Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 376 080

Количество 376 080

github логотип

GHSA-4wrc-rc9c-6pg4

6 месяцев назад

Missing Authorization vulnerability in Iqonic Design KiviCare kivicare-clinic-management-system allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects KiviCare: from n/a through <= 3.6.16.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4wrc-f8pq-fpqp

больше 4 лет назад

Pivotal Spring Framework contains unsafe Java deserialization methods

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-4wrc-8xjh-v948

около 2 лет назад

Buffer Overflow vulnerability found in Kemptechnologies Loadmaster before v.7.2.60.0 allows a remote attacker to casue a denial of service via the libkemplink.so, isreverse library.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4wr9-r77c-xcg9

больше 4 лет назад

The mintToken function of a smart contract implementation for doccoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4wr9-2xc6-jmg5

больше 4 лет назад

Session fixation vulnerability in Jenkins

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4wr8-65q4-xg7f

8 дней назад

Race condition in Network in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-4wr8-3xfv-vhj5

9 дней назад

webhook through 2.8.3 reads the entire request body into memory before evaluating trigger rules, allowing unauthenticated attackers to exhaust memory by sending oversized bodies. Attackers can send multi-gigabyte request bodies with invalid signatures to trigger out-of-memory conditions and crash the service.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4wr7-9jc5-xwx4

около 1 года назад

Missing Authorization vulnerability in Payoneer Checkout Payoneer Checkout allows Content Spoofing. This issue affects Payoneer Checkout: from n/a through 3.4.0.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4wr6-x9g6-m47v

больше 4 лет назад

HashiCorp Vault and Vault Enterprise Cassandra integrations (storage backend and database secrets engine plugin) did not validate TLS certificates when connecting to Cassandra clusters. Fixed in 1.6.4 and 1.7.1

EPSS: Низкий
github логотип

GHSA-4wr5-3qvr-f367

2 месяца назад

Missing authorization in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4wr4-f2qf-x5wj

6 месяцев назад

Admidio has an HTMLPurifier Bypass in eCard Message Allows HTML Email Injection

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4wr4-3j4r-mvw7

больше 1 года назад

Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4wr3-f4p3-5wjh

6 месяцев назад

PraisonAI: Unauthenticated Allow-List Manipulation Bypasses Agent Tool Approval Safety Controls

CVSS3: 7.9
EPSS: Низкий
github логотип

GHSA-4wr2-m35f-fgqf

больше 4 лет назад

Default installations of Zoho ManageEngine ServiceDesk Plus 10.0 before 10500 are vulnerable to XSS injected by a workstation local administrator. Using the installed program names of the computer as a vector, the local administrator can execute code on the Manage Engine ServiceDesk administrator side. At "Asset Home > Server > <workstation> > software" the administrator of ManageEngine can control what software is installed on the workstation. This table shows all the installed program names in the Software column. In this field, a remote attacker can inject malicious code in order to execute it when the ManageEngine administrator visualizes this page.

EPSS: Низкий
github логотип

GHSA-4wr2-63fw-56rx

больше 4 лет назад

Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to SMR Oct-2021 Release 1 allows privilege escalation to Root by hijacking loaded library.

EPSS: Низкий
github логотип

GHSA-4wqw-j3vx-3hwj

больше 4 лет назад

There is a multiple threads race condition vulnerability in Huawei product. A race condition exists for concurrent I/O read by multiple threads. An attacker with the root permission can exploit this vulnerability by performing some operations. Successful exploitation of this vulnerability may cause the system to crash. Affected product versions include: ManageOne 6.5.1.SPC200, 8.0.0,8.0.0-LCND81, 8.0.0.SPC100, 8.0.1,8.0.RC2, 8.0.RC3, 8.0.RC3.SPC100;SMC2.0 V600R019C10SPC700,V600R019C10SPC702, V600R019C10SPC703,V600R019C10SPC800, V600R019C10SPC900, V600R019C10SPC910, V600R019C10SPC920, V600R019C10SPC921, V600R019C10SPC922, V600R019C10SPC930, V600R019C10SPC931

EPSS: Низкий
github логотип

GHSA-4wqw-h6w8-f8qg

больше 4 лет назад

A vulnerability stemming from failure to properly clean up closed OMAPI connections can lead to exhaustion of the pool of socket descriptors available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0 to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been tested.

