Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 365 324

Количество 365 324

github логотип

GHSA-3wqp-rm5v-58pr

больше 4 лет назад

Multiple SQL injection vulnerabilities in phpCommunity 2 2.1.8, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the forum_id parameter in a forum action to index.php, (2) the topic_id parameter in a forum action to index.php, (3) the wert parameter in an id search action to index.php, (4) the wert parameter in a nick search action to index.php, or (5) the wert parameter in a forum search action to index.php, related to class_forum.php and class_search.php.

EPSS: Низкий
github логотип

GHSA-3wqp-prf6-2m72

2 месяца назад

OpenClaw: Feishu dynamic-agent bindings could miss configWrites enforcement

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-3wqp-fp8q-5rmq

больше 4 лет назад

Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

EPSS: Низкий
github логотип

GHSA-3wqp-984m-6g29

почти 3 года назад

File Upload vulnerability in Openupload Stable v.0.4.3 allows a remote attacker to execute arbitrary code via the action parameter of the compress-inc.php file.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3wqm-qqw5-qr42

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: check for nEPT/nNPT in slow flush hypercalls Checking is_guest_mode(vcpu) is incorrect, because translate_nested_gpa() is only valid if an L2 guest is running *with nested EPT/NPT enabled*. Instead use the same condition as translate_nested_gpa() itself.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3wqm-ppwr-mjfv

больше 2 лет назад

An SQL Injection vulnerability in web component of EPMM before 12.1.0.0 allows an authenticated user with appropriate privilege to access or modify data in the underlying database.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-3wqj-33cg-xc48

5 месяцев назад

Rembg has a Path Traversal via Custom Model Loading

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3wqh-x63v-54mj

больше 4 лет назад

XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!RtlpLowFragHeapFree+0x000000000000001f."

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3wqh-h42r-x8fq

почти 6 лет назад

Denial of Service in @hapi/content

EPSS: Низкий
github логотип

GHSA-3wqh-cc4x-r6p5

больше 1 года назад

The PDF Flipbook, 3D Flipbook—DearFlip plugin for WordPress is vulnerable to Stored Cross-Site Scripting via outline settings in all versions up to 2.3.52 due to insufficient input sanitization and output escaping on user-supplied data. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3wqh-9cfw-65c4

около 4 лет назад

Cross-site request forgery attacks can be carried out against the Eyes of Network web application, due to an absence of adequate protections. An attacker can, for instance, delete the admin user by directing an authenticated user to the URL https://<target-address>/module/admin_user/index.php?DataTables_Table_0_length=10&user_selected%5B%5D=1&user_mgt_list=delete_user&action=submit by means of a crafted link.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3wqh-87fg-ffgg

3 месяца назад

libssh2 through 1.11.1, fixed in commit 2dae302, contains an out-of-bounds heap read vulnerability in the sftp_symlink() function in src/sftp.c that allows a malicious SSH server or man-in-the-middle attacker to disclose heap memory contents or cause a crash by sending a crafted SSH_FXP_NAME response. Attackers can supply a link_len value larger than the actual packet data in SSH_FXP_NAME responses for SFTP READLINK and REALPATH operations, triggering a heap buffer over-read of up to target_len minus one bytes due to the missing validation of available packet buffer size before the memcpy operation.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3wqg-6hfx-9w42

больше 2 лет назад

Tenda N300 F3 router vulnerability allows users to bypass intended security policy and create weak passwords.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-3wqf-jxw5-8w54

больше 4 лет назад

An issue was discovered in QSC Q-SYS Core Manager 8.2.1. By utilizing the TFTP service running on UDP port 69, a remote attacker can perform a directory traversal and obtain operating system files via a TFTP GET request, as demonstrated by reading /etc/passwd or /proc/version.

EPSS: Низкий
github логотип

GHSA-3wqf-4x89-9g79

больше 4 лет назад

Bootstrap vulnerable to Cross-Site Scripting (XSS)

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3wqf-38hq-5vr8

11 месяцев назад

The FancyTabs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘title’ parameter in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3wqc-xr7q-qr6w

больше 1 года назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in HK WP Online Users Stats allows Blind SQL Injection. This issue affects WP Online Users Stats: from n/a through 1.0.0.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-3wqc-mwfx-672p

больше 1 года назад

Traefik affected by Go oauth2/jws Improper Validation of Syntactic Correctness of Input vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3wq9-hv2f-46q4

больше 4 лет назад

An exploitable heap based buffer overflow vulnerability exists in the 'read_biff_next_record function' of FreeXL 1.0.3. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3wq9-fwp9-c2mc

2 месяца назад

Insufficient validation of untrusted input in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3wqp-rm5v-58pr

Multiple SQL injection vulnerabilities in phpCommunity 2 2.1.8, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via (1) the forum_id parameter in a forum action to index.php, (2) the topic_id parameter in a forum action to index.php, (3) the wert parameter in an id search action to index.php, (4) the wert parameter in a nick search action to index.php, or (5) the wert parameter in a forum search action to index.php, related to class_forum.php and class_search.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3wqp-prf6-2m72

OpenClaw: Feishu dynamic-agent bindings could miss configWrites enforcement

CVSS3: 3.1
2 месяца назад
github логотип
GHSA-3wqp-fp8q-5rmq

Use after free issue in HIDL while using callback to post event in Rx thread when internal mutex is not acquired and meantime close is triggered and callback instance is deleted in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3wqp-984m-6g29

File Upload vulnerability in Openupload Stable v.0.4.3 allows a remote attacker to execute arbitrary code via the action parameter of the compress-inc.php file.

