Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 371 326

Количество 371 326

github логотип

GHSA-4gcj-p86p-q3c8

около 1 года назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in mojoomla WPGYM allows PHP Local File Inclusion. This issue affects WPGYM: from n/a through 65.0.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4gcj-jpgr-v4r6

больше 4 лет назад

Fuji Xerox DocuCentre-V 3065, ApeosPort-VI C3371, ApeosPort-V C4475, ApeosPort-V C3375, DocuCentre-VI C2271, ApeosPort-V C5576, DocuCentre-IV C2263, DocuCentre-V C2263, and ApeosPort-V 5070 devices allow remote attackers to read or write to files via crafted PJL commands.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4gcj-88v3-j4mm

больше 2 лет назад

An integer overflow was addressed through improved input validation. This issue is fixed in tvOS 16.4, macOS Big Sur 11.7.5, iOS 16.4 and iPadOS 16.4, watchOS 9.4, macOS Monterey 12.6.4, iOS 15.7.4 and iPadOS 15.7.4. An app may be able to cause a denial-of-service.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4gcj-76mq-3ffx

больше 4 лет назад

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley ContextCapture 10.18.0.232. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OBJ files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-14784.

EPSS: Низкий
github логотип

GHSA-4gcg-jv45-v47x

4 месяца назад

Wellbia's XIGNCODE3 xhunter1.sys kernel driver Privilege Escalation Vulnerability provides access to IRP_MJ_REITS command interface, which allows any user process to request a PROCESS_ALL_ACCESS. Cross reference to KVE 2023-5589 (https://krcert.or.kr)

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4gcg-395p-mg6g

около 1 месяца назад

Documize Community's attachment download route (domain/attachment/endpoint.go, Download function, registered via AddPublic with no auth middleware) accepts a `secure` query parameter and grants access whenever the parameter is simply non-empty (len(secureToken) > 0), without comparing it to any server-stored value. Any non-empty string, such as ?secure=x, bypasses authentication entirely and allows downloading any organization's attachments. Sibling handlers in the same file (togglePublish, delete) correctly enforce session-based authorization, confirming this is an inconsistency rather than intended design.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4gcf-xhrj-g4gq

11 месяцев назад

An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may allow a local low privileged user to perform a DLL hijacking attack via placing a malicious DLL to the FortiClient Online Installer installation folder.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-4gcf-5m39-98mc

около 3 лет назад

Woodpecker does not validate webhook before changing any data

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-4gcf-523q-9gmp

больше 3 лет назад

MGT-COMMERCE CloudPanel ships with a static SSL certificate to encrypt communications to the administrative interface, shared across every installation of CloudPanel. This behavior was observed in version 2.2.0. There has been no indication from the vendor this has been addressed in version 2.2.1.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-4gcc-rqqq-58jp

2 месяца назад

Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a Heap Use After Free, due to CommonMakeCurrent() pointing into potentially reallocated memory.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4gcc-jvgj-8cfh

больше 2 лет назад

IIBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 270264.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4gcc-6h9r-9fjh

около 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Shiful H SS Font Awesome Icon allows Stored XSS. This issue affects SS Font Awesome Icon: from n/a through 4.1.3.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4gcc-5wr8-pxrj

больше 4 лет назад

An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Client-side authentication is used for critical functions such as adding users or retrieving sensitive information.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-4gc9-p44x-vcgg

больше 4 лет назад

Philips Interventional Workspot (Release 1.3.2, 1.4.0, 1.4.1, 1.4.3, 1.4.5), Coronary Tools/Dynamic Coronary Roadmap/Stentboost Live (Release 1.0), ViewForum (Release 6.3V1L10). The software constructs all or part of an OS command using externally influenced input from an upstream component but does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when sent to a downstream component.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4gc9-mgw3-mmqm

больше 4 лет назад

In wl_get_assoc_ies of wl_cfg80211.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-70722061. References: B-V2018010201.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4gc8-p5p2-ww5g

около 2 лет назад

The vCenter Server contains a denial-of-service vulnerability. A malicious actor with network access to vCenter Server may create a denial-of-service condition.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4gc8-mmm3-6xff

почти 2 года назад

Uncontrolled Search Path Element vulnerability in ICONICS GENESIS64 all versions, Mitsubishi Electric GENESIS64 all versions and Mitsubishi Electric MC Works64 all versions allows a local authenticated attacker to execute a malicious code by storing a specially crafted DLL in a specific folder. This could lead to disclose, tamper with, destroy, or delete information in the affected products, or cause a denial of service (DoS) condition on the products.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4gc8-mc9c-c46r

3 месяца назад

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.  This information could be used in further attacks against the system.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4gc8-g785-gxxw

больше 2 лет назад

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pepro Dev. Group PeproDev Ultimate Invoice.This issue affects PeproDev Ultimate Invoice: from n/a through 1.9.7.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4gc8-7wjc-fq65

больше 4 лет назад

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.6. An application may be able to read restricted memory.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4gcj-p86p-q3c8

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in mojoomla WPGYM allows PHP Local File Inclusion. This issue affects WPGYM: from n/a through 65.0.

CVSS3: 7.5
1%
Низкий
около 1 года назад
github логотип
GHSA-4gcj-jpgr-v4r6

Fuji Xerox DocuCentre-V 3065, ApeosPort-VI C3371, ApeosPort-V C4475, ApeosPort-V C3375, DocuCentre-VI C2271, ApeosPort-V C5576, DocuCentre-IV C2263, DocuCentre-V C2263, and ApeosPort-V 5070 devices allow remote attackers to read or write to files via crafted PJL commands.

