Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 371 326

Количество 371 326

github логотип

GHSA-4g27-gq63-x5mg

больше 4 лет назад

Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."

EPSS: Средний
github логотип

GHSA-4g27-cp2v-vp66

больше 4 лет назад

Stack-based buffer overflow in gif2png.c in gif2png 2.5.3 and earlier might allow context-dependent attackers to execute arbitrary code via a long command-line argument, as demonstrated by a CGI program that launches gif2png.

EPSS: Средний
github логотип

GHSA-4g26-v2fv-8g5f

больше 4 лет назад

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

EPSS: Средний
github логотип

GHSA-4g26-8h9j-xwx7

около 1 года назад

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4g26-4jfh-95vh

больше 4 лет назад

Double free vulnerability in the WebSocket Server (res_http_websocket module) in Asterisk Open Source 11.x before 11.14.2, 12.x before 12.7.2, and 13.x before 13.0.2 and Certified Asterisk 11.6 before 11.6-cert9 allows remote attackers to cause a denial of service (crash) by sending a zero length frame after a non-zero length frame.

EPSS: Низкий
github логотип

GHSA-4g25-xq6q-97c2

около 2 месяцев назад

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle Coherence executes to compromise Oracle Coherence. Successful attacks of this vulnerability can result in takeover of Oracle Coherence. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4g25-x5x5-56gr

больше 4 лет назад

An information disclosure vulnerability in the Qualcomm power driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data without explicit user permission. Product: Android. Versions: Kernel-3.10. Android ID: A-33745862. References: QC-CR#1035099.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4g25-wj72-chxg

10 месяцев назад

Snipe-IT allows stored XSS via the Locations "Country" field

EPSS: Низкий
github логотип

GHSA-4g25-v4mv-2xm5

больше 2 лет назад

An arbitrary file upload vulnerability in the nccloud.web.arcp.taskmonitor.action.ArcpUploadAction.doAction() method of YonBIP v3_23.05 allows attackers to execute arbitrary code via uploading a crafted file.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4g25-3f9h-78mq

больше 4 лет назад

Vulnerability in the Oracle API Gateway component of Oracle Fusion Middleware (subcomponent: Oracle API Gateway). The supported version that is affected is 11.1.2.4.0. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle API Gateway. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle API Gateway accessible data as well as unauthorized access to critical data or complete access to all Oracle API Gateway accessible data. CVSS 3.0 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N).

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-4g24-qfvp-36w8

больше 3 лет назад

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-4g23-p4cm-hwrj

больше 4 лет назад

IBM Security Verify Access Docker 10.0.0 could allow a remote priviled user to upload arbitrary files with a dangerous file type that could be excuted by an user. IBM X-Force ID: 200600.

EPSS: Низкий
github логотип

GHSA-4g23-3mc5-9qf9

больше 4 лет назад

An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter of various sections of the server.

EPSS: Низкий
github логотип

GHSA-4g22-x6m7-r675

больше 2 лет назад

In deletefiles in FDUPES before 2.2.0, a TOCTOU race condition allows arbitrary file deletion via a symlink.

CVSS3: 6
EPSS: Низкий
github логотип

GHSA-4fxx-xm73-m54q

больше 4 лет назад

cPanel before 57.9999.54 allows SQL Injection via the ModSecurity TailWatch log file (SEC-123).

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4fxx-ppqm-m98c

больше 2 лет назад

Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4fxx-mff3-3wwr

больше 4 лет назад

A vulnerability in the Transport Layer Security version 1.3 (TLS 1.3) policy with URL category functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured TLS 1.3 policy to block traffic for a specific URL. The vulnerability is due to a logic error with Snort handling of the connection with the TLS 1.3 policy and URL category configuration. An attacker could exploit this vulnerability by sending crafted TLS 1.3 connections to an affected device. A successful exploit could allow the attacker to bypass the TLS 1.3 policy and access URLs that are outside the affected device and normally would be dropped.

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-4fxx-87cc-j976

больше 4 лет назад

On version 14.0.0-14.1.0.1, BIG-IP virtual servers with TLSv1.3 enabled may experience a denial of service due to undisclosed incoming messages.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4fxw-r56f-g632

больше 4 лет назад

Redmine before 4.0.7 and 4.1.x before 4.1.1 has XSS via the back_url field.

EPSS: Низкий
github логотип

GHSA-4fxw-g29w-r8mx

больше 4 лет назад

Apache Solr Cross-site scripting Vulnerability

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4g27-gq63-x5mg

Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."

11%
Средний
больше 4 лет назад
github логотип
GHSA-4g27-cp2v-vp66

Stack-based buffer overflow in gif2png.c in gif2png 2.5.3 and earlier might allow context-dependent attackers to execute arbitrary code via a long command-line argument, as demonstrated by a CGI program that launches gif2png.