CVSS3: 7.5
EPSS: Высокий
github логотип

GHSA-4wqw-89qw-8r56

3 месяца назад

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to obtain data from such UniFi OS devices or instances.

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-4wqv-wrmf-6h4v

12 дней назад

In the Linux kernel, the following vulnerability has been resolved: ata: libata-scsi: fix DSM TRIM for sector sizes larger than 2048 bytes ata_scsi_write_same_xlat() translates a SCSI WRITE SAME command with the UNMAP bit set into an ATA DATA SET MANAGEMENT TRIM command. The TRIM descriptor is built by ata_format_dsm_trim_descr() into the 2048-byte ata_scsi_rbuf staging buffer, and the number of bytes copied is compared against the logical sector size by the caller: size = ata_format_dsm_trim_descr(scmd, trmax, block, n_block); if (size != len) /* len == sdp->sector_size */ goto invalid_param_len; ata_format_dsm_trim_descr() clamps the copy length to ATA_SCSI_RBUF_SIZE (2048). On a device whose logical sector size exceeds that (e.g. a 4Kn device, where sector_size == 4096) the function can never return more than 2048, while the caller expects it to return sector_size. The comparison therefore always fails, so every TRIM is rejected with "Parameter list length error" and ...

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-4wqv-v86p-8q8g

4 месяца назад

Due to improper input handling under certain conditions, SAP NetWeaver Application Server ABAP allows an attacker to inject custom Cascading Style Sheets (CSS) data into a web page served by the application. When a user accesses or clicks the affected page, the injected CSS is executed. As a result, the issue has a low impact on confidentiality, while integrity and availability are not impacted.

CVSS3: 3.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4wrc-rc9c-6pg4

Missing Authorization vulnerability in Iqonic Design KiviCare kivicare-clinic-management-system allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects KiviCare: from n/a through <= 3.6.16.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-4wrc-f8pq-fpqp

Pivotal Spring Framework contains unsafe Java deserialization methods

CVSS3: 9.8
33%
Средний
больше 4 лет назад
github логотип
GHSA-4wrc-8xjh-v948

Buffer Overflow vulnerability found in Kemptechnologies Loadmaster before v.7.2.60.0 allows a remote attacker to casue a denial of service via the libkemplink.so, isreverse library.

CVSS3: 7.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-4wr9-r77c-xcg9

The mintToken function of a smart contract implementation for doccoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4wr9-2xc6-jmg5

Session fixation vulnerability in Jenkins

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4wr8-65q4-xg7f

Race condition in Network in Google Chrome prior to 153.0.8010.47 allowed a remote attacker who had compromised the renderer process to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)

CVSS3: 3.1
0%
Низкий
8 дней назад
github логотип
GHSA-4wr8-3xfv-vhj5

webhook through 2.8.3 reads the entire request body into memory before evaluating trigger rules, allowing unauthenticated attackers to exhaust memory by sending oversized bodies. Attackers can send multi-gigabyte request bodies with invalid signatures to trigger out-of-memory conditions and crash the service.

CVSS3: 7.5
1%
Низкий
9 дней назад
github логотип
GHSA-4wr7-9jc5-xwx4

Missing Authorization vulnerability in Payoneer Checkout Payoneer Checkout allows Content Spoofing. This issue affects Payoneer Checkout: from n/a through 3.4.0.

CVSS3: 5.3
0%
Низкий
около 1 года назад
github логотип
GHSA-4wr6-x9g6-m47v

HashiCorp Vault and Vault Enterprise Cassandra integrations (storage backend and database secrets engine plugin) did not validate TLS certificates when connecting to Cassandra clusters. Fixed in 1.6.4 and 1.7.1

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4wr5-3qvr-f367

Missing authorization in Azure CycleCloud allows an authorized attacker to elevate privileges over a network.

CVSS3: 6.5
1%
Низкий
2 месяца назад
github логотип
GHSA-4wr4-f2qf-x5wj

Admidio has an HTMLPurifier Bypass in eCard Message Allows HTML Email Injection

CVSS3: 5.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-4wr4-3j4r-mvw7

Adobe Experience Manager versions 6.5.22 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-4wr3-f4p3-5wjh

PraisonAI: Unauthenticated Allow-List Manipulation Bypasses Agent Tool Approval Safety Controls

CVSS3: 7.9
0%
Низкий
6 месяцев назад
github логотип
GHSA-4wr2-m35f-fgqf

Default installations of Zoho ManageEngine ServiceDesk Plus 10.0 before 10500 are vulnerable to XSS injected by a workstation local administrator. Using the installed program names of the computer as a vector, the local administrator can execute code on the Manage Engine ServiceDesk administrator side. At "Asset Home > Server > <workstation> > software" the administrator of ManageEngine can control what software is installed on the workstation. This table shows all the installed program names in the Software column. In this field, a remote attacker can inject malicious code in order to execute it when the ManageEngine administrator visualizes this page.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-4wr2-63fw-56rx

Assuming system privilege is gained, possible buffer overflow vulnerabilities in the Vision DSP kernel driver prior to SMR Oct-2021 Release 1 allows privilege escalation to Root by hijacking loaded library.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqw-j3vx-3hwj

There is a multiple threads race condition vulnerability in Huawei product. A race condition exists for concurrent I/O read by multiple threads. An attacker with the root permission can exploit this vulnerability by performing some operations. Successful exploitation of this vulnerability may cause the system to crash. Affected product versions include: ManageOne 6.5.1.SPC200, 8.0.0,8.0.0-LCND81, 8.0.0.SPC100, 8.0.1,8.0.RC2, 8.0.RC3, 8.0.RC3.SPC100;SMC2.0 V600R019C10SPC700,V600R019C10SPC702, V600R019C10SPC703,V600R019C10SPC800, V600R019C10SPC900, V600R019C10SPC910, V600R019C10SPC920, V600R019C10SPC921, V600R019C10SPC922, V600R019C10SPC930, V600R019C10SPC931

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqw-h6w8-f8qg

A vulnerability stemming from failure to properly clean up closed OMAPI connections can lead to exhaustion of the pool of socket descriptors available to the DHCP server. Affects ISC DHCP 4.1.0 to 4.1-ESV-R15, 4.2.0 to 4.2.8, 4.3.0 to 4.3.6. Older versions may also be affected but are well beyond their end-of-life (EOL). Releases prior to 4.1.0 have not been tested.

CVSS3: 7.5
73%
Высокий
больше 4 лет назад
github логотип
GHSA-4wqw-89qw-8r56

A malicious actor with access to the network could exploit a Path Traversal vulnerability found in certain devices running UniFi OS to obtain data from such UniFi OS devices or instances.

CVSS3: 8.6
0%
Низкий
3 месяца назад
github логотип
GHSA-4wqv-wrmf-6h4v

In the Linux kernel, the following vulnerability has been resolved: ata: libata-scsi: fix DSM TRIM for sector sizes larger than 2048 bytes ata_scsi_write_same_xlat() translates a SCSI WRITE SAME command with the UNMAP bit set into an ATA DATA SET MANAGEMENT TRIM command. The TRIM descriptor is built by ata_format_dsm_trim_descr() into the 2048-byte ata_scsi_rbuf staging buffer, and the number of bytes copied is compared against the logical sector size by the caller: size = ata_format_dsm_trim_descr(scmd, trmax, block, n_block); if (size != len) /* len == sdp->sector_size */ goto invalid_param_len; ata_format_dsm_trim_descr() clamps the copy length to ATA_SCSI_RBUF_SIZE (2048). On a device whose logical sector size exceeds that (e.g. a 4Kn device, where sector_size == 4096) the function can never return more than 2048, while the caller expects it to return sector_size. The comparison therefore always fails, so every TRIM is rejected with "Parameter list length error" and ...

CVSS3: 8.2
1%
Низкий
12 дней назад
github логотип
GHSA-4wqv-v86p-8q8g

Due to improper input handling under certain conditions, SAP NetWeaver Application Server ABAP allows an attacker to inject custom Cascading Style Sheets (CSS) data into a web page served by the application. When a user accesses or clicks the affected page, the injected CSS is executed. As a result, the issue has a low impact on confidentiality, while integrity and availability are not impacted.

CVSS3: 3.1
0%
Низкий
4 месяца назад

Уязвимостей на страницу