Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 366 653

Количество 366 653

github логотип

GHSA-42q2-w7pp-mx38

больше 4 лет назад

sysmgt.websm.webaccess in IBM AIX 5.2 and 5.3 has world writable permissions for unspecified WebSM Remote Client files, which allows local users to "alter the behavior of" this client by overwriting these files.

EPSS: Низкий
github логотип

GHSA-42q2-m54f-jh95

больше 3 лет назад

sememos/memos vulnerable to Improper Handling of Values

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-42px-vp8x-r9wx

больше 4 лет назад

The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restricted files and folders due to insufficient access control. A successful exploit could allow an attacker to view and modify application data via Directory Traversal.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-42pv-rvjf-mxph

больше 4 лет назад

D-Link DIR-615 HW: T1 FW:20.09 is vulnerable to Cross-Site Request Forgery (CSRF) vulnerability. This enables an attacker to perform an unwanted action on a wireless router for which the user/admin is currently authenticated, as demonstrated by changing the Security option from WPA2 to None, or changing the hiddenSSID parameter, SSID parameter, or a security-option password.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-42pr-hpj6-p97q

больше 4 лет назад

The ExifImageFile::readDQT function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted jpg file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-42pq-hf34-5c7v

больше 4 лет назад

cPanel before 64.0.21 allows demo accounts to execute code via an ImageManager_dimensions API call (SEC-243).

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-42pq-h6rj-6c6q

больше 3 лет назад

Memory corruption in Core due to stack-based buffer overflow.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-42pq-634r-jghr

около 3 лет назад

bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=settings&page=charset&action=edit.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-42pp-ccmj-xrg8

больше 4 лет назад

The vCenter Server contains an arbitrary file deletion vulnerability in a VMware vSphere Life-cycle Manager plug-in. A malicious actor with network access to port 9087 on vCenter Server may exploit this issue to delete non critical files.

EPSS: Низкий
github логотип

GHSA-42pm-gg43-38gr

больше 4 лет назад

XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/index.jsp" file in the view GET parameter or any of these POST parameters: autorefTime, section, snapshot, viewOpt, viewAll, view, or groupSelName. The latter is related to CVE-2009-3903.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-42pj-96jc-q58w

больше 4 лет назад

In Requarks wiki.js, versions 2.0.0-beta.147 to 2.5.255 are affected by Stored XSS vulnerability, where a low privileged (editor) user can upload a SVG file that contains malicious JavaScript while uploading assets in the page. That will send the JWT tokens to the attacker’s server and will lead to account takeover when accessed by the victim.

EPSS: Низкий
github логотип

GHSA-42pj-35w6-4jwg

больше 2 лет назад

A race condition was addressed with improved state handling. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, macOS Sonoma 14.2. An app may be able to execute arbitrary code with kernel privileges.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-42ph-pf9q-cr72

6 месяцев назад

Parse Server has a stored XSS filter bypass via Content-Type MIME parameter and missing XML extension blocklist entries

EPSS: Низкий
github логотип

GHSA-42pg-qcjx-xrm7

больше 4 лет назад

Multiple SQL injection vulnerabilities in the Double Opt-In for Download plugin before 2.0.9 for WordPress allow remote attackers to execute arbitrary SQL commands via the ver parameter to (1) class-doifd-download.php or (2) class-doifd-landing-page.php in public/includes/.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-42pg-j2h8-h5fw

2 месяца назад

A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user to read source code from private repositories they did not have access to. The Copilot pull request description diff summary endpoint accepted a cross-repository comparison range and rendered the resulting diff without verifying that the requesting user was authorized to view the target repository. Exploitation required an authenticated account on the instance with read access to at least one repository to use as the comparison base. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.21 and was fixed in versions 3.17.17, 3.18.11, 3.19.8, and 3.20.4. This vulnerability was reported via the GitHub Bug Bounty program.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-42pg-83vp-h57g

почти 4 года назад

A remote attacker with general user privilege can inject malicious code in the form content of Raiden MAILD Mail Server website. Other users export form content as CSV file can trigger arbitrary code execution and allow the attacker to perform arbitrary system operation or disrupt service on the user side.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-42pf-6wgf-c49g

больше 4 лет назад

In /MagickCore/statistic.c, there are several areas in ApplyEvaluateOperator() where a size_t cast should have been a ssize_t cast, which causes out-of-range values under some circumstances when a crafted input file is processed by ImageMagick. Red Hat Product Security marked this as Low severity because although it could potentially lead to an impact to application availability, no specific impact was shown in this case. This flaw affects ImageMagick versions prior to 6.9.10-69.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-42pf-4gfp-f2vq

около 1 года назад

A vulnerability was found in frdel Agent-Zero up to 0.8.4. It has been rated as problematic. This issue affects the function image_get of the file /python/api/image_get.py. The manipulation of the argument path leads to path traversal. Upgrading to version 0.8.4.1 is able to address this issue. The identifier of the patch is 5db74202d632306a883ccce7339c5bdba0d16c5a. It is recommended to upgrade the affected component.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-42pf-2h85-3cqf

8 месяцев назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-42pc-9g8v-prfm

больше 3 лет назад

kvmtool through 39181fc allows an out-of-bounds write, related to virtio/balloon.c and virtio/pci.c. This allows a guest OS user to execute arbitrary code on the host machine.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-42q2-w7pp-mx38

sysmgt.websm.webaccess in IBM AIX 5.2 and 5.3 has world writable permissions for unspecified WebSM Remote Client files, which allows local users to "alter the behavior of" this client by overwriting these files.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-42q2-m54f-jh95

sememos/memos vulnerable to Improper Handling of Values

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-42px-vp8x-r9wx

The Enterprise License Manager portal in Mitel MiContact Center Enterprise before 9.4 could allow a user to access restricted files and folders due to insufficient access control. A successful exploit could allow an attacker to view and modify application data via Directory Traversal.