11%
Средний
больше 4 лет назад
github логотип
GHSA-4g26-v2fv-8g5f

Buffer overflow in curl earlier than 6.0-1.1, and curl-ssl earlier than 6.0-1.2, allows remote attackers to execute arbitrary commands by forcing a long error message to be generated.

18%
Средний
больше 4 лет назад
github логотип
GHSA-4g26-8h9j-xwx7

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVSS3: 7.8
1%
Низкий
около 1 года назад
github логотип
GHSA-4g26-4jfh-95vh

Double free vulnerability in the WebSocket Server (res_http_websocket module) in Asterisk Open Source 11.x before 11.14.2, 12.x before 12.7.2, and 13.x before 13.0.2 and Certified Asterisk 11.6 before 11.6-cert9 allows remote attackers to cause a denial of service (crash) by sending a zero length frame after a non-zero length frame.

10%
Низкий
больше 4 лет назад
github логотип
GHSA-4g25-xq6q-97c2

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with access to the physical communication segment attached to the hardware where the Oracle Coherence executes to compromise Oracle Coherence. Successful attacks of this vulnerability can result in takeover of Oracle Coherence. CVSS 3.1 Base Score 8.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-4g25-x5x5-56gr

An information disclosure vulnerability in the Qualcomm power driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as High because it could be used to access sensitive data without explicit user permission. Product: Android. Versions: Kernel-3.10. Android ID: A-33745862. References: QC-CR#1035099.

CVSS3: 5.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4g25-wj72-chxg

Snipe-IT allows stored XSS via the Locations "Country" field

0%
Низкий
10 месяцев назад
github логотип
GHSA-4g25-v4mv-2xm5

An arbitrary file upload vulnerability in the nccloud.web.arcp.taskmonitor.action.ArcpUploadAction.doAction() method of YonBIP v3_23.05 allows attackers to execute arbitrary code via uploading a crafted file.

CVSS3: 9.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4g25-3f9h-78mq

Vulnerability in the Oracle API Gateway component of Oracle Fusion Middleware (subcomponent: Oracle API Gateway). The supported version that is affected is 11.1.2.4.0. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle API Gateway. Successful attacks require human interaction from a person other than the attacker. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle API Gateway accessible data as well as unauthorized access to critical data or complete access to all Oracle API Gateway accessible data. CVSS 3.0 Base Score 8.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N).

CVSS3: 8.1
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4g24-qfvp-36w8

Microsoft Exchange Server Remote Code Execution Vulnerability

CVSS3: 8.8
82%
Высокий
больше 3 лет назад
github логотип
GHSA-4g23-p4cm-hwrj

IBM Security Verify Access Docker 10.0.0 could allow a remote priviled user to upload arbitrary files with a dangerous file type that could be excuted by an user. IBM X-Force ID: 200600.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4g23-3mc5-9qf9

An improper neutralization of input vulnerability [CWE-79] in FortiClientEMS versions 6.4.1 and below and 6.2.9 and below may allow a remote authenticated attacker to inject malicious script/tags via the name parameter of various sections of the server.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4g22-x6m7-r675

In deletefiles in FDUPES before 2.2.0, a TOCTOU race condition allows arbitrary file deletion via a symlink.

CVSS3: 6
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4fxx-xm73-m54q

cPanel before 57.9999.54 allows SQL Injection via the ModSecurity TailWatch log file (SEC-123).

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4fxx-ppqm-m98c

Adobe Commerce versions 2.4.6-p3, 2.4.5-p5, 2.4.4-p6 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4fxx-mff3-3wwr

A vulnerability in the Transport Layer Security version 1.3 (TLS 1.3) policy with URL category functionality for Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to bypass a configured TLS 1.3 policy to block traffic for a specific URL. The vulnerability is due to a logic error with Snort handling of the connection with the TLS 1.3 policy and URL category configuration. An attacker could exploit this vulnerability by sending crafted TLS 1.3 connections to an affected device. A successful exploit could allow the attacker to bypass the TLS 1.3 policy and access URLs that are outside the affected device and normally would be dropped.

CVSS3: 5.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4fxx-87cc-j976

On version 14.0.0-14.1.0.1, BIG-IP virtual servers with TLSv1.3 enabled may experience a denial of service due to undisclosed incoming messages.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4fxw-r56f-g632

Redmine before 4.0.7 and 4.1.x before 4.1.1 has XSS via the back_url field.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4fxw-g29w-r8mx

Apache Solr Cross-site scripting Vulnerability

CVSS3: 6.1
3%
Низкий
больше 4 лет назад

Уязвимостей на страницу