Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 453

Количество 375 453

github логотип

GHSA-4v46-4mj5-q2x2

больше 4 лет назад

The original design of TCP does not check that the TCP Acknowledgement number in an ICMP error message generated by an intermediate router is within the range of possible values for data that has already been acknowledged (aka "TCP acknowledgement number checking"), which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated using (1) blind connection-reset attacks with forged "Destination Unreachable" messages, (2) blind throughput-reduction attacks with forged "Source Quench" messages, or (3) blind throughput-reduction attacks with forged ICMP messages that cause the Path MTU to be reduced. NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifi...

EPSS: Средний
github логотип

GHSA-4v45-x6v7-r5hp

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in pblguestbook.php in Pixelated By Lev (PBL) Guestbook 1.32 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) message (aka comments), (3) website, and (4) email parameters, which bypasses XSS protection mechanisms that check for SCRIPT tags but not others, as demonstrated by a javascript URI in an onMouseOver attribute and the src attribute in an iframe tag. NOTE: some vectors might overlap CVE-2006-2975, although the use of alternate manipulations makes it unclear.

EPSS: Низкий
github логотип

GHSA-4v45-q65w-8hm3

больше 4 лет назад

Open redirect vulnerability in the login page in Puppet Enterprise before 3.0.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the service parameter.

EPSS: Низкий
github логотип

GHSA-4v44-9qpg-fr3q

больше 4 лет назад

modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to gain sensitive information via an HTTP request with an invalid (1) catid or (2) clipid parameter, which reveals the full path in an error message.

EPSS: Низкий
github логотип

GHSA-4v43-gx32-wcrj

2 месяца назад

The Joomla extension Quix Page Builder Pro is vulnerable to an unauthenticated SQL injection.

EPSS: Низкий
github логотип

GHSA-4v43-6wgv-wq2j

9 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maksym Marko MX Time Zone Clocks allows Stored XSS.This issue affects MX Time Zone Clocks: from n/a through 5.1.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4v42-r9rw-39fj

больше 4 лет назад

Buffer overflow in ageet AGEphone before 1.4.0 might allow remote attackers to have an unknown impact via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-4v42-65r3-3gjx

9 месяцев назад

Amazon S3 Encryption Client for .NET has a Key Commitment Issue

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4v3w-x848-hh72

2 месяца назад

Subscriber Cross Site Scripting (XSS) in Slider Pro <= 4.8.13 versions.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4v3w-rm54-5xg3

почти 4 года назад

A CWE-191: Integer Underflow (Wrap or Wraparound) vulnerability exists that could cause a denial of service of the controller due to memory access violations when using the Modbus TCP protocol. Affected products: Modicon M340 CPU (part numbers BMXP34*)(V3.40 and prior), Modicon M580 CPU (part numbers BMEP* and BMEH*)(V3.22 and prior), Legacy Modicon Quantum/Premium(All Versions), Modicon Momentum MDI (171CBU*)(All Versions), Modicon MC80 (BMKC80)(V1.7 and prior)

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4v3w-hvq5-qxpw

больше 2 лет назад

The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'pp_link' shortcode in all versions up to, and including, 3.1.32 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4v3w-374v-v8px

около 1 месяца назад

The ProfilePress WordPress plugin before 4.17.1 does not strip shortcodes from two of its profile fields before rendering them on public pages, allowing unauthenticated attackers to store shortcodes that are then executed when the page is viewed, disclosing a chosen user's email address, login and registration date.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4v3v-mrjj-3599

около 3 лет назад

Windows DNS Server Remote Code Execution Vulnerability

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-4v3v-2c52-v3v9

больше 4 лет назад

eZ publish 3.4.4 through 3.7 before 20050722 applies certain permissions on the node level, which allows remote authenticated users to bypass the original permissions on embedded objects in XML fields and read these objects.

EPSS: Низкий
github логотип

GHSA-4v3r-qxrm-f63q

около 4 лет назад

The Transition Scheduler add-on 6.5.0 for Atlassian Jira is prone to stored XSS via the project name to the creation function.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4v3r-hqr9-69jf

больше 4 лет назад

Command Injection in Nuitka

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4v3r-cmjr-mjv9

больше 3 лет назад

A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when building a GitHub Pages site. To exploit this vulnerability, an attacker would need permission to create and build a GitHub Pages site on the GitHub Enterprise Server instance. This vulnerability affected all versions of GitHub Enterprise Server prior to versions 3.8 and was fixed in versions 3.7.7, 3.6.10, 3.5.14, and 3.4.17. This vulnerability was reported via the GitHub Bug Bounty program.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4v3r-334q-j7qc

больше 2 лет назад

Improper Privilege Management vulnerability in wpForo wpForo Forum allows Privilege Escalation.This issue affects wpForo Forum: from n/a through 2.2.3.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-4v3q-9jqp-58m8

больше 4 лет назад

A SQL injection vulnerability in interface/usergroup/usergroup_admin.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the schedule_facility parameter when restrict_user_facility=on is in global settings.

EPSS: Низкий
github логотип

GHSA-4v3p-jpv7-wp4g

почти 4 года назад

Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/manage_user.php.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4v46-4mj5-q2x2

The original design of TCP does not check that the TCP Acknowledgement number in an ICMP error message generated by an intermediate router is within the range of possible values for data that has already been acknowledged (aka "TCP acknowledgement number checking"), which makes it easier for attackers to forge ICMP error messages for specific TCP connections and cause a denial of service, as demonstrated using (1) blind connection-reset attacks with forged "Destination Unreachable" messages, (2) blind throughput-reduction attacks with forged "Source Quench" messages, or (3) blind throughput-reduction attacks with forged ICMP messages that cause the Path MTU to be reduced. NOTE: CVE-2004-0790, CVE-2004-0791, and CVE-2004-1060 have been SPLIT based on different attacks; CVE-2005-0065, CVE-2005-0066, CVE-2005-0067, and CVE-2005-0068 are related identifiers that are SPLIT based on the underlying vulnerability. While CVE normally SPLITs based on vulnerability, the attack-based identifi...

11%
Средний
больше 4 лет назад
github логотип
GHSA-4v45-x6v7-r5hp

Cross-site scripting (XSS) vulnerability in pblguestbook.php in Pixelated By Lev (PBL) Guestbook 1.32 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) message (aka comments), (3) website, and (4) email parameters, which bypasses XSS protection mechanisms that check for SCRIPT tags but not others, as demonstrated by a javascript URI in an onMouseOver attribute and the src attribute in an iframe tag. NOTE: some vectors might overlap CVE-2006-2975, although the use of alternate manipulations makes it unclear.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4v45-q65w-8hm3

Open redirect vulnerability in the login page in Puppet Enterprise before 3.0.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the service parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4v44-9qpg-fr3q

modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to gain sensitive information via an HTTP request with an invalid (1) catid or (2) clipid parameter, which reveals the full path in an error message.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4v43-gx32-wcrj

The Joomla extension Quix Page Builder Pro is vulnerable to an unauthenticated SQL injection.

0%
Низкий
2 месяца назад
github логотип
GHSA-4v43-6wgv-wq2j

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Maksym Marko MX Time Zone Clocks allows Stored XSS.This issue affects MX Time Zone Clocks: from n/a through 5.1.1.

CVSS3: 6.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-4v42-r9rw-39fj

Buffer overflow in ageet AGEphone before 1.4.0 might allow remote attackers to have an unknown impact via unspecified vectors.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4v42-65r3-3gjx

Amazon S3 Encryption Client for .NET has a Key Commitment Issue

CVSS3: 5.3
0%
Низкий
9 месяцев назад
github логотип
GHSA-4v3w-x848-hh72

Subscriber Cross Site Scripting (XSS) in Slider Pro <= 4.8.13 versions.

CVSS3: 7.1
0%
Низкий
2 месяца назад
github логотип
GHSA-4v3w-rm54-5xg3

A CWE-191: Integer Underflow (Wrap or Wraparound) vulnerability exists that could cause a denial of service of the controller due to memory access violations when using the Modbus TCP protocol. Affected products: Modicon M340 CPU (part numbers BMXP34*)(V3.40 and prior), Modicon M580 CPU (part numbers BMEP* and BMEH*)(V3.22 and prior), Legacy Modicon Quantum/Premium(All Versions), Modicon Momentum MDI (171CBU*)(All Versions), Modicon MC80 (BMKC80)(V1.7 and prior)

CVSS3: 7.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-4v3w-hvq5-qxpw

The WP DSGVO Tools (GDPR) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'pp_link' shortcode in all versions up to, and including, 3.1.32 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4v3w-374v-v8px

The ProfilePress WordPress plugin before 4.17.1 does not strip shortcodes from two of its profile fields before rendering them on public pages, allowing unauthenticated attackers to store shortcodes that are then executed when the page is viewed, disclosing a chosen user's email address, login and registration date.

CVSS3: 6.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-4v3v-mrjj-3599

Windows DNS Server Remote Code Execution Vulnerability

CVSS3: 6.6
1%
Низкий
около 3 лет назад
github логотип
GHSA-4v3v-2c52-v3v9

eZ publish 3.4.4 through 3.7 before 20050722 applies certain permissions on the node level, which allows remote authenticated users to bypass the original permissions on embedded objects in XML fields and read these objects.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4v3r-qxrm-f63q

The Transition Scheduler add-on 6.5.0 for Atlassian Jira is prone to stored XSS via the project name to the creation function.

CVSS3: 5.4
1%
Низкий
около 4 лет назад
github логотип
GHSA-4v3r-hqr9-69jf

Command Injection in Nuitka

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4v3r-cmjr-mjv9

A path traversal vulnerability was identified in GitHub Enterprise Server that allowed remote code execution when building a GitHub Pages site. To exploit this vulnerability, an attacker would need permission to create and build a GitHub Pages site on the GitHub Enterprise Server instance. This vulnerability affected all versions of GitHub Enterprise Server prior to versions 3.8 and was fixed in versions 3.7.7, 3.6.10, 3.5.14, and 3.4.17. This vulnerability was reported via the GitHub Bug Bounty program.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4v3r-334q-j7qc

Improper Privilege Management vulnerability in wpForo wpForo Forum allows Privilege Escalation.This issue affects wpForo Forum: from n/a through 2.2.3.

CVSS3: 7.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4v3q-9jqp-58m8

A SQL injection vulnerability in interface/usergroup/usergroup_admin.php in OpenEMR before 5.0.2.5 allows a remote authenticated attacker to execute arbitrary SQL commands via the schedule_facility parameter when restrict_user_facility=on is in global settings.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4v3p-jpv7-wp4g

Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/manage_user.php.

CVSS3: 7.2
1%
Низкий
почти 4 года назад

Уязвимостей на страницу