Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 841

Количество 370 841

github логотип

GHSA-4c4j-wcgh-6w8r

больше 4 лет назад

InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component python-lib. This vulnerability is triggered via a crafted packet.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4c4j-w8hm-rjgv

больше 4 лет назад

A vulnerability was found in logrotate in how the state file is created. The state file is used to prevent parallel executions of multiple instances of logrotate by acquiring and releasing a file lock. When the state file does not exist, it is created with world-readable permission, allowing an unprivileged user to lock the state file, stopping any rotation. This flaw affects logrotate versions before 3.20.0.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4c4j-8mf7-839x

4 дня назад

Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field. Scope is changed.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4c4h-r37m-j94c

больше 4 лет назад

Buffer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain privileges via vectors related to improper memory allocation for copies from user mode, aka "Win32k Buffer Overflow Vulnerability."

EPSS: Низкий
github логотип

GHSA-4c4h-qr43-f924

7 месяцев назад

Null pointer dereference in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability within Ring 0: Kernel may allow a denial of service. Network adversary with an unauthenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via network access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-4c4h-q562-34mm

больше 4 лет назад

Stack-based buffer overflow in the Message Queuing Server (Cam.exe) in CA (formerly Computer Associates) Message Queuing (CAM / CAFT) software before 1.11 Build 54_4 on Windows and NetWare, as used in CA Advantage Data Transport, eTrust Admin, certain BrightStor products, certain CleverPath products, and certain Unicenter products, allows remote attackers to execute arbitrary code via a crafted message to TCP port 3104.

EPSS: Средний
github логотип

GHSA-4c4g-crqm-xrxw

около 5 лет назад

Use of unitialized value in TFLite

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-4c4g-c6q5-6cpq

7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: w1: therm: Fix off-by-one buffer overflow in alarms_store The sysfs buffer passed to alarms_store() is allocated with 'size + 1' bytes and a NUL terminator is appended. However, the 'size' argument does not account for this extra byte. The original code then allocated 'size' bytes and used strcpy() to copy 'buf', which always writes one byte past the allocated buffer since strcpy() copies until the NUL terminator at index 'size'. Fix this by parsing the 'buf' parameter directly using simple_strtoll() without allocating any intermediate memory or string copying. This removes the overflow while simplifying the code.

EPSS: Низкий
github логотип

GHSA-4c4g-6q55-8c97

больше 1 года назад

Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4c4g-46p8-24mq

2 месяца назад

A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on EX Series allows a local, authenticated attacker to cause a Denial-of-Service (DoS). On EX2300, EX4000, EX4100, EX4300-MP (Multigigabit) and EX4400 switches, an authenticated, local attacker with no specific permissions or class can execute a specific, privileged CLI 'request' command which will cause complete traffic impact until the system automatically recovers. This issue affects Junos OS on EX2300, EX4000, EX4100, EX4300-MP (Multigigabit) and EX4400: * 23.2R2 versions before 23.2R2-S6, * 23.4 versions before 23.4R2-S8, * 24.2 versions before 24.2R2-S4, * 24.4 versions before 24.4R2-S3, * 25.2 versions before 25.2R2, * 25.4 versions before 25.4R1-S1.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4c4f-fw26-8fmg

больше 3 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in Plainware Locatoraid Store Locator plugin <= 3.9.11 versions.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c4f-c42x-5hjc

больше 4 лет назад

ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4c4c-jrm5-x8x5

больше 4 лет назад

The Java Console in IBM Domino 8.5.x allows remote authenticated users to hijack temporary credentials by leveraging knowledge of configuration details, aka SPR KLYH8TNNDN.

EPSS: Низкий
github логотип

GHSA-4c4c-c4fg-2wpp

больше 4 лет назад

U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to upload arbitrary files.

EPSS: Низкий
github логотип

GHSA-4c4c-7hrr-jfv2

больше 4 лет назад

GStreamer before 1.16.0 has a heap-based buffer overflow in the RTSP connection parser via a crafted response from a server, potentially allowing remote code execution.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c49-9fpc-hc3v

почти 2 года назад

lxd CA certificate sign check bypass

CVSS3: 3.8
EPSS: Низкий
github логотип

GHSA-4c48-v482-r632

около 2 лет назад

A BOLA vulnerability in GET, PUT, DELETE /appointments/{appointmentId} allows a low privileged user to fetch, modify or delete an appointment of any user (including admin). This results in unauthorized access and unauthorized data manipulation.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-4c48-9rfv-8pr3

больше 4 лет назад

pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.

EPSS: Низкий
github логотип

GHSA-4c48-48vf-pffv

почти 2 года назад

TP Link MR200 V4 Firmware version 210201 was discovered to contain a null-pointer-dereference in the web administration panel on /cgi/login via the sign, Action or LoginStatus query parameters which could lead to a denial of service by a local or remote unauthenticated attacker.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4c47-qmr5-wqcp

больше 4 лет назад

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4c4j-wcgh-6w8r

InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component python-lib. This vulnerability is triggered via a crafted packet.

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4j-w8hm-rjgv

A vulnerability was found in logrotate in how the state file is created. The state file is used to prevent parallel executions of multiple instances of logrotate by acquiring and releasing a file lock. When the state file does not exist, it is created with world-readable permission, allowing an unprivileged user to lock the state file, stopping any rotation. This flaw affects logrotate versions before 3.20.0.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4j-8mf7-839x

Adobe Experience Manager is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field. Scope is changed.

CVSS3: 5.4
0%
Низкий
4 дня назад
github логотип
GHSA-4c4h-r37m-j94c

Buffer overflow in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain privileges via vectors related to improper memory allocation for copies from user mode, aka "Win32k Buffer Overflow Vulnerability."

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4h-qr43-f924

Null pointer dereference in the firmware for some Intel(R) AMT and Intel(R) Standard Manageability within Ring 0: Kernel may allow a denial of service. Network adversary with an unauthenticated user combined with a high complexity attack may enable denial of service. This result may potentially occur via network access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (none), integrity (none) and availability (high) of the vulnerable system, resulting in subsequent system confidentiality (none), integrity (none) and availability (none) impacts.

CVSS3: 6.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-4c4h-q562-34mm

Stack-based buffer overflow in the Message Queuing Server (Cam.exe) in CA (formerly Computer Associates) Message Queuing (CAM / CAFT) software before 1.11 Build 54_4 on Windows and NetWare, as used in CA Advantage Data Transport, eTrust Admin, certain BrightStor products, certain CleverPath products, and certain Unicenter products, allows remote attackers to execute arbitrary code via a crafted message to TCP port 3104.

24%
Средний
больше 4 лет назад
github логотип
GHSA-4c4g-crqm-xrxw

Use of unitialized value in TFLite

CVSS3: 4.4
0%
Низкий
около 5 лет назад
github логотип
GHSA-4c4g-c6q5-6cpq

In the Linux kernel, the following vulnerability has been resolved: w1: therm: Fix off-by-one buffer overflow in alarms_store The sysfs buffer passed to alarms_store() is allocated with 'size + 1' bytes and a NUL terminator is appended. However, the 'size' argument does not account for this extra byte. The original code then allocated 'size' bytes and used strcpy() to copy 'buf', which always writes one byte past the allocated buffer since strcpy() copies until the NUL terminator at index 'size'. Fix this by parsing the 'buf' parameter directly using simple_strtoll() without allocating any intermediate memory or string copying. This removes the overflow while simplifying the code.

0%
Низкий
7 месяцев назад
github логотип
GHSA-4c4g-6q55-8c97

Some parameters of the alarm clock module are improperly stored, leaking some sensitive information.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-4c4g-46p8-24mq

A Missing Authorization vulnerability in the CLI of Juniper Networks Junos OS on EX Series allows a local, authenticated attacker to cause a Denial-of-Service (DoS). On EX2300, EX4000, EX4100, EX4300-MP (Multigigabit) and EX4400 switches, an authenticated, local attacker with no specific permissions or class can execute a specific, privileged CLI 'request' command which will cause complete traffic impact until the system automatically recovers. This issue affects Junos OS on EX2300, EX4000, EX4100, EX4300-MP (Multigigabit) and EX4400: * 23.2R2 versions before 23.2R2-S6, * 23.4 versions before 23.4R2-S8, * 24.2 versions before 24.2R2-S4, * 24.4 versions before 24.4R2-S3, * 25.2 versions before 25.2R2, * 25.4 versions before 25.4R1-S1.

CVSS3: 5.5
0%
Низкий
2 месяца назад
github логотип
GHSA-4c4f-fw26-8fmg

Cross-Site Request Forgery (CSRF) vulnerability in Plainware Locatoraid Store Locator plugin <= 3.9.11 versions.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-4c4f-c42x-5hjc

ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4c-jrm5-x8x5

The Java Console in IBM Domino 8.5.x allows remote authenticated users to hijack temporary credentials by leveraging knowledge of configuration details, aka SPR KLYH8TNNDN.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4c-c4fg-2wpp

U.S. National Security Agency (NSA) Emissary 5.9.0 allows an authenticated user to upload arbitrary files.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4c4c-7hrr-jfv2

GStreamer before 1.16.0 has a heap-based buffer overflow in the RTSP connection parser via a crafted response from a server, potentially allowing remote code execution.

CVSS3: 8.8
6%
Низкий
больше 4 лет назад
github логотип
GHSA-4c49-9fpc-hc3v

lxd CA certificate sign check bypass

CVSS3: 3.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-4c48-v482-r632

A BOLA vulnerability in GET, PUT, DELETE /appointments/{appointmentId} allows a low privileged user to fetch, modify or delete an appointment of any user (including admin). This results in unauthorized access and unauthorized data manipulation.

CVSS3: 9.9
0%
Низкий
около 2 лет назад
github логотип
GHSA-4c48-9rfv-8pr3

pam_per_user before 0.4 does not verify if the user name changes between authentication attempts and uses the same subrequest handle, which allows remote attackers or local users to login as other users by using certain applications that allow the username to be changed during authentication, such as /bin/login.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-4c48-48vf-pffv

TP Link MR200 V4 Firmware version 210201 was discovered to contain a null-pointer-dereference in the web administration panel on /cgi/login via the sign, Action or LoginStatus query parameters which could lead to a denial of service by a local or remote unauthenticated attacker.

CVSS3: 7.5
1%
Низкий
почти 2 года назад
github логотип
GHSA-4c47-qmr5-wqcp

A remote code execution vulnerability was identified in HPE Intelligent Management Center (IMC) PLAT earlier than version 7.3 E0506P09.

4%
Низкий
больше 4 лет назад

Уязвимостей на страницу