Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 376 080

Количество 376 080

github логотип

GHSA-4wqv-9wp5-h8x2

больше 1 года назад

A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of the component MGET Command Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-4wqv-9447-79rg

больше 1 года назад

A command injection vulnerability in the component /cgi-bin/firewall.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4wqv-6439-qqq3

больше 4 лет назад

SAP Commerce Cloud (Accelerator Payment Mock), versions - 1808, 1811, 1905, 2005, allows an unauthenticated attacker to submit a crafted request over a network to a particular SAP Commerce module URL which will be processed without further interaction, the crafted request leads to Server Side Request Forgery attack which could lead to retrieval of limited pieces of information about the service with no impact on integrity or availability.

EPSS: Низкий
github логотип

GHSA-4wqr-p7fx-5x8g

больше 4 лет назад

A SQL injection vulnerability in TableQuery.php in MunkiReport before 5.6.3 allows attackers to execute arbitrary SQL commands via the order[0][dir] field on POST requests to /datatables/data.

EPSS: Низкий
github логотип

GHSA-4wqr-g68x-cv52

больше 3 лет назад

Campbell Scientific dataloggers CR6, CR300, CR800, CR1000 and CR3000 may allow an attacker to download configuration files, which may contain sensitive information about the internal network. From factory defaults, the mentioned datalogges have HTTP and PakBus enabled. The devices, with the default configuration, allow this situation via the PakBus port. The exploitation of this vulnerability may allow an attacker to download, modify, and upload new configuration files.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-4wqr-74mq-rfw2

4 месяца назад

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 contains hardcoded WiFi driver credentials including a RADIUS shared secret, WPS test key, and default PSK embedded in the production firmware binary.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-4wqr-24qr-rg32

больше 4 лет назад

zbattle.net Zbattle client 1.09 SR-1 beta allows remote attackers to cause an unspecified denial of service by rapidly creating and closing a game.

EPSS: Низкий
github логотип

GHSA-4wqq-p5m8-mjr9

больше 3 лет назад

IceCMS v1.0.0 is vulnerable to Cross Site Scripting (XSS).

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4wqq-mhqm-j8fh

около 2 лет назад

A vulnerability, which was classified as critical, has been found in itsourcecode Ticket Reservation System 1.0. Affected by this issue is some unknown functionality of the file checkout_ticket_save.php. The manipulation of the argument data leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-273530 is the identifier assigned to this vulnerability.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-4wqq-jmmx-m7qr

больше 4 лет назад

SQL injection vulnerability in Widget Property 1.1.19 allows remote attackers to execute arbitrary SQL commands via the (1) property_id, (2) zip_code, (3) property_type_id, (4) price, and (5) city_id parameters to property.php.

EPSS: Низкий
github логотип

GHSA-4wqq-59jq-h8cj

около 1 года назад

The Simple Featured Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘slideshow’ parameter in all versions up to, and including, 1.3.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4wqj-x526-3j69

больше 1 года назад

Utilization of a module presented a security risk by allowing the deserialization of untrusted/user supplied data. This is resolved in the Puppet Agent 7.4.0 release.

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-4wqh-m4m9-qjm8

почти 3 года назад

SAP PowerDesigner Client - version 16.7, does not sufficiently validate BPMN2 XML document imported from an untrusted source. As a result, URLs of external entities in BPMN2 file, although not used, would be accessed during import. A successful attack could impact availability of SAP PowerDesigner Client.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4wqg-8wg4-c3m7

больше 4 лет назад

SQL injection vulnerability in the actionMultipleAddProduct function in includes/classes/shopping_cart.php in Zen Cart 1.3.0 through 1.3.8a, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the products_id array parameter in a multiple_products_add_product action, a different vulnerability than CVE-2008-6985.

EPSS: Низкий
github логотип

GHSA-4wqg-2gvp-c2c4

больше 4 лет назад

A vulnerability in the Virtual Network Computing (VNC) console implementation of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to access the VNC console session of an administrative user on an affected device. The vulnerability is due to an insufficient authentication mechanism used to establish a VNC session. An attacker could exploit this vulnerability by intercepting an administrator VNC session request prior to login. A successful exploit could allow the attacker to watch the administrator console session or interact with it, allowing admin access to the affected device.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4wqc-hc43-242v

больше 4 лет назад

cPanel before 70.0.23 allows any user to disable Solr (SEC-371).

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4wqc-fqvf-wh8w

больше 1 года назад

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-4wq8-fwf6-xqwm

больше 4 лет назад

Directory traversal vulnerability in ManageEngine Firewall Analyzer before 8.0.

CVSS3: 6.5
EPSS: Средний
github логотип

GHSA-4wq8-9vvh-c555

около 1 года назад

UnForm Server Manager versions prior to 10.1.12 expose an unauthenticated file read vulnerability via its log file analysis interface. The flaw resides in the arc endpoint, which accepts a fl parameter to specify the log file to be opened. Due to insufficient input validation and lack of path sanitization, attackers can supply relative paths to access arbitrary files on the host system — including sensitive OS-level files — without authentication.

EPSS: Низкий
github логотип

GHSA-4wq8-364c-549h

больше 4 лет назад

systemui/statusbar/phone/QuickStatusBarHeader.java in the System UI Tuner in Android 7.0 before 2016-09-01 does not prevent tuner changes on the lockscreen, which allows physically proximate attackers to gain privileges by modifying a setting, aka internal bug 30107438.

CVSS3: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4wqv-9wp5-h8x2

A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of the component MGET Command Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-4wqv-9447-79rg

A command injection vulnerability in the component /cgi-bin/firewall.cgi of Wavlink WL-WN579A3 v1.0 allows attackers to execute arbitrary commands via a crafted input.

CVSS3: 9.8
2%
Низкий
больше 1 года назад
github логотип
GHSA-4wqv-6439-qqq3

SAP Commerce Cloud (Accelerator Payment Mock), versions - 1808, 1811, 1905, 2005, allows an unauthenticated attacker to submit a crafted request over a network to a particular SAP Commerce module URL which will be processed without further interaction, the crafted request leads to Server Side Request Forgery attack which could lead to retrieval of limited pieces of information about the service with no impact on integrity or availability.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqr-p7fx-5x8g

A SQL injection vulnerability in TableQuery.php in MunkiReport before 5.6.3 allows attackers to execute arbitrary SQL commands via the order[0][dir] field on POST requests to /datatables/data.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqr-g68x-cv52

Campbell Scientific dataloggers CR6, CR300, CR800, CR1000 and CR3000 may allow an attacker to download configuration files, which may contain sensitive information about the internal network. From factory defaults, the mentioned datalogges have HTTP and PakBus enabled. The devices, with the default configuration, allow this situation via the PakBus port. The exploitation of this vulnerability may allow an attacker to download, modify, and upload new configuration files.

CVSS3: 9.1
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4wqr-74mq-rfw2

Mercusys AC12G (EU) V1 with firmware AC12G(EU)_V1_200909 contains hardcoded WiFi driver credentials including a RADIUS shared secret, WPS test key, and default PSK embedded in the production firmware binary.

CVSS3: 5.9
0%
Низкий
4 месяца назад
github логотип
GHSA-4wqr-24qr-rg32

zbattle.net Zbattle client 1.09 SR-1 beta allows remote attackers to cause an unspecified denial of service by rapidly creating and closing a game.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqq-p5m8-mjr9

IceCMS v1.0.0 is vulnerable to Cross Site Scripting (XSS).

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-4wqq-mhqm-j8fh

A vulnerability, which was classified as critical, has been found in itsourcecode Ticket Reservation System 1.0. Affected by this issue is some unknown functionality of the file checkout_ticket_save.php. The manipulation of the argument data leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-273530 is the identifier assigned to this vulnerability.

CVSS3: 4.7
1%
Низкий
около 2 лет назад
github логотип
GHSA-4wqq-jmmx-m7qr

SQL injection vulnerability in Widget Property 1.1.19 allows remote attackers to execute arbitrary SQL commands via the (1) property_id, (2) zip_code, (3) property_type_id, (4) price, and (5) city_id parameters to property.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqq-59jq-h8cj

The Simple Featured Image plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘slideshow’ parameter in all versions up to, and including, 1.3.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
около 1 года назад
github логотип
GHSA-4wqj-x526-3j69

Utilization of a module presented a security risk by allowing the deserialization of untrusted/user supplied data. This is resolved in the Puppet Agent 7.4.0 release.

CVSS3: 6.6
1%
Низкий
больше 1 года назад
github логотип
GHSA-4wqh-m4m9-qjm8

SAP PowerDesigner Client - version 16.7, does not sufficiently validate BPMN2 XML document imported from an untrusted source. As a result, URLs of external entities in BPMN2 file, although not used, would be accessed during import. A successful attack could impact availability of SAP PowerDesigner Client.

CVSS3: 6.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-4wqg-8wg4-c3m7

SQL injection vulnerability in the actionMultipleAddProduct function in includes/classes/shopping_cart.php in Zen Cart 1.3.0 through 1.3.8a, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the products_id array parameter in a multiple_products_add_product action, a different vulnerability than CVE-2008-6985.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqg-2gvp-c2c4

A vulnerability in the Virtual Network Computing (VNC) console implementation of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an unauthenticated, remote attacker to access the VNC console session of an administrative user on an affected device. The vulnerability is due to an insufficient authentication mechanism used to establish a VNC session. An attacker could exploit this vulnerability by intercepting an administrator VNC session request prior to login. A successful exploit could allow the attacker to watch the administrator console session or interact with it, allowing admin access to the affected device.

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqc-hc43-242v

cPanel before 70.0.23 allows any user to disable Solr (SEC-371).

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4wqc-fqvf-wh8w

A security issue in the firmware image verification implementation at Supermicro MBD-X12DPG-OA6 . An attacker with administrator privileges can upload a specially crafted image, which can cause a stack overflow due to the unchecked fat->fsd.max_fld.

CVSS3: 7.2
1%
Низкий
больше 1 года назад
github логотип
GHSA-4wq8-fwf6-xqwm

Directory traversal vulnerability in ManageEngine Firewall Analyzer before 8.0.

CVSS3: 6.5
11%
Средний
больше 4 лет назад
github логотип
GHSA-4wq8-9vvh-c555

UnForm Server Manager versions prior to 10.1.12 expose an unauthenticated file read vulnerability via its log file analysis interface. The flaw resides in the arc endpoint, which accepts a fl parameter to specify the log file to be opened. Due to insufficient input validation and lack of path sanitization, attackers can supply relative paths to access arbitrary files on the host system — including sensitive OS-level files — without authentication.

1%
Низкий
около 1 года назад
github логотип
GHSA-4wq8-364c-549h

systemui/statusbar/phone/QuickStatusBarHeader.java in the System UI Tuner in Android 7.0 before 2016-09-01 does not prevent tuner changes on the lockscreen, which allows physically proximate attackers to gain privileges by modifying a setting, aka internal bug 30107438.

CVSS3: 6.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу