Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 366 653

Количество 366 653

github логотип

GHSA-43wc-84x4-9vfc

больше 4 лет назад

Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-43wc-6q3q-q349

больше 2 лет назад

D-Link G416 httpd Improper Handling of Exceptional Conditions Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link G416 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the HTTP service listening on TCP port 80. The issue results from the lack of proper handling of error conditions. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of root. Was ZDI-CAN-21664.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-43w9-3x53-gwvr

больше 4 лет назад

HP Application Server 8.0, when running on Windows, allows remote attackers to retrieve files in the WEB-INF directory, which contains Java class files and configuration information, via a request to the WEB-INF directory with a trailing dot ("WEB-INF.").

EPSS: Низкий
github логотип

GHSA-43w8-q5fx-vj5w

больше 4 лет назад

The `'path'` module in the Node.js 4.x release line contains a potential regular expression denial of service (ReDoS) vector. The code in question was replaced in Node.js 6.x and later so this vulnerability only impacts all versions of Node.js 4.x. The regular expression, `splitPathRe`, used within the `'path'` module for the various path parsing functions, including `path.dirname()`, `path.extname()` and `path.parse()` was structured in such a way as to allow an attacker to craft a string, that when passed through one of these functions, could take a significant amount of time to evaluate, potentially leading to a full denial of service.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-43w8-p43r-wq5q

около 2 месяцев назад

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field, potentially gaining elevated access or control over the victim's account or session. Scope is changed.

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-43w8-ggh3-p5rh

больше 4 лет назад

NETGEAR D7000 devices before 1.0.1.68 are affected by authentication bypass.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-43w8-4q7x-65hj

6 месяцев назад

Use after free in Agents in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-43w7-r28v-f9wx

больше 4 лет назад

Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 uses predictable session values, which allows man-in-the-middle attackers to spoof a collaboration session by guessing the value.

EPSS: Низкий
github логотип

GHSA-43w7-m975-rc6f

9 месяцев назад

Rejected reason: Not used

EPSS: Низкий
github логотип

GHSA-43w7-g3v2-94w3

9 месяцев назад

Rejected reason: Not used

EPSS: Низкий
github логотип

GHSA-43w7-7gwv-35rc

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: always filter entire AP matrix The vfio_ap_mdev_filter_matrix function is called whenever a new adapter or domain is assigned to the mdev. The purpose of the function is to update the guest's AP configuration by filtering the matrix of adapters and domains assigned to the mdev. When an adapter or domain is assigned, only the APQNs associated with the APID of the new adapter or APQI of the new domain are inspected. If an APQN does not reference a queue device bound to the vfio_ap device driver, then it's APID will be filtered from the mdev's matrix when updating the guest's AP configuration. Inspecting only the APID of the new adapter or APQI of the new domain will result in passing AP queues through to a guest that are not bound to the vfio_ap device driver under certain circumstances. Consider the following: guest's AP configuration (all also assigned to the mdev's matrix): 14.0004 14.0005 14.0006...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-43w7-6v4p-jxc3

больше 4 лет назад

pygrub (tools/pygrub/src/GrubConf.py) in Xen 3.0.3, when booting a guest domain, allows local users with elevated privileges in the guest domain to execute arbitrary commands in domain 0 via a crafted grub.conf file whose contents are used in exec statements.

EPSS: Низкий
github логотип

GHSA-43w6-q9mv-9cwf

больше 4 лет назад

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

EPSS: Низкий
github логотип

GHSA-43w6-2c4j-7whm

больше 1 года назад

Allegra isZipEntryValide Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is required to exploit this vulnerability. The specific flaw exists within the implementation of the isZipEntryValide method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-25730.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-43w5-mmxv-cpvh

6 месяцев назад

Micronaut vulnerable to DoS via crafted form-urlencoded body binding with descending array indices

EPSS: Низкий
github логотип

GHSA-43w4-f729-298m

больше 1 года назад

An issue has been discovered in access controls could allow users to view certain restricted project information even when related features are disabled in GitLab EE, affecting all versions from 17.7 prior to 17.9.7, 17.10 prior to 17.10.5, and 17.11 prior to 17.11.1.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-43w4-9cv8-5g98

больше 4 лет назад

Integer overflow vulnerability in function Jsi_ObjArraySizer in jsish before 3.0.8, allows remote attackers to execute arbitrary code.

EPSS: Низкий
github логотип

GHSA-43w4-4j3c-jx29

больше 2 лет назад

Winter CMS Stored XSS through Backend ColorPicker FormWidget

CVSS3: 2
EPSS: Низкий
github логотип

GHSA-43w3-q4jr-pw7r

около 2 лет назад

Adobe Experience Manager versions 6.5.20 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. This vulnerability could allow an attacker to execute arbitrary JavaScript code in the context of the victim's browser session. Exploitation of this issue typically requires user interaction, such as convincing a user to click on a specially crafted link or to submit a form that causes the execution of the malicious script.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-43w3-j8j2-5xrc

2 месяца назад

Insufficient validation of untrusted input in Text in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 9.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-43wc-84x4-9vfc

Out of bounds read under complex microarchitectural condition in memory subsystem for some Intel Atom(R) Processors may allow authenticated user to potentially enable information disclosure or cause denial of service via network access.

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
github логотип
GHSA-43wc-6q3q-q349

D-Link G416 httpd Improper Handling of Exceptional Conditions Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link G416 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the HTTP service listening on TCP port 80. The issue results from the lack of proper handling of error conditions. An attacker can leverage this in conjunction with other vulnerabilities to execute code in the context of root. Was ZDI-CAN-21664.

CVSS3: 4.3
1%
Низкий
больше 2 лет назад
github логотип
GHSA-43w9-3x53-gwvr

HP Application Server 8.0, when running on Windows, allows remote attackers to retrieve files in the WEB-INF directory, which contains Java class files and configuration information, via a request to the WEB-INF directory with a trailing dot ("WEB-INF.").

4%
Низкий
больше 4 лет назад
github логотип
GHSA-43w8-q5fx-vj5w

The `'path'` module in the Node.js 4.x release line contains a potential regular expression denial of service (ReDoS) vector. The code in question was replaced in Node.js 6.x and later so this vulnerability only impacts all versions of Node.js 4.x. The regular expression, `splitPathRe`, used within the `'path'` module for the various path parsing functions, including `path.dirname()`, `path.extname()` and `path.parse()` was structured in such a way as to allow an attacker to craft a string, that when passed through one of these functions, could take a significant amount of time to evaluate, potentially leading to a full denial of service.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-43w8-p43r-wq5q

Adobe Commerce is affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim's browser when they browse to the page containing the vulnerable field, potentially gaining elevated access or control over the victim's account or session. Scope is changed.

CVSS3: 8.7
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-43w8-ggh3-p5rh

NETGEAR D7000 devices before 1.0.1.68 are affected by authentication bypass.

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-43w8-4q7x-65hj

Use after free in Agents in Google Chrome prior to 146.0.7680.71 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
0%
Низкий
6 месяцев назад
github логотип
GHSA-43w7-r28v-f9wx

Feature Pack for Communications Enabled Applications (CEA) before 1.0.0.1 for IBM WebSphere Application Server 7.0.0.7 uses predictable session values, which allows man-in-the-middle attackers to spoof a collaboration session by guessing the value.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-43w7-m975-rc6f

Rejected reason: Not used

9 месяцев назад
github логотип
GHSA-43w7-g3v2-94w3

Rejected reason: Not used

9 месяцев назад
github логотип
GHSA-43w7-7gwv-35rc

In the Linux kernel, the following vulnerability has been resolved: s390/vfio-ap: always filter entire AP matrix The vfio_ap_mdev_filter_matrix function is called whenever a new adapter or domain is assigned to the mdev. The purpose of the function is to update the guest's AP configuration by filtering the matrix of adapters and domains assigned to the mdev. When an adapter or domain is assigned, only the APQNs associated with the APID of the new adapter or APQI of the new domain are inspected. If an APQN does not reference a queue device bound to the vfio_ap device driver, then it's APID will be filtered from the mdev's matrix when updating the guest's AP configuration. Inspecting only the APID of the new adapter or APQI of the new domain will result in passing AP queues through to a guest that are not bound to the vfio_ap device driver under certain circumstances. Consider the following: guest's AP configuration (all also assigned to the mdev's matrix): 14.0004 14.0005 14.0006...

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-43w7-6v4p-jxc3

pygrub (tools/pygrub/src/GrubConf.py) in Xen 3.0.3, when booting a guest domain, allows local users with elevated privileges in the guest domain to execute arbitrary commands in domain 0 via a crafted grub.conf file whose contents are used in exec statements.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-43w6-q9mv-9cwf

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-43w6-2c4j-7whm

Allegra isZipEntryValide Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Allegra. Authentication is required to exploit this vulnerability. The specific flaw exists within the implementation of the isZipEntryValide method. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to execute code in the context of LOCAL SERVICE. Was ZDI-CAN-25730.

CVSS3: 7.2
2%
Низкий
больше 1 года назад
github логотип
GHSA-43w5-mmxv-cpvh

Micronaut vulnerable to DoS via crafted form-urlencoded body binding with descending array indices

1%
Низкий
6 месяцев назад
github логотип
GHSA-43w4-f729-298m

An issue has been discovered in access controls could allow users to view certain restricted project information even when related features are disabled in GitLab EE, affecting all versions from 17.7 prior to 17.9.7, 17.10 prior to 17.10.5, and 17.11 prior to 17.11.1.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-43w4-9cv8-5g98

Integer overflow vulnerability in function Jsi_ObjArraySizer in jsish before 3.0.8, allows remote attackers to execute arbitrary code.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-43w4-4j3c-jx29

Winter CMS Stored XSS through Backend ColorPicker FormWidget

CVSS3: 2
0%
Низкий
больше 2 лет назад
github логотип
GHSA-43w3-q4jr-pw7r

Adobe Experience Manager versions 6.5.20 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. This vulnerability could allow an attacker to execute arbitrary JavaScript code in the context of the victim's browser session. Exploitation of this issue typically requires user interaction, such as convincing a user to click on a specially crafted link or to submit a form that causes the execution of the malicious script.

CVSS3: 5.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-43w3-j8j2-5xrc

Insufficient validation of untrusted input in Text in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 9.6
0%
Низкий
2 месяца назад

Уязвимостей на страницу