Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 528

Количество 373 528

github логотип

GHSA-4jjv-vvhg-7rw8

8 месяцев назад

Missing Authorization vulnerability in ThemeHunk Oneline Lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Oneline Lite: from n/a through 6.6.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4jjv-p8x9-rrf7

около 3 лет назад

Joplin Cross-site Scripting vulnerability

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4jjv-8wpj-wqfg

12 месяцев назад

A vulnerability has been found in Frappe LMS 2.35.0. The affected element is an unknown function of the file /courses/ of the component Unpublished Course Handler. Such manipulation leads to improper access controls. The attack may be launched remotely. This attack is characterized by high complexity. The exploitability is described as difficult. The exploit has been disclosed to the public and may be used. You should upgrade the affected component. The vendor was informed early about a total of four security issues and confirmed that those have been fixed. However, the release notes on GitHub do not mention them.

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-4jjv-8vv6-97v7

больше 4 лет назад

3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie that contains the data.

EPSS: Низкий
github логотип

GHSA-4jjv-8qvw-5jwv

12 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in matthewordie Buckets allows Stored XSS. This issue affects Buckets: from n/a through 0.3.9.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4jjr-vmv7-wh4w

5 месяцев назад

Statamic: Unsafe method invocation via query value resolution allows data destruction

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-4jjr-vcx2-hq8w

больше 4 лет назад

Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-4jjr-c27v-p3c2

20 дней назад

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect AI Key to escalate privileges on the device.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4jjr-44rf-xh3q

больше 4 лет назад

SQL injection vulnerability in the web-based administration interface for iisPROTECT 2.2-r4, and possibly earlier versions, allows remote attackers to insert arbitrary SQL and execute code via certain variables, as demonstrated using the GroupName variable in SiteAdmin.ASP.

EPSS: Низкий
github логотип

GHSA-4jjq-qv32-3hvj

больше 2 лет назад

D-Link DIR-2150 SetSysEmailSettings AccountName Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-2150 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the SOAP API interface, which listens on TCP port 80 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-20555.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-4jjq-9h58-5wmm

около 1 месяца назад

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved amdgpu_bo_create_reserved() only allocates a new BO when *bo_ptr (struct amdgpu_bo **bo_ptr as input parameter) is NULL, it simply skips creation when *bo_ptr is non-NULL. But it unconditionally reserves, pins, gart allocates and maps the BO afterwards. When the same non-NULL BO pointer is passed in again, for example firmware buffers that live in adev and are re-loaded on every resume / cp_resume / start under AMDGPU_FW_LOAD_DIRECT, amdgpu_bo_pin() just increases pin_count unconditionally, however the matching teardown only unpins once, so pin_count never drops to zero, so TTM is not able to move, swap or evict a BO, causing BO leaks. This commit fixes this issue by only pinning the bo once at creation, and repeated calls no longer take additional pin references. (cherry picked from commit 3ddc0ae76202c447b6aec61e907b852bc94671cf)

EPSS: Низкий
github логотип

GHSA-4jjm-xjpc-v5gr

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VW THEMES Ibtana allows Stored XSS. This issue affects Ibtana: from n/a through 1.2.4.9.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4jjj-r6hx-hx6f

больше 2 лет назад

A SQL injection vulnerability in Cybrosys Techno Solutions Text Commander module (aka text_commander) 16.0 through 16.0.1 allows a remote attacker to gain privileges via the data parameter to models/ir_model.py:IrModel::chech_model.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-4jjj-cm7q-v6hr

больше 4 лет назад

Jenkins Diagnostic page exposed session cookies

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4jjj-95ch-f8xm

почти 3 года назад

A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14. Safari may save photos to an unprotected location.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4jjh-vjvp-6gvg

больше 4 лет назад

Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCS605, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24, SM7150

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4jjh-fj8q-cr9r

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in index.php in sabros.us 1.7 allows remote attackers to inject arbitrary web script or HTML via the tag parameter.

EPSS: Низкий
github логотип

GHSA-4jjg-vcj3-q93v

больше 1 года назад

An XSS issue was discovered in the Bootstrap 5 Lite theme before 1.x-1.0.3 for Backdrop CMS. It doesn't sufficiently sanitize certain class names.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4jjf-h6wf-mjxc

больше 4 лет назад

SQL injection vulnerability in categories-x.php in WebTitan before 4.04 allows remote attackers to execute arbitrary SQL commands via the sortkey parameter.

EPSS: Низкий
github логотип

GHSA-4jjc-w6j6-3589

больше 4 лет назад

An issue was discovered in PHP Scripts Mall API Based Travel Booking 3.4.7. There is Reflected XSS via the flight-results.php d2 parameter.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4jjv-vvhg-7rw8

Missing Authorization vulnerability in ThemeHunk Oneline Lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Oneline Lite: from n/a through 6.6.

CVSS3: 4.3
0%
Низкий
8 месяцев назад
github логотип
GHSA-4jjv-p8x9-rrf7

Joplin Cross-site Scripting vulnerability

CVSS3: 6.1
1%
Низкий
около 3 лет назад
github логотип
GHSA-4jjv-8wpj-wqfg

A vulnerability has been found in Frappe LMS 2.35.0. The affected element is an unknown function of the file /courses/ of the component Unpublished Course Handler. Such manipulation leads to improper access controls. The attack may be launched remotely. This attack is characterized by high complexity. The exploitability is described as difficult. The exploit has been disclosed to the public and may be used. You should upgrade the affected component. The vendor was informed early about a total of four security issues and confirmed that those have been fixed. However, the release notes on GitHub do not mention them.

CVSS3: 5
0%
Низкий
12 месяцев назад
github логотип
GHSA-4jjv-8vv6-97v7

3D3.Com ShopFactory 5.8 uses client-side encryption and decryption for sensitive price data, which allows remote attackers to modify shopping cart prices by using the Javascript to decrypt the cookie that contains the data.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjv-8qvw-5jwv

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in matthewordie Buckets allows Stored XSS. This issue affects Buckets: from n/a through 0.3.9.

CVSS3: 6.5
0%
Низкий
12 месяцев назад
github логотип
GHSA-4jjr-vmv7-wh4w

Statamic: Unsafe method invocation via query value resolution allows data destruction

CVSS3: 8.1
0%
Низкий
5 месяцев назад
github логотип
GHSA-4jjr-vcx2-hq8w

Cross-site scripting vulnerability in Yomi-Search Ver4.22 allows remote attackers to inject an arbitrary script via unspecified vectors.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjr-c27v-p3c2

A malicious actor with access to the network could exploit an Improper Access Control vulnerability found in UniFi Protect AI Key to escalate privileges on the device.

CVSS3: 9.8
0%
Низкий
20 дней назад
github логотип
GHSA-4jjr-44rf-xh3q

SQL injection vulnerability in the web-based administration interface for iisPROTECT 2.2-r4, and possibly earlier versions, allows remote attackers to insert arbitrary SQL and execute code via certain variables, as demonstrated using the GroupName variable in SiteAdmin.ASP.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjq-qv32-3hvj

D-Link DIR-2150 SetSysEmailSettings AccountName Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DIR-2150 routers. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the SOAP API interface, which listens on TCP port 80 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-20555.

CVSS3: 6.8
2%
Низкий
больше 2 лет назад
github логотип
GHSA-4jjq-9h58-5wmm

In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: fix bo->pin leaking in amdgpu_bo_create_reserved amdgpu_bo_create_reserved() only allocates a new BO when *bo_ptr (struct amdgpu_bo **bo_ptr as input parameter) is NULL, it simply skips creation when *bo_ptr is non-NULL. But it unconditionally reserves, pins, gart allocates and maps the BO afterwards. When the same non-NULL BO pointer is passed in again, for example firmware buffers that live in adev and are re-loaded on every resume / cp_resume / start under AMDGPU_FW_LOAD_DIRECT, amdgpu_bo_pin() just increases pin_count unconditionally, however the matching teardown only unpins once, so pin_count never drops to zero, so TTM is not able to move, swap or evict a BO, causing BO leaks. This commit fixes this issue by only pinning the bo once at creation, and repeated calls no longer take additional pin references. (cherry picked from commit 3ddc0ae76202c447b6aec61e907b852bc94671cf)

0%
Низкий
около 1 месяца назад
github логотип
GHSA-4jjm-xjpc-v5gr

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in VW THEMES Ibtana allows Stored XSS. This issue affects Ibtana: from n/a through 1.2.4.9.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-4jjj-r6hx-hx6f

A SQL injection vulnerability in Cybrosys Techno Solutions Text Commander module (aka text_commander) 16.0 through 16.0.1 allows a remote attacker to gain privileges via the data parameter to models/ir_model.py:IrModel::chech_model.

CVSS3: 7.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4jjj-cm7q-v6hr

Jenkins Diagnostic page exposed session cookies

CVSS3: 5.4
7%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjj-95ch-f8xm

A privacy issue was addressed with improved handling of temporary files. This issue is fixed in macOS Sonoma 14. Safari may save photos to an unprotected location.

CVSS3: 4.3
1%
Низкий
почти 3 года назад
github логотип
GHSA-4jjh-vjvp-6gvg

Improper buffer length validation in WLAN function can lead to a potential integer oveflow issue in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8996AU, QCA6174A, QCA6574AU, QCA9377, QCA9379, QCS605, SD 210/SD 212/SD 205, SD 425, SD 427, SD 430, SD 435, SD 450, SD 625, SD 636, SD 675, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM630, SDM660, SDX20, SDX24, SM7150

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjh-fj8q-cr9r

Cross-site scripting (XSS) vulnerability in index.php in sabros.us 1.7 allows remote attackers to inject arbitrary web script or HTML via the tag parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjg-vcj3-q93v

An XSS issue was discovered in the Bootstrap 5 Lite theme before 1.x-1.0.3 for Backdrop CMS. It doesn't sufficiently sanitize certain class names.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-4jjf-h6wf-mjxc

SQL injection vulnerability in categories-x.php in WebTitan before 4.04 allows remote attackers to execute arbitrary SQL commands via the sortkey parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4jjc-w6j6-3589

An issue was discovered in PHP Scripts Mall API Based Travel Booking 3.4.7. There is Reflected XSS via the flight-results.php d2 parameter.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу