Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 841

Количество 370 841

github логотип

GHSA-4c29-8572-7xww

4 месяца назад

Filterable Portfolio Gallery 1.0 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript by entering payloads in the title field. Attackers can store JavaScript code like image tags with onerror handlers that execute when the gallery is previewed, affecting all users viewing the page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4c27-wwv3-v6h2

больше 4 лет назад

A flaw was found in ImageMagick in MagickCore/resize.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-4c27-r897-v3m2

больше 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michael Torbert SimpleMap Store Locator allows Reflected XSS.This issue affects SimpleMap Store Locator: from n/a through 2.6.1.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4c27-p37x-4j2h

8 дней назад

In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - bound the akcipher result length virtio_crypto_dataq_akcipher_callback() sets the result length from the device-reported response length without bounding it to the destination buffer, which was allocated for the original request length. sg_copy_from_buffer() then reads that many bytes from the destination buffer; a backend reporting a larger length over-reads adjacent kernel heap into the caller's scatterlist (an out-of-bounds read). Clamp the reported length to the originally requested destination length. A conforming device reports no more than that, so valid results are unaffected.

EPSS: Низкий
github логотип

GHSA-4c26-994w-7pc4

около 2 лет назад

Rejected reason: reserved but not needed

EPSS: Низкий
github логотип

GHSA-4c26-8h7r-v2r9

больше 4 лет назад

An integer overflow to buffer overflow vulnerability exists in the ADSPRPC heap manager in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4c26-7c6w-x9h2

почти 4 года назад

A vulnerability exists that allows an authenticated attacker to overwrite an arbitrary file with attacker-controlled content via the web interface. Successful exploitation of this vulnerability could lead to full compromise the underlying host operating system.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4c25-hrfv-m2p9

больше 4 лет назад

jscript.dll in Microsoft Internet Explorer 6.0 SP1 and earlier allows remote attackers to cause a denial of service (application crash) via a Shockwave Flash object that contains ActionScript code that calls VBScript, which in turn calls the Javascript document.write function, which triggers a null dereference.

EPSS: Средний
github логотип

GHSA-4c25-gwp9-9c2h

почти 3 года назад

The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the fnsf_af2_save_post function in versions up to, and including, 3.4. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to modify certain post values. Note that the extent of modification is limited due to fixed values passed to the wp_update_post function.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-4c24-fg5j-p435

больше 4 лет назад

The Graphics Drivers subsystem in Apple OS X before 10.11.1 allows local users to gain privileges or cause a denial of service (kernel memory corruption) via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-4c24-2mrg-x84r

10 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods Grand Conference Theme Custom Post Type grandconference-custom-post allows Reflected XSS.This issue affects Grand Conference Theme Custom Post Type: from n/a through < 2.6.4.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4c23-j7cr-737q

больше 4 лет назад

In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure through Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-212694559

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4c23-hq2c-grq2

около 3 лет назад

SUBNET PowerSYSTEM Center versions 2020 U10 and prior contain a cross-site scripting vulnerability that may allow an attacker to inject malicious code into report header graphic files that could propagate out of the system and reach users who are subscribed to email notifications.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4c22-xgpq-qfxw

около 2 лет назад

Windows Networking Denial of Service Vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4c22-9q7h-jv2g

почти 3 года назад

Certain WithSecure products allow XSS via an unvalidated parameter in the endpoint. This affects WithSecure Policy Manager 15 on Windows and Linux.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-4c22-7xx9-4rpv

12 месяцев назад

A security vulnerability has been detected in LazyAGI LazyLLM up to 0.6.1. Affected by this issue is the function lazyllm_call of the file lazyllm/components/deploy/relay/server.py. Such manipulation leads to deserialization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-49xx-hhcj-4g3j

больше 4 лет назад

Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-49xw-vfc4-7p43

7 месяцев назад

Fleet has an SQL Injection vulnerability via backtick escape in ORDER BY parameter

EPSS: Низкий
github логотип

GHSA-49xw-hw94-fmv2

около 1 года назад

Dolibarr has Remote Code Execution Vulnerability (Bypass)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-49xw-73mm-8fw9

7 месяцев назад

Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack of proper sanitization and escaping in HTML output. Several endpoints include segments of the URL directly in the response without applying output encoding, allowing an attacker to inject and execute arbitrary JavaScript code when a user visits a specially crafted URL. Exploitation of this vulnerability may allow script execution in the victim's browser and limited manipulation of the affected user's session context, through the  '/ alerts /' endpoint.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4c29-8572-7xww

Filterable Portfolio Gallery 1.0 contains a stored cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript by entering payloads in the title field. Attackers can store JavaScript code like image tags with onerror handlers that execute when the gallery is previewed, affecting all users viewing the page.

CVSS3: 6.4
0%
Низкий
4 месяца назад
github логотип
GHSA-4c27-wwv3-v6h2

A flaw was found in ImageMagick in MagickCore/resize.c. An attacker who submits a crafted file that is processed by ImageMagick could trigger undefined behavior in the form of math division by zero. The highest threat from this vulnerability is to system availability.

CVSS3: 5.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4c27-r897-v3m2

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michael Torbert SimpleMap Store Locator allows Reflected XSS.This issue affects SimpleMap Store Locator: from n/a through 2.6.1.

CVSS3: 7.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-4c27-p37x-4j2h

In the Linux kernel, the following vulnerability has been resolved: crypto: virtio - bound the akcipher result length virtio_crypto_dataq_akcipher_callback() sets the result length from the device-reported response length without bounding it to the destination buffer, which was allocated for the original request length. sg_copy_from_buffer() then reads that many bytes from the destination buffer; a backend reporting a larger length over-reads adjacent kernel heap into the caller's scatterlist (an out-of-bounds read). Clamp the reported length to the originally requested destination length. A conforming device reports no more than that, so valid results are unaffected.

0%
Низкий
8 дней назад
github логотип
GHSA-4c26-994w-7pc4

Rejected reason: reserved but not needed

около 2 лет назад
github логотип
GHSA-4c26-8h7r-v2r9

An integer overflow to buffer overflow vulnerability exists in the ADSPRPC heap manager in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4c26-7c6w-x9h2

A vulnerability exists that allows an authenticated attacker to overwrite an arbitrary file with attacker-controlled content via the web interface. Successful exploitation of this vulnerability could lead to full compromise the underlying host operating system.

CVSS3: 8.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-4c25-hrfv-m2p9

jscript.dll in Microsoft Internet Explorer 6.0 SP1 and earlier allows remote attackers to cause a denial of service (application crash) via a Shockwave Flash object that contains ActionScript code that calls VBScript, which in turn calls the Javascript document.write function, which triggers a null dereference.

15%
Средний
больше 4 лет назад
github логотип
GHSA-4c25-gwp9-9c2h

The Funnelforms Free plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the fnsf_af2_save_post function in versions up to, and including, 3.4. This makes it possible for authenticated attackers, with subscriber-level permissions and above, to modify certain post values. Note that the extent of modification is limited due to fixed values passed to the wp_update_post function.

CVSS3: 4.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-4c24-fg5j-p435

The Graphics Drivers subsystem in Apple OS X before 10.11.1 allows local users to gain privileges or cause a denial of service (kernel memory corruption) via unspecified vectors.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-4c24-2mrg-x84r

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ThemeGoods Grand Conference Theme Custom Post Type grandconference-custom-post allows Reflected XSS.This issue affects Grand Conference Theme Custom Post Type: from n/a through < 2.6.4.

CVSS3: 7.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-4c23-j7cr-737q

In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure through Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12 Android-12LAndroid ID: A-212694559

CVSS3: 6.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-4c23-hq2c-grq2

SUBNET PowerSYSTEM Center versions 2020 U10 and prior contain a cross-site scripting vulnerability that may allow an attacker to inject malicious code into report header graphic files that could propagate out of the system and reach users who are subscribed to email notifications.

CVSS3: 6.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-4c22-xgpq-qfxw

Windows Networking Denial of Service Vulnerability

CVSS3: 7.5
2%
Низкий
около 2 лет назад
github логотип
GHSA-4c22-9q7h-jv2g

Certain WithSecure products allow XSS via an unvalidated parameter in the endpoint. This affects WithSecure Policy Manager 15 on Windows and Linux.

CVSS3: 6.1
0%
Низкий
почти 3 года назад
github логотип
GHSA-4c22-7xx9-4rpv

A security vulnerability has been detected in LazyAGI LazyLLM up to 0.6.1. Affected by this issue is the function lazyllm_call of the file lazyllm/components/deploy/relay/server.py. Such manipulation leads to deserialization. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 6.3
0%
Низкий
12 месяцев назад
github логотип
GHSA-49xx-hhcj-4g3j

Cerulean Studios Trillian Pro before 3.1.5.1 allows remote attackers to obtain potentially sensitive information via long CTCP PING messages that contain UTF-8 characters, which generates a malformed response that is not truncated by a newline, which can cause portions of a server message to be sent to the attacker.

CVSS3: 5.9
3%
Низкий
больше 4 лет назад
github логотип
GHSA-49xw-vfc4-7p43

Fleet has an SQL Injection vulnerability via backtick escape in ORDER BY parameter

0%
Низкий
7 месяцев назад
github логотип
GHSA-49xw-hw94-fmv2

Dolibarr has Remote Code Execution Vulnerability (Bypass)

CVSS3: 8.8
около 1 года назад
github логотип
GHSA-49xw-73mm-8fw9

Reflected Cross-Site Scripting (XSS) vulnerability in the Graylog Web Interface console, version 2.2.3, caused by a lack of proper sanitization and escaping in HTML output. Several endpoints include segments of the URL directly in the response without applying output encoding, allowing an attacker to inject and execute arbitrary JavaScript code when a user visits a specially crafted URL. Exploitation of this vulnerability may allow script execution in the victim's browser and limited manipulation of the affected user's session context, through the  '/ alerts /' endpoint.

CVSS3: 6.1
0%
Низкий
7 месяцев назад

Уязвимостей на страницу