Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 325 632

Количество 325 632

github логотип

GHSA-2cv2-83wv-6whc

почти 4 года назад

An issue was discovered in the pixxio (aka pixx.io integration or DAM) extension before 1.0.6 for TYPO3. The extension fails to restrict the image download to the configured pixx.io DAM URL, resulting in SSRF. As a result, an attacker can download various content from a remote location and save it to a user-controlled filename, which may result in Remote Code Execution. A TYPO3 backend user account is required to exploit this.

EPSS: Низкий
github логотип

GHSA-2crw-vwxg-vxcx

почти 4 года назад

Simple Machines Forum (SMF) through 2.0.5 has XSS

EPSS: Низкий
github логотип

GHSA-2crw-gg34-7j66

почти 4 года назад

teTeX filter before 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produced when printing .dvi files using lpr.

EPSS: Низкий
github логотип

GHSA-2crw-c3p5-4j2g

больше 3 лет назад

In Music service, there is a missing permission check. This could lead to elevation of privilege in Music service with no additional execution privileges needed.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2crv-pj7h-4r9x

почти 4 года назад

In FreeBSD 12.1-STABLE before r357213, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r357214, and 11.3-RELEASE before 11.3-RELEASE-p6, URL handling in libfetch with URLs containing username and/or password components is vulnerable to a heap buffer overflow allowing program misbehavior or malicious code execution.

EPSS: Низкий
github логотип

GHSA-2crr-5j3x-mqhx

10 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ninja Team File Manager Pro allows Stored XSS. This issue affects File Manager Pro: from n/a through 1.8.8.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-2crr-37jg-749x

почти 4 года назад

Cross-site scripting (XSS) vulnerability in ls/vv_login.php in the VideoWhisper Live Streaming Integration plugin 4.27.2 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the room_name parameter.

EPSS: Низкий
github логотип

GHSA-2crq-wx4p-2m52

почти 4 года назад

Unspecified vulnerability in the Java agent in Cisco Application Networking Manager (ANM) before 2.0 Update A allows remote attackers to gain privileges, and cause a denial of service (service outage) by stopping processes, or obtain sensitive information by reading configuration files.

EPSS: Низкий
github логотип

GHSA-2crq-pm63-66xm

почти 4 года назад

Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7070.

EPSS: Низкий
github логотип

GHSA-2crq-h74r-554p

больше 2 лет назад

A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0002). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21132)

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2crq-h5c4-gg2p

около 2 лет назад

Windows Kernel Elevation of Privilege Vulnerability

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-2crp-r6g2-9c5p

11 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: net: wwan: iosm: fix memory leak in ipc_wwan_dellink IOSM driver registers network device without setting the needs_free_netdev flag, and does NOT call free_netdev() when unregisters network device, which causes a memory leak. This patch sets needs_free_netdev to true when registers network device, which makes netdev subsystem call free_netdev() automatically after unregister_netdevice().

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2crp-qj3p-4444

больше 1 года назад

Windows DNS Spoofing Vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2crp-c7w4-2c48

больше 1 года назад

The Appointment & Event Booking Calendar Plugin – Webba Booking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_appearance() function in all versions up to, and including, 5.0.48. This makes it possible for authenticated attackers, with Subscriber-level access and above, to modify the booking form's CSS.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2crp-9jmr-vp26

почти 4 года назад

Buffer overflow in _mprosrv in Progress Software OpenEdge before 9.1E0422, and 10.x before 10.1B01, allows remote attackers to have an unknown impact via a malformed TCP/IP message.

EPSS: Низкий
github логотип

GHSA-2crm-qxx4-6cp4

почти 4 года назад

u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer device.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in QCA6390, QCN7605, QCS404, SA415M, SA515M, SC8180X, SDX55, SM8250

EPSS: Низкий
github логотип

GHSA-2crj-6275-fwfr

почти 4 года назад

fs/nfs/nfs4client.c in the Linux kernel before 5.13.4 has incorrect connection-setup ordering, which allows operators of remote NFSv4 servers to cause a denial of service (hanging of mounts) by arranging for those servers to be unreachable during trunking detection.

EPSS: Низкий
github логотип

GHSA-2crj-4cj6-f7cw

почти 4 года назад

ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php filter[Query][terms][0][cnj] parameter.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2crh-r3wq-qg9g

почти 4 года назад

In Mahara 21.04 before 21.04.6, 21.10 before 21.10.4, and 22.04.2, files can sometimes be downloaded through thumb.php with no permission check.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2crh-j3fx-xcfh

почти 4 года назад

Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2cv2-83wv-6whc

An issue was discovered in the pixxio (aka pixx.io integration or DAM) extension before 1.0.6 for TYPO3. The extension fails to restrict the image download to the configured pixx.io DAM URL, resulting in SSRF. As a result, an attacker can download various content from a remote location and save it to a user-controlled filename, which may result in Remote Code Execution. A TYPO3 backend user account is required to exploit this.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2crw-vwxg-vxcx

Simple Machines Forum (SMF) through 2.0.5 has XSS

0%
Низкий
почти 4 года назад
github логотип
GHSA-2crw-gg34-7j66

teTeX filter before 1.0.7 allows local users to gain privileges via a symlink attack on temporary files that are produced when printing .dvi files using lpr.

0%
Низкий
почти 4 года назад
github логотип
GHSA-2crw-c3p5-4j2g

In Music service, there is a missing permission check. This could lead to elevation of privilege in Music service with no additional execution privileges needed.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2crv-pj7h-4r9x

In FreeBSD 12.1-STABLE before r357213, 12.1-RELEASE before 12.1-RELEASE-p2, 12.0-RELEASE before 12.0-RELEASE-p13, 11.3-STABLE before r357214, and 11.3-RELEASE before 11.3-RELEASE-p6, URL handling in libfetch with URLs containing username and/or password components is vulnerable to a heap buffer overflow allowing program misbehavior or malicious code execution.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2crr-5j3x-mqhx

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Ninja Team File Manager Pro allows Stored XSS. This issue affects File Manager Pro: from n/a through 1.8.8.

CVSS3: 5.9
0%
Низкий
10 месяцев назад
github логотип
GHSA-2crr-37jg-749x

Cross-site scripting (XSS) vulnerability in ls/vv_login.php in the VideoWhisper Live Streaming Integration plugin 4.27.2 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the room_name parameter.

0%
Низкий
почти 4 года назад
github логотип
GHSA-2crq-wx4p-2m52

Unspecified vulnerability in the Java agent in Cisco Application Networking Manager (ANM) before 2.0 Update A allows remote attackers to gain privileges, and cause a denial of service (service outage) by stopping processes, or obtain sensitive information by reading configuration files.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2crq-pm63-66xm

Mobile Replayer in GPUTools Framework in Apple iOS before 9.2 allows attackers to execute arbitrary code in a privileged context via an app that provides a crafted pathname, a different vulnerability than CVE-2015-7070.

1%
Низкий
почти 4 года назад
github логотип
GHSA-2crq-h74r-554p

A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0002). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21132)

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2crq-h5c4-gg2p

Windows Kernel Elevation of Privilege Vulnerability

CVSS3: 8.8
32%
Средний
около 2 лет назад
github логотип
GHSA-2crp-r6g2-9c5p

In the Linux kernel, the following vulnerability has been resolved: net: wwan: iosm: fix memory leak in ipc_wwan_dellink IOSM driver registers network device without setting the needs_free_netdev flag, and does NOT call free_netdev() when unregisters network device, which causes a memory leak. This patch sets needs_free_netdev to true when registers network device, which makes netdev subsystem call free_netdev() automatically after unregister_netdevice().

CVSS3: 5.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-2crp-qj3p-4444

Windows DNS Spoofing Vulnerability

CVSS3: 7.5
8%
Низкий
больше 1 года назад
github логотип
GHSA-2crp-c7w4-2c48

The Appointment & Event Booking Calendar Plugin – Webba Booking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the save_appearance() function in all versions up to, and including, 5.0.48. This makes it possible for authenticated attackers, with Subscriber-level access and above, to modify the booking form's CSS.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2crp-9jmr-vp26

Buffer overflow in _mprosrv in Progress Software OpenEdge before 9.1E0422, and 10.x before 10.1B01, allows remote attackers to have an unknown impact via a malformed TCP/IP message.

3%
Низкий
почти 4 года назад
github логотип
GHSA-2crm-qxx4-6cp4

u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap packet received from peer device.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking in QCA6390, QCN7605, QCS404, SA415M, SA515M, SC8180X, SDX55, SM8250

0%
Низкий
почти 4 года назад
github логотип
GHSA-2crj-6275-fwfr

fs/nfs/nfs4client.c in the Linux kernel before 5.13.4 has incorrect connection-setup ordering, which allows operators of remote NFSv4 servers to cause a denial of service (hanging of mounts) by arranging for those servers to be unreachable during trunking detection.

0%
Низкий
почти 4 года назад
github логотип
GHSA-2crj-4cj6-f7cw

ZoneMinder before 1.32.3 has SQL Injection via the ajax/status.php filter[Query][terms][0][cnj] parameter.

CVSS3: 9.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-2crh-r3wq-qg9g

In Mahara 21.04 before 21.04.6, 21.10 before 21.10.4, and 22.04.2, files can sometimes be downloaded through thumb.php with no permission check.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-2crh-j3fx-xcfh

Dell EMC AppSync versions from 3.9 to 4.3 contain a path traversal vulnerability in AppSync server. A remote unauthenticated attacker may potentially exploit this vulnerability to gain unauthorized read access to the files stored on the server filesystem, with the privileges of the running web application.

CVSS3: 7.5
1%
Низкий
почти 4 года назад

Уязвимостей на страницу