Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 268

Количество 375 268

github логотип

GHSA-4qjc-5643-f8xr

больше 4 лет назад

The X.509 certificate-validation functionality in the https implementation in Opera before 12.10 allows remote attackers to trigger a false indication of successful revocation-status checking by causing a failure of a single checking service.

EPSS: Низкий
github логотип

GHSA-4qj9-xpvr-86r7

около 3 лет назад

In JetBrains TeamCity before 2023.05.3 reflected XSS was possible during user registration

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-4qj9-whm7-4cr2

около 2 лет назад

A stored XSS issue was discovered in Archer Platform 6 before version 2024.06. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application. 6.14 P4 (6.14.0.4) is also a fixed release.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-4qj8-cj7g-gfmf

около 2 лет назад

jc21 NGINX Proxy Manager before 2.11.3 allows backend/internal/certificate.js OS command injection by an authenticated user (with certificate management privileges) via untrusted input to the DNS provider configuration. NOTE: this is not part of any NGINX software shipped by F5.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4qj8-98mv-2vmv

больше 4 лет назад

TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availability (HA) inadvertently collect Azure dashboard service account credentials. These credentials are equivalent to the credentials associated with the Contributor role in Azure. A user with the credentials will be able to manage all the Azure resources in the subscription except for granting access to other resources. These credentials do not allow login access to the VMs themselves. This issue affects VM Series Plugin versions before 1.0.9 for PAN-OS 9.0. This issue does not affect VM Series in non-HA configurations or on other cloud platforms. It does not affect hardware firewall appliances. Since becoming aware of the issue, Palo Alto Networks has safely deleted all the tech support files with the credentials. We now filter and remove these credentials from all TechSupport files sent to us. The TechSupport files uploaded to Palo Alto Networks systems were ...

EPSS: Низкий
github логотип

GHSA-4qj7-x2fh-xjvq

2 месяца назад

ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-4qj7-wj4w-hrr9

больше 4 лет назад

PHP remote file inclusion vulnerability in engine/oldnews.inc.php in CM68 News 12.02.06 allows remote attackers to execute arbitrary PHP code via a URL in the addpath parameter.

EPSS: Низкий
github логотип

GHSA-4qj7-wcgp-pm8p

больше 4 лет назад

Static (Persistent) XSS Vulnerability exists in version 4.3.0 of Yclas when using the install/view/form.php script. An attacker can store XSS in the database through the vulnerable SITE_NAME parameter.

EPSS: Низкий
github логотип

GHSA-4qj7-qq7h-5mm9

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: s390/bpf: Fix bpf_arch_text_poke() with new_addr == NULL again Commit 7ded842b356d ("s390/bpf: Fix bpf_plt pointer arithmetic") has accidentally removed the critical piece of commit c730fce7c70c ("s390/bpf: Fix bpf_arch_text_poke() with new_addr == NULL"), causing intermittent kernel panics in e.g. perf's on_switch() prog to reappear. Restore the fix and add a comment.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4qj7-j8h7-r8g6

больше 4 лет назад

An issue was discovered on D-Link DCS-1130 devices. The device requires that a user logging to the device to provide a username and password. However, the device does not enforce the same restriction on a specific URL thereby allowing any attacker in possession of that to view the live video feed. The severity of this attack is enlarged by the fact that there more than 100,000 D-Link devices out there.

EPSS: Низкий
github логотип

GHSA-4qj7-6xgq-rgvw

больше 4 лет назад

There is a cross-site scripting (XSS) vulnerability in an NI Web Server component installed with several NI products. Depending on the product(s) in use, remediation guidance includes: install SystemLink version 2021 R3 or later, install FlexLogger 2022 Q2 or later, install LabVIEW 2021 SP1, install G Web Development 2022 R1 or later, or install Static Test Software Suite version 1.2 or later.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4qj6-j88p-jqg9

около 2 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: ALSA: virtio: Validate control metadata from the device virtio-snd control handling trusts the device-provided control type and value count returned by the device. That metadata is then used directly to index g_v2a_type_map[] in virtsnd_kctl_info(), and to size loops and memcpy() operations in virtsnd_kctl_get() and virtsnd_kctl_put() against fixed-size virtio_snd_ctl_value and snd_ctl_elem_value arrays. A buggy or malicious device can therefore trigger out-of-bounds access by advertising an invalid control type or an oversized value count. Validate control type and count once in virtsnd_kctl_parse_cfg(), before querying enumerated items or exposing the control to ALSA.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-4qj5-h5q3-9354

6 месяцев назад

Deserialization of untrusted data in Windows System Image Manager allows an authorized attacker to execute code locally.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4qj4-pv32-cxrr

около 2 месяцев назад

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of this vulnerability might lead to information disclosure.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4qj4-c4xr-7m2w

больше 4 лет назад

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, in wma_ndp_confirm_event_handler and wma_ndp_indication_event_handler, ndp_cfg len and num_ndp_app_info is from fw. If they are not checked, it may cause buffer over-read once the value is too large.

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-4qj3-rmh9-cc9v

больше 4 лет назад

Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.

EPSS: Низкий
github логотип

GHSA-4qj3-r8v4-x3fg

больше 2 лет назад

Incorrect Default Permissions vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects RegistrationMagic: from n/a through 5.1.9.2.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4qj3-c3cm-qv32

больше 4 лет назад

SQL injection vulnerability in ls.php in SAMEDIA LandShop allows remote attackers to execute arbitrary SQL commands via the infield parameter. NOTE: the start, search_order, search_type, and search_area parameters are already covered by CVE-2005-4018.

EPSS: Низкий
github логотип

GHSA-4qj2-w4f3-j3q6

больше 4 лет назад

elfutils 0.170 has a buffer over-read in the ebl_dynamic_tag_name function of libebl/ebldynamictagname.c because SYMTAB_SHNDX is unsupported.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4qj2-qwgp-vc99

больше 4 лет назад

Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4qjc-5643-f8xr

The X.509 certificate-validation functionality in the https implementation in Opera before 12.10 allows remote attackers to trigger a false indication of successful revocation-status checking by causing a failure of a single checking service.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj9-xpvr-86r7

In JetBrains TeamCity before 2023.05.3 reflected XSS was possible during user registration

CVSS3: 3.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-4qj9-whm7-4cr2

A stored XSS issue was discovered in Archer Platform 6 before version 2024.06. A remote authenticated malicious Archer user could potentially exploit this to store malicious HTML or JavaScript code in a trusted application data store. When victim users access the data store through their browsers, the malicious code gets executed by the web browser in the context of the vulnerable application. 6.14 P4 (6.14.0.4) is also a fixed release.

CVSS3: 7.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-4qj8-cj7g-gfmf

jc21 NGINX Proxy Manager before 2.11.3 allows backend/internal/certificate.js OS command injection by an authenticated user (with certificate management privileges) via untrusted input to the DNS provider configuration. NOTE: this is not part of any NGINX software shipped by F5.

CVSS3: 8.8
1%
Низкий
около 2 лет назад
github логотип
GHSA-4qj8-98mv-2vmv

TechSupport files generated on Palo Alto Networks VM Series firewalls for Microsoft Azure platform configured with high availability (HA) inadvertently collect Azure dashboard service account credentials. These credentials are equivalent to the credentials associated with the Contributor role in Azure. A user with the credentials will be able to manage all the Azure resources in the subscription except for granting access to other resources. These credentials do not allow login access to the VMs themselves. This issue affects VM Series Plugin versions before 1.0.9 for PAN-OS 9.0. This issue does not affect VM Series in non-HA configurations or on other cloud platforms. It does not affect hardware firewall appliances. Since becoming aware of the issue, Palo Alto Networks has safely deleted all the tech support files with the credentials. We now filter and remove these credentials from all TechSupport files sent to us. The TechSupport files uploaded to Palo Alto Networks systems were ...

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj7-x2fh-xjvq

ColdFusion is affected by an Incorrect Authorization vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue does not require user interaction. Scope is changed.

CVSS3: 9
0%
Низкий
2 месяца назад
github логотип
GHSA-4qj7-wj4w-hrr9

PHP remote file inclusion vulnerability in engine/oldnews.inc.php in CM68 News 12.02.06 allows remote attackers to execute arbitrary PHP code via a URL in the addpath parameter.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj7-wcgp-pm8p

Static (Persistent) XSS Vulnerability exists in version 4.3.0 of Yclas when using the install/view/form.php script. An attacker can store XSS in the database through the vulnerable SITE_NAME parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj7-qq7h-5mm9

In the Linux kernel, the following vulnerability has been resolved: s390/bpf: Fix bpf_arch_text_poke() with new_addr == NULL again Commit 7ded842b356d ("s390/bpf: Fix bpf_plt pointer arithmetic") has accidentally removed the critical piece of commit c730fce7c70c ("s390/bpf: Fix bpf_arch_text_poke() with new_addr == NULL"), causing intermittent kernel panics in e.g. perf's on_switch() prog to reappear. Restore the fix and add a comment.

CVSS3: 5.5
0%
Низкий
около 1 года назад
github логотип
GHSA-4qj7-j8h7-r8g6

An issue was discovered on D-Link DCS-1130 devices. The device requires that a user logging to the device to provide a username and password. However, the device does not enforce the same restriction on a specific URL thereby allowing any attacker in possession of that to view the live video feed. The severity of this attack is enlarged by the fact that there more than 100,000 D-Link devices out there.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj7-6xgq-rgvw

There is a cross-site scripting (XSS) vulnerability in an NI Web Server component installed with several NI products. Depending on the product(s) in use, remediation guidance includes: install SystemLink version 2021 R3 or later, install FlexLogger 2022 Q2 or later, install LabVIEW 2021 SP1, install G Web Development 2022 R1 or later, or install Static Test Software Suite version 1.2 or later.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj6-j88p-jqg9

In the Linux kernel, the following vulnerability has been resolved: ALSA: virtio: Validate control metadata from the device virtio-snd control handling trusts the device-provided control type and value count returned by the device. That metadata is then used directly to index g_v2a_type_map[] in virtsnd_kctl_info(), and to size loops and memcpy() operations in virtsnd_kctl_get() and virtsnd_kctl_put() against fixed-size virtio_snd_ctl_value and snd_ctl_elem_value arrays. A buggy or malicious device can therefore trigger out-of-bounds access by advertising an invalid control type or an oversized value count. Validate control type and count once in virtsnd_kctl_parse_cfg(), before querying enumerated items or exposing the control to ALSA.

CVSS3: 8.4
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-4qj5-h5q3-9354

Deserialization of untrusted data in Windows System Image Manager allows an authorized attacker to execute code locally.

CVSS3: 7.8
2%
Низкий
6 месяцев назад
github логотип
GHSA-4qj4-pv32-cxrr

NVIDIA Dynamo for Linux contains a vulnerability where an attacker could cause the generation of error messages that contain sensitive information. A successful exploit of this vulnerability might lead to information disclosure.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-4qj4-c4xr-7m2w

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, in wma_ndp_confirm_event_handler and wma_ndp_indication_event_handler, ndp_cfg len and num_ndp_app_info is from fw. If they are not checked, it may cause buffer over-read once the value is too large.

CVSS3: 5.7
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj3-rmh9-cc9v

Solaris dmi_cmd allows local users to crash the dmispd daemon by adding a malformed file to the /var/dmi/db database.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj3-r8v4-x3fg

Incorrect Default Permissions vulnerability in Metagauss RegistrationMagic allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects RegistrationMagic: from n/a through 5.1.9.2.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4qj3-c3cm-qv32

SQL injection vulnerability in ls.php in SAMEDIA LandShop allows remote attackers to execute arbitrary SQL commands via the infield parameter. NOTE: the start, search_order, search_type, and search_area parameters are already covered by CVE-2005-4018.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj2-w4f3-j3q6

elfutils 0.170 has a buffer over-read in the ebl_dynamic_tag_name function of libebl/ebldynamictagname.c because SYMTAB_SHNDX is unsupported.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4qj2-qwgp-vc99

Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.

3%
Низкий
больше 4 лет назад

Уязвимостей на страницу