Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 366 653

Количество 366 653

github логотип

GHSA-4434-6fgr-q9c4

больше 3 лет назад

Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4433-xj2q-mvjf

почти 2 года назад

Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22044.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-4433-pvqq-cpch

больше 4 лет назад

SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers' installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4433-jwm9-48r5

больше 2 лет назад

Type Confusion in V8 in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to potentially perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-4433-h798-3mr7

12 месяцев назад

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling. A NULL pointer de-reference could result on a release build. This is CVE-2025-58144. And then the P2M lock isn't held until a page reference was actually obtained (or the attempt to do so has failed). Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated. This is CVE-2025-58145.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4433-4cxq-vv73

больше 4 лет назад

SimpleGeo python-oauth2 does not check the nonce allowing replay attacks

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4433-37fm-3jq5

больше 3 лет назад

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service as the server may crash when compiling a specially crafted SQL query using a LIMIT clause. IBM X-Force ID: 247864.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4432-q79g-625v

больше 4 лет назад

A vulnerability reported in Lenovo Solution Center version 03.12.003, which is no longer supported, could allow log files to be written to non-standard locations, potentially leading to privilege escalation. Lenovo ended support for Lenovo Solution Center and recommended that customers migrate to Lenovo Vantage or Lenovo Diagnostics in April 2018.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-4432-c732-m42m

6 месяцев назад

Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4432-2972-fq56

почти 3 года назад

Rejected reason: This is a duplicate.

EPSS: Низкий
github логотип

GHSA-442x-gw2x-3rxf

больше 4 лет назад

Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.

EPSS: Низкий
github логотип

GHSA-442w-6f43-74g9

больше 4 лет назад

The XStream extension in HP Fortify SCA before 2.2 RC3 allows remote attackers to execute arbitrary code via unsafe deserialization of XML messages.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-442w-3vhj-m8rc

больше 4 лет назад

A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiWeb version 6.4.1 and below, 6.3.15 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests to SAML login handler

EPSS: Низкий
github логотип

GHSA-442w-2rxq-q6gc

больше 4 лет назад

In ImageMagick before 7.0.8-62, TraceBezier in MagickCore/draw.c has a use-after-free.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-442v-8fhw-3mqv

больше 4 лет назад

Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-442r-xfqw-mrmh

больше 4 лет назад

There are multiple API function codes that permit reading and writing data to or from files and directories, which could lead to the manipulation and/or the deletion of files.

EPSS: Низкий
github логотип

GHSA-442r-f955-7j24

6 месяцев назад

In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection.

EPSS: Низкий
github логотип

GHSA-442r-3r9f-48cm

больше 4 лет назад

get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect reference counting (caused by gate page mishandling) of the struct page that backs the vsyscall page. The result is a refcount underflow. This can be triggered by any 64-bit process that can use ptrace() or process_vm_readv(), aka CID-9fa2dd946743.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-442q-pmc8-45rg

больше 2 лет назад

Cross Site Scripting (XSS) vulnerability in ASUS RT-AC51U with firmware versions up to and including 3.0.0.4.380.8591 allows attackers to run arbitrary code via the WPA Pre-Shared Key field.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-442q-44xh-2275

больше 4 лет назад

With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the change_email form in UAA is vulnerable to a CSRF attack. This allows an attacker to trigger an e-mail change for a user logged into a cloud foundry instance via a malicious link on a attacker controlled site. This vulnerability is applicable only when using the UAA internal user store for authentication. Deployments enabled for integration via SAML or LDAP are not affected.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-4434-6fgr-q9c4

Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4433-xj2q-mvjf

Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22044.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-4433-pvqq-cpch

SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers' installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4433-jwm9-48r5

Type Confusion in V8 in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to potentially perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-4433-h798-3mr7

[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling. A NULL pointer de-reference could result on a release build. This is CVE-2025-58144. And then the P2M lock isn't held until a page reference was actually obtained (or the attempt to do so has failed). Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated. This is CVE-2025-58145.

CVSS3: 7.5
0%
Низкий
12 месяцев назад
github логотип
GHSA-4433-4cxq-vv73

SimpleGeo python-oauth2 does not check the nonce allowing replay attacks

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-4433-37fm-3jq5

IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service as the server may crash when compiling a specially crafted SQL query using a LIMIT clause. IBM X-Force ID: 247864.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-4432-q79g-625v

A vulnerability reported in Lenovo Solution Center version 03.12.003, which is no longer supported, could allow log files to be written to non-standard locations, potentially leading to privilege escalation. Lenovo ended support for Lenovo Solution Center and recommended that customers migrate to Lenovo Vantage or Lenovo Diagnostics in April 2018.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-4432-c732-m42m

Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.

CVSS3: 7.5
1%
Низкий
6 месяцев назад
github логотип
GHSA-4432-2972-fq56

Rejected reason: This is a duplicate.

почти 3 года назад
github логотип
GHSA-442x-gw2x-3rxf

Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-442w-6f43-74g9

The XStream extension in HP Fortify SCA before 2.2 RC3 allows remote attackers to execute arbitrary code via unsafe deserialization of XML messages.

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-442w-3vhj-m8rc

A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiWeb version 6.4.1 and below, 6.3.15 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests to SAML login handler

1%
Низкий
больше 4 лет назад
github логотип
GHSA-442w-2rxq-q6gc

In ImageMagick before 7.0.8-62, TraceBezier in MagickCore/draw.c has a use-after-free.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-442v-8fhw-3mqv

Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-442r-xfqw-mrmh

There are multiple API function codes that permit reading and writing data to or from files and directories, which could lead to the manipulation and/or the deletion of files.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-442r-f955-7j24

In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection.

0%
Низкий
6 месяцев назад
github логотип
GHSA-442r-3r9f-48cm

get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect reference counting (caused by gate page mishandling) of the struct page that backs the vsyscall page. The result is a refcount underflow. This can be triggered by any 64-bit process that can use ptrace() or process_vm_readv(), aka CID-9fa2dd946743.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-442q-pmc8-45rg

Cross Site Scripting (XSS) vulnerability in ASUS RT-AC51U with firmware versions up to and including 3.0.0.4.380.8591 allows attackers to run arbitrary code via the WPA Pre-Shared Key field.

CVSS3: 6.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-442q-44xh-2275

With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the change_email form in UAA is vulnerable to a CSRF attack. This allows an attacker to trigger an e-mail change for a user logged into a cloud foundry instance via a malicious link on a attacker controlled site. This vulnerability is applicable only when using the UAA internal user store for authentication. Deployments enabled for integration via SAML or LDAP are not affected.

CVSS3: 8.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу