Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 367 277

Количество 367 277

github логотип

GHSA-45c6-f49w-2r2g

больше 4 лет назад

Adobe Captivate versions 9 and earlier have an information disclosure vulnerability resulting from abuse of the quiz reporting feature in Captivate.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-45c6-75p6-83cc

4 месяца назад

fast-xml-builder Comment Value regex can be bypassed

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-45c5-w4j9-w656

почти 2 года назад

In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion. This could lead to local escalation of privilege in the system server with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-45c5-9fh5-xjmw

больше 4 лет назад

Open redirect vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the l parameter to track.aspx.

EPSS: Низкий
github логотип

GHSA-45c5-53rx-cg43

больше 4 лет назад

Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.28, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, and WNR2020 before 1.1.0.62.

EPSS: Низкий
github логотип

GHSA-45c4-8wx5-qw6w

около 3 лет назад

aiohttp.web.Application vulnerable to HTTP request smuggling via llhttp HTTP request parser

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-45c4-8r79-9wm3

больше 4 лет назад

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint Server, Microsoft SharePoint. This CVE ID is unique from CVE-2018-8155, CVE-2018-8156, CVE-2018-8168.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-45c4-27gx-7rwq

больше 3 лет назад

Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-45c3-pwch-8qg9

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix races among concurrent hw_params and hw_free calls Currently we have neither proper check nor protection against the concurrent calls of PCM hw_params and hw_free ioctls, which may result in a UAF. Since the existing PCM stream lock can't be used for protecting the whole ioctl operations, we need a new mutex to protect those racy calls. This patch introduced a new mutex, runtime->buffer_mutex, and applies it to both hw_params and hw_free ioctl code paths. Along with it, the both functions are slightly modified (the mmap_count check is moved into the state-check block) for code simplicity.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-45c3-gq5g-3rq7

больше 4 лет назад

CRLF injection vulnerability in login.php in WebCalendar allows remote attackers to inject CRLF sequences via the return_path parameter and perform HTTP Response Splitting attacks to modify expected HTML content from the server.

EPSS: Низкий
github логотип

GHSA-45c3-c4c3-8rqg

почти 3 года назад

FUXA vulnerable to Local File Inclusion

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-45c2-g3rg-fwmg

3 месяца назад

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a user to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-459x-q9hg-4gpq

больше 1 года назад

Kyverno vulnerable to SSRF via Service Calls

EPSS: Низкий
github логотип

GHSA-459x-3mc9-94cp

больше 4 лет назад

Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.

EPSS: Низкий
github логотип

GHSA-459w-fjhx-22qm

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Andy's PHP Knowledgebase (aphpkb) 0.57 allow remote attackers to inject arbitrary web script or HTML via the (1) keyword_list parameter to (a) index.php; (2) title, (3) article, (4) author, and (5) keywords parameters to (b) submit_article.php; and (6) Question, (7) Name, and (8) Email parameters to (c) submit_question.php.

EPSS: Низкий
github логотип

GHSA-459v-rpwc-w8fx

больше 2 лет назад

In tmu_set_temp_lut of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-459r-mr42-wfpg

почти 2 года назад

An arbitrary file upload vulnerability in YPay 1.2.0 allows attackers to execute arbitrary code via a ZIP archive to themePutFile in app/common/util/Upload.php (called from app/admin/controller/ypay/Home.php). The file extension of an uncompressed file is not checked.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-459r-h7r8-fv25

больше 4 лет назад

An issue was discovered in Reprise RLM 14.2. Because /goform/change_password_process does not verify authentication or authorization, an unauthenticated user can change the password of any existing user. This allows an attacker to change the password of any known user, thereby preventing valid users from accessing the system and granting the attacker full access to that user's account.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-459r-ghv5-2c5m

больше 4 лет назад

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 does not properly handle objects in memory, which allows local users to gain privileges via a crafted application, aka "Win32k Information Disclosure Vulnerability."

EPSS: Низкий
github логотип

GHSA-459r-g93g-c5wc

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: HID: quirks: Add quirk for 2 Chicony Electronics HP 5MP Cameras The Chicony Electronics HP 5MP Cameras (USB ID 04F2:B824 & 04F2:B82C) report a HID sensor interface that is not actually implemented. Attempting to access this non-functional sensor via iio_info causes system hangs as runtime PM tries to wake up an unresponsive sensor. Add these 2 devices to the HID ignore list since the sensor interface is non-functional by design and should not be exposed to userspace.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-45c6-f49w-2r2g

Adobe Captivate versions 9 and earlier have an information disclosure vulnerability resulting from abuse of the quiz reporting feature in Captivate.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-45c6-75p6-83cc

fast-xml-builder Comment Value regex can be bypassed

CVSS3: 6.1
0%
Низкий
4 месяца назад
github логотип
GHSA-45c5-w4j9-w656

In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion. This could lead to local escalation of privilege in the system server with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 9.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-45c5-9fh5-xjmw

Open redirect vulnerability in DDSN Interactive cm3 Acora CMS 6.0.6/1a, 6.0.2/1a, 5.5.7/12b, 5.5.0/1b-p1, and possibly other versions allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the l parameter to track.aspx.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-45c5-53rx-cg43

Certain NETGEAR devices are affected by a buffer overflow by an authenticated user. This affects D6200 before 1.1.00.36, D7000 before 1.0.1.74, PR2000 before 1.0.0.28, R6020 before 1.0.0.42, R6080 before 1.0.0.42, R6050 before 1.0.1.24, JR6150 before 1.0.1.24, R6120 before 1.0.0.48, R6220 before 1.1.0.86, R6230 before 1.1.0.86, R6260 before 1.1.0.64, R6700v2 before 1.2.0.62, R6800 before 1.2.0.62, R6900v2 before 1.2.0.62, and WNR2020 before 1.1.0.62.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-45c4-8wx5-qw6w

aiohttp.web.Application vulnerable to HTTP request smuggling via llhttp HTTP request parser

CVSS3: 5.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-45c4-8r79-9wm3

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint Server, Microsoft SharePoint. This CVE ID is unique from CVE-2018-8155, CVE-2018-8156, CVE-2018-8168.

CVSS3: 5.4
3%
Низкий
больше 4 лет назад
github логотип
GHSA-45c4-27gx-7rwq

Adobe Substance 3D Designer version 12.4.0 (and earlier) is affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-45c3-pwch-8qg9

In the Linux kernel, the following vulnerability has been resolved: ALSA: pcm: Fix races among concurrent hw_params and hw_free calls Currently we have neither proper check nor protection against the concurrent calls of PCM hw_params and hw_free ioctls, which may result in a UAF. Since the existing PCM stream lock can't be used for protecting the whole ioctl operations, we need a new mutex to protect those racy calls. This patch introduced a new mutex, runtime->buffer_mutex, and applies it to both hw_params and hw_free ioctl code paths. Along with it, the both functions are slightly modified (the mmap_count check is moved into the state-check block) for code simplicity.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-45c3-gq5g-3rq7

CRLF injection vulnerability in login.php in WebCalendar allows remote attackers to inject CRLF sequences via the return_path parameter and perform HTTP Response Splitting attacks to modify expected HTML content from the server.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-45c3-c4c3-8rqg

FUXA vulnerable to Local File Inclusion

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-45c2-g3rg-fwmg

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a user to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege.

CVSS3: 8.8
0%
Низкий
3 месяца назад
github логотип
GHSA-459x-q9hg-4gpq

Kyverno vulnerable to SSRF via Service Calls

больше 1 года назад
github логотип
GHSA-459x-3mc9-94cp

Vulnerability in eterm 0.8.8 in Debian GNU/Linux allows an attacker to gain root privileges.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-459w-fjhx-22qm

Multiple cross-site scripting (XSS) vulnerabilities in Andy's PHP Knowledgebase (aphpkb) 0.57 allow remote attackers to inject arbitrary web script or HTML via the (1) keyword_list parameter to (a) index.php; (2) title, (3) article, (4) author, and (5) keywords parameters to (b) submit_article.php; and (6) Question, (7) Name, and (8) Email parameters to (c) submit_question.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-459v-rpwc-w8fx

In tmu_set_temp_lut of tmu.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-459r-mr42-wfpg

An arbitrary file upload vulnerability in YPay 1.2.0 allows attackers to execute arbitrary code via a ZIP archive to themePutFile in app/common/util/Upload.php (called from app/admin/controller/ypay/Home.php). The file extension of an uncompressed file is not checked.

CVSS3: 8.8
1%
Низкий
почти 2 года назад
github логотип
GHSA-459r-h7r8-fv25

An issue was discovered in Reprise RLM 14.2. Because /goform/change_password_process does not verify authentication or authorization, an unauthenticated user can change the password of any existing user. This allows an attacker to change the password of any known user, thereby preventing valid users from accessing the system and granting the attacker full access to that user's account.

CVSS3: 9.8
59%
Средний
больше 4 лет назад
github логотип
GHSA-459r-ghv5-2c5m

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 does not properly handle objects in memory, which allows local users to gain privileges via a crafted application, aka "Win32k Information Disclosure Vulnerability."

2%
Низкий
больше 4 лет назад
github логотип
GHSA-459r-g93g-c5wc

In the Linux kernel, the following vulnerability has been resolved: HID: quirks: Add quirk for 2 Chicony Electronics HP 5MP Cameras The Chicony Electronics HP 5MP Cameras (USB ID 04F2:B824 & 04F2:B82C) report a HID sensor interface that is not actually implemented. Attempting to access this non-functional sensor via iio_info causes system hangs as runtime PM tries to wake up an unresponsive sensor. Add these 2 devices to the HID ignore list since the sensor interface is non-functional by design and should not be exposed to userspace.

CVSS3: 5.5
0%
Низкий
около 1 года назад

Уязвимостей на страницу