Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 313 854

Количество 313 854

github логотип

GHSA-2529-rwp4-75f6

больше 3 лет назад

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2529-cmp4-x7vg

почти 4 года назад

HP-UX aserver program allows local users to gain privileges via a symlink attack.

EPSS: Низкий
github логотип

GHSA-2528-h86j-954v

больше 3 лет назад

In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project.

EPSS: Низкий
github логотип

GHSA-2527-g53r-vw26

почти 4 года назад

In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmful app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205595291

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-2526-24jx-77pp

больше 3 лет назад

Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2524-6f4r-2jq9

больше 3 лет назад

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.

EPSS: Низкий
github логотип

GHSA-2524-2jp2-r468

больше 1 года назад

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2523-xvgc-mmh8

больше 1 года назад

Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2523-vcxw-6v95

больше 3 лет назад

In libhidcommand_jni, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the USB service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111363077

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-2523-v9j2-g44c

около 4 лет назад

Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerability discovered in Download Monitor WordPress plugin (versions <= 4.4.6) Vulnerable parameters: &post_title, &downloadable_file_version[0].

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-2523-mx65-hm92

почти 3 года назад

NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2522-v35m-2r22

около 4 лет назад

jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2522-mrjc-m688

почти 2 года назад

Apache Airflow: Sensitive configuration for providers displayed when "non-sensitive-only" config used

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2522-8f97-8gg8

почти 4 года назад

Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing."

EPSS: Низкий
github логотип

GHSA-24xx-mgc5-v24w

6 месяцев назад

The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 67.7.0 via the 'page' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. The Local File Inclusion exploit can be chained to include various dashboard view files in the plugin. One in particular reported by the researcher can be leveraged to update the password of Super Administrator accounts in Multisite environments making privilege escalation possible.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-24xx-h3r4-557m

больше 3 лет назад

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24xx-ff7h-g5rx

почти 4 года назад

scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application.

EPSS: Низкий
github логотип

GHSA-24xx-35j6-m7x4

больше 3 лет назад

Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.

EPSS: Низкий
github логотип

GHSA-24xw-x4fw-fmcw

больше 3 лет назад

IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-24xv-wv3m-hcqm

почти 4 года назад

Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2529-rwp4-75f6

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2529-cmp4-x7vg

HP-UX aserver program allows local users to gain privileges via a symlink attack.

0%
Низкий
почти 4 года назад
github логотип
GHSA-2528-h86j-954v

In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2527-g53r-vw26

In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmful app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205595291

CVSS3: 7.3
0%
Низкий
почти 4 года назад
github логотип
GHSA-2526-24jx-77pp

Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.

CVSS3: 6.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2524-6f4r-2jq9

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-2524-2jp2-r468

SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability

CVSS3: 8.8
2%
Низкий
больше 1 года назад
github логотип
GHSA-2523-xvgc-mmh8

Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability

CVSS3: 7.8
4%
Низкий
больше 1 года назад
github логотип
GHSA-2523-vcxw-6v95

In libhidcommand_jni, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the USB service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111363077

CVSS3: 6.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2523-v9j2-g44c

Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerability discovered in Download Monitor WordPress plugin (versions <= 4.4.6) Vulnerable parameters: &post_title, &downloadable_file_version[0].

CVSS3: 4.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-2523-mx65-hm92

NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.

CVSS3: 5.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-2522-v35m-2r22

jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-2522-mrjc-m688

Apache Airflow: Sensitive configuration for providers displayed when "non-sensitive-only" config used

CVSS3: 4.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-2522-8f97-8gg8

Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing."

3%
Низкий
почти 4 года назад
github логотип
GHSA-24xx-mgc5-v24w

The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 67.7.0 via the 'page' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. The Local File Inclusion exploit can be chained to include various dashboard view files in the plugin. One in particular reported by the researcher can be leveraged to update the password of Super Administrator accounts in Multisite environments making privilege escalation possible.

CVSS3: 8.8
0%
Низкий
6 месяцев назад
github логотип
GHSA-24xx-h3r4-557m

In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xx-ff7h-g5rx

scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application.

0%
Низкий
почти 4 года назад
github логотип
GHSA-24xx-35j6-m7x4

Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xw-x4fw-fmcw

IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-24xv-wv3m-hcqm

Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.

6%
Низкий
почти 4 года назад

Уязвимостей на страницу