Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 366 653

Количество 366 653

github логотип

GHSA-437q-3ph9-fg6m

больше 4 лет назад

Microsoft Windows Server 2003 R2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "NtCreateTransactionManager Type Confusion Vulnerability."

EPSS: Низкий
github логотип

GHSA-437p-qw95-wqqr

больше 4 лет назад

Trac vulnerable to denial of service

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-437p-qmwc-q8jh

больше 4 лет назад

SAP Master Data Governance, versions - 748, 749, 750, 751, 752, 800, 801, 802, 803, 804, allows users to display change request details without having required authorizations, due to Missing Authorization Check.

EPSS: Низкий
github логотип

GHSA-437p-pvrc-cr2c

больше 4 лет назад

WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.

EPSS: Низкий
github логотип

GHSA-437p-jfm4-2387

почти 3 года назад

ConcreteCMS Cross-site Scripting vulnerability

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-437p-76r5-9789

почти 3 года назад

An Insufficient Entropy vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow an unauthenticated remote attacker to brute-force session tokens and bypass authentication.  See product Instruction Manual Appendix A dated 20230830 for more details.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-437m-7hj5-9mpw

больше 2 лет назад

Kruise allows leveraging the kruise-daemon pod to list all secrets in the entire cluster

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-437m-6wfg-j372

больше 4 лет назад

A privilege escalation vulnerability exists in the Duo Authentication for Windows Logon and RDP implementation. This vulnerability could allow an authenticated local attacker to overwrite files in privileged directories.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-437j-5qc3-c589

около 4 лет назад

Open Redirect in microweber

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-437h-qp99-8cwj

больше 4 лет назад

Stack-based buffer overflow in the HTTP proxy service in Alcatel-Lucent OmniVista 4760 server before R5.1.06.03.c_Patch3 allows remote attackers to execute arbitrary code or cause a denial of service (service crash) via a long request.

EPSS: Низкий
github логотип

GHSA-437h-q69x-6qrx

21 день назад

In the Linux kernel, the following vulnerability has been resolved: tracing: Check return value of __register_event() in trace_module_add_events() trace_module_add_events() ignores the return value of __register_event() and unconditionally calls __add_event_to_tracers() for each event. If __register_event() fails (for example, if event_init() fails), the trace_event_call is not added to ftrace_events list, but __add_event_to_tracers() still creates a trace_event_file pointing to it. If module loading subsequently fails and module memory is freed, tracing state retains a stale trace_event_call pointer in trace_event_file, leading to a use-after-free when tracefs or tracing subsystem operations are later executed. Fix this by checking the return value of __register_event() and only calling __add_event_to_tracers() if event registration succeeded.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-437h-8p4c-5p9r

около 4 лет назад

Wellcms 2.2.0 is vulnerable to Cross Site Request Forgery (CSRF).

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-437h-4cv6-6q92

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Do a runtime PM get on controllers during probe mt8183-mfgcfg has a mutual dependency with genpd during the probing stage, which leads to a deadlock in the following call stack: CPU0: genpd_lock --> clk_prepare_lock genpd_power_off_work_fn() genpd_lock() generic_pm_domain::power_off() clk_unprepare() clk_prepare_lock() CPU1: clk_prepare_lock --> genpd_lock clk_register() __clk_core_init() clk_prepare_lock() clk_pm_runtime_get() genpd_lock() Do a runtime PM get at the probe function to make sure clk_register() won't acquire the genpd lock. Instead of only modifying mt8183-mfgcfg, do this on all mediatek clock controller probings because we don't believe this would cause any regression. Verified on MT8183 and MT8192 Chromebooks.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-437h-364g-fxr5

больше 4 лет назад

In SvoxSsmlParser and startElement of svox_ssml_parser.cpp, there is a possible out of bounds write due to an uninitialized buffer. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-69177126.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-437g-9c5w-262m

22 дня назад

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix refcount leak when updating the sk_ctx Currently update_sk_ctx() transfers the plabel reference, unfortunately it is also unconditionally put in the caller. Ideally we would make the caller conditionally put the reference based on whether it was transferred but for now just fix the bug by getting a reference.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-437f-8gm2-935w

2 месяца назад

Uninitialized Use in Canvas in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-437f-4378-pmh4

больше 1 года назад

External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-437c-g4h8-jrv4

около 3 лет назад

A heap-based overflow vulnerability in TA prior to version 5.7.9 allows a remote user to alter the page heap in the macmnsvc process memory block, resulting in the service becoming unavailable.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-4379-7rh8-ww7p

больше 4 лет назад

Multiple SQL injection vulnerabilities in page.php for iGeneric (iG) Shop 1.2 may allow remote attackers to execute arbitrary SQL statements via the (1) cats, (2) l_price, or (3) u_price parameters.

EPSS: Низкий
github логотип

GHSA-4378-qv4j-pgj4

почти 2 года назад

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by inserting crafted input into various data fields in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface, or access sensitive, browser-based information.

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-437q-3ph9-fg6m

Microsoft Windows Server 2003 R2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 do not properly constrain impersonation levels, which allows local users to gain privileges via a crafted application, aka "NtCreateTransactionManager Type Confusion Vulnerability."

3%
Низкий
больше 4 лет назад
github логотип
GHSA-437p-qw95-wqqr

Trac vulnerable to denial of service

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-437p-qmwc-q8jh

SAP Master Data Governance, versions - 748, 749, 750, 751, 752, 800, 801, 802, 803, 804, allows users to display change request details without having required authorizations, due to Missing Authorization Check.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-437p-pvrc-cr2c

WebCalendar 1.0.1 to 1.0.3 generates different error messages depending on whether or not a username is valid, which allows remote attackers to enumerate valid usernames.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-437p-jfm4-2387

ConcreteCMS Cross-site Scripting vulnerability

CVSS3: 5.4
1%
Низкий
почти 3 года назад
github логотип
GHSA-437p-76r5-9789

An Insufficient Entropy vulnerability in the Schweitzer Engineering Laboratories SEL-451 could allow an unauthenticated remote attacker to brute-force session tokens and bypass authentication.  See product Instruction Manual Appendix A dated 20230830 for more details.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-437m-7hj5-9mpw

Kruise allows leveraging the kruise-daemon pod to list all secrets in the entire cluster

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-437m-6wfg-j372

A privilege escalation vulnerability exists in the Duo Authentication for Windows Logon and RDP implementation. This vulnerability could allow an authenticated local attacker to overwrite files in privileged directories.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-437j-5qc3-c589

Open Redirect in microweber

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-437h-qp99-8cwj

Stack-based buffer overflow in the HTTP proxy service in Alcatel-Lucent OmniVista 4760 server before R5.1.06.03.c_Patch3 allows remote attackers to execute arbitrary code or cause a denial of service (service crash) via a long request.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-437h-q69x-6qrx

In the Linux kernel, the following vulnerability has been resolved: tracing: Check return value of __register_event() in trace_module_add_events() trace_module_add_events() ignores the return value of __register_event() and unconditionally calls __add_event_to_tracers() for each event. If __register_event() fails (for example, if event_init() fails), the trace_event_call is not added to ftrace_events list, but __add_event_to_tracers() still creates a trace_event_file pointing to it. If module loading subsequently fails and module memory is freed, tracing state retains a stale trace_event_call pointer in trace_event_file, leading to a use-after-free when tracefs or tracing subsystem operations are later executed. Fix this by checking the return value of __register_event() and only calling __add_event_to_tracers() if event registration succeeded.

CVSS3: 7.8
0%
Низкий
21 день назад
github логотип
GHSA-437h-8p4c-5p9r

Wellcms 2.2.0 is vulnerable to Cross Site Request Forgery (CSRF).

CVSS3: 8.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-437h-4cv6-6q92

In the Linux kernel, the following vulnerability has been resolved: clk: mediatek: Do a runtime PM get on controllers during probe mt8183-mfgcfg has a mutual dependency with genpd during the probing stage, which leads to a deadlock in the following call stack: CPU0: genpd_lock --> clk_prepare_lock genpd_power_off_work_fn() genpd_lock() generic_pm_domain::power_off() clk_unprepare() clk_prepare_lock() CPU1: clk_prepare_lock --> genpd_lock clk_register() __clk_core_init() clk_prepare_lock() clk_pm_runtime_get() genpd_lock() Do a runtime PM get at the probe function to make sure clk_register() won't acquire the genpd lock. Instead of only modifying mt8183-mfgcfg, do this on all mediatek clock controller probings because we don't believe this would cause any regression. Verified on MT8183 and MT8192 Chromebooks.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-437h-364g-fxr5

In SvoxSsmlParser and startElement of svox_ssml_parser.cpp, there is a possible out of bounds write due to an uninitialized buffer. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-69177126.

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-437g-9c5w-262m

In the Linux kernel, the following vulnerability has been resolved: apparmor: fix refcount leak when updating the sk_ctx Currently update_sk_ctx() transfers the plabel reference, unfortunately it is also unconditionally put in the caller. Ideally we would make the caller conditionally put the reference based on whether it was transferred but for now just fix the bug by getting a reference.

CVSS3: 7.8
0%
Низкий
22 дня назад
github логотип
GHSA-437f-8gm2-935w

Uninitialized Use in Canvas in Google Chrome on Android prior to 150.0.7871.47 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 6.5
0%
Низкий
2 месяца назад
github логотип
GHSA-437f-4378-pmh4

External control of file name or path in Azure Portal Windows Admin Center allows an unauthorized attacker to disclose information locally.

CVSS3: 6.2
1%
Низкий
больше 1 года назад
github логотип
GHSA-437c-g4h8-jrv4

A heap-based overflow vulnerability in TA prior to version 5.7.9 allows a remote user to alter the page heap in the macmnsvc process memory block, resulting in the service becoming unavailable.

CVSS3: 6.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-4379-7rh8-ww7p

Multiple SQL injection vulnerabilities in page.php for iGeneric (iG) Shop 1.2 may allow remote attackers to execute arbitrary SQL statements via the (1) cats, (2) l_price, or (3) u_price parameters.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-4378-qv4j-pgj4

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device. This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by inserting crafted input into various data fields in an affected interface. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface, or access sensitive, browser-based information.

CVSS3: 4.8
0%
Низкий
почти 2 года назад

Уязвимостей на страницу