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4gcj-88v3-j4mm

An integer overflow was addressed through improved input validation. This issue is fixed in tvOS 16.4, macOS Big Sur 11.7.5, iOS 16.4 and iPadOS 16.4, watchOS 9.4, macOS Monterey 12.6.4, iOS 15.7.4 and iPadOS 15.7.4. An app may be able to cause a denial-of-service.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4gcj-76mq-3ffx

This vulnerability allows remote attackers to disclose sensitive information on affected installations of Bentley ContextCapture 10.18.0.232. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of OBJ files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-14784.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4gcg-jv45-v47x

Wellbia's XIGNCODE3 xhunter1.sys kernel driver Privilege Escalation Vulnerability provides access to IRP_MJ_REITS command interface, which allows any user process to request a PROCESS_ALL_ACCESS. Cross reference to KVE 2023-5589 (https://krcert.or.kr)

CVSS3: 7.8
0%
Низкий
4 месяца назад
github логотип
GHSA-4gcg-395p-mg6g

Documize Community's attachment download route (domain/attachment/endpoint.go, Download function, registered via AddPublic with no auth middleware) accepts a `secure` query parameter and grants access whenever the parameter is simply non-empty (len(secureToken) > 0), without comparing it to any server-stored value. Any non-empty string, such as ?secure=x, bypasses authentication entirely and allows downloading any organization's attachments. Sibling handlers in the same file (togglePublish, delete) correctly enforce session-based authorization, confirming this is an inconsistency rather than intended design.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-4gcf-xhrj-g4gq

An Uncontrolled Search Path Element vulnerability [CWE-427] in FortiClient Windows 7.4.0 through 7.4.3, 7.2.0 through 7.2.11, 7.0 all versions may allow a local low privileged user to perform a DLL hijacking attack via placing a malicious DLL to the FortiClient Online Installer installation folder.

CVSS3: 6.7
0%
Низкий
11 месяцев назад
github логотип
GHSA-4gcf-5m39-98mc

Woodpecker does not validate webhook before changing any data

CVSS3: 8.1
1%
Низкий
около 3 лет назад
github логотип
GHSA-4gcf-523q-9gmp

MGT-COMMERCE CloudPanel ships with a static SSL certificate to encrypt communications to the administrative interface, shared across every installation of CloudPanel. This behavior was observed in version 2.2.0. There has been no indication from the vendor this has been addressed in version 2.2.1.

CVSS3: 8.1
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4gcc-rqqq-58jp

Local attackers with a X connection able to provide GLX commit to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a Heap Use After Free, due to CommonMakeCurrent() pointing into potentially reallocated memory.

CVSS3: 7.8
0%
Низкий
2 месяца назад
github логотип
GHSA-4gcc-jvgj-8cfh

IIBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.5 could allow an authenticated user with CONNECT privileges to cause a denial of service using a specially crafted query. IBM X-Force ID: 270264.

CVSS3: 5.3
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4gcc-6h9r-9fjh

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Shiful H SS Font Awesome Icon allows Stored XSS. This issue affects SS Font Awesome Icon: from n/a through 4.1.3.

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-4gcc-5wr8-pxrj

An issue was discovered in Hyland OnBase through 18.0.0.32 and 19.x through 19.8.9.1000. Client-side authentication is used for critical functions such as adding users or retrieving sensitive information.

CVSS3: 9.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4gc9-p44x-vcgg

Philips Interventional Workspot (Release 1.3.2, 1.4.0, 1.4.1, 1.4.3, 1.4.5), Coronary Tools/Dynamic Coronary Roadmap/Stentboost Live (Release 1.0), ViewForum (Release 6.3V1L10). The software constructs all or part of an OS command using externally influenced input from an upstream component but does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when sent to a downstream component.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4gc9-mgw3-mmqm

In wl_get_assoc_ies of wl_cfg80211.c, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-70722061. References: B-V2018010201.

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4gc8-p5p2-ww5g

The vCenter Server contains a denial-of-service vulnerability. A malicious actor with network access to vCenter Server may create a denial-of-service condition.

CVSS3: 5.3
1%
Низкий
около 2 лет назад
github логотип
GHSA-4gc8-mmm3-6xff

Uncontrolled Search Path Element vulnerability in ICONICS GENESIS64 all versions, Mitsubishi Electric GENESIS64 all versions and Mitsubishi Electric MC Works64 all versions allows a local authenticated attacker to execute a malicious code by storing a specially crafted DLL in a specific folder. This could lead to disclose, tamper with, destroy, or delete information in the affected products, or cause a denial of service (DoS) condition on the products.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-4gc8-mc9c-c46r

IBM watsonx.data intelligence 5.2.0, 5.2.1, 5.2.2, 5.3.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser.  This information could be used in further attacks against the system.

CVSS3: 4.3
0%
Низкий
3 месяца назад
github логотип
GHSA-4gc8-g785-gxxw

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Pepro Dev. Group PeproDev Ultimate Invoice.This issue affects PeproDev Ultimate Invoice: from n/a through 1.9.7.

CVSS3: 5.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4gc8-7wjc-fq65

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Mojave 10.14.6. An application may be able to read restricted memory.

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу