Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 841

Количество 370 841

github логотип

GHSA-49mg-9ffp-9wjj

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in info.php in TomatoCart 1.1.8.6.1 allows remote attackers to inject arbitrary web script or HTML via the faqs_id parameter.

EPSS: Низкий
github логотип

GHSA-49mg-94fc-2fx6

около 6 лет назад

Command Injection in npm-git-publish

EPSS: Низкий
github логотип

GHSA-49mg-4v6p-32w2

5 месяцев назад

Vvveb prior to 1.0.8.1 contains a stored cross-site scripting vulnerability that allows authenticated users with media upload and rename permissions to execute arbitrary JavaScript by bypassing MIME type validation and renaming uploaded files to executable extensions. Attackers can prepend a GIF89a header to HTML/JavaScript payloads to bypass upload validation, rename the file to .html extension, and execute malicious scripts in an administrator's browser session to create backdoor accounts and upload malicious plugins for remote code execution.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-49mf-7m55-94wm

больше 4 лет назад

The (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 make it easier for remote attackers to bypass intended cryptographic protection mechanisms by triggering application-data processing during the TLS handshake, a time at which the data is both unencrypted and unauthenticated.

EPSS: Низкий
github логотип

GHSA-49m9-pgww-9vq6

5 месяцев назад

n8n Vulnerable to Unauthenticated Denial of Service via MCP Client Registration

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-49m9-94x6-8vw5

12 месяцев назад

Multiple stored cross-site scripting (XSS) vulnerabilities in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the wifi_sta_ssid or wifi_ap_ssid parameters.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-49m9-4vrg-7r7p

9 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: um: vector: Fix memory leak in vector_config If the return value of the uml_parse_vector_ifspec function is NULL, we should call kfree(params) to prevent memory leak.

EPSS: Низкий
github логотип

GHSA-49m8-x93v-846r

около 1 года назад

The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'wpvivid_upload_import_files' function in all versions up to, and including, 0.9.116. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible. NOTE: Uploaded files are only accessible on WordPress instances running on the NGINX web server as the existing .htaccess within the target file upload folder prevents access on Apache servers.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-49m8-h8fg-9rhj

около 1 года назад

In multiple locations, there is a possible way to mislead a user into approving an authentication prompt for one app when its result will be used in another due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

EPSS: Низкий
github логотип

GHSA-49m8-f75j-fw3p

около 2 лет назад

A vulnerability has been found in itsourcecode Event Calendar 1.0 and classified as critical. Affected by this vulnerability is the function regConfirm/regDelete of the file process.php. The manipulation of the argument userId leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-268699.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-49m8-524g-8rr2

около 1 месяца назад

The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `sign_in()` and `sign_up()` AJAX handlers in all versions up to, and including, 3.2.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to relink the site's MailMunch integration to an attacker-controlled MailMunch account by submitting attacker-supplied credentials. Once relinked, all subscriber data captured by the plugin's forms is delivered to the attacker, and the forms/landing pages rendered on the site are pulled from the attacker's MailMunch account.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-49m7-vp55-6fjx

больше 1 года назад

Using API in the 2N OS device, authorized user can enable logging, which discloses valid authentication tokens in system log.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-49m7-c65r-f62m

около 4 лет назад

Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the body function at /web/api/v1/upload/UploadHandler.php.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-49m7-7r54-4vjp

больше 4 лет назад

CuppaCMS has XSS via an SVG document uploaded to the administrator/#/component/table_manager/view/cu_views URI.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-49m6-w46f-fp87

больше 4 лет назад

The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS server, related to occurrence of an exception in this application.

EPSS: Низкий
github логотип

GHSA-49m6-vrr9-2cqm

больше 1 года назад

MLflow Uncontrolled Resource Consumption vulnerability

CVSS3: 5.9
EPSS: Средний
github логотип

GHSA-49m6-7527-q2hw

больше 4 лет назад

Multiple unspecified vulnerabilities in Linksys RT31P2 VoIP router allow remote attackers to cause a denial of service via malformed Session Initiation Protocol (SIP) messages.

EPSS: Низкий
github логотип

GHSA-49m5-2838-q2rv

больше 4 лет назад

Ansible unsafe evaluation of some strings

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-49m4-vp58-wgc9

около 1 месяца назад

MCP-for-Stata: Stata Command Injection via Unsanitized `package` in `ado_package_install`

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-49m4-v772-g49w

больше 4 лет назад

Multiple SQL injection vulnerabilities in Postfix Admin (aka postfixadmin) before 2.3.5 allow remote authenticated users to execute arbitrary SQL commands via (1) the pw parameter to the pacrypt function, when mysql_encrypt is configured, or (2) unspecified vectors that are used in backup files generated by backup.php.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-49mg-9ffp-9wjj

Cross-site scripting (XSS) vulnerability in info.php in TomatoCart 1.1.8.6.1 allows remote attackers to inject arbitrary web script or HTML via the faqs_id parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-49mg-94fc-2fx6

Command Injection in npm-git-publish

около 6 лет назад
github логотип
GHSA-49mg-4v6p-32w2

Vvveb prior to 1.0.8.1 contains a stored cross-site scripting vulnerability that allows authenticated users with media upload and rename permissions to execute arbitrary JavaScript by bypassing MIME type validation and renaming uploaded files to executable extensions. Attackers can prepend a GIF89a header to HTML/JavaScript payloads to bypass upload validation, rename the file to .html extension, and execute malicious scripts in an administrator's browser session to create backdoor accounts and upload malicious plugins for remote code execution.

CVSS3: 5.4
0%
Низкий
5 месяцев назад
github логотип
GHSA-49mf-7m55-94wm

The (1) JSAFE and (2) JSSE APIs in EMC RSA BSAFE SSL-J 5.x before 5.1.3 and 6.x before 6.0.2 make it easier for remote attackers to bypass intended cryptographic protection mechanisms by triggering application-data processing during the TLS handshake, a time at which the data is both unencrypted and unauthenticated.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-49m9-pgww-9vq6

n8n Vulnerable to Unauthenticated Denial of Service via MCP Client Registration

CVSS3: 7.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-49m9-94x6-8vw5

Multiple stored cross-site scripting (XSS) vulnerabilities in Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the wifi_sta_ssid or wifi_ap_ssid parameters.

CVSS3: 5.4
0%
Низкий
12 месяцев назад
github логотип
GHSA-49m9-4vrg-7r7p

In the Linux kernel, the following vulnerability has been resolved: um: vector: Fix memory leak in vector_config If the return value of the uml_parse_vector_ifspec function is NULL, we should call kfree(params) to prevent memory leak.

0%
Низкий
9 месяцев назад
github логотип
GHSA-49m8-x93v-846r

The Migration, Backup, Staging – WPvivid Backup & Migration plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the 'wpvivid_upload_import_files' function in all versions up to, and including, 0.9.116. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible. NOTE: Uploaded files are only accessible on WordPress instances running on the NGINX web server as the existing .htaccess within the target file upload folder prevents access on Apache servers.

CVSS3: 7.2
58%
Средний
около 1 года назад
github логотип
GHSA-49m8-h8fg-9rhj

In multiple locations, there is a possible way to mislead a user into approving an authentication prompt for one app when its result will be used in another due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

0%
Низкий
около 1 года назад
github логотип
GHSA-49m8-f75j-fw3p

A vulnerability has been found in itsourcecode Event Calendar 1.0 and classified as critical. Affected by this vulnerability is the function regConfirm/regDelete of the file process.php. The manipulation of the argument userId leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-268699.

CVSS3: 6.3
1%
Низкий
около 2 лет назад
github логотип
GHSA-49m8-524g-8rr2

The MailChimp Forms by MailMunch plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `sign_in()` and `sign_up()` AJAX handlers in all versions up to, and including, 3.2.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to relink the site's MailMunch integration to an attacker-controlled MailMunch account by submitting attacker-supplied credentials. Once relinked, all subscriber data captured by the plugin's forms is delivered to the attacker, and the forms/landing pages rendered on the site are pulled from the attacker's MailMunch account.

CVSS3: 8.1
0%
Низкий
около 1 месяца назад
github логотип
GHSA-49m7-vp55-6fjx

Using API in the 2N OS device, authorized user can enable logging, which discloses valid authentication tokens in system log.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-49m7-c65r-f62m

Vesta v1.0.0-5 was discovered to contain a cross-site scripting (XSS) vulnerability via the body function at /web/api/v1/upload/UploadHandler.php.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-49m7-7r54-4vjp

CuppaCMS has XSS via an SVG document uploaded to the administrator/#/component/table_manager/view/cu_views URI.

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
github логотип
GHSA-49m6-w46f-fp87

The kernel in Apple Mac OS X before 10.5.6 allows local users to cause a denial of service (infinite loop and system halt) by running an application that is dynamically linked to libraries on an NFS server, related to occurrence of an exception in this application.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-49m6-vrr9-2cqm

MLflow Uncontrolled Resource Consumption vulnerability

CVSS3: 5.9
11%
Средний
больше 1 года назад
github логотип
GHSA-49m6-7527-q2hw

Multiple unspecified vulnerabilities in Linksys RT31P2 VoIP router allow remote attackers to cause a denial of service via malformed Session Initiation Protocol (SIP) messages.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-49m5-2838-q2rv

Ansible unsafe evaluation of some strings

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-49m4-vp58-wgc9

MCP-for-Stata: Stata Command Injection via Unsanitized `package` in `ado_package_install`

CVSS3: 8.4
около 1 месяца назад
github логотип
GHSA-49m4-v772-g49w

Multiple SQL injection vulnerabilities in Postfix Admin (aka postfixadmin) before 2.3.5 allow remote authenticated users to execute arbitrary SQL commands via (1) the pw parameter to the pacrypt function, when mysql_encrypt is configured, or (2) unspecified vectors that are used in backup files generated by backup.php.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу