Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 227

Количество 370 227

github логотип

GHSA-48wx-8736-jgx2

больше 1 года назад

Drupal Commerce Alphabank Redirect Incorrect Authorization vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-48ww-vppq-9c8v

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: hdmi: Perform NULL pointer check for mtk_hdmi_conf In commit 41ca9caaae0b ("drm/mediatek: hdmi: Add check for CEA modes only") a check for CEA modes was added to function mtk_hdmi_bridge_mode_valid() in order to address possible issues on MT8167; moreover, with commit c91026a938c2 ("drm/mediatek: hdmi: Add optional limit on maximal HDMI mode clock") another similar check was introduced. Unfortunately though, at the time of writing, MT8173 does not provide any mtk_hdmi_conf structure and this is crashing the kernel with NULL pointer upon entering mtk_hdmi_bridge_mode_valid(), which happens as soon as a HDMI cable gets plugged in. To fix this regression, add a NULL pointer check for hdmi->conf in the said function, restoring HDMI functionality and avoiding NULL pointer kernel panics.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-48ww-j4fc-435p

больше 5 лет назад

Command injection in nodemailer

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-48ww-8h7g-4hwq

больше 4 лет назад

TYPO3 is vulnerable to Spam Abuse in the native form content element

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-48ww-7fpq-xhw8

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in the Administration Console for BEA Tuxedo 8.1 and earlier allows remote attackers to inject arbitrary web script via the INIFILE argument.

EPSS: Низкий
github логотип

GHSA-48ww-7497-cmhw

больше 4 лет назад

usrsctp before 2019-12-20 has out-of-bounds reads in sctp_load_addresses_from_init.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-48wv-hw8m-mfc2

около 2 месяцев назад

The Smart Manager WordPress plugin before 8.92.0 does not properly encode a post field before rendering it into an HTML attribute in its management grid, allowing users with the Contributor role or above to inject JavaScript that executes in the browser session of an administrator who views the grid.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-48wv-cp4q-qcjc

12 месяцев назад

The LatePoint plugin for WordPress is vulnerable to Authentication Bypass due to insufficient identity verification within the steps__load_step route of the latepoint_route_call AJAX endpoint in all versions up to, and including, 5.1.94. The endpoint reads the client-supplied customer email and related customer fields before invoking the internal login handler without verifying login status, capability checks, or a valid AJAX nonce. This makes it possible for unauthenticated attackers to log into any customer’s account.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-48wr-pgcr-4g7x

больше 3 лет назад

Path traversal for the Intel(R) NUC Pro Software Suite before version 2.0.0.3 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-48wr-p98v-9w5h

5 месяцев назад

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-48wr-8cjg-9vxg

больше 4 лет назад

SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the export function by a Regular user.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-48wq-5h48-mwqq

4 месяца назад

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid memory leak in f2fs_rename() syzbot reported a f2fs bug as below: BUG: memory leak unreferenced object 0xffff888127f70830 (size 16): comm "syz.0.23", pid 6144, jiffies 4294943712 hex dump (first 16 bytes): 3c af 57 72 5b e6 8f ad 6e 8e fd 33 42 39 03 ff <.Wr[...n..3B9.. backtrace (crc 925f8a80): kmemleak_alloc_recursive include/linux/kmemleak.h:44 [inline] slab_post_alloc_hook mm/slub.c:4520 [inline] slab_alloc_node mm/slub.c:4844 [inline] __do_kmalloc_node mm/slub.c:5237 [inline] __kmalloc_noprof+0x3bd/0x560 mm/slub.c:5250 kmalloc_noprof include/linux/slab.h:954 [inline] fscrypt_setup_filename+0x15e/0x3b0 fs/crypto/fname.c:364 f2fs_setup_filename+0x52/0xb0 fs/f2fs/dir.c:143 f2fs_rename+0x159/0xca0 fs/f2fs/namei.c:961 f2fs_rename2+0xd5/0xf20 fs/f2fs/namei.c:1308 vfs_rename+0x7ff/0x1250 fs/namei.c:6026 filename_renameat2+0x4f4/0x660 fs/n...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-48wp-p9qv-4j64

больше 3 лет назад

Commonmarker vulnerable to to several quadratic complexity bugs that may lead to denial of service

EPSS: Низкий
github логотип

GHSA-48wp-mqgr-h6fm

больше 4 лет назад

Google Chrome before 14.0.835.163 does not properly handle media buffers, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-48wp-98wm-5fpp

15 дней назад

A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic.

EPSS: Низкий
github логотип

GHSA-48wm-jcwq-6m89

около 2 лет назад

An Exposure of Resource to Wrong Sphere vulnerability in the sampling service of Juniper Networks Junos OS Evolved allows an unauthenticated network-based attacker to send arbitrary data to the device, which leads msvcsd process to crash with limited availability impacting Denial of Service (DoS) and allows unauthorized network access to the device, potentially impacting system integrity. This issue only happens when inline jflow is configured. This does not impact any forwarding traffic. The impacted services MSVCS-DB app crashes momentarily and recovers by itself.  This issue affects Juniper Networks Junos OS Evolved:  * 21.4 versions earlier than 21.4R3-S7-EVO;  * 22.2 versions earlier than 22.2R3-S3-EVO; * 22.3 versions earlier than 22.3R3-S2-EVO; * 22.4 versions earlier than 22.4R3-EVO; * 23.2 versions earlier than 23.2R1-S2-EVO, 23.2R2-EVO.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-48wm-4cr2-qrfh

почти 2 года назад

A stored cross-site scripting (XSS) vulnerability in the Configuration page of Piwigo v14.5.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Page banner parameter.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-48wm-3cv2-f2j7

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in HP Operations 9.10 on UNIX platforms allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-48wm-29g7-w3qw

около 1 года назад

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7, 6.2.0.0 through 6.2.0.4, and 6.2.1.0 could disclose sensitive server information to an unauthorized user that could aid in further attacks against the system.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-48wj-qrf3-8565

около 4 лет назад

H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateMacClone.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-48wx-8736-jgx2

Drupal Commerce Alphabank Redirect Incorrect Authorization vulnerability

CVSS3: 8.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-48ww-vppq-9c8v

In the Linux kernel, the following vulnerability has been resolved: drm/mediatek: hdmi: Perform NULL pointer check for mtk_hdmi_conf In commit 41ca9caaae0b ("drm/mediatek: hdmi: Add check for CEA modes only") a check for CEA modes was added to function mtk_hdmi_bridge_mode_valid() in order to address possible issues on MT8167; moreover, with commit c91026a938c2 ("drm/mediatek: hdmi: Add optional limit on maximal HDMI mode clock") another similar check was introduced. Unfortunately though, at the time of writing, MT8173 does not provide any mtk_hdmi_conf structure and this is crashing the kernel with NULL pointer upon entering mtk_hdmi_bridge_mode_valid(), which happens as soon as a HDMI cable gets plugged in. To fix this regression, add a NULL pointer check for hdmi->conf in the said function, restoring HDMI functionality and avoiding NULL pointer kernel panics.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-48ww-j4fc-435p

Command injection in nodemailer

CVSS3: 9.8
2%
Низкий
больше 5 лет назад
github логотип
GHSA-48ww-8h7g-4hwq

TYPO3 is vulnerable to Spam Abuse in the native form content element

CVSS3: 5.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-48ww-7fpq-xhw8

Cross-site scripting (XSS) vulnerability in the Administration Console for BEA Tuxedo 8.1 and earlier allows remote attackers to inject arbitrary web script via the INIFILE argument.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-48ww-7497-cmhw

usrsctp before 2019-12-20 has out-of-bounds reads in sctp_load_addresses_from_init.

CVSS3: 6.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-48wv-hw8m-mfc2

The Smart Manager WordPress plugin before 8.92.0 does not properly encode a post field before rendering it into an HTML attribute in its management grid, allowing users with the Contributor role or above to inject JavaScript that executes in the browser session of an administrator who views the grid.

CVSS3: 4.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-48wv-cp4q-qcjc

The LatePoint plugin for WordPress is vulnerable to Authentication Bypass due to insufficient identity verification within the steps__load_step route of the latepoint_route_call AJAX endpoint in all versions up to, and including, 5.1.94. The endpoint reads the client-supplied customer email and related customer fields before invoking the internal login handler without verifying login status, capability checks, or a valid AJAX nonce. This makes it possible for unauthenticated attackers to log into any customer’s account.

CVSS3: 8.2
0%
Низкий
12 месяцев назад
github логотип
GHSA-48wr-pgcr-4g7x

Path traversal for the Intel(R) NUC Pro Software Suite before version 2.0.0.3 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS3: 6.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-48wr-p98v-9w5h

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

CVSS3: 4.9
0%
Низкий
5 месяцев назад
github логотип
GHSA-48wr-8cjg-9vxg

SugarCRM before 8.0.4 and 9.x before 9.0.2 allows SQL injection in the export function by a Regular user.

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-48wq-5h48-mwqq

In the Linux kernel, the following vulnerability has been resolved: f2fs: fix to avoid memory leak in f2fs_rename() syzbot reported a f2fs bug as below: BUG: memory leak unreferenced object 0xffff888127f70830 (size 16): comm "syz.0.23", pid 6144, jiffies 4294943712 hex dump (first 16 bytes): 3c af 57 72 5b e6 8f ad 6e 8e fd 33 42 39 03 ff <.Wr[...n..3B9.. backtrace (crc 925f8a80): kmemleak_alloc_recursive include/linux/kmemleak.h:44 [inline] slab_post_alloc_hook mm/slub.c:4520 [inline] slab_alloc_node mm/slub.c:4844 [inline] __do_kmalloc_node mm/slub.c:5237 [inline] __kmalloc_noprof+0x3bd/0x560 mm/slub.c:5250 kmalloc_noprof include/linux/slab.h:954 [inline] fscrypt_setup_filename+0x15e/0x3b0 fs/crypto/fname.c:364 f2fs_setup_filename+0x52/0xb0 fs/f2fs/dir.c:143 f2fs_rename+0x159/0xca0 fs/f2fs/namei.c:961 f2fs_rename2+0xd5/0xf20 fs/f2fs/namei.c:1308 vfs_rename+0x7ff/0x1250 fs/namei.c:6026 filename_renameat2+0x4f4/0x660 fs/n...

CVSS3: 5.5
0%
Низкий
4 месяца назад
github логотип
GHSA-48wp-p9qv-4j64

Commonmarker vulnerable to to several quadratic complexity bugs that may lead to denial of service

больше 3 лет назад
github логотип
GHSA-48wp-mqgr-h6fm

Google Chrome before 14.0.835.163 does not properly handle media buffers, which allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-48wp-98wm-5fpp

A buffer overflow vulnerability in the WatchGuard Fireware OS Management Web UI allows an authenticated administrator with network access to cause a denial of service (DoS) condition or potentially execute arbitrary code by sending specially crafted network traffic.

0%
Низкий
15 дней назад
github логотип
GHSA-48wm-jcwq-6m89

An Exposure of Resource to Wrong Sphere vulnerability in the sampling service of Juniper Networks Junos OS Evolved allows an unauthenticated network-based attacker to send arbitrary data to the device, which leads msvcsd process to crash with limited availability impacting Denial of Service (DoS) and allows unauthorized network access to the device, potentially impacting system integrity. This issue only happens when inline jflow is configured. This does not impact any forwarding traffic. The impacted services MSVCS-DB app crashes momentarily and recovers by itself.  This issue affects Juniper Networks Junos OS Evolved:  * 21.4 versions earlier than 21.4R3-S7-EVO;  * 22.2 versions earlier than 22.2R3-S3-EVO; * 22.3 versions earlier than 22.3R3-S2-EVO; * 22.4 versions earlier than 22.4R3-EVO; * 23.2 versions earlier than 23.2R1-S2-EVO, 23.2R2-EVO.

CVSS3: 6.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-48wm-4cr2-qrfh

A stored cross-site scripting (XSS) vulnerability in the Configuration page of Piwigo v14.5.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Page banner parameter.

CVSS3: 5.4
0%
Низкий
почти 2 года назад
github логотип
GHSA-48wm-3cv2-f2j7

Cross-site scripting (XSS) vulnerability in HP Operations 9.10 on UNIX platforms allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-48wm-29g7-w3qw

IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.7, 6.2.0.0 through 6.2.0.4, and 6.2.1.0 could disclose sensitive server information to an unauthorized user that could aid in further attacks against the system.

CVSS3: 2.7
0%
Низкий
около 1 года назад
github логотип
GHSA-48wj-qrf3-8565

H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateMacClone.

CVSS3: 9.8
1%
Низкий
около 4 лет назад

Уязвимостей на страницу