Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 132

Количество 370 132

github логотип

GHSA-48q4-2p6c-rxg9

больше 1 года назад

Missing Authorization vulnerability in Automattic Sensei LMS allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sensei LMS: from n/a through 4.24.4.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-48q3-prgv-gm4w

около 1 года назад

Parse Server exposes the data schema via GraphQL API

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-48q3-m4hf-56c9

больше 4 лет назад

TeamPass vulnerable to Cross-site Scripting

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-48q3-9h79-7966

около 1 года назад

Slink v1.4.9 allows stored cross-site scripting (XSS) via crafted SVG uploads. When a user views the shared image in a new browser tab, the embedded JavaScript executes. The issue affects both authenticated and unauthenticated users.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-48q3-6cgc-xjjc

больше 2 лет назад

The GiveWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.33.3. This is due to missing or incorrect nonce validation on the give_stripe_disconnect_connect_stripe_account function. This makes it possible for unauthenticated attackers to deactivate the plugin's stripe integration settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-48q3-5297-wmmx

почти 4 года назад

CSRF vulnerability in Jenkins CONS3RT Plugin allow capturing credentials

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-48q3-3jc4-wq7c

2 дня назад

Acrobat Reader is affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-48q2-r8f4-8pfp

больше 4 лет назад

Cross-Site Scripting (XSS) vulnerability in adm/faqmasterformupdate.php in gnuboard5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-48q2-hf73-8f5p

больше 1 года назад

Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem.  Logview is accessible on Pro Cloud Server Configuration interface. This issue affects Pro Cloud Server: earlier than 6.0.165.

EPSS: Низкий
github логотип

GHSA-48q2-ffv8-pgrw

4 месяца назад

The ping diagnostic handler in /bin/httpd_clientside for ALTICE LABS / SFR France GR140DG and GR140IG fibre CPE/Router/Gateway, inserts unsanitized user input into a system() call, allowing authenticated remote attackers to execute arbitrary commands as root via crafted destAddr parameters using shell command substitution.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-48q2-62w2-89cw

больше 4 лет назад

A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a repository, they may be able to copy files outside of the destination directory on the targeted system via path traversal. If reposync is running with heightened privileges on a targeted system, this flaw could potentially result in system compromise via the overwriting of critical system files. Version 1.1.31 and older are believed to be affected.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-48px-gfg6-r8pv

больше 4 лет назад

** DISPUTED ** An issue was discovered in SMA Solar Technology products. The SMAdata2+ communication protocol does not properly use authentication with encryption: it is vulnerable to man in the middle, packet injection, and replay attacks. Any setting change, authentication packet, scouting packet, etc. can be replayed, injected, or used for a man in the middle session. All functionalities available in Sunny Explorer can effectively be done from anywhere within the network as long as an attacker gets the packet setup correctly. This includes the authentication process for all (including hidden) access levels and the changing of settings in accordance with the gained access rights. Furthermore, because the SMAdata2+ communication channel is unencrypted, an attacker capable of understanding the protocol can eavesdrop on communications. NOTE: the vendor's position is that authentication with encryption is not required on an isolated subnetwork. Also, only Sunny Boy TLST-21 and TL-21 a...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-48px-72pc-9gfw

около 2 месяцев назад

Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute pardus-update allows OS Command Injection. This issue affects pardus-update: from 0.6.6 before 0.7.0.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-48px-5hxr-345p

2 месяца назад

Unauthorized use of Kyocera printers, allows all information stored in the Kyocera address book to be exported. The security measure that encrypts incoming data ian be bypassed with this vulnerability, allowing encrypted data to be decrypted. Passwords and other sensitive information can be obtained. This affects Kyocera Command Center RX TASKalfa 2552ci, TASKalfa 3252ci, TASKalfa 2553ci, TASKalfa 3253ci, TASKalfa 3554ci, TASKalfa 4052ci, TASKalfa 5052ci, TASKalfa 6052ci, TASKalfa 7052ci, TASKalfa 8052ci, TASKalfa 7353ci, TASKalfa 8353ci, TASKalfa 2554ci, TASKalfa 3254ci, TASKalfa 505.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-48px-5fg3-2vf2

9 месяцев назад

Missing Authorization vulnerability in integrationclaspo Popup Builder: Exit-Intent pop-up, Spin the Wheel, Newsletter signup, Email Capture &amp; Lead Generation forms maker claspo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Popup Builder: Exit-Intent pop-up, Spin the Wheel, Newsletter signup, Email Capture &amp; Lead Generation forms maker: from n/a through <= 1.0.5.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-48pw-mx7j-q7j4

больше 4 лет назад

An elevation of privilege vulnerability in the kernel sound subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32510733.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-48pw-75p2-xjhm

почти 4 года назад

OpenCATS v0.9.6 was discovered to contain a remote code execution (RCE) vulnerability via the getDataGridPager's ajax functionality.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-48pw-3c9w-56rv

около 4 лет назад

Multiple vulnerabilities in the web interface of Cisco Webex Meetings could allow a remote attacker to conduct a cross-site scripting (XSS) attack or a frame hijacking attack against a user of the web interface. For more information about these vulnerabilities, see the Details section of this advisory.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-48pv-xvcw-jg8h

больше 4 лет назад

In MediaWiki through 1.37, the Special:ImportFile URI (aka FileImporter) allows XSS, as demonstrated by the clientUrl parameter.

EPSS: Низкий
github логотип

GHSA-48pv-j3x3-cw7v

больше 2 лет назад

Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-48q4-2p6c-rxg9

Missing Authorization vulnerability in Automattic Sensei LMS allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sensei LMS: from n/a through 4.24.4.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-48q3-prgv-gm4w

Parse Server exposes the data schema via GraphQL API

CVSS3: 5.3
1%
Низкий
около 1 года назад
github логотип
GHSA-48q3-m4hf-56c9

TeamPass vulnerable to Cross-site Scripting

CVSS3: 6.1
2%
Низкий
больше 4 лет назад
github логотип
GHSA-48q3-9h79-7966

Slink v1.4.9 allows stored cross-site scripting (XSS) via crafted SVG uploads. When a user views the shared image in a new browser tab, the embedded JavaScript executes. The issue affects both authenticated and unauthenticated users.

CVSS3: 6.1
0%
Низкий
около 1 года назад
github логотип
GHSA-48q3-6cgc-xjjc

The GiveWP plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.33.3. This is due to missing or incorrect nonce validation on the give_stripe_disconnect_connect_stripe_account function. This makes it possible for unauthenticated attackers to deactivate the plugin's stripe integration settings via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-48q3-5297-wmmx

CSRF vulnerability in Jenkins CONS3RT Plugin allow capturing credentials

CVSS3: 5.4
1%
Низкий
почти 4 года назад
github логотип
GHSA-48q3-3jc4-wq7c

Acrobat Reader is affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files and directories outside the intended access scope. Exploitation of this issue requires user interaction in that a victim must open a malicious file. Scope is changed.

CVSS3: 8.2
0%
Низкий
2 дня назад
github логотип
GHSA-48q2-r8f4-8pfp

Cross-Site Scripting (XSS) vulnerability in adm/faqmasterformupdate.php in gnuboard5 before 5.3.1.6 allows remote attackers to inject arbitrary web script or HTML.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-48q2-hf73-8f5p

Improper Limitation of a Pathname caused a Path Traversal vulnerability in Sparx Systems Pro Cloud Server. This vulnerability is present in logview.php and it allows reading arbitrary files on the filesystem.  Logview is accessible on Pro Cloud Server Configuration interface. This issue affects Pro Cloud Server: earlier than 6.0.165.

1%
Низкий
больше 1 года назад
github логотип
GHSA-48q2-ffv8-pgrw

The ping diagnostic handler in /bin/httpd_clientside for ALTICE LABS / SFR France GR140DG and GR140IG fibre CPE/Router/Gateway, inserts unsanitized user input into a system() call, allowing authenticated remote attackers to execute arbitrary commands as root via crafted destAddr parameters using shell command substitution.

CVSS3: 8.8
1%
Низкий
4 месяца назад
github логотип
GHSA-48q2-62w2-89cw

A directory traversal issue was found in reposync, a part of yum-utils, where reposync fails to sanitize paths in remote repository configuration files. If an attacker controls a repository, they may be able to copy files outside of the destination directory on the targeted system via path traversal. If reposync is running with heightened privileges on a targeted system, this flaw could potentially result in system compromise via the overwriting of critical system files. Version 1.1.31 and older are believed to be affected.

CVSS3: 8.1
6%
Низкий
больше 4 лет назад
github логотип
GHSA-48px-gfg6-r8pv

** DISPUTED ** An issue was discovered in SMA Solar Technology products. The SMAdata2+ communication protocol does not properly use authentication with encryption: it is vulnerable to man in the middle, packet injection, and replay attacks. Any setting change, authentication packet, scouting packet, etc. can be replayed, injected, or used for a man in the middle session. All functionalities available in Sunny Explorer can effectively be done from anywhere within the network as long as an attacker gets the packet setup correctly. This includes the authentication process for all (including hidden) access levels and the changing of settings in accordance with the gained access rights. Furthermore, because the SMAdata2+ communication channel is unencrypted, an attacker capable of understanding the protocol can eavesdrop on communications. NOTE: the vendor's position is that authentication with encryption is not required on an isolated subnetwork. Also, only Sunny Boy TLST-21 and TL-21 a...

CVSS3: 8.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-48px-72pc-9gfw

Improper neutralization of special elements used in an OS command ('OS command injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute pardus-update allows OS Command Injection. This issue affects pardus-update: from 0.6.6 before 0.7.0.

CVSS3: 7.8
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-48px-5hxr-345p

Unauthorized use of Kyocera printers, allows all information stored in the Kyocera address book to be exported. The security measure that encrypts incoming data ian be bypassed with this vulnerability, allowing encrypted data to be decrypted. Passwords and other sensitive information can be obtained. This affects Kyocera Command Center RX TASKalfa 2552ci, TASKalfa 3252ci, TASKalfa 2553ci, TASKalfa 3253ci, TASKalfa 3554ci, TASKalfa 4052ci, TASKalfa 5052ci, TASKalfa 6052ci, TASKalfa 7052ci, TASKalfa 8052ci, TASKalfa 7353ci, TASKalfa 8353ci, TASKalfa 2554ci, TASKalfa 3254ci, TASKalfa 505.

CVSS3: 7.5
0%
Низкий
2 месяца назад
github логотип
GHSA-48px-5fg3-2vf2

Missing Authorization vulnerability in integrationclaspo Popup Builder: Exit-Intent pop-up, Spin the Wheel, Newsletter signup, Email Capture &amp; Lead Generation forms maker claspo allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Popup Builder: Exit-Intent pop-up, Spin the Wheel, Newsletter signup, Email Capture &amp; Lead Generation forms maker: from n/a through <= 1.0.5.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-48pw-mx7j-q7j4

An elevation of privilege vulnerability in the kernel sound subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-32510733.

CVSS3: 7
2%
Низкий
больше 4 лет назад
github логотип
GHSA-48pw-75p2-xjhm

OpenCATS v0.9.6 was discovered to contain a remote code execution (RCE) vulnerability via the getDataGridPager's ajax functionality.

CVSS3: 9.8
2%
Низкий
почти 4 года назад
github логотип
GHSA-48pw-3c9w-56rv

Multiple vulnerabilities in the web interface of Cisco Webex Meetings could allow a remote attacker to conduct a cross-site scripting (XSS) attack or a frame hijacking attack against a user of the web interface. For more information about these vulnerabilities, see the Details section of this advisory.

CVSS3: 5.4
1%
Низкий
около 4 лет назад
github логотип
GHSA-48pv-xvcw-jg8h

In MediaWiki through 1.37, the Special:ImportFile URI (aka FileImporter) allows XSS, as demonstrated by the clientUrl parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-48pv-j3x3-cw7v

Microsoft OLE DB Driver for SQL Server Remote Code Execution Vulnerability

CVSS3: 8.8
2%
Низкий
больше 2 лет назад

Уязвимостей на страницу