Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 841

Количество 370 841

github логотип

GHSA-4c52-gf37-2pfp

больше 4 лет назад

Atlassian Bamboo 5.x before 5.15.7 and 6.x before 6.0.1 did not correctly check if a user creating a deployment project had the edit permission and therefore the rights to do so. An attacker who can login to Bamboo as a user without the edit permission for deployment projects is able to use this vulnerability, provided there is an existing plan with a green build, to create a deployment project and execute arbitrary code on an available Bamboo Agent. By default a local agent is enabled; this means that code execution can occur on the system hosting Bamboo as the user running Bamboo.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c4x-mhx7-fqjh

больше 4 лет назад

Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0 and 12.1.3.0 allows remote attackers to affect availability via vectors related to Web Container, a different vulnerability than CVE-2016-3445.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4c4x-jm2x-pf9j

8 месяцев назад

Rekor affected by Server-Side Request Forgery (SSRF) via provided public key URL

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4c4x-854c-52cx

больше 1 года назад

A vulnerability was found in CodeAstro House Rental Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /signin.php. The manipulation of the argument u/p leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-4c4x-3mvr-64jv

больше 4 лет назад

The custom GINA/CP module in ANIXIS Password Reset Client before version 3.22 allows remote attackers to execute code and escalate privileges via spoofing. When the client is configured to use HTTP, it does not authenticate the intended server before opening a browser window. An unauthenticated attacker capable of conducting a spoofing attack can redirect the browser to gain execution in the context of the WinLogon.exe process. If Network Level Authentication is not enforced, the vulnerability can be exploited via RDP.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c4w-pcg8-6hq9

почти 2 года назад

Under certain circumstances, navigating to a webpage would result in the address missing from the location URL bar, making it unclear what the URL was for the loaded webpage. This vulnerability affects Firefox for iOS < 133.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4c4w-c9rx-m633

больше 4 лет назад

A reporttaskselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

EPSS: Низкий
github логотип

GHSA-4c4w-77f9-v9mq

около 2 лет назад

Out of bounds write in V8 in Google Chrome prior to 128.0.6613.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c4w-3q45-hp9j

почти 9 лет назад

Aescrypt does not sufficiently use random values

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4c4w-2wv9-hj7p

около 1 месяца назад

D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /boafrm/formTracerouteDiagnosticRun interface. A remote attacker can inject arbitrary malicious commands into the host and ipVer fields, resulting in command execution with root privileges.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4c4v-q7vw-5qgg

11 месяцев назад

The Trinity Audio – Text to Speech AI audio player to convert content into audio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.21.0 via the ~/admin/inc/phpinfo.php file that gets created on install. This makes it possible for unauthenticated attackers to extract sensitive data including configuration data.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4c4v-jcwm-2qpx

больше 4 лет назад

A cross-site scripting (XSS) vulnerability in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation in the join meeting interface. A successful exploit could allow an attacker to execute arbitrary scripts.

EPSS: Низкий
github логотип

GHSA-4c4v-fmmj-pcvc

больше 1 года назад

Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. The seed string for the encrypt key was hardcoding. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

EPSS: Низкий
github логотип

GHSA-4c4v-9xr2-899m

больше 4 лет назад

In Parse_ins of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure in the media extractor process with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-150160279

EPSS: Низкий
github логотип

GHSA-4c4v-42hc-72p6

7 месяцев назад

EVE's Debug Functions Unlockable Without Triggering Measured Boot

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-4c4r-grrc-p4fv

больше 4 лет назад

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed file can lead to an out-of-bounds read and type confusion, which could lead to code execution. An attacker can provide malicious input to trigger any of these vulnerabilities. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_volume() ch->shell_entry_objects().

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c4q-g449-2566

3 месяца назад

Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root of Trust for BIOS update, to potentially overwrite guest memory resulting in loss of guest data integrity.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-4c4p-mw68-gjfv

больше 4 лет назад

PHP remote file inclusion vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.

EPSS: Низкий
github логотип

GHSA-4c4p-4x55-3pgj

больше 4 лет назад

Unspecified vulnerability in the Multicast Virtual Private Network (MVPN) implementation in Cisco IOS 12.0, 12.2, 12.3, and 12.4 allows remote attackers to create "extra multicast states on the core routers" via a crafted Multicast Distribution Tree (MDT) Data Join message.

EPSS: Низкий
github логотип

GHSA-4c4m-jh8q-43q8

больше 4 лет назад

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4c52-gf37-2pfp

Atlassian Bamboo 5.x before 5.15.7 and 6.x before 6.0.1 did not correctly check if a user creating a deployment project had the edit permission and therefore the rights to do so. An attacker who can login to Bamboo as a user without the edit permission for deployment projects is able to use this vulnerability, provided there is an existing plan with a green build, to create a deployment project and execute arbitrary code on an available Bamboo Agent. By default a local agent is enabled; this means that code execution can occur on the system hosting Bamboo as the user running Bamboo.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4x-mhx7-fqjh

Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0 and 12.1.3.0 allows remote attackers to affect availability via vectors related to Web Container, a different vulnerability than CVE-2016-3445.

CVSS3: 5.3
4%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4x-jm2x-pf9j

Rekor affected by Server-Side Request Forgery (SSRF) via provided public key URL

CVSS3: 5.3
0%
Низкий
8 месяцев назад
github логотип
GHSA-4c4x-854c-52cx

A vulnerability was found in CodeAstro House Rental Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /signin.php. The manipulation of the argument u/p leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-4c4x-3mvr-64jv

The custom GINA/CP module in ANIXIS Password Reset Client before version 3.22 allows remote attackers to execute code and escalate privileges via spoofing. When the client is configured to use HTTP, it does not authenticate the intended server before opening a browser window. An unauthenticated attacker capable of conducting a spoofing attack can redirect the browser to gain execution in the context of the WinLogon.exe process. If Network Level Authentication is not enforced, the vulnerability can be exploited via RDP.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4w-pcg8-6hq9

Under certain circumstances, navigating to a webpage would result in the address missing from the location URL bar, making it unclear what the URL was for the loaded webpage. This vulnerability affects Firefox for iOS < 133.

CVSS3: 5.4
0%
Низкий
почти 2 года назад
github логотип
GHSA-4c4w-c9rx-m633

A reporttaskselect expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

7%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4w-77f9-v9mq

Out of bounds write in V8 in Google Chrome prior to 128.0.6613.119 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
1%
Низкий
около 2 лет назад
github логотип
GHSA-4c4w-3q45-hp9j

Aescrypt does not sufficiently use random values

CVSS3: 7.5
1%
Низкий
почти 9 лет назад
github логотип
GHSA-4c4w-2wv9-hj7p

D-Link DWR-M961 devices with hardware version C1 and firmware version before 1.1.5_C1_202607071108 contain a command injection vulnerability in the /boafrm/formTracerouteDiagnosticRun interface. A remote attacker can inject arbitrary malicious commands into the host and ipVer fields, resulting in command execution with root privileges.

CVSS3: 9.8
2%
Низкий
около 1 месяца назад
github логотип
GHSA-4c4v-q7vw-5qgg

The Trinity Audio – Text to Speech AI audio player to convert content into audio plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 5.21.0 via the ~/admin/inc/phpinfo.php file that gets created on install. This makes it possible for unauthenticated attackers to extract sensitive data including configuration data.

CVSS3: 5.3
1%
Низкий
11 месяцев назад
github логотип
GHSA-4c4v-jcwm-2qpx

A cross-site scripting (XSS) vulnerability in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (XSS) attack due to insufficient validation in the join meeting interface. A successful exploit could allow an attacker to execute arbitrary scripts.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4v-fmmj-pcvc

Team ENVY, a Security Research TEAM has found a flaw that allows for a remote code execution on the NVR. The seed string for the encrypt key was hardcoding. The manufacturer has released patch firmware for the flaw, please refer to the manufacturer's report for details and workarounds.

0%
Низкий
больше 1 года назад
github логотип
GHSA-4c4v-9xr2-899m

In Parse_ins of eas_mdls.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure in the media extractor process with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-11 Android-8.0Android ID: A-150160279

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4v-42hc-72p6

EVE's Debug Functions Unlockable Without Triggering Measured Boot

CVSS3: 5.9
0%
Низкий
7 месяцев назад
github логотип
GHSA-4c4r-grrc-p4fv

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed file can lead to an out-of-bounds read and type confusion, which could lead to code execution. An attacker can provide malicious input to trigger any of these vulnerabilities. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_volume() ch->shell_entry_objects().

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4q-g449-2566

Improper input validation for DIMM serial presence detect (SPD) metadata could allow an attacker with physical access, ring0 access on a system with a non-compliant DIMM, or control over the Root of Trust for BIOS update, to potentially overwrite guest memory resulting in loss of guest data integrity.

CVSS3: 5.3
0%
Низкий
3 месяца назад
github логотип
GHSA-4c4p-mw68-gjfv

PHP remote file inclusion vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4p-4x55-3pgj

Unspecified vulnerability in the Multicast Virtual Private Network (MVPN) implementation in Cisco IOS 12.0, 12.2, 12.3, and 12.4 allows remote attackers to create "extra multicast states on the core routers" via a crafted Multicast Distribution Tree (MDT) Data Join message.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4m-jh8q-43q8

Adobe Acrobat and Reader versions 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

CVSS3: 5.5
5%
Низкий
больше 4 лет назад

Уязвимостей на страницу