Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 366 653

Количество 366 653

github логотип

GHSA-43rw-359f-4h89

6 месяцев назад

pkgutil.get_data() did not validate the resource argument as documented, allowing path traversals.

EPSS: Низкий
github логотип

GHSA-43rv-4q7x-r3cg

2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: net: mana: Guard mana_remove against double invocation If PM resume fails (e.g., mana_attach() returns an error), mana_probe() calls mana_remove(), which tears down the device and sets gd->gdma_context = NULL and gd->driver_data = NULL. However, a failed resume callback does not automatically unbind the driver. When the device is eventually unbound, mana_remove() is invoked a second time. Without a NULL check, it dereferences gc->dev with gc == NULL, causing a kernel panic. Add an early return if gdma_context or driver_data is NULL so the second invocation is harmless. Move the dev = gc->dev assignment after the guard so it cannot dereference NULL.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-43rr-x62x-q96w

8 месяцев назад

MineAdmin improperly refreshes tokens

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-43rr-wcj9-h45w

больше 4 лет назад

Incorrect Authorization in PostgreSQL

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-43rr-vh89-fj97

больше 4 лет назад

An issue was discovered in EasyLogin Pro through 1.3.0. Encryptor.php contains an unserialize call that can be exploited for remote code execution in the decrypt function, if the attacker knows the key.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-43rr-prv9-867f

больше 4 лет назад

ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processes that is not changed when it is set by a user, which allows remote attackers to gain privileges.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-43rr-mfcw-532v

5 месяцев назад

A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw/src/to_lab_passthru_encode.c of the component CCSDS Packet Header Handler. Performing a manipulation results in heap-based buffer overflow. The attacker must have access to the local network to execute the attack. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-43rr-89mr-2rvg

больше 4 лет назад

Channel accessible by non-endpoint vulnerability in privacy page in Synology Android Moments before 1.2.3-199 allows man-in-the-middle attackers to execute arbitrary code via unspecified vectors.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-43rq-xvwq-hp7q

7 месяцев назад

A vulnerability has been identified in SINEC NMS (All versions), User Management Component (UMC) (All versions < V2.15.2.1). The affected application permits improper modification of a configuration file by a low-privileged user. This could allow an attacker to load malicious DLLs, potentially leading to arbitrary code execution with SYSTEM privileges.(ZDI-CAN-28108)

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-43rq-pv9m-43rf

около 1 месяца назад

FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT when processing Transfer-Encoding: chunked HTTP responses in http_response_recv_body(). Attackers controlling a malicious RD Gateway endpoint can send oversized chunked response bodies to exhaust client memory resources without triggering the configured size limit.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-43rq-p2j2-ghhr

19 дней назад

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Financial Management. Successful attacks of this vulnerability can result in takeover of Oracle Hyperion Financial Management. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-43rq-98qh-8hx4

около 1 года назад

A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convince the library to read a file to trigger this vulnerability.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-43rq-36x6-grmq

больше 3 лет назад

A stored cross-site scripting (XSS) vulnerability in TotalJS OpenPlatform commit b80b09d allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the platform name field.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-43rp-qmpv-m433

больше 4 лет назад

In libpbc.a in PBC through 2017-03-02, there is a Segmentation fault in _pbcB_register_fields in bootstrap.c.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-43rm-rg7w-7rjf

7 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zack Katz iContact for Gravity Forms gravity-forms-icontact allows Reflected XSS.This issue affects iContact for Gravity Forms: from n/a through <= 1.3.2.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-43rm-m793-9q62

больше 4 лет назад

ownCloud owncloud/android before 2.20 has Incorrect Access Control for physically proximate attackers.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-43rm-gxmf-pr64

9 месяцев назад

Bus Reservation System 1.1 contains a SQL injection vulnerability in the pickup_id parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, and time-based blind SQL injection techniques to steal information from the database.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-43rm-fv4g-cmj8

больше 4 лет назад

A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-43rj-vhj3-86r7

больше 2 лет назад

IBM Planning Analytics Local 2.0 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions. By sending a specially crafted HTTP request, a remote attacker could exploit this vulnerability to upload a malicious script, which could allow the attacker to execute arbitrary code on the vulnerable system. IBM X-Force ID: 265567.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-43rj-qwvh-fmqx

больше 3 лет назад

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-43rw-359f-4h89

pkgutil.get_data() did not validate the resource argument as documented, allowing path traversals.

0%
Низкий
6 месяцев назад
github логотип
GHSA-43rv-4q7x-r3cg

In the Linux kernel, the following vulnerability has been resolved: net: mana: Guard mana_remove against double invocation If PM resume fails (e.g., mana_attach() returns an error), mana_probe() calls mana_remove(), which tears down the device and sets gd->gdma_context = NULL and gd->driver_data = NULL. However, a failed resume callback does not automatically unbind the driver. When the device is eventually unbound, mana_remove() is invoked a second time. Without a NULL check, it dereferences gc->dev with gc == NULL, causing a kernel panic. Add an early return if gdma_context or driver_data is NULL so the second invocation is harmless. Move the dev = gc->dev assignment after the guard so it cannot dereference NULL.

