Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 324 758

Количество 324 758

github логотип

GHSA-28vr-gj58-jfm2

4 месяца назад

Revive Adserver 5.4.1 contains a cross-site scripting vulnerability in the banner advanced configuration page that allows attackers to inject malicious scripts. Attackers can craft a malicious link to the banner-advanced.php endpoint with XSS payloads in prepend and append parameters to execute arbitrary JavaScript when an admin views the page.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-28vr-33jf-c3cc

около 3 лет назад

esdoc-publish-html-plugin is a plugin for the document maintenance software ESDoc. TheHTML sanitizer in esdoc-publish-html-plugin 1.1.2 and prior can be bypassed which may lead to cross-site scripting (XSS) issues. There are no known patches for this issue.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-28vp-8q88-wrvc

почти 4 года назад

phpdemo/viewsource.php in Advanced Software Engineering ChartDirector 4.1 allows remote attackers to read sensitive files via the file parameter.

EPSS: Низкий
github логотип

GHSA-28vp-39rf-3q2j

почти 3 года назад

Magento Open Source has Business Logic Errors Vulnerability

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-28vm-gc6v-5rwj

почти 4 года назад

The Zhang Zhijun Taiwan Visit 2014-06-25 (aka com.zizizzi) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-28vm-3vp8-h5jp

4 месяца назад

The StreamTube Core plugin for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 4.78. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for unauthenticated attackers to change user passwords and potentially take over administrator accounts. Note: This can only be exploited if the 'registration password fields' enabled in theme options.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-28vh-xppq-c3v4

около 2 лет назад

LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the generate_conf_router function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-28vh-fggg-795m

почти 4 года назад

The Popup by Supsystic WordPress plugin before 1.10.9 does not have any authentication and authorisation in an AJAX action, allowing unauthenticated attackers to call it and get the email addresses of subscribed users

CVSS3: 5.3
EPSS: Средний
github логотип

GHSA-28vh-7gjh-8xmq

больше 2 лет назад

The Backup Migration WordPress plugin before 1.3.6 stores in-progress backups information in easy to find, publicly-accessible files, which may allow attackers monitoring those to leak sensitive information from the site's backups.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-28vg-mv2q-g7g3

почти 4 года назад

Stack-based buffer overflow in VicFTPS before 5.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long CWD command.

EPSS: Средний
github логотип

GHSA-28vg-cxp3-45wq

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: crypto: starfive - Correctly handle return of sg_nents_for_len The return value of sg_nents_for_len was assigned to an unsigned long in starfive_hash_digest, causing negative error codes to be converted to large positive integers. Add error checking for sg_nents_for_len and return immediately on failure to prevent potential buffer overflows.

EPSS: Низкий
github логотип

GHSA-28vf-gq6v-gm54

около 1 года назад

A vulnerability classified as problematic was found in Legrand SMS PowerView 1.x. This vulnerability affects unknown code. The manipulation of the argument redirect leads to open redirect. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-28vf-6j43-vqq5

почти 4 года назад

rufsi.dll in Symantec Virus Detection allows remote attackers to cause a denial of service (crash) via a long string to the GetPrivateProfileString function. NOTE: this issue was originally reported as a buffer overflow, but that specific claim is disputed by the vendor, although a crash is acknowledged.

EPSS: Низкий
github логотип

GHSA-28vc-pmcm-3263

почти 4 года назад

An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the IP Address in Add Virtual Server.

EPSS: Низкий
github логотип

GHSA-28vc-7qpm-6gqr

почти 4 года назад

Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.4, when Internet Explorer 6 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an uploaded file accessed with a dangerous extension such as .html located before a ? (question mark) in a query string, in conjunction with a modified URI path that has a %2E sequence in place of the . (dot) character. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1578.

EPSS: Низкий
github логотип

GHSA-28v8-9mr3-438f

больше 1 года назад

The Remote Content Shortcode plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.5 via the remote_content shortcode. This makes it possible for authenticated attackers, with contributor-level access and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-28v8-9562-2vxf

почти 4 года назад

MKCMS 5.0 allows remote attackers to take over arbitrary user accounts by posting a username and e-mail address to ucenter/repass.php, which triggers e-mail transmission with the password, as demonstrated by 123456.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-28v6-fvvw-2v6h

почти 4 года назад

Samsung Android devices with L(5.0/5.1), M(6.0), and N(7.x) software allow attackers to obtain sensitive information by reading a world-readable log file after an unexpected reboot. The Samsung ID is SVE-2017-8290.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-28v5-6h6f-h597

почти 4 года назад

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 223720.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-28v4-jf82-jvj8

больше 3 лет назад

steal vulnerable to Regular Expression Denial of Service via source and sourceWithComments

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-28vr-gj58-jfm2

Revive Adserver 5.4.1 contains a cross-site scripting vulnerability in the banner advanced configuration page that allows attackers to inject malicious scripts. Attackers can craft a malicious link to the banner-advanced.php endpoint with XSS payloads in prepend and append parameters to execute arbitrary JavaScript when an admin views the page.

CVSS3: 5.4
0%
Низкий
4 месяца назад
github логотип
GHSA-28vr-33jf-c3cc

esdoc-publish-html-plugin is a plugin for the document maintenance software ESDoc. TheHTML sanitizer in esdoc-publish-html-plugin 1.1.2 and prior can be bypassed which may lead to cross-site scripting (XSS) issues. There are no known patches for this issue.

CVSS3: 6.1
0%
Низкий
около 3 лет назад
github логотип
GHSA-28vp-8q88-wrvc

phpdemo/viewsource.php in Advanced Software Engineering ChartDirector 4.1 allows remote attackers to read sensitive files via the file parameter.

5%
Низкий
почти 4 года назад
github логотип
GHSA-28vp-39rf-3q2j

Magento Open Source has Business Logic Errors Vulnerability

CVSS3: 4.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-28vm-gc6v-5rwj

The Zhang Zhijun Taiwan Visit 2014-06-25 (aka com.zizizzi) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
почти 4 года назад
github логотип
GHSA-28vm-3vp8-h5jp

The StreamTube Core plugin for WordPress is vulnerable to Arbitrary User Password Change in versions up to, and including, 4.78. This is due to the plugin providing user-controlled access to objects, letting a user bypass authorization and access system resources. This makes it possible for unauthenticated attackers to change user passwords and potentially take over administrator accounts. Note: This can only be exploited if the 'registration password fields' enabled in theme options.

CVSS3: 9.8
0%
Низкий
4 месяца назад
github логотип
GHSA-28vh-xppq-c3v4

LBT T300-T390 v2.2.1.8 were discovered to contain a stack overflow via the ApCliSsid parameter in the generate_conf_router function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-28vh-fggg-795m

The Popup by Supsystic WordPress plugin before 1.10.9 does not have any authentication and authorisation in an AJAX action, allowing unauthenticated attackers to call it and get the email addresses of subscribed users

CVSS3: 5.3
42%
Средний
почти 4 года назад
github логотип
GHSA-28vh-7gjh-8xmq

The Backup Migration WordPress plugin before 1.3.6 stores in-progress backups information in easy to find, publicly-accessible files, which may allow attackers monitoring those to leak sensitive information from the site's backups.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-28vg-mv2q-g7g3

Stack-based buffer overflow in VicFTPS before 5.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long CWD command.

34%
Средний
почти 4 года назад
github логотип
GHSA-28vg-cxp3-45wq

In the Linux kernel, the following vulnerability has been resolved: crypto: starfive - Correctly handle return of sg_nents_for_len The return value of sg_nents_for_len was assigned to an unsigned long in starfive_hash_digest, causing negative error codes to be converted to large positive integers. Add error checking for sg_nents_for_len and return immediately on failure to prevent potential buffer overflows.

0%
Низкий
3 месяца назад
github логотип
GHSA-28vf-gq6v-gm54

A vulnerability classified as problematic was found in Legrand SMS PowerView 1.x. This vulnerability affects unknown code. The manipulation of the argument redirect leads to open redirect. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 3.5
0%
Низкий
около 1 года назад
github логотип
GHSA-28vf-6j43-vqq5

rufsi.dll in Symantec Virus Detection allows remote attackers to cause a denial of service (crash) via a long string to the GetPrivateProfileString function. NOTE: this issue was originally reported as a buffer overflow, but that specific claim is disputed by the vendor, although a crash is acknowledged.

7%
Низкий
почти 4 года назад
github логотип
GHSA-28vc-pmcm-3263

An issue was discovered in TRENDnet TEW-827DRU firmware before 2.05B11. There is a command injection in apply.cgi (exploitable with authentication) via the IP Address in Add Virtual Server.

6%
Низкий
почти 4 года назад
github логотип
GHSA-28vc-7qpm-6gqr

Cross-site scripting (XSS) vulnerability in MediaWiki before 1.16.4, when Internet Explorer 6 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an uploaded file accessed with a dangerous extension such as .html located before a ? (question mark) in a query string, in conjunction with a modified URI path that has a %2E sequence in place of the . (dot) character. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-1578.

0%
Низкий
почти 4 года назад
github логотип
GHSA-28v8-9mr3-438f

The Remote Content Shortcode plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.5 via the remote_content shortcode. This makes it possible for authenticated attackers, with contributor-level access and above, to make web requests to arbitrary locations originating from the web application and can be used to query and modify information from internal services.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-28v8-9562-2vxf

MKCMS 5.0 allows remote attackers to take over arbitrary user accounts by posting a username and e-mail address to ucenter/repass.php, which triggers e-mail transmission with the password, as demonstrated by 123456.

CVSS3: 8.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-28v6-fvvw-2v6h

Samsung Android devices with L(5.0/5.1), M(6.0), and N(7.x) software allow attackers to obtain sensitive information by reading a world-readable log file after an unexpected reboot. The Samsung ID is SVE-2017-8290.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-28v5-6h6f-h597

IBM InfoSphere Information Server 11.7 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 223720.

CVSS3: 6.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-28v4-jf82-jvj8

steal vulnerable to Regular Expression Denial of Service via source and sourceWithComments

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу