Количество 366 653
Количество 366 653
GHSA-4434-6fgr-q9c4
Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service.
GHSA-4433-xj2q-mvjf
Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22044.
GHSA-4433-pvqq-cpch
SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers' installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.
GHSA-4433-jwm9-48r5
Type Confusion in V8 in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to potentially perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)
GHSA-4433-h798-3mr7
[This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling. A NULL pointer de-reference could result on a release build. This is CVE-2025-58144. And then the P2M lock isn't held until a page reference was actually obtained (or the attempt to do so has failed). Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated. This is CVE-2025-58145.
GHSA-4433-4cxq-vv73
SimpleGeo python-oauth2 does not check the nonce allowing replay attacks
GHSA-4433-37fm-3jq5
IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service as the server may crash when compiling a specially crafted SQL query using a LIMIT clause. IBM X-Force ID: 247864.
GHSA-4432-q79g-625v
A vulnerability reported in Lenovo Solution Center version 03.12.003, which is no longer supported, could allow log files to be written to non-standard locations, potentially leading to privilege escalation. Lenovo ended support for Lenovo Solution Center and recommended that customers migrate to Lenovo Vantage or Lenovo Diagnostics in April 2018.
GHSA-4432-c732-m42m
Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network.
GHSA-4432-2972-fq56
Rejected reason: This is a duplicate.
GHSA-442x-gw2x-3rxf
Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.
GHSA-442w-6f43-74g9
The XStream extension in HP Fortify SCA before 2.2 RC3 allows remote attackers to execute arbitrary code via unsafe deserialization of XML messages.
GHSA-442w-3vhj-m8rc
A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiWeb version 6.4.1 and below, 6.3.15 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests to SAML login handler
GHSA-442w-2rxq-q6gc
In ImageMagick before 7.0.8-62, TraceBezier in MagickCore/draw.c has a use-after-free.
GHSA-442v-8fhw-3mqv
Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=.
GHSA-442r-xfqw-mrmh
There are multiple API function codes that permit reading and writing data to or from files and directories, which could lead to the manipulation and/or the deletion of files.
GHSA-442r-f955-7j24
In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection.
GHSA-442r-3r9f-48cm
get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect reference counting (caused by gate page mishandling) of the struct page that backs the vsyscall page. The result is a refcount underflow. This can be triggered by any 64-bit process that can use ptrace() or process_vm_readv(), aka CID-9fa2dd946743.
GHSA-442q-pmc8-45rg
Cross Site Scripting (XSS) vulnerability in ASUS RT-AC51U with firmware versions up to and including 3.0.0.4.380.8591 allows attackers to run arbitrary code via the WPA Pre-Shared Key field.
GHSA-442q-44xh-2275
With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the change_email form in UAA is vulnerable to a CSRF attack. This allows an attacker to trigger an e-mail change for a user logged into a cloud foundry instance via a malicious link on a attacker controlled site. This vulnerability is applicable only when using the UAA internal user store for authentication. Deployments enabled for integration via SAML or LDAP are not affected.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-4434-6fgr-q9c4 Insufficient input validation in ASP may allow an attacker with a malicious BIOS to potentially cause a denial of service. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
GHSA-4433-xj2q-mvjf Kofax Power PDF JP2 File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JP2 files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22044. | CVSS3: 7.8 | 0% Низкий | почти 2 года назад | |
GHSA-4433-pvqq-cpch SysLINK SL-1000 Machine-to-Machine (M2M) Modular Gateway devices with firmware before 01A.8 use the same hardcoded encryption key across different customers' installations, which allows attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation. | CVSS3: 7.5 | 1% Низкий | больше 4 лет назад | |
GHSA-4433-jwm9-48r5 Type Confusion in V8 in Google Chrome prior to 125.0.6422.76 allowed a remote attacker to potentially perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High) | CVSS3: 8.8 | 1% Низкий | больше 2 лет назад | |
GHSA-4433-h798-3mr7 [This CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] There are two issues related to the mapping of pages belonging to other domains: For one, an assertion is wrong there, where the case actually needs handling. A NULL pointer de-reference could result on a release build. This is CVE-2025-58144. And then the P2M lock isn't held until a page reference was actually obtained (or the attempt to do so has failed). Otherwise the page can not only change type, but even ownership in between, thus allowing domain boundaries to be violated. This is CVE-2025-58145. | CVSS3: 7.5 | 0% Низкий | 12 месяцев назад | |
GHSA-4433-4cxq-vv73 SimpleGeo python-oauth2 does not check the nonce allowing replay attacks | CVSS3: 7.5 | 2% Низкий | больше 4 лет назад | |
GHSA-4433-37fm-3jq5 IBM Db2 for Linux, UNIX and Windows (includes Db2 Connect Server) 11.1 and 11.5 is vulnerable to a denial of service as the server may crash when compiling a specially crafted SQL query using a LIMIT clause. IBM X-Force ID: 247864. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
GHSA-4432-q79g-625v A vulnerability reported in Lenovo Solution Center version 03.12.003, which is no longer supported, could allow log files to be written to non-standard locations, potentially leading to privilege escalation. Lenovo ended support for Lenovo Solution Center and recommended that customers migrate to Lenovo Vantage or Lenovo Diagnostics in April 2018. | CVSS3: 9.8 | 1% Низкий | больше 4 лет назад | |
GHSA-4432-c732-m42m Improper resolution of path equivalence in Windows MapUrlToZone allows an unauthorized attacker to bypass a security feature over a network. | CVSS3: 7.5 | 1% Низкий | 6 месяцев назад | |
GHSA-4432-2972-fq56 Rejected reason: This is a duplicate. | почти 3 года назад | |||
GHSA-442x-gw2x-3rxf Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file. | 1% Низкий | больше 4 лет назад | ||
GHSA-442w-6f43-74g9 The XStream extension in HP Fortify SCA before 2.2 RC3 allows remote attackers to execute arbitrary code via unsafe deserialization of XML messages. | CVSS3: 9.8 | 3% Низкий | больше 4 лет назад | |
GHSA-442w-3vhj-m8rc A improper neutralization of input during web page generation ('cross-site scripting') in Fortinet FortiWeb version 6.4.1 and below, 6.3.15 and below allows attacker to execute unauthorized code or commands via crafted HTTP requests to SAML login handler | 1% Низкий | больше 4 лет назад | ||
GHSA-442w-2rxq-q6gc In ImageMagick before 7.0.8-62, TraceBezier in MagickCore/draw.c has a use-after-free. | CVSS3: 8.8 | 2% Низкий | больше 4 лет назад | |
GHSA-442v-8fhw-3mqv Badminton Center Management System v1.0 is vulnerable to SQL Injection via /bcms/admin/?page=user/manage_user&id=. | CVSS3: 9.8 | 1% Низкий | больше 4 лет назад | |
GHSA-442r-xfqw-mrmh There are multiple API function codes that permit reading and writing data to or from files and directories, which could lead to the manipulation and/or the deletion of files. | 1% Низкий | больше 4 лет назад | ||
GHSA-442r-f955-7j24 In the "CheckUnitCodeAndKey.pl" service, the "validateOrgUnit" function is vulnerable to SQL injection. | 0% Низкий | 6 месяцев назад | ||
GHSA-442r-3r9f-48cm get_gate_page in mm/gup.c in the Linux kernel 5.7.x and 5.8.x before 5.8.7 allows privilege escalation because of incorrect reference counting (caused by gate page mishandling) of the struct page that backs the vsyscall page. The result is a refcount underflow. This can be triggered by any 64-bit process that can use ptrace() or process_vm_readv(), aka CID-9fa2dd946743. | CVSS3: 7.8 | 1% Низкий | больше 4 лет назад | |
GHSA-442q-pmc8-45rg Cross Site Scripting (XSS) vulnerability in ASUS RT-AC51U with firmware versions up to and including 3.0.0.4.380.8591 allows attackers to run arbitrary code via the WPA Pre-Shared Key field. | CVSS3: 6.8 | 1% Низкий | больше 2 лет назад | |
GHSA-442q-44xh-2275 With Cloud Foundry Runtime cf-release versions v209 or earlier, UAA Standalone versions 2.2.6 or earlier and Pivotal Cloud Foundry Runtime 1.4.5 or earlier the change_email form in UAA is vulnerable to a CSRF attack. This allows an attacker to trigger an e-mail change for a user logged into a cloud foundry instance via a malicious link on a attacker controlled site. This vulnerability is applicable only when using the UAA internal user store for authentication. Deployments enabled for integration via SAML or LDAP are not affected. | CVSS3: 8.8 | 0% Низкий | больше 4 лет назад |
Уязвимостей на страницу