CVSS3: 8.8
2%
Низкий
почти 3 года назад
github логотип
GHSA-3wqm-qqw5-qr42

In the Linux kernel, the following vulnerability has been resolved: KVM: x86: check for nEPT/nNPT in slow flush hypercalls Checking is_guest_mode(vcpu) is incorrect, because translate_nested_gpa() is only valid if an L2 guest is running *with nested EPT/NPT enabled*. Instead use the same condition as translate_nested_gpa() itself.

CVSS3: 5.5
0%
Низкий
3 месяца назад
github логотип
GHSA-3wqm-ppwr-mjfv

An SQL Injection vulnerability in web component of EPMM before 12.1.0.0 allows an authenticated user with appropriate privilege to access or modify data in the underlying database.

CVSS3: 6.7
1%
Низкий
больше 2 лет назад
github логотип
GHSA-3wqj-33cg-xc48

Rembg has a Path Traversal via Custom Model Loading

CVSS3: 5.3
1%
Низкий
5 месяцев назад
github логотип
GHSA-3wqh-x63v-54mj

XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address controls Branch Selection starting at ntdll_77df0000!RtlpLowFragHeapFree+0x000000000000001f."

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3wqh-h42r-x8fq

Denial of Service in @hapi/content

почти 6 лет назад
github логотип
GHSA-3wqh-cc4x-r6p5

The PDF Flipbook, 3D Flipbook—DearFlip plugin for WordPress is vulnerable to Stored Cross-Site Scripting via outline settings in all versions up to 2.3.52 due to insufficient input sanitization and output escaping on user-supplied data. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-3wqh-9cfw-65c4

Cross-site request forgery attacks can be carried out against the Eyes of Network web application, due to an absence of adequate protections. An attacker can, for instance, delete the admin user by directing an authenticated user to the URL https://<target-address>/module/admin_user/index.php?DataTables_Table_0_length=10&user_selected%5B%5D=1&user_mgt_list=delete_user&action=submit by means of a crafted link.

CVSS3: 8.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-3wqh-87fg-ffgg

libssh2 through 1.11.1, fixed in commit 2dae302, contains an out-of-bounds heap read vulnerability in the sftp_symlink() function in src/sftp.c that allows a malicious SSH server or man-in-the-middle attacker to disclose heap memory contents or cause a crash by sending a crafted SSH_FXP_NAME response. Attackers can supply a link_len value larger than the actual packet data in SSH_FXP_NAME responses for SFTP READLINK and REALPATH operations, triggering a heap buffer over-read of up to target_len minus one bytes due to the missing validation of available packet buffer size before the memcpy operation.

CVSS3: 6.5
1%
Низкий
3 месяца назад
github логотип
GHSA-3wqg-6hfx-9w42

Tenda N300 F3 router vulnerability allows users to bypass intended security policy and create weak passwords.

CVSS3: 9.1
1%
Низкий
больше 2 лет назад
github логотип
GHSA-3wqf-jxw5-8w54

An issue was discovered in QSC Q-SYS Core Manager 8.2.1. By utilizing the TFTP service running on UDP port 69, a remote attacker can perform a directory traversal and obtain operating system files via a TFTP GET request, as demonstrated by reading /etc/passwd or /proc/version.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-3wqf-4x89-9g79

Bootstrap vulnerable to Cross-Site Scripting (XSS)

CVSS3: 6.1
4%
Низкий
больше 4 лет назад
github логотип
GHSA-3wqf-38hq-5vr8

The FancyTabs plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘title’ parameter in all versions up to, and including, 1.1.0 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
11 месяцев назад
github логотип
GHSA-3wqc-xr7q-qr6w

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in HK WP Online Users Stats allows Blind SQL Injection. This issue affects WP Online Users Stats: from n/a through 1.0.0.

CVSS3: 9.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-3wqc-mwfx-672p

Traefik affected by Go oauth2/jws Improper Validation of Syntactic Correctness of Input vulnerability

CVSS3: 7.5
больше 1 года назад
github логотип
GHSA-3wq9-hv2f-46q4

An exploitable heap based buffer overflow vulnerability exists in the 'read_biff_next_record function' of FreeXL 1.0.3. A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.

CVSS3: 8.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-3wq9-fwp9-c2mc

Insufficient validation of untrusted input in Cast in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 7.5
0%
Низкий
2 месяца назад

Уязвимостей на страницу