Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 371 326

Количество 371 326

github логотип

GHSA-4g38-hrm4-rg94

больше 4 лет назад

Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-4g38-9x5c-pq58

больше 2 лет назад

Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Softing Secure Integration Server. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within libopcuaclient.so. The issue results from hardcoding crytographic keys within the product. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-20610.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-4g38-6846-pr4j

больше 4 лет назад

internal/telephony/SMSDispatcher.java in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism, and send premium SMS messages during the Setup Wizard provisioning stage, via unspecified vectors, aka internal bug 29420123.

CVSS3: 2.1
EPSS: Низкий
github логотип

GHSA-4g38-66f6-62h4

почти 2 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Jean-Marc BIANCA Hotlink2Watermark allows Stored XSS.This issue affects Hotlink2Watermark: from n/a through 0.3.2.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4g37-7p2c-38r9

4 месяца назад

Open WebUI Vulnerable to IDOR: Retrieval API Bypasses Knowledge Base Access Controls

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4g36-rrq2-qqqf

больше 4 лет назад

fits-io.c in GIMP before 2.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed XTENSION header of a .fit file, as demonstrated using a long string.

EPSS: Средний
github логотип

GHSA-4g36-gjmw-42gq

около 1 года назад

A vulnerability was identified in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.4.7. Affected by this issue is some unknown functionality of the file /crm/crmapi/erp/tabdetail_moduleSave.php. The manipulation of the argument getvaluestring leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. Upgrading to version 8.6.5.4 can resolve this issue. The affected component should be upgraded. The vendor explains: "All SQL injection vectors were patched via parameterized queries and input sanitization in v8.6.5+."

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-4g35-r4h2-vfq3

больше 4 лет назад

CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 stores sensitive user information in log files with predictable names, which allows remote attackers to obtain this information via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-4g35-fx39-gwjh

больше 4 лет назад

In QEMU 3.1.0, load_device_tree in device_tree.c calls the deprecated load_image function, which has a buffer overflow risk.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4g33-jqhr-f9vm

около 2 лет назад

bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4g33-jpf7-2g37

около 1 года назад

Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4g33-3743-jf7f

больше 4 лет назад

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

EPSS: Низкий
github логотип

GHSA-4g32-r823-mvhx

больше 4 лет назад

An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in next_string in os/storage/antelope/aql-lexer.c while parsing AQL (parsing next string).

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4g32-c2j9-mx24

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Clean up error handling in vpci_scan_bus() Smatch complains about inconsistent NULL checking in vpci_scan_bus(): drivers/pci/endpoint/functions/pci-epf-vntb.c:1024 vpci_scan_bus() error: we previously assumed 'vpci_bus' could be null (see line 1021) Instead of printing an error message and then crashing we should return an error code and clean up. Also the NULL check is reversed so it prints an error for success instead of failure.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4g32-4h7x-954w

почти 2 года назад

An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellular network by repeatedly initiating connections and sending a crafted payload.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4g2x-vq5p-5vj6

больше 2 лет назад

Budibase affected by VM2 Constructor Escape Vulnerability

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4g2x-v66g-vw9g

больше 4 лет назад

There is a privilege escalation vulnerability in Huawei ManageOne 8.0.0. External parameters of some files are lack of verification when they are be called. Attackers can exploit this vulnerability by performing these files to cause privilege escalation attack. This can compromise normal service.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-4g2x-69fg-5826

9 месяцев назад

Missing Authorization vulnerability in Utarit Informatics Services Inc. SoliClub allows Privilege Abuse.This issue affects SoliClub: before 5.3.7.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4g2w-rjr9-jccg

больше 2 лет назад

D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_42AF30(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4g2w-mjfj-p2m9

больше 4 лет назад

An issue was discovered in SugarCRM before 7.7.2.3, 7.8.x before 7.8.2.2, and 7.9.x before 7.9.2.0 (and Sugar Community Edition 6.5.26). A remote file inclusion has been identified in the Connectors module allowing authenticated users to include remotely accessible system files via a module=CallRest&url= query string. Proper input validation has been added to mitigate this issue.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4g38-hrm4-rg94

Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins

CVSS3: 9
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4g38-9x5c-pq58

Softing Secure Integration Server Hardcoded Cryptographic Key Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Softing Secure Integration Server. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within libopcuaclient.so. The issue results from hardcoding crytographic keys within the product. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-20610.

CVSS3: 4.9
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4g38-6846-pr4j

internal/telephony/SMSDispatcher.java in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism, and send premium SMS messages during the Setup Wizard provisioning stage, via unspecified vectors, aka internal bug 29420123.

CVSS3: 2.1
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4g38-66f6-62h4

Cross-Site Request Forgery (CSRF) vulnerability in Jean-Marc BIANCA Hotlink2Watermark allows Stored XSS.This issue affects Hotlink2Watermark: from n/a through 0.3.2.

CVSS3: 7.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-4g37-7p2c-38r9

Open WebUI Vulnerable to IDOR: Retrieval API Bypasses Knowledge Base Access Controls

CVSS3: 7.5
0%
Низкий
4 месяца назад
github логотип
GHSA-4g36-rrq2-qqqf

fits-io.c in GIMP before 2.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed XTENSION header of a .fit file, as demonstrated using a long string.

11%
Средний
больше 4 лет назад
github логотип
GHSA-4g36-gjmw-42gq

A vulnerability was identified in Shanghai Lingdang Information Technology Lingdang CRM up to 8.6.4.7. Affected by this issue is some unknown functionality of the file /crm/crmapi/erp/tabdetail_moduleSave.php. The manipulation of the argument getvaluestring leads to sql injection. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. Upgrading to version 8.6.5.4 can resolve this issue. The affected component should be upgraded. The vendor explains: "All SQL injection vectors were patched via parameterized queries and input sanitization in v8.6.5+."

CVSS3: 6.3
0%
Низкий
около 1 года назад
github логотип
GHSA-4g35-r4h2-vfq3

CA (formerly Computer Associates) eTrust ITM (Threat Manager) 8.1 stores sensitive user information in log files with predictable names, which allows remote attackers to obtain this information via unspecified vectors.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4g35-fx39-gwjh

In QEMU 3.1.0, load_device_tree in device_tree.c calls the deprecated load_image function, which has a buffer overflow risk.

CVSS3: 9.8
4%
Низкий
больше 4 лет назад
github логотип
GHSA-4g33-jqhr-f9vm

bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php

CVSS3: 6.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-4g33-jpf7-2g37

Use after free in Desktop Windows Manager allows an authorized attacker to execute code locally.

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-4g33-3743-jf7f

Unspecified vulnerability in the Java Runtime Environment component in Oracle Java SE JDK and JRE 7, 6 Update 27 and earlier, 5.0 Update 31 and earlier, and 1.4.2_33 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality and integrity, related to JSSE.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4g32-r823-mvhx

An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in next_string in os/storage/antelope/aql-lexer.c while parsing AQL (parsing next string).

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4g32-c2j9-mx24

In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Clean up error handling in vpci_scan_bus() Smatch complains about inconsistent NULL checking in vpci_scan_bus(): drivers/pci/endpoint/functions/pci-epf-vntb.c:1024 vpci_scan_bus() error: we previously assumed 'vpci_bus' could be null (see line 1021) Instead of printing an error message and then crashing we should return an error code and clean up. Also the NULL check is reversed so it prints an error for success instead of failure.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-4g32-4h7x-954w

An invalid memory access when handling the ProtocolIE_ID field of S1Setup Request messages in Athonet vEPC MME v11.4.0 allows attackers to cause a Denial of Service (DoS) to the cellular network by repeatedly initiating connections and sending a crafted payload.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-4g2x-vq5p-5vj6

Budibase affected by VM2 Constructor Escape Vulnerability

CVSS3: 9.8
больше 2 лет назад
github логотип
GHSA-4g2x-v66g-vw9g

There is a privilege escalation vulnerability in Huawei ManageOne 8.0.0. External parameters of some files are lack of verification when they are be called. Attackers can exploit this vulnerability by performing these files to cause privilege escalation attack. This can compromise normal service.

CVSS3: 6.7
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4g2x-69fg-5826

Missing Authorization vulnerability in Utarit Informatics Services Inc. SoliClub allows Privilege Abuse.This issue affects SoliClub: before 5.3.7.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
github логотип
GHSA-4g2w-rjr9-jccg

D-Link DIR-823G A1V1.0.2B05 was discovered to contain Null-pointer dereferences in sub_42AF30(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4g2w-mjfj-p2m9

An issue was discovered in SugarCRM before 7.7.2.3, 7.8.x before 7.8.2.2, and 7.9.x before 7.9.2.0 (and Sugar Community Edition 6.5.26). A remote file inclusion has been identified in the Connectors module allowing authenticated users to include remotely accessible system files via a module=CallRest&url= query string. Proper input validation has been added to mitigate this issue.

CVSS3: 8.8
6%
Низкий
больше 4 лет назад

Уязвимостей на страницу