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-42pv-rvjf-mxph

D-Link DIR-615 HW: T1 FW:20.09 is vulnerable to Cross-Site Request Forgery (CSRF) vulnerability. This enables an attacker to perform an unwanted action on a wireless router for which the user/admin is currently authenticated, as demonstrated by changing the Security option from WPA2 to None, or changing the hiddenSSID parameter, SSID parameter, or a security-option password.

CVSS3: 8.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-42pr-hpj6-p97q

The ExifImageFile::readDQT function in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted jpg file.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-42pq-hf34-5c7v

cPanel before 64.0.21 allows demo accounts to execute code via an ImageManager_dimensions API call (SEC-243).

CVSS3: 6.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-42pq-h6rj-6c6q

Memory corruption in Core due to stack-based buffer overflow.

CVSS3: 7.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-42pq-634r-jghr

bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=settings&page=charset&action=edit.

CVSS3: 9.8
4%
Низкий
около 3 лет назад
github логотип
GHSA-42pp-ccmj-xrg8

The vCenter Server contains an arbitrary file deletion vulnerability in a VMware vSphere Life-cycle Manager plug-in. A malicious actor with network access to port 9087 on vCenter Server may exploit this issue to delete non critical files.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-42pm-gg43-38gr

XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/index.jsp" file in the view GET parameter or any of these POST parameters: autorefTime, section, snapshot, viewOpt, viewAll, view, or groupSelName. The latter is related to CVE-2009-3903.

CVSS3: 6.1
3%
Низкий
больше 4 лет назад
github логотип
GHSA-42pj-96jc-q58w

In Requarks wiki.js, versions 2.0.0-beta.147 to 2.5.255 are affected by Stored XSS vulnerability, where a low privileged (editor) user can upload a SVG file that contains malicious JavaScript while uploading assets in the page. That will send the JWT tokens to the attacker’s server and will lead to account takeover when accessed by the victim.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-42pj-35w6-4jwg

A race condition was addressed with improved state handling. This issue is fixed in macOS Monterey 12.7.2, macOS Ventura 13.6.3, iOS 17.2 and iPadOS 17.2, iOS 16.7.3 and iPadOS 16.7.3, macOS Sonoma 14.2. An app may be able to execute arbitrary code with kernel privileges.

CVSS3: 7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-42ph-pf9q-cr72

Parse Server has a stored XSS filter bypass via Content-Type MIME parameter and missing XML extension blocklist entries

0%
Низкий
6 месяцев назад
github логотип
GHSA-42pg-qcjx-xrm7

Multiple SQL injection vulnerabilities in the Double Opt-In for Download plugin before 2.0.9 for WordPress allow remote attackers to execute arbitrary SQL commands via the ver parameter to (1) class-doifd-download.php or (2) class-doifd-landing-page.php in public/includes/.

CVSS3: 9.8
4%
Низкий
больше 4 лет назад
github логотип
GHSA-42pg-j2h8-h5fw

A missing authorization vulnerability was identified in GitHub Enterprise Server that allowed an authenticated user to read source code from private repositories they did not have access to. The Copilot pull request description diff summary endpoint accepted a cross-repository comparison range and rendered the resulting diff without verifying that the requesting user was authorized to view the target repository. Exploitation required an authenticated account on the instance with read access to at least one repository to use as the comparison base. This vulnerability affected all versions of GitHub Enterprise Server prior to 3.21 and was fixed in versions 3.17.17, 3.18.11, 3.19.8, and 3.20.4. This vulnerability was reported via the GitHub Bug Bounty program.

CVSS3: 6.5
0%
Низкий
2 месяца назад
github логотип
GHSA-42pg-83vp-h57g

A remote attacker with general user privilege can inject malicious code in the form content of Raiden MAILD Mail Server website. Other users export form content as CSV file can trigger arbitrary code execution and allow the attacker to perform arbitrary system operation or disrupt service on the user side.

CVSS3: 8
1%
Низкий
почти 4 года назад
github логотип
GHSA-42pf-6wgf-c49g

In /MagickCore/statistic.c, there are several areas in ApplyEvaluateOperator() where a size_t cast should have been a ssize_t cast, which causes out-of-range values under some circumstances when a crafted input file is processed by ImageMagick. Red Hat Product Security marked this as Low severity because although it could potentially lead to an impact to application availability, no specific impact was shown in this case. This flaw affects ImageMagick versions prior to 6.9.10-69.

CVSS3: 3.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-42pf-4gfp-f2vq

A vulnerability was found in frdel Agent-Zero up to 0.8.4. It has been rated as problematic. This issue affects the function image_get of the file /python/api/image_get.py. The manipulation of the argument path leads to path traversal. Upgrading to version 0.8.4.1 is able to address this issue. The identifier of the patch is 5db74202d632306a883ccce7339c5bdba0d16c5a. It is recommended to upgrade the affected component.

CVSS3: 3.5
1%
Низкий
около 1 года назад
github логотип
GHSA-42pf-2h85-3cqf

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

8 месяцев назад
github логотип
GHSA-42pc-9g8v-prfm

kvmtool through 39181fc allows an out-of-bounds write, related to virtio/balloon.c and virtio/pci.c. This allows a guest OS user to execute arbitrary code on the host machine.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу