an attacker to execute arbitrary code.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2j3f-mgwg-2gjh

больше 3 лет назад

SQL injection vulnerability in the administrative web interface in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug IDs CSCut33447 and CSCut33608.

EPSS: Низкий
github логотип

GHSA-2j3f-gh3p-94vc

почти 4 года назад

Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.

EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2j3r-x22c-hqx9

Nagios Log Server versions prior to 2024R1.0.2 contain a local privilege escalation vulnerability that allows an attacker who could execute commands as the Apache web user (or the backend shell user) to escalate to root on the host.

CVSS3: 7.8
0%
Низкий
3 месяца назад
github логотип
GHSA-2j3r-j4h7-v6hh

The web application component of piSignage before 2.6.4 allows a remote attacker (authenticated as a low-privilege user) to download arbitrary files from the Raspberry Pi via api/settings/log?file=../ path traversal. In other words, this issue is in the player API for log download.

21%
Средний
больше 3 лет назад
github логотип
GHSA-2j3q-vc9h-xvcv

PHPChain 1.0 and earlier allows remote attackers to obtain the installation path via invalid values of the catid parameter to (1) settings.php or (2) cat.php, as demonstrated by XSS manipulations.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2j3q-chq2-h2fc

Cross-Site Request Forgery (CSRF) vulnerability in Glen Don L. Mongaya Drag and Drop Multiple File Upload – Contact Form 7 plugin <= 1.3.6.5 versions.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2j3p-vpp9-9f53

An unbounded resource search path in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote authenticated attacker with admin privileges to achieve remote code execution.

CVSS3: 7.2
39%
Средний
около 1 года назад
github логотип
GHSA-2j3m-rxqm-r548

Microsoft Windows Media Player 11 does not properly perform colorspace conversion, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted .AVI file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

42%
Средний
почти 4 года назад
github логотип
GHSA-2j3m-gwxg-45rx

Improper restriction of XML external entity reference (XXE) vulnerability exists in OMRON CX-Motion Pro 1.4.6.013 and earlier. If a user opens a specially crafted project file created by an attacker, sensitive information in the file system where CX-Motion Pro is installed may be disclosed.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-2j3j-g2v5-fh5c

A vulnerability has been identified in Mendix Applications using Mendix 8 (All versions < V8.18.13), Mendix Applications using Mendix 9 (All versions < V9.6.2). Applications built with affected versions of Mendix Studio Pro do not properly control read access for certain client actions. This could allow authenticated attackers to retrieve the changedDate attribute of arbitrary objects, even when they don't have read access to them.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2j3h-j2q3-wxp3

Splinefont in FontForge through 20230101 allows command injection via crafted archives or compressed files.

CVSS3: 6.5
1%
Низкий
почти 2 года назад
github логотип
GHSA-2j3h-78mv-5phm

Cleartext Storage of Sensitive Information in Gambio 4.9.2.0 allows attackers to obtain sensitive information via error-handler.log.json and legacy-error-handler.log.txt under the webroot.

CVSS3: 2.7
0%
Низкий
почти 2 года назад
github логотип
GHSA-2j3h-74w8-wpxm

This issue was addressed with improved checks. This issue is fixed in macOS Big Sur 11.5, Security Update 2021-004 Catalina, Security Update 2021-005 Mojave. A malicious application may be able to access restricted files.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-2j3h-55rq-rj48

The URI.decode_www_form_component method in Ruby before 1.9.2-p330 allows remote attackers to cause a denial of service (catastrophic regular expression backtracking, resource consumption, or application crash) via a crafted string.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2j3g-rxwp-8rq5

LuaUPnP in Vera Edge Home Controller 1.7.4452 allows remote unauthenticated users to execute arbitrary OS commands via the code parameter to /port_3480/data_request because the "No unsafe lua allowed" code block is skipped.

CVSS3: 9.8
6%
Низкий
больше 3 лет назад
github логотип
GHSA-2j3g-pf25-9mr9

Kofax Power PDF PNG File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-20458.

CVSS3: 7.8
1%
Низкий
почти 2 года назад
github логотип
GHSA-2j3g-p2x2-c94q

The Import XML and RSS Feeds WordPress plugin before 2.1.5 contains a web shell, allowing unauthenticated attackers to perform RCE. The plugin/vendor was not compromised and the files are the result of running a PoC for a previously reported issue (https://wpscan.com/vulnerability/d4220025-2272-4d5f-9703-4b2ac4a51c42) and not deleting the created files when releasing the new version.

CVSS3: 9.8
92%
Критический
больше 2 лет назад
github логотип
GHSA-2j3g-mmqf-22pf

vos in OpenAFS before 1.6.13, when updating VLDB entries, allows remote attackers to obtain stack data by sniffing the network.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2j3g-cq99-w5x4

** DISPUTED ** PHP remote file inclusion vulnerability in upgrader.php in Vanilla CMS 1.0.1 and earlier, when /conf/old_settings.php exists, allows remote attackers to execute arbitrary PHP code via a URL in the RootDirectory parameter. NOTE: this issue has been disputed by a third party who states that the RootDirectory parameter is initialized before being used, for version 1.0. CVE analysis concurs with the dispute, but it is unclear whether older versions are affected.

7%
Низкий
почти 4 года назад
github логотип
GHSA-2j3g-9pf6-phh4

Delta Electronics' CNCSoft-B DOPSoft versions 1.0.0.4 and prior are vulnerable to heap-based buffer overflow, which could allow an attacker to execute arbitrary code.

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2j3f-mgwg-2gjh

SQL injection vulnerability in the administrative web interface in Cisco Unified Communications Manager 11.0(0.98000.225) allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug IDs CSCut33447 and CSCut33608.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2j3f-gh3p-94vc

Buffer overflow in Common Desktop Environment (CDE) ToolTalk RPC database server (rpc.ttdbserverd) allows remote attackers to execute arbitrary code via an argument to the _TT_CREATE_FILE procedure.

71%
Высокий
почти 4 года назад

Уязвимостей на страницу