Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-4m6c-qxj2-4wp8

12 месяцев назад

Cross-Site Request Forgery (CSRF) vulnerability in wpdesk Flexible PDF Invoices for WooCommerce & WordPress allows Cross Site Request Forgery. This issue affects Flexible PDF Invoices for WooCommerce & WordPress: from n/a through 6.0.13.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4m6c-pw6q-ghjh

около 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in KCS Responder allows Cross Site Request Forgery. This issue affects Responder: from n/a through 4.3.8.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4m6c-649p-f6gf

5 месяцев назад

Serendipity has a Host Header Injection allows authentication cookie scoping to attacker-controlled domain in functions_config.inc.php

CVSS3: 6.9
EPSS: Низкий
github логотип

GHSA-4m69-894f-99fm

больше 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Real Seguro Viagem Real Seguro Viagem allows Stored XSS.This issue affects Real Seguro Viagem: from n/a through 2.0.5.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4m69-67m6-prqp

3 месяца назад

Zebra has block suppression via NU5 same-header body poisoning of sent-hash cache

EPSS: Низкий
github логотип

GHSA-4m68-w7c2-h86j

больше 4 лет назад

In the Android kernel in the video driver there is a kernel pointer leak due to a WARN_ON statement. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 2.3
EPSS: Низкий
github логотип

GHSA-4m67-hjrm-c762

больше 1 года назад

The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_cart_button' and 'wp_cart_display_product' shortcodes in all versions up to, and including, 5.0.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4m66-r8x2-p4r9

больше 4 лет назад

Unknown vulnerability in the Sun Solaris C library (libc and libproject) in Solaris 10 allows local users to gain privileges.

EPSS: Низкий
github логотип

GHSA-4m66-mfvj-m7h9

больше 4 лет назад

Fightersoft Multimedia Star FTP server 1.10 allows remote attackers to cause a denial of service (crash) via multiple RETR commands with long arguments.

EPSS: Низкий
github логотип

GHSA-4m65-jvh6-7fh3

больше 4 лет назад

atalk_create in net/appletalk/ddp.c in the AF_APPLETALK network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-6cc03e8aa36c.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-4m65-c7fj-mw98

18 дней назад

WWBN AVideo (current e01e41ecc and earlier) contains a brute-force rate limiting bypass in enforceRateLimit(), which protects login.json.php and 13 other endpoints. The function stores its attempt counter via a cache layer (ObjectYPT::setCacheGlobal) that silently discards writes for any client identified as a bot by isBot(). Because isBot() treats a missing User-Agent header as a bot by default — and also matches common bot identifiers such as 'curl', 'bot', 'crawler', and 'spider' — the counter never increments for such clients, so the rate limit never fires. An unauthenticated attacker can therefore submit unlimited login attempts (e.g., by omitting the User-Agent header or using curl's default User-Agent), enabling unrestricted password-guessing attacks.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4m65-9g68-65w5

больше 1 года назад

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4m65-6q77-h9mp

почти 2 года назад

In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4m65-68v8-frj9

больше 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in ablancodev Woocommerce Role Pricing allows Cross Site Request Forgery. This issue affects Woocommerce Role Pricing: from n/a through 3.5.5.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4m65-2h49-v4h7

больше 4 лет назад

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-0056 and CVE-2015-1623.

EPSS: Средний
github логотип

GHSA-4m64-g8r6-3ghw

10 месяцев назад

Longjing Technology BEMS API versions up to and including 1.21 contains an unauthenticated arbitrary file download vulnerability in the 'downloads' endpoint. The 'fileName' parameter is not properly sanitized, allowing attackers to craft traversal sequences and access sensitive files outside the intended directory.

EPSS: Низкий
github логотип

GHSA-4m64-fp2m-vhfj

больше 4 лет назад

Multiple buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2- Build 1174 allow remote attackers to execute arbitrary code via a crafted RPC message processed by the (1) the RPCFN_ActiveRollback function in (a) stcommon.dll, or the (2) ENG_SetRealTimeScanConfigInfo or (3) ENG_SendEmail functions in (b) eng50.dll.

EPSS: Низкий
github логотип

GHSA-4m64-74mc-www8

больше 4 лет назад

A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory, aka 'Active Directory Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0718.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4m64-74hh-f9h2

7 месяцев назад

The Dynamic Widget Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the widget content field in the Gutenberg editor sidebar in all versions up to, and including, 1.3.6 due to insufficient input sanitization and output escaping on user-supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4m62-5w64-x54q

больше 4 лет назад

Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4m6c-qxj2-4wp8

Cross-Site Request Forgery (CSRF) vulnerability in wpdesk Flexible PDF Invoices for WooCommerce & WordPress allows Cross Site Request Forgery. This issue affects Flexible PDF Invoices for WooCommerce & WordPress: from n/a through 6.0.13.

CVSS3: 7.1
0%
Низкий
12 месяцев назад
github логотип
GHSA-4m6c-pw6q-ghjh

Cross-Site Request Forgery (CSRF) vulnerability in KCS Responder allows Cross Site Request Forgery. This issue affects Responder: from n/a through 4.3.8.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-4m6c-649p-f6gf

Serendipity has a Host Header Injection allows authentication cookie scoping to attacker-controlled domain in functions_config.inc.php

CVSS3: 6.9
0%
Низкий
5 месяцев назад
github логотип
GHSA-4m69-894f-99fm

Cross-Site Request Forgery (CSRF) vulnerability in Real Seguro Viagem Real Seguro Viagem allows Stored XSS.This issue affects Real Seguro Viagem: from n/a through 2.0.5.

CVSS3: 7.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-4m69-67m6-prqp

Zebra has block suppression via NU5 same-header body poisoning of sent-hash cache

0%
Низкий
3 месяца назад
github логотип
GHSA-4m68-w7c2-h86j

In the Android kernel in the video driver there is a kernel pointer leak due to a WARN_ON statement. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 2.3
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4m67-hjrm-c762

The WordPress Simple Shopping Cart plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wp_cart_button' and 'wp_cart_display_product' shortcodes in all versions up to, and including, 5.0.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-4m66-r8x2-p4r9

Unknown vulnerability in the Sun Solaris C library (libc and libproject) in Solaris 10 allows local users to gain privileges.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4m66-mfvj-m7h9

Fightersoft Multimedia Star FTP server 1.10 allows remote attackers to cause a denial of service (crash) via multiple RETR commands with long arguments.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4m65-jvh6-7fh3

atalk_create in net/appletalk/ddp.c in the AF_APPLETALK network module in the Linux kernel through 5.3.2 does not enforce CAP_NET_RAW, which means that unprivileged users can create a raw socket, aka CID-6cc03e8aa36c.

CVSS3: 3.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4m65-c7fj-mw98

WWBN AVideo (current e01e41ecc and earlier) contains a brute-force rate limiting bypass in enforceRateLimit(), which protects login.json.php and 13 other endpoints. The function stores its attempt counter via a cache layer (ObjectYPT::setCacheGlobal) that silently discards writes for any client identified as a bot by isBot(). Because isBot() treats a missing User-Agent header as a bot by default — and also matches common bot identifiers such as 'curl', 'bot', 'crawler', and 'spider' — the counter never increments for such clients, so the rate limit never fires. An unauthenticated attacker can therefore submit unlimited login attempts (e.g., by omitting the User-Agent header or using curl's default User-Agent), enabling unrestricted password-guessing attacks.

CVSS3: 7.5
0%
Низкий
18 дней назад
github логотип
GHSA-4m65-9g68-65w5

Memory corruption when IOCTL call is invoked from user-space to write board data to WLAN driver.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-4m65-6q77-h9mp

In DevmemIntChangeSparse2 of devicemem_server.c, there is a possible way to achieve arbitrary code execution due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-4m65-68v8-frj9

Cross-Site Request Forgery (CSRF) vulnerability in ablancodev Woocommerce Role Pricing allows Cross Site Request Forgery. This issue affects Woocommerce Role Pricing: from n/a through 3.5.5.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-4m65-2h49-v4h7

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-0056 and CVE-2015-1623.

16%
Средний
больше 4 лет назад
github логотип
GHSA-4m64-g8r6-3ghw

Longjing Technology BEMS API versions up to and including 1.21 contains an unauthenticated arbitrary file download vulnerability in the 'downloads' endpoint. The 'fileName' parameter is not properly sanitized, allowing attackers to craft traversal sequences and access sensitive files outside the intended directory.

1%
Низкий
10 месяцев назад
github логотип
GHSA-4m64-fp2m-vhfj

Multiple buffer overflows in Trend Micro ServerProtect 5.58 before Security Patch 2- Build 1174 allow remote attackers to execute arbitrary code via a crafted RPC message processed by the (1) the RPCFN_ActiveRollback function in (a) stcommon.dll, or the (2) ENG_SetRealTimeScanConfigInfo or (3) ENG_SendEmail functions in (b) eng50.dll.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-4m64-74mc-www8

A remote code execution vulnerability exists when Active Directory integrated DNS (ADIDNS) mishandles objects in memory, aka 'Active Directory Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0718.

CVSS3: 8.8
4%
Низкий
больше 4 лет назад
github логотип
GHSA-4m64-74hh-f9h2

The Dynamic Widget Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the widget content field in the Gutenberg editor sidebar in all versions up to, and including, 1.3.6 due to insufficient input sanitization and output escaping on user-supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
7 месяцев назад
github логотип
GHSA-4m62-5w64-x54q

Buffer overflow in webfs before 1.17.1 allows remote attackers to execute arbitrary code via an HTTP request with a long Request-URI.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу