Количество 313 854
Количество 313 854
GHSA-2529-rwp4-75f6
It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.
GHSA-2529-cmp4-x7vg
HP-UX aserver program allows local users to gain privileges via a symlink attack.
GHSA-2528-h86j-954v
In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project.
GHSA-2527-g53r-vw26
In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmful app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205595291
GHSA-2526-24jx-77pp
Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.
GHSA-2524-6f4r-2jq9
SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management.
GHSA-2524-2jp2-r468
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability
GHSA-2523-xvgc-mmh8
Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability
GHSA-2523-vcxw-6v95
In libhidcommand_jni, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the USB service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111363077
GHSA-2523-v9j2-g44c
Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerability discovered in Download Monitor WordPress plugin (versions <= 4.4.6) Vulnerable parameters: &post_title, &downloadable_file_version[0].
GHSA-2523-mx65-hm92
NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c.
GHSA-2522-v35m-2r22
jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall.
GHSA-2522-mrjc-m688
Apache Airflow: Sensitive configuration for providers displayed when "non-sensitive-only" config used
GHSA-2522-8f97-8gg8
Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing."
GHSA-24xx-mgc5-v24w
The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 67.7.0 via the 'page' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. The Local File Inclusion exploit can be chained to include various dashboard view files in the plugin. One in particular reported by the researcher can be leveraged to update the password of Super Administrator accounts in Multisite environments making privilege escalation possible.
GHSA-24xx-h3r4-557m
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite.
GHSA-24xx-ff7h-g5rx
scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application.
GHSA-24xx-35j6-m7x4
Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.
GHSA-24xw-x4fw-fmcw
IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100.
GHSA-24xv-wv3m-hcqm
Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-2529-rwp4-75f6 It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2. | CVSS3: 8.8 | 1% Низкий | больше 3 лет назад | |
GHSA-2529-cmp4-x7vg HP-UX aserver program allows local users to gain privileges via a symlink attack. | 0% Низкий | почти 4 года назад | ||
GHSA-2528-h86j-954v In JetBrains TeamCity before 2021.1.3, a newly created project could take settings from an already deleted project. | 0% Низкий | больше 3 лет назад | ||
GHSA-2527-g53r-vw26 In HarmfulAppWarningActivity of HarmfulAppWarningActivity.java, there is a possible way to trick victim to install harmful app due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-12LAndroid ID: A-205595291 | CVSS3: 7.3 | 0% Низкий | почти 4 года назад | |
GHSA-2526-24jx-77pp Privilege Escalation vulnerability in McAfee Total Protection (MTP) prior to 16.0.R26 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine. | CVSS3: 6.3 | 0% Низкий | больше 3 лет назад | |
GHSA-2524-6f4r-2jq9 SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious commands with root privileges in SAP Host Agent via SAP Landscape Management. | 0% Низкий | больше 3 лет назад | ||
GHSA-2524-2jp2-r468 SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability | CVSS3: 8.8 | 2% Низкий | больше 1 года назад | |
GHSA-2523-xvgc-mmh8 Microsoft Windows Storage Port Driver Elevation of Privilege Vulnerability | CVSS3: 7.8 | 4% Низкий | больше 1 года назад | |
GHSA-2523-vcxw-6v95 In libhidcommand_jni, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the USB service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111363077 | CVSS3: 6.8 | 0% Низкий | больше 3 лет назад | |
GHSA-2523-v9j2-g44c Authenticated (admin+) Persistent Cross-Site Scripting (XSS) vulnerability discovered in Download Monitor WordPress plugin (versions <= 4.4.6) Vulnerable parameters: &post_title, &downloadable_file_version[0]. | CVSS3: 4.8 | 0% Низкий | около 4 лет назад | |
GHSA-2523-mx65-hm92 NASM 2.16 (development) is vulnerable to 476: Null Pointer Dereference via output/outaout.c. | CVSS3: 5.5 | 0% Низкий | почти 3 года назад | |
GHSA-2522-v35m-2r22 jpress v4.2.0 is vulnerable to command execution via io.jpress.web.admin._AddonController::doUploadAndInstall. | CVSS3: 9.8 | 2% Низкий | около 4 лет назад | |
GHSA-2522-mrjc-m688 Apache Airflow: Sensitive configuration for providers displayed when "non-sensitive-only" config used | CVSS3: 4.3 | 0% Низкий | почти 2 года назад | |
GHSA-2522-8f97-8gg8 Unspecified vulnerability in Adobe Breeze 5 Licensed Server and Breeze 5.1 Licensed Server allows attackers to read arbitrary files via unknown vectors related to "URL parsing." | 3% Низкий | почти 4 года назад | ||
GHSA-24xx-mgc5-v24w The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 67.7.0 via the 'page' parameter. This makes it possible for authenticated attackers, with Subscriber-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files. This can be used to bypass access controls, obtain sensitive data, or achieve code execution in cases where images and other “safe” file types can be uploaded and included. The Local File Inclusion exploit can be chained to include various dashboard view files in the plugin. One in particular reported by the researcher can be leveraged to update the password of Super Administrator accounts in Multisite environments making privilege escalation possible. | CVSS3: 8.8 | 0% Низкий | 6 месяцев назад | |
GHSA-24xx-h3r4-557m In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the function wma_ndp_end_indication_event_handler(), there is no input validation check on a event_info value coming from firmware, which can cause an integer overflow and then leads to potential heap overwrite. | CVSS3: 7.8 | 0% Низкий | больше 3 лет назад | |
GHSA-24xx-ff7h-g5rx scponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application. | 0% Низкий | почти 4 года назад | ||
GHSA-24xx-35j6-m7x4 Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters. | 0% Низкий | больше 3 лет назад | ||
GHSA-24xw-x4fw-fmcw IBM Sterling Secure Proxy 6.0.1, 6.0.2, 2.4.3.2, and 3.4.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-ForceID: 201100. | CVSS3: 7.5 | 0% Низкий | больше 3 лет назад | |
GHSA-24xv-wv3m-hcqm Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts. | 6% Низкий | почти 4 года назад |
Уязвимостей на страницу