Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-4m9p-wh47-w846

больше 4 лет назад

Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause arbitrary webpage loading in webview.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-4m9p-fmq4-3crx

больше 4 лет назад

Multiple SQL injection vulnerabilities in phpTRADER 4.9 SP5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) sectio parameter in (a) login.php, (b) write_newad.php, (c) newad.php, (d) printad.php, (e) askseller.php, (f) browse.php, (g) showmemberads.php, (h) note_ad.php, (i) abuse.php, (j) buynow.php, (k) confirm_newad.php, (2) an parameter in (l) printad.php, (m) note_ad.php, (3) who parameter in (n) showmemberads.php, and (4) adnr parameter in (o) buynow.php.

EPSS: Низкий
github логотип

GHSA-4m9p-ff32-46w8

11 месяцев назад

A vulnerability was identified in Tenda O3 1.0.0.10(2478). Affected by this vulnerability is the function SetValue/GetValue of the file /goform/AdvSetLanip. The manipulation of the argument lanIp leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4m9p-c36q-62gp

больше 4 лет назад

Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.

EPSS: Низкий
github логотип

GHSA-4m9p-7xg6-f4mm

почти 2 года назад

DataEase has an XML External Entity Reference vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4m9m-xf34-3q86

больше 3 лет назад

LS ELECTRIC XBC-DN32U with operating system version 01.80 has improper access control to its read prohibition feature. This could allow a remote attacker to remotely set the feature to lock users out of reading data from the device.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4m9m-w7cw-37wv

больше 4 лет назад

Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).

EPSS: Низкий
github логотип

GHSA-4m9m-rmh9-2pgf

2 месяца назад

Grav before 2.0.4 contains a two-factor authentication bypass vulnerability in the login plugin where the regenerate2FASecret task checks only user existence, not authorization, during the pending TOTP challenge window. Attackers who know the victim's password can call this task without a CSRF nonce to overwrite the 2FA secret with an attacker-chosen value, compute a valid TOTP code, and complete authentication while reducing 2FA to password-only protection.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-4m9m-6fj5-4v23

около 2 месяцев назад

The Download Manager WordPress plugin before 3.3.62 does not bind its temporary download token to the requesting session nor expire it promptly, making the token a long-lived, multi-use, portable bearer token, so that an attacker who obtains one leaked download key can repeatedly download a role- or password-protected package file without authorization.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4m9m-3f5j-mwr3

больше 1 года назад

A vulnerability was found in defog-ai introspect up to 0.1.4. It has been rated as critical. Affected by this issue is the function test_custom_tool of the file introspect/backend/integration_routes.py of the component Test Endpoint. The manipulation of the argument input_model leads to code injection. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4m9j-jvr5-rxx6

больше 4 лет назад

IBM WebSphere Portal 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138437.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4m9j-f935-mjmr

больше 4 лет назад

cPanel before 74.0.0 allows SQL injection during database backups (SEC-420).

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4m9h-p5fq-pr52

больше 4 лет назад

Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0606, CVE-2013-0612, CVE-2013-0615, and CVE-2013-0621.

EPSS: Низкий
github логотип

GHSA-4m9h-cpwq-g6hj

больше 4 лет назад

Microsoft Project 2000 SR1 and 2002 SP1, and Office Project 2003 SP3, does not properly handle memory allocation for Project files, which allows remote attackers to execute arbitrary code via a malformed file, aka "Project Memory Validation Vulnerability."

EPSS: Средний
github логотип

GHSA-4m9h-7gmv-8qc2

больше 4 лет назад

SQL injection vulnerability in admin/index.php in PowerClan 1.14a allows remote attackers to execute arbitrary SQL commands via the loginemail parameter (aka login field). NOTE: some of these details are obtained from third party information.

EPSS: Низкий
github логотип

GHSA-4m9g-w7wc-fj28

больше 4 лет назад

Multiple buffer overflows in Winny 2.0b7.1 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-2007.

EPSS: Низкий
github логотип

GHSA-4m9f-x84m-j5w6

больше 4 лет назад

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32451104. References: QC-CR#1087797.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-4m9f-rjc4-h47g

больше 4 лет назад

Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-4m9f-r2j3-9f9c

больше 4 лет назад

Bugzilla before 2.14 does not properly escape untrusted parameters, which could allow remote attackers to conduct unauthorized activities via cross-site scripting (CSS) and possibly SQL injection attacks on (1) the product or output form variables for reports.cgi, (2) the voteon, bug_id, and user variables for showvotes.cgi, (3) an invalid email address in createaccount.cgi, (4) an invalid ID in showdependencytree.cgi, (5) invalid usernames and other fields in process_bug.cgi, and (6) error messages in buglist.cgi.

EPSS: Низкий
github логотип

GHSA-4m9f-p7pm-7vjm

около 3 лет назад

A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4m9p-wh47-w846

Improper access control vulnerability in Samsung Members prior to versions 2.4.85.11 in Android O(8.1) and below, and 3.9.10.11 in Android P(9.0) and above allows untrusted applications to cause arbitrary webpage loading in webview.

CVSS3: 3.3
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9p-fmq4-3crx

Multiple SQL injection vulnerabilities in phpTRADER 4.9 SP5 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) sectio parameter in (a) login.php, (b) write_newad.php, (c) newad.php, (d) printad.php, (e) askseller.php, (f) browse.php, (g) showmemberads.php, (h) note_ad.php, (i) abuse.php, (j) buynow.php, (k) confirm_newad.php, (2) an parameter in (l) printad.php, (m) note_ad.php, (3) who parameter in (n) showmemberads.php, and (4) adnr parameter in (o) buynow.php.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9p-ff32-46w8

A vulnerability was identified in Tenda O3 1.0.0.10(2478). Affected by this vulnerability is the function SetValue/GetValue of the file /goform/AdvSetLanip. The manipulation of the argument lanIp leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

CVSS3: 8.8
1%
Низкий
11 месяцев назад
github логотип
GHSA-4m9p-c36q-62gp

Brother MFC-9970CDW 1.10 firmware L devices contain an information disclosure vulnerability which allows remote attackers to view sensitive information from referrer logs due to inadequate handling of HTTP referrer headers.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9p-7xg6-f4mm

DataEase has an XML External Entity Reference vulnerability

CVSS3: 7.5
1%
Низкий
почти 2 года назад
github логотип
GHSA-4m9m-xf34-3q86

LS ELECTRIC XBC-DN32U with operating system version 01.80 has improper access control to its read prohibition feature. This could allow a remote attacker to remotely set the feature to lock users out of reading data from the device.

CVSS3: 4.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4m9m-w7cw-37wv

Vulnerability in the Oracle One-to-One Fulfillment product of Oracle E-Business Suite (component: Print Server). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle One-to-One Fulfillment accessible data as well as unauthorized update, insert or delete access to some of Oracle One-to-One Fulfillment accessible data. CVSS 3.0 Base Score 8.2 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N).

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9m-rmh9-2pgf

Grav before 2.0.4 contains a two-factor authentication bypass vulnerability in the login plugin where the regenerate2FASecret task checks only user existence, not authorization, during the pending TOTP challenge window. Attackers who know the victim's password can call this task without a CSRF nonce to overwrite the 2FA secret with an attacker-chosen value, compute a valid TOTP code, and complete authentication while reducing 2FA to password-only protection.

CVSS3: 7.4
0%
Низкий
2 месяца назад
github логотип
GHSA-4m9m-6fj5-4v23

The Download Manager WordPress plugin before 3.3.62 does not bind its temporary download token to the requesting session nor expire it promptly, making the token a long-lived, multi-use, portable bearer token, so that an attacker who obtains one leaked download key can repeatedly download a role- or password-protected package file without authorization.

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-4m9m-3f5j-mwr3

A vulnerability was found in defog-ai introspect up to 0.1.4. It has been rated as critical. Affected by this issue is the function test_custom_tool of the file introspect/backend/integration_routes.py of the component Test Endpoint. The manipulation of the argument input_model leads to code injection. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-4m9j-jvr5-rxx6

IBM WebSphere Portal 8.0, 8.5, and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 138437.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9j-f935-mjmr

cPanel before 74.0.0 allows SQL injection during database backups (SEC-420).

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9h-p5fq-pr52

Buffer overflow in Adobe Reader and Acrobat 9.x before 9.5.3, 10.x before 10.1.5, and 11.x before 11.0.1 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2013-0606, CVE-2013-0612, CVE-2013-0615, and CVE-2013-0621.

10%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9h-cpwq-g6hj

Microsoft Project 2000 SR1 and 2002 SP1, and Office Project 2003 SP3, does not properly handle memory allocation for Project files, which allows remote attackers to execute arbitrary code via a malformed file, aka "Project Memory Validation Vulnerability."

24%
Средний
больше 4 лет назад
github логотип
GHSA-4m9h-7gmv-8qc2

SQL injection vulnerability in admin/index.php in PowerClan 1.14a allows remote attackers to execute arbitrary SQL commands via the loginemail parameter (aka login field). NOTE: some of these details are obtained from third party information.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9g-w7wc-fj28

Multiple buffer overflows in Winny 2.0b7.1 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-2007.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9f-x84m-j5w6

An elevation of privilege vulnerability in the Qualcomm Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32451104. References: QC-CR#1087797.

CVSS3: 7
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9f-rjc4-h47g

Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin

CVSS3: 9.1
9%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9f-r2j3-9f9c

Bugzilla before 2.14 does not properly escape untrusted parameters, which could allow remote attackers to conduct unauthorized activities via cross-site scripting (CSS) and possibly SQL injection attacks on (1) the product or output form variables for reports.cgi, (2) the voteon, bug_id, and user variables for showvotes.cgi, (3) an invalid email address in createaccount.cgi, (4) an invalid ID in showdependencytree.cgi, (5) invalid usernames and other fields in process_bug.cgi, and (6) error messages in buglist.cgi.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4m9f-p7pm-7vjm

A maliciously crafted favicon could have led to an out of memory crash. This vulnerability affects Firefox < 113.

CVSS3: 7.5
1%
Низкий
около 3 лет назад

Уязвимостей на страницу