Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 914

Количество 370 914

github логотип

GHSA-4cf4-xjp3-c6w3

больше 4 лет назад

SceneKit in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.

EPSS: Средний
github логотип

GHSA-4cf4-jjh2-3m84

11 месяцев назад

Incorrect access control in the kernel driver of ThreatFire System Monitor v4.7.0.53 allows attackers to escalate privileges and execute arbitrary commands via an insecure IOCTL.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4cf4-hqwp-cpp8

почти 4 года назад

LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit cfbb883b.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4cf2-m45x-5phh

больше 4 лет назад

HPE System Management Homepage before 7.5.4 allows local users to obtain sensitive information or modify data via unspecified vectors.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-4cf2-cxp3-rjr7

почти 2 года назад

HAPI FHIR XML External Entity (XXE) vulnerability

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4ccx-wjqp-5fww

больше 4 лет назад

LibreNMS Arbitrary File Read

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-4ccx-cx54-2vfq

больше 4 лет назад

Pitchfork version 1.4.6 RC1 contains an Improper Privilege Management vulnerability in Trident Pitchfork components that can result in A standard unprivileged user could gain system administrator permissions within the web portal.. This attack appear to be exploitable via The user must be able to login, and could edit their profile and set the "System Administrator" permission to "yes" on themselves.. This vulnerability appears to have been fixed in 1.4.6 RC2.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4ccx-55gp-x5qq

почти 2 года назад

: Path Traversal: '.../...//' vulnerability in CYAN Backup allows Path Traversal.This issue affects CYAN Backup: from n/a through 2.5.3.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-4ccv-vmjr-rffr

около 1 года назад

Missing authorization in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure before 22.7R1.6, Ivanti ZTA Gateway before 22.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a remote authenticated attacker with read-only admin privileges to configure restricted settings.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4ccv-pj8j-48ph

больше 4 лет назад

In Nagios XI 5.6.9, an authenticated user is able to execute arbitrary OS commands via shell metacharacters in the id parameter to schedulereport.php, in the context of the web-server user account.

EPSS: Средний
github логотип

GHSA-4ccv-9mm9-gw75

больше 4 лет назад

The skype_tool.copy_num method in the Skype extension BETA 2.2.0.95 for Firefox allows remote attackers to write arbitrary data to the clipboard via a string argument.

EPSS: Низкий
github логотип

GHSA-4ccr-c6hg-r7x3

больше 4 лет назад

An integer overflow was addressed through improved input validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-005 Mojave, Security Update 2021-004 Catalina. Processing a maliciously crafted font file may lead to arbitrary code execution.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4ccq-6mpg-3gmq

больше 4 лет назад

An issue was discovered on TP-Link TL-WR1043ND V2 devices. An attacker can send a cookie in an HTTP authentication packet to the router management web interface, and fully control the router without knowledge of the credentials.

EPSS: Средний
github логотип

GHSA-4ccp-hqgq-7v89

больше 4 лет назад

Unspecified vulnerability in the Application Performance Management component in Oracle Enterprise Manager Grid Control before 12.1.0.6.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to End User Experience Management.

EPSS: Низкий
github логотип

GHSA-4ccp-g444-f9q7

больше 4 лет назад

Information disclosure vulnerability in Microsoft Windows 2000 telnet service allows remote attackers to determine the existence of user accounts such as Guest, or log in to the server without specifying the domain name, via a malformed userid.

EPSS: Средний
github логотип

GHSA-4ccp-cqrh-3w9v

4 месяца назад

A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents on affected installations. This vulnerability is only exploitable on the on-premise version of Apex One and a potential attacker must have access to the Apex One Server and already obtained administrative credentials to the server via some other method to exploit this vulnerability.

CVSS3: 6.7
EPSS: Средний
github логотип

GHSA-4ccp-5qcj-7f48

4 месяца назад

An unhandled exception in Suprema BioStar 2 (Server), versions 2.9.8, 2.9.10, and 2.9.11, that allows an unauthenticated remote attacker to cause a denial of service (DoS) by sending HTTP POST requests to the ‘/api/migration’ endpoint. This request triggers a failure that halts critical processes, leaving the system offline until the services or server are manually restarted. As a result, access control readers cease to function, and potential failures may occur in third-party integrations. Since the exploit requires no privileges or user interaction and is trivial to automate, the impact on availability is high, and the effect extends to interconnected systems.

EPSS: Низкий
github логотип

GHSA-4ccm-8x8h-878w

больше 4 лет назад

misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.

EPSS: Средний
github логотип

GHSA-4cch-wxpw-8p28

больше 5 лет назад

Server-Side Forgery Request can be activated unmarshalling with XStream

CVSS3: 6.3
EPSS: Высокий
github логотип

GHSA-4cch-p66p-q49q

около 1 года назад

The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the rest_simpleFileUpload() function in versions 2.9.3 and 2.9.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to upload arbitrary files on the affected site's server when the REST API is enabled, which may make remote code execution possible.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4cf4-xjp3-c6w3

SceneKit in Apple OS X before 10.10.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via unspecified vectors.

36%
Средний
больше 4 лет назад
github логотип
GHSA-4cf4-jjh2-3m84

Incorrect access control in the kernel driver of ThreatFire System Monitor v4.7.0.53 allows attackers to escalate privileges and execute arbitrary commands via an insecure IOCTL.

CVSS3: 7.8
0%
Низкий
11 месяцев назад
github логотип
GHSA-4cf4-hqwp-cpp8

LibTIFF 4.4.0 has an out-of-bounds write in extractContigSamplesShifted24bits in tools/tiffcrop.c:3604, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit cfbb883b.

CVSS3: 6.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-4cf2-m45x-5phh

HPE System Management Homepage before 7.5.4 allows local users to obtain sensitive information or modify data via unspecified vectors.

CVSS3: 7.7
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4cf2-cxp3-rjr7

HAPI FHIR XML External Entity (XXE) vulnerability

CVSS3: 9.8
2%
Низкий
почти 2 года назад
github логотип
GHSA-4ccx-wjqp-5fww

LibreNMS Arbitrary File Read

CVSS3: 5.9
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4ccx-cx54-2vfq

Pitchfork version 1.4.6 RC1 contains an Improper Privilege Management vulnerability in Trident Pitchfork components that can result in A standard unprivileged user could gain system administrator permissions within the web portal.. This attack appear to be exploitable via The user must be able to login, and could edit their profile and set the "System Administrator" permission to "yes" on themselves.. This vulnerability appears to have been fixed in 1.4.6 RC2.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4ccx-55gp-x5qq

: Path Traversal: '.../...//' vulnerability in CYAN Backup allows Path Traversal.This issue affects CYAN Backup: from n/a through 2.5.3.

CVSS3: 4.9
1%
Низкий
почти 2 года назад
github логотип
GHSA-4ccv-vmjr-rffr

Missing authorization in Ivanti Connect Secure before 22.7R2.9 or 22.8R2, Ivanti Policy Secure before 22.7R1.6, Ivanti ZTA Gateway before 22.8R2.3-723 and Ivanti Neurons for Secure Access before 22.8R1.4 (Fix deployed on 02-Aug-2025) allows a remote authenticated attacker with read-only admin privileges to configure restricted settings.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-4ccv-pj8j-48ph

In Nagios XI 5.6.9, an authenticated user is able to execute arbitrary OS commands via shell metacharacters in the id parameter to schedulereport.php, in the context of the web-server user account.

22%
Средний
больше 4 лет назад
github логотип
GHSA-4ccv-9mm9-gw75

The skype_tool.copy_num method in the Skype extension BETA 2.2.0.95 for Firefox allows remote attackers to write arbitrary data to the clipboard via a string argument.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4ccr-c6hg-r7x3

An integer overflow was addressed through improved input validation. This issue is fixed in iOS 14.7, macOS Big Sur 11.5, watchOS 7.6, tvOS 14.7, Security Update 2021-005 Mojave, Security Update 2021-004 Catalina. Processing a maliciously crafted font file may lead to arbitrary code execution.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4ccq-6mpg-3gmq

An issue was discovered on TP-Link TL-WR1043ND V2 devices. An attacker can send a cookie in an HTTP authentication packet to the router management web interface, and fully control the router without knowledge of the credentials.

14%
Средний
больше 4 лет назад
github логотип
GHSA-4ccp-hqgq-7v89

Unspecified vulnerability in the Application Performance Management component in Oracle Enterprise Manager Grid Control before 12.1.0.6.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to End User Experience Management.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4ccp-g444-f9q7

Information disclosure vulnerability in Microsoft Windows 2000 telnet service allows remote attackers to determine the existence of user accounts such as Guest, or log in to the server without specifying the domain name, via a malformed userid.

14%
Средний
больше 4 лет назад
github логотип
GHSA-4ccp-cqrh-3w9v

A directory traversal vulnerability in the Apex One (on-premise) server could allow a pre-authenticated local attacker to modify a key table on the server to inject malicious code to deploy to agents on affected installations. This vulnerability is only exploitable on the on-premise version of Apex One and a potential attacker must have access to the Apex One Server and already obtained administrative credentials to the server via some other method to exploit this vulnerability.

CVSS3: 6.7
13%
Средний
4 месяца назад
github логотип
GHSA-4ccp-5qcj-7f48

An unhandled exception in Suprema BioStar 2 (Server), versions 2.9.8, 2.9.10, and 2.9.11, that allows an unauthenticated remote attacker to cause a denial of service (DoS) by sending HTTP POST requests to the ‘/api/migration’ endpoint. This request triggers a failure that halts critical processes, leaving the system offline until the services or server are manually restarted. As a result, access control readers cease to function, and potential failures may occur in third-party integrations. Since the exploit requires no privileges or user interaction and is trivial to automate, the impact on availability is high, and the effect extends to interconnected systems.

0%
Низкий
4 месяца назад
github логотип
GHSA-4ccm-8x8h-878w

misc.php for vBulletin 3.0.6 and earlier, when "Add Template Name in HTML Comments" is enabled, allows remote attackers to execute arbitrary PHP code via nested variables in the template parameter.

36%
Средний
больше 4 лет назад
github логотип
GHSA-4cch-wxpw-8p28

Server-Side Forgery Request can be activated unmarshalling with XStream

CVSS3: 6.3
82%
Высокий
больше 5 лет назад
github логотип
GHSA-4cch-p66p-q49q

The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the rest_simpleFileUpload() function in versions 2.9.3 and 2.9.4. This makes it possible for authenticated attackers, with Subscriber-level access and above, to upload arbitrary files on the affected site's server when the REST API is enabled, which may make remote code execution possible.

CVSS3: 8.8
1%
Низкий
около 1 года назад

Уязвимостей на страницу