Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 356

Количество 375 356

github логотип

GHSA-4r5p-hffq-cgf5

больше 4 лет назад

Double free vulnerability in the _php_mb_regex_ereg_replace_exec function in php_mbregex.c in the mbstring extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by leveraging a callback exception.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4r5p-fqj4-2g76

около 3 лет назад

The Subscribe2 plugin for WordPress is vulnerable to unauthorized access to email functionality due to a missing capability check when sending test emails in versions up to, and including, 10.40. This makes it possible for author-level attackers to send emails with arbitrary content and attachments to site users.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4r5j-cg4f-m685

около 2 лет назад

SAP S/4HANA Finance (Advanced Payment Management) does not perform necessary authorization check for an authenticated user, resulting in escalation of privileges. As a result, it has a low impact to confidentiality and availability but there is no impact on the integrity.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4r5j-9p9r-6v2h

больше 4 лет назад

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112709994

EPSS: Низкий
github логотип

GHSA-4r5g-6487-f64m

12 дней назад

UC Browser for Android (package com.UCMobile.intl, version 13.7.8.1314) contains a Universal Cross-Site Scripting vulnerability that allows an attacker to execute arbitrary JavaScript in the context of any origin. An attacker hosts a specially crafted URL on a UC-owned domain (via a reflected XSS) that leverages the browser's internal JavaScript bridge to register a deferred callback, navigate the tab to a victim site, and then execute attacker-controlled code on that site when a login dialog is dismissed.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-4r5f-vh76-jqxp

почти 5 лет назад

An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The privileged vaultServer could be leveraged to create arbitrary writable files, leading to privilege escalation.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4r5f-q294-8gxm

около 2 лет назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library allows Reflected XSS.This issue affects Link Library: from n/a through 7.7.1.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4r5f-fphv-p9p2

больше 4 лет назад

Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.4, when CPU-based ACLs are enabled, allow remote attackers to read or modify the configuration via unspecified vectors, aka Bug ID CSCtu56709.

EPSS: Низкий
github логотип

GHSA-4r5c-7wgh-g673

больше 2 лет назад

An out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4r59-w36x-w685

больше 4 лет назад

Race condition in Login Window in Apple Mac OS X 10.5 through 10.5.4, when a blank-password account is enabled, allows attackers to bypass password authentication and login to any account via multiple attempts to login to the blank-password account, followed by selection of an arbitrary account from the user list.

EPSS: Низкий
github логотип

GHSA-4r59-7pwm-p489

11 месяцев назад

A lack of rate limiting in the component /Home/UploadStreamDocument of SigningHub v8.6.8 allows attackers to cause a Denial of Service (DoS) via uploading an excessive number of files.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4r58-h5cf-8qgj

7 месяцев назад

A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::operator of the file src/value.cpp. The manipulation leads to divide by zero. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-4r57-vqx3-mm6g

больше 4 лет назад

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0102, CVE-2016-0103, CVE-2016-0106, CVE-2016-0108, and CVE-2016-0109.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-4r56-3j98-9pm6

больше 4 лет назад

SQL injection vulnerability in the Maian Media Silver (com_maianmedia) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a music action to index.php.

EPSS: Низкий
github логотип

GHSA-4r55-xrfw-ffx7

больше 4 лет назад

A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

EPSS: Низкий
github логотип

GHSA-4r55-h48h-4p5q

больше 4 лет назад

An issue was discovered in Couchbase Server 5.1.2 and 5.5.0. The http server on port 8092 lacks an X-XSS protection header.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4r54-pcmf-cg7r

больше 4 лет назад

Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the size argument to the __hcreate_r function, which triggers out-of-bounds heap-memory access.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4r54-p7h8-fw6x

больше 4 лет назад

EmpireCMS 7.5 has a SQL injection vulnerability in AdClass.php

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4r53-xgrq-7gx8

больше 2 лет назад

D-Link Multiple Routers cli Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1260 and DIR-2150 routers. Authentication is required to exploit this vulnerability. The specific flaw exists within the CLI service, which listens on TCP port 23. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-19946.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-4r53-v5jr-xx52

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in the Postie plugin 1.4.3, and possibly before 1.5.15, for WordPress allows remote attackers to inject arbitrary web script or HTML via the From field of an email.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4r5p-hffq-cgf5

Double free vulnerability in the _php_mb_regex_ereg_replace_exec function in php_mbregex.c in the mbstring extension in PHP before 5.5.37, 5.6.x before 5.6.23, and 7.x before 7.0.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) by leveraging a callback exception.

CVSS3: 9.8
10%
Низкий
больше 4 лет назад
github логотип
GHSA-4r5p-fqj4-2g76

The Subscribe2 plugin for WordPress is vulnerable to unauthorized access to email functionality due to a missing capability check when sending test emails in versions up to, and including, 10.40. This makes it possible for author-level attackers to send emails with arbitrary content and attachments to site users.

CVSS3: 4.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-4r5j-cg4f-m685

SAP S/4HANA Finance (Advanced Payment Management) does not perform necessary authorization check for an authenticated user, resulting in escalation of privileges. As a result, it has a low impact to confidentiality and availability but there is no impact on the integrity.

CVSS3: 5.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-4r5j-9p9r-6v2h

In libxaac, there is a possible out of bounds read due to a missing bounds check. This could lead to information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112709994

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4r5g-6487-f64m

UC Browser for Android (package com.UCMobile.intl, version 13.7.8.1314) contains a Universal Cross-Site Scripting vulnerability that allows an attacker to execute arbitrary JavaScript in the context of any origin. An attacker hosts a specially crafted URL on a UC-owned domain (via a reflected XSS) that leverages the browser's internal JavaScript bridge to register a deferred callback, navigate the tab to a victim site, and then execute attacker-controlled code on that site when a login dialog is dismissed.

CVSS3: 9.3
0%
Низкий
12 дней назад
github логотип
GHSA-4r5f-vh76-jqxp

An issue was discovered in Kaseya Unitrends Backup Appliance before 10.5.5. The privileged vaultServer could be leveraged to create arbitrary writable files, leading to privilege escalation.

CVSS3: 8.8
2%
Низкий
почти 5 лет назад
github логотип
GHSA-4r5f-q294-8gxm

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Yannick Lefebvre Link Library allows Reflected XSS.This issue affects Link Library: from n/a through 7.7.1.

CVSS3: 7.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-4r5f-fphv-p9p2

Cisco Wireless LAN Controller (WLC) devices with software 4.x, 5.x, 6.0, and 7.0 before 7.0.220.4, when CPU-based ACLs are enabled, allow remote attackers to read or modify the configuration via unspecified vectors, aka Bug ID CSCtu56709.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4r5c-7wgh-g673

An out of bounds write vulnerability in the AMD Radeon™ user mode driver for DirectX® 11 could allow an attacker with access to a malformed shader to potentially achieve arbitrary code execution.

CVSS3: 5.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4r59-w36x-w685

Race condition in Login Window in Apple Mac OS X 10.5 through 10.5.4, when a blank-password account is enabled, allows attackers to bypass password authentication and login to any account via multiple attempts to login to the blank-password account, followed by selection of an arbitrary account from the user list.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4r59-7pwm-p489

A lack of rate limiting in the component /Home/UploadStreamDocument of SigningHub v8.6.8 allows attackers to cause a Denial of Service (DoS) via uploading an excessive number of files.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-4r58-h5cf-8qgj

A vulnerability has been found in Mapnik up to 4.2.0. This vulnerability affects the function mapnik::detail::mod<...>::operator of the file src/value.cpp. The manipulation leads to divide by zero. The attack needs to be performed locally. The exploit has been disclosed to the public and may be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 3.3
0%
Низкий
7 месяцев назад
github логотип
GHSA-4r57-vqx3-mm6g

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0102, CVE-2016-0103, CVE-2016-0106, CVE-2016-0108, and CVE-2016-0109.

CVSS3: 7.5
17%
Средний
больше 4 лет назад
github логотип
GHSA-4r56-3j98-9pm6

SQL injection vulnerability in the Maian Media Silver (com_maianmedia) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a music action to index.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4r55-xrfw-ffx7

A race between command submission and destroying the context can cause an invalid context being added to the list leads to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4r55-h48h-4p5q

An issue was discovered in Couchbase Server 5.1.2 and 5.5.0. The http server on port 8092 lacks an X-XSS protection header.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4r54-pcmf-cg7r

Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the size argument to the __hcreate_r function, which triggers out-of-bounds heap-memory access.

CVSS3: 9.8
6%
Низкий
больше 4 лет назад
github логотип
GHSA-4r54-p7h8-fw6x

EmpireCMS 7.5 has a SQL injection vulnerability in AdClass.php

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4r53-xgrq-7gx8

D-Link Multiple Routers cli Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-1260 and DIR-2150 routers. Authentication is required to exploit this vulnerability. The specific flaw exists within the CLI service, which listens on TCP port 23. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-19946.

CVSS3: 6.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4r53-v5jr-xx52

Cross-site scripting (XSS) vulnerability in the Postie plugin 1.4.3, and possibly before 1.5.15, for WordPress allows remote attackers to inject arbitrary web script or HTML via the From field of an email.

4%
Низкий
больше 4 лет назад

Уязвимостей на страницу