CVSS3: 5.5
0%
Низкий
2 месяца назад
github логотип
GHSA-43rr-x62x-q96w

MineAdmin improperly refreshes tokens

CVSS3: 5
0%
Низкий
8 месяцев назад
github логотип
GHSA-43rr-wcj9-h45w

Incorrect Authorization in PostgreSQL

CVSS3: 4.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-43rr-vh89-fj97

An issue was discovered in EasyLogin Pro through 1.3.0. Encryptor.php contains an unserialize call that can be exploited for remote code execution in the decrypt function, if the attacker knows the key.

CVSS3: 8.1
10%
Низкий
больше 4 лет назад
github логотип
GHSA-43rr-prv9-867f

ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processes that is not changed when it is set by a user, which allows remote attackers to gain privileges.

CVSS3: 9.8
15%
Средний
больше 4 лет назад
github логотип
GHSA-43rr-mfcw-532v

A vulnerability was found in NASA cFS up to 7.0.0. This affects the function CFE_MSG_GetSize of the file apps/to_lab/fsw/src/to_lab_passthru_encode.c of the component CCSDS Packet Header Handler. Performing a manipulation results in heap-based buffer overflow. The attacker must have access to the local network to execute the attack. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 6.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-43rr-89mr-2rvg

Channel accessible by non-endpoint vulnerability in privacy page in Synology Android Moments before 1.2.3-199 allows man-in-the-middle attackers to execute arbitrary code via unspecified vectors.

CVSS3: 8.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-43rq-xvwq-hp7q

A vulnerability has been identified in SINEC NMS (All versions), User Management Component (UMC) (All versions < V2.15.2.1). The affected application permits improper modification of a configuration file by a low-privileged user. This could allow an attacker to load malicious DLLs, potentially leading to arbitrary code execution with SYSTEM privileges.(ZDI-CAN-28108)

CVSS3: 7.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-43rq-pv9m-43rf

FreeRDP before 3.29.0 fails to enforce the RESPONSE_SIZE_LIMIT when processing Transfer-Encoding: chunked HTTP responses in http_response_recv_body(). Attackers controlling a malicious RD Gateway endpoint can send oversized chunked response bodies to exhaust client memory resources without triggering the configured size limit.

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-43rq-p2j2-ghhr

Vulnerability in the Oracle Hyperion Financial Management product of Oracle Hyperion (component: Security). The supported version that is affected is 11.2.25.0.000. Easily exploitable vulnerability allows high privileged attacker with network access via HTTP to compromise Oracle Hyperion Financial Management. Successful attacks of this vulnerability can result in takeover of Oracle Hyperion Financial Management. CVSS 3.1 Base Score 7.2 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H).

CVSS3: 7.2
0%
Низкий
19 дней назад
github логотип
GHSA-43rq-98qh-8hx4

A memory corruption vulnerability exists in the BMPv3 RLE Decoding functionality of the SAIL Image Decoding Library v0.9.8. When decompressing the image data from a specially crafted .bmp file, a heap-based buffer overflow can occur which allows for remote code execution. An attacker will need to convince the library to read a file to trigger this vulnerability.

CVSS3: 8.8
1%
Низкий
около 1 года назад
github логотип
GHSA-43rq-36x6-grmq

A stored cross-site scripting (XSS) vulnerability in TotalJS OpenPlatform commit b80b09d allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the platform name field.

CVSS3: 5.4
1%
Низкий
больше 3 лет назад
github логотип
GHSA-43rp-qmpv-m433

In libpbc.a in PBC through 2017-03-02, there is a Segmentation fault in _pbcB_register_fields in bootstrap.c.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-43rm-rg7w-7rjf

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zack Katz iContact for Gravity Forms gravity-forms-icontact allows Reflected XSS.This issue affects iContact for Gravity Forms: from n/a through <= 1.3.2.

CVSS3: 7.1
0%
Низкий
7 месяцев назад
github логотип
GHSA-43rm-m793-9q62

ownCloud owncloud/android before 2.20 has Incorrect Access Control for physically proximate attackers.

CVSS3: 6.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-43rm-gxmf-pr64

Bus Reservation System 1.1 contains a SQL injection vulnerability in the pickup_id parameter that allows attackers to manipulate database queries. Attackers can exploit boolean-based, error-based, and time-based blind SQL injection techniques to steal information from the database.

CVSS3: 9.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-43rm-fv4g-cmj8

A flaw was found in avahi in versions 0.6 up to 0.8. The event used to signal the termination of the client connection on the avahi Unix socket is not correctly handled in the client_work function, allowing a local attacker to trigger an infinite loop. The highest threat from this vulnerability is to the availability of the avahi service, which becomes unresponsive after this flaw is triggered.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-43rj-vhj3-86r7

IBM Planning Analytics Local 2.0 could allow a remote attacker to upload arbitrary files, caused by the improper validation of file extensions. By sending a specially crafted HTTP request, a remote attacker could exploit this vulnerability to upload a malicious script, which could allow the attacker to execute arbitrary code on the vulnerable system. IBM X-Force ID: 265567.

CVSS3: 8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-43rj-qwvh-fmqx

Improper input validation in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable escalation of privilege via local access.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу