Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-4mgv-g5j9-fr8q

больше 2 лет назад

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability concerns a denial of service within the parsing an IPv6 ICMPv6 packet.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-4mgv-366x-qxvx

7 месяцев назад

Craft CMS Vulnerable to Stored XSS in Settings Names and Field Options

EPSS: Низкий
github логотип

GHSA-4mgr-f3j8-4rg7

около 1 месяца назад

The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'tag_query' parameter in all versions up to, and including, 4.5.14 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with vendor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. Exploitation requires the attacker to trigger the vulnerable Legacy_Contact_Query code path by submitting an unknown filter type (e.g. filters[0][0][type]=force_fallback), which causes a FilterException that dispatches execution away from the modern query handler.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4mgq-xc5h-f57m

больше 2 лет назад

Improper input validation in some Intel(R) Neural Compressor software before version 2.5.0 may allow an unauthenticated user to potentially enable escalation of privilege via remote access.

CVSS3: 10
EPSS: Средний
github логотип

GHSA-4mgq-wm39-mv73

больше 3 лет назад

An issue was discovered in the Linux kernel before 5.13.3. lib/seq_buf.c has a seq_buf_putmem_hex buffer overflow.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4mgq-r54g-35jg

больше 4 лет назад

Microsoft Excel 2007 SP3, Excel Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Excel Memory Corruption Vulnerability."

EPSS: Средний
github логотип

GHSA-4mgq-9qgw-ghcx

больше 3 лет назад

The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-4mgq-4xh9-wr7m

больше 2 лет назад

An issue was discovered in ROS2 Iron Irwini versions ROS_VERSION 2 and ROS_PYTHON_VERSION 3, allows remote attackers to execute arbitrary code via packages or nodes within the ROS2 system.

EPSS: Низкий
github логотип

GHSA-4mgq-44rj-x22r

больше 2 лет назад

A heap-based buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.2.2533 build 20230926 and later QuTS hero h5.1.2.2534 build 20230927 and later QuTScloud c5.1.5.2651 and later

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4mgp-qq86-9gj5

больше 4 лет назад

Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.

EPSS: Низкий
github логотип

GHSA-4mgp-8x4h-v3vm

почти 4 года назад

Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4mgp-5jjf-m73q

больше 4 лет назад

AVB MOTU devices through 2020-01-22 allow /.. Directory Traversal, as demonstrated by reading the /etc/passwd file.

EPSS: Низкий
github логотип

GHSA-4mgj-f599-w3j8

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: ublk: don't allow user copy for unprivileged device UBLK_F_USER_COPY requires userspace to call write() on ublk char device for filling request buffer, and unprivileged device can't be trusted. So don't allow user copy for unprivileged device.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4mgj-2pcm-grp4

почти 3 года назад

Cross Site Scripting vulnerability in BigTree CMS v.4.5.7 allows a remote attacker to execute arbitrary code via the ID parameter in the Developer Settings functions.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4mgh-xjf3-7388

6 месяцев назад

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4mgh-wqj7-785j

больше 4 лет назад

An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search Indexer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0613, CVE-2020-0614, CVE-2020-0623, CVE-2020-0625, CVE-2020-0626, CVE-2020-0628, CVE-2020-0629, CVE-2020-0630, CVE-2020-0631, CVE-2020-0632, CVE-2020-0633.

EPSS: Низкий
github логотип

GHSA-4mgh-6p2j-75qp

больше 4 лет назад

A Heap-Based Buffer Overflow issue was discovered in Wecon Technologies LEVI Studio HMI Editor before 1.8.1. This vulnerability causes a buffer overflow when a maliciously crafted project file is run by the system.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4mgg-fqfq-64hg

около 2 лет назад

Apache CXF allows unrestricted memory consumption in CXF HTTP clients

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-4mgf-wvrp-c5h9

около 1 месяца назад

The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (replace-media-file execute_callback) function in all versions up to, and including, 5.1.1. This makes it possible for authenticated attackers, with author-level access and above, to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php). This is exploitable by first using the atarim/update-post-field ability to overwrite the _wp_attached_file meta of an attacker-owned attachment with a directory-traversal path, then invoking atarim/replace-media-file to cause get_attached_file() to resolve and unlink the targeted file.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-4mgc-j5m2-g2pp

10 дней назад

Authorization bypass through user-controlled key in Microsoft Exchange Server allows an authorized attacker to perform tampering over a network.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4mgv-g5j9-fr8q

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability concerns a denial of service within the parsing an IPv6 ICMPv6 packet.

CVSS3: 5.9
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4mgv-366x-qxvx

Craft CMS Vulnerable to Stored XSS in Settings Names and Field Options

0%
Низкий
7 месяцев назад
github логотип
GHSA-4mgr-f3j8-4rg7

The Groundhogg — CRM, Newsletters, and Marketing Automation plugin for WordPress is vulnerable to generic SQL Injection via the 'tag_query' parameter in all versions up to, and including, 4.5.14 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with vendor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. Exploitation requires the attacker to trigger the vulnerable Legacy_Contact_Query code path by submitting an unknown filter type (e.g. filters[0][0][type]=force_fallback), which causes a FilterException that dispatches execution away from the modern query handler.

CVSS3: 6.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-4mgq-xc5h-f57m

Improper input validation in some Intel(R) Neural Compressor software before version 2.5.0 may allow an unauthenticated user to potentially enable escalation of privilege via remote access.

CVSS3: 10
36%
Средний
больше 2 лет назад
github логотип
GHSA-4mgq-wm39-mv73

An issue was discovered in the Linux kernel before 5.13.3. lib/seq_buf.c has a seq_buf_putmem_hex buffer overflow.

CVSS3: 7.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4mgq-r54g-35jg

Microsoft Excel 2007 SP3, Excel Viewer, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Excel Memory Corruption Vulnerability."

20%
Средний
больше 4 лет назад
github логотип
GHSA-4mgq-9qgw-ghcx

The Raccoon attack is a timing attack on DHE ciphersuites inherit in the TLS specification. To mitigate this vulnerability, Firefox disabled support for DHE ciphersuites.

CVSS3: 5.9
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4mgq-4xh9-wr7m

An issue was discovered in ROS2 Iron Irwini versions ROS_VERSION 2 and ROS_PYTHON_VERSION 3, allows remote attackers to execute arbitrary code via packages or nodes within the ROS2 system.

больше 2 лет назад
github логотип
GHSA-4mgq-44rj-x22r

A heap-based buffer overflow vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated administrators to execute code via a network. We have already fixed the vulnerability in the following versions: QTS 5.1.2.2533 build 20230926 and later QuTS hero h5.1.2.2534 build 20230927 and later QuTScloud c5.1.5.2651 and later

CVSS3: 5.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4mgp-qq86-9gj5

Unspecified vulnerability in Oracle Java SE 5.0u71, 6u81, 7u67, and 8u20, and Java SE Embedded 7u60, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Libraries.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4mgp-8x4h-v3vm

Sensitive information disclosure due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Home Office (Windows) before build 40107.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-4mgp-5jjf-m73q

AVB MOTU devices through 2020-01-22 allow /.. Directory Traversal, as demonstrated by reading the /etc/passwd file.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4mgj-f599-w3j8

In the Linux kernel, the following vulnerability has been resolved: ublk: don't allow user copy for unprivileged device UBLK_F_USER_COPY requires userspace to call write() on ublk char device for filling request buffer, and unprivileged device can't be trusted. So don't allow user copy for unprivileged device.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-4mgj-2pcm-grp4

Cross Site Scripting vulnerability in BigTree CMS v.4.5.7 allows a remote attacker to execute arbitrary code via the ID parameter in the Developer Settings functions.

CVSS3: 5.4
1%
Низкий
почти 3 года назад
github логотип
GHSA-4mgh-xjf3-7388

Improper neutralization of special elements used in a command ('command injection') in Microsoft Copilot allows an unauthorized attacker to disclose information over a network.

CVSS3: 6.5
1%
Низкий
6 месяцев назад
github логотип
GHSA-4mgh-wqj7-785j

An elevation of privilege vulnerability exists in the way that the Windows Search Indexer handles objects in memory, aka 'Windows Search Indexer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0613, CVE-2020-0614, CVE-2020-0623, CVE-2020-0625, CVE-2020-0626, CVE-2020-0628, CVE-2020-0629, CVE-2020-0630, CVE-2020-0631, CVE-2020-0632, CVE-2020-0633.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4mgh-6p2j-75qp

A Heap-Based Buffer Overflow issue was discovered in Wecon Technologies LEVI Studio HMI Editor before 1.8.1. This vulnerability causes a buffer overflow when a maliciously crafted project file is run by the system.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4mgg-fqfq-64hg

Apache CXF allows unrestricted memory consumption in CXF HTTP clients

CVSS3: 3.7
1%
Низкий
около 2 лет назад
github логотип
GHSA-4mgf-wvrp-c5h9

The Atarim – AI Agency for WordPress: Edit Pages, Fix Code, Update Plugins, SEO & Client Feedback plugin for WordPress is vulnerable to arbitrary file deletion due to insufficient file path validation in the AVCF_Abilities_Media::register (replace-media-file execute_callback) function in all versions up to, and including, 5.1.1. This makes it possible for authenticated attackers, with author-level access and above, to delete arbitrary files on the server, which can easily lead to remote code execution when the right file is deleted (such as wp-config.php). This is exploitable by first using the atarim/update-post-field ability to overwrite the _wp_attached_file meta of an attacker-owned attachment with a directory-traversal path, then invoking atarim/replace-media-file to cause get_attached_file() to resolve and unlink the targeted file.

CVSS3: 8.1
1%
Низкий
около 1 месяца назад
github логотип
GHSA-4mgc-j5m2-g2pp

Authorization bypass through user-controlled key in Microsoft Exchange Server allows an authorized attacker to perform tampering over a network.

CVSS3: 6.5
1%
Низкий
10 дней назад

Уязвимостей на страницу