Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 365 324

Количество 365 324

github логотип

GHSA-3w67-7h76-28wg

почти 4 года назад

Use after free in WebSQL in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3w66-p7cp-w8h7

около 3 лет назад

TP-Link TL-WR940N V4, TL-WR841N V8/V10, TL-WR740N V1/V2, TL-WR940N V2/V3, and TL-WR941ND V5/V6 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlTimeSchedRpm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted GET request.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3w66-m37p-v74f

больше 1 года назад

Missing Authorization vulnerability in Torod Holding LTD Torod allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Torod: from n/a through 1.7.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3w66-jjx9-6wph

больше 2 лет назад

Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Log Management). The supported version that is affected is 13.5.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Enterprise Manager Base Platform. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Enterprise Manager Base Platform, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Enterprise Manager Base Platform accessible data as well as unauthorized update, insert or delete access to some of Oracle Enterprise Manager Base Platform accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Enterprise Manager Base Platform. CVSS 3.1 Base Scor...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3w66-96j7-fmcp

больше 4 лет назад

The boot loader in Das U-Boot before 2021.04-rc2 mishandles a modified FIT.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3w66-95m3-8jxg

2 месяца назад

The public dashboard query endpoint does not limit request body size before processing, allowing unauthenticated attackers to trigger excessive memory allocation by sending arbitrarily large JSON payloads. This can lead to denial of service through memory exhaustion. No valid dashboard access token or authentication is required to exploit this vulnerability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3w65-mh9h-3g82

больше 4 лет назад

wolfSSL and wolfCrypt 4.1.0 and earlier (formerly known as CyaSSL) generate biