Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 369 608

Количество 369 608

github логотип

GHSA-484m-2c5w-2g38

7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: libceph: make calc_target() set t->paused, not just clear it Currently calc_target() clears t->paused if the request shouldn't be paused anymore, but doesn't ever set t->paused even though it's able to determine when the request should be paused. Setting t->paused is left to __submit_request() which is fine for regular requests but doesn't work for linger requests -- since __submit_request() doesn't operate on linger requests, there is nowhere for lreq->t.paused to be set. One consequence of this is that watches don't get reestablished on paused -> unpaused transitions in cases where requests have been paused long enough for the (paused) unwatch request to time out and for the subsequent (re)watch request to enter the paused state. On top of the watch not getting reestablished, rbd_reregister_watch() gets stuck with rbd_dev->watch_mutex held: rbd_register_watch __rbd_register_watch ceph_osdc_watch ...

EPSS: Низкий
github логотип

GHSA-484j-956r-r6hg

больше 4 лет назад

A heap-based buffer overflow was discovered in AP4_VisualSampleEntry::ReadFields in Core/Ap4SampleEntry.cpp in Bento4 1.5.0-617. The vulnerability causes an out-of-bounds write, which leads to remote denial of service or possibly code execution.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-484h-wc5x-5cw9

7 месяцев назад

Rejected reason: Not used

EPSS: Низкий
github логотип

GHSA-484h-jpfv-mrph

больше 4 лет назад

Multiple unspecified vulnerabilities in Gallery 3 before 3.0.4 allow attackers to execute arbitrary PHP code via unknown vectors.

EPSS: Низкий
github логотип

GHSA-484g-rjcp-74rc

больше 4 лет назад

An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors while parsing mDNS messages, some allocated data is not freed, possibly leading to a denial-of-service condition via resource exhaustion. An attacker can send one mDNS message repeatedly to trigger this vulnerability through decoding of the domain name performed by rr_decode.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-484g-7whh-w55j

больше 4 лет назад

Compaq Tru64 4.0 d allows remote attackers to cause a denial of service in (1) telnet, (2) FTP, (3) ypbind, (4) rpc.lockd, (5) snmp, (6) ttdbserverd, and possibly other services via a TCP SYN scan, as demonstrated using nmap.

EPSS: Низкий
github логотип

GHSA-484f-743f-6jx2

больше 6 лет назад

Object injection in cookie driver in phpfastcache

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-484c-hxgg-w2g4

больше 4 лет назад

In the Zoom Client for Meetings for Ubuntu Linux before version 5.1.0, there is an HTML injection flaw when sending a remote control request to a user in the process of in-meeting screen sharing. This could allow meeting participants to be targeted for social engineering attacks.

EPSS: Низкий
github логотип

GHSA-484c-hrj4-qjw4

почти 4 года назад

In audio driver, there is a use after free due to a race condition. This could lead to local denial of service in kernel.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-4849-x3jx-45qr

почти 4 года назад

Pimcore vulnerable to stored stored Cross-site Scripting via`properties` when creating new users

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-4849-x279-v4q2

больше 4 лет назад

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch running on a Windows 10, Windows 8.1, Windows Server 2012, Windows Server 2012 R2, or Windows Server 2016 host server fails to properly validate input from a privileged user on a guest operating system, aka "Hyper-V Denial of Service Vulnerability." This CVE ID is unique from CVE-2017-0178, CVE-2017-0179, CVE-2017-0182, CVE-2017-0183, CVE-2017-0184, and CVE-2017-0186.

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-4849-rvp6-f473

больше 3 лет назад

Windows Media Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-44667.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4849-p72j-5rw9

3 месяца назад

A vulnerability was detected in sayan365 student-management-system up to 7f3c9ce7d410332335c2affac93a385485051800. This impacts an unknown function. The manipulation results in improper authentication. The attack can be executed remotely. The exploit is now public and may be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. Multiple endpoints are affected. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-4849-cfqq-r8pq

больше 4 лет назад

Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable files in arbitrary directories via directory traversal sequences in the input to unspecified connector modules, as exploited in the wild for remote code execution in July 2009, related to the file browser and the editor/filemanager/connectors/ directory.

EPSS: Высокий
github логотип

GHSA-4849-c6cw-6c25

около 1 года назад

The Ruven Themes: Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ruven_button' shortcode in all versions up to, and including, 1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-4849-c4c9-fjj5

больше 4 лет назад

PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters.

EPSS: Низкий
github логотип

GHSA-4849-5wjh-4xff

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Linus Lundahl Good Old Gallery allows Reflected XSS. This issue affects Good Old Gallery: from n/a through 2.1.2.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-4848-xc24-jj88

больше 4 лет назад

An error within the "nikon_coolscan_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.9 can be exploited to trigger a NULL pointer dereference.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-4848-2c65-8677

больше 4 лет назад

PHP remote file inclusion vulnerability in bottom.php in Shadowed Portal 5.599 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.

EPSS: Низкий
github логотип

GHSA-4847-mppj-fwhp

больше 2 лет назад

ChurchCRM 5.5.0 ConfirmReport.php is vulnerable to Blind SQL Injection (Time-based) via the familyId GET parameter.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-484m-2c5w-2g38

In the Linux kernel, the following vulnerability has been resolved: libceph: make calc_target() set t->paused, not just clear it Currently calc_target() clears t->paused if the request shouldn't be paused anymore, but doesn't ever set t->paused even though it's able to determine when the request should be paused. Setting t->paused is left to __submit_request() which is fine for regular requests but doesn't work for linger requests -- since __submit_request() doesn't operate on linger requests, there is nowhere for lreq->t.paused to be set. One consequence of this is that watches don't get reestablished on paused -> unpaused transitions in cases where requests have been paused long enough for the (paused) unwatch request to time out and for the subsequent (re)watch request to enter the paused state. On top of the watch not getting reestablished, rbd_reregister_watch() gets stuck with rbd_dev->watch_mutex held: rbd_register_watch __rbd_register_watch ceph_osdc_watch ...

0%
Низкий
7 месяцев назад
github логотип
GHSA-484j-956r-r6hg

A heap-based buffer overflow was discovered in AP4_VisualSampleEntry::ReadFields in Core/Ap4SampleEntry.cpp in Bento4 1.5.0-617. The vulnerability causes an out-of-bounds write, which leads to remote denial of service or possibly code execution.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-484h-wc5x-5cw9

Rejected reason: Not used

7 месяцев назад
github логотип
GHSA-484h-jpfv-mrph

Multiple unspecified vulnerabilities in Gallery 3 before 3.0.4 allow attackers to execute arbitrary PHP code via unknown vectors.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-484g-rjcp-74rc

An exploitable denial-of-service vulnerability exists in the resource allocation handling of Videolabs libmicrodns 0.1.0. When encountering errors while parsing mDNS messages, some allocated data is not freed, possibly leading to a denial-of-service condition via resource exhaustion. An attacker can send one mDNS message repeatedly to trigger this vulnerability through decoding of the domain name performed by rr_decode.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-484g-7whh-w55j

Compaq Tru64 4.0 d allows remote attackers to cause a denial of service in (1) telnet, (2) FTP, (3) ypbind, (4) rpc.lockd, (5) snmp, (6) ttdbserverd, and possibly other services via a TCP SYN scan, as demonstrated using nmap.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-484f-743f-6jx2

Object injection in cookie driver in phpfastcache

CVSS3: 4.4
1%
Низкий
больше 6 лет назад
github логотип
GHSA-484c-hxgg-w2g4

In the Zoom Client for Meetings for Ubuntu Linux before version 5.1.0, there is an HTML injection flaw when sending a remote control request to a user in the process of in-meeting screen sharing. This could allow meeting participants to be targeted for social engineering attacks.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-484c-hrj4-qjw4

In audio driver, there is a use after free due to a race condition. This could lead to local denial of service in kernel.

CVSS3: 4.7
0%
Низкий
почти 4 года назад
github логотип
GHSA-4849-x3jx-45qr

Pimcore vulnerable to stored stored Cross-site Scripting via`properties` when creating new users

CVSS3: 5.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-4849-x279-v4q2

A denial of service vulnerability exists when Microsoft Hyper-V Network Switch running on a Windows 10, Windows 8.1, Windows Server 2012, Windows Server 2012 R2, or Windows Server 2016 host server fails to properly validate input from a privileged user on a guest operating system, aka "Hyper-V Denial of Service Vulnerability." This CVE ID is unique from CVE-2017-0178, CVE-2017-0179, CVE-2017-0182, CVE-2017-0183, CVE-2017-0184, and CVE-2017-0186.

CVSS3: 5.8
6%
Низкий
больше 4 лет назад
github логотип
GHSA-4849-rvp6-f473

Windows Media Remote Code Execution Vulnerability. This CVE ID is unique from CVE-2022-44667.

CVSS3: 7.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4849-p72j-5rw9

A vulnerability was detected in sayan365 student-management-system up to 7f3c9ce7d410332335c2affac93a385485051800. This impacts an unknown function. The manipulation results in improper authentication. The attack can be executed remotely. The exploit is now public and may be used. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. Multiple endpoints are affected. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 7.3
0%
Низкий
3 месяца назад
github логотип
GHSA-4849-cfqq-r8pq

Multiple directory traversal vulnerabilities in FCKeditor before 2.6.4.1 allow remote attackers to create executable files in arbitrary directories via directory traversal sequences in the input to unspecified connector modules, as exploited in the wild for remote code execution in July 2009, related to the file browser and the editor/filemanager/connectors/ directory.

84%
Высокий
больше 4 лет назад
github логотип
GHSA-4849-c6cw-6c25

The Ruven Themes: Shortcodes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'ruven_button' shortcode in all versions up to, and including, 1.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
около 1 года назад
github логотип
GHSA-4849-c4c9-fjj5

PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4849-5wjh-4xff

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Linus Lundahl Good Old Gallery allows Reflected XSS. This issue affects Good Old Gallery: from n/a through 2.1.2.

CVSS3: 7.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-4848-xc24-jj88

An error within the "nikon_coolscan_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.9 can be exploited to trigger a NULL pointer dereference.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4848-2c65-8677

PHP remote file inclusion vulnerability in bottom.php in Shadowed Portal 5.599 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the root parameter.

10%
Низкий
больше 4 лет назад
github логотип
GHSA-4847-mppj-fwhp

ChurchCRM 5.5.0 ConfirmReport.php is vulnerable to Blind SQL Injection (Time-based) via the familyId GET parameter.

CVSS3: 8.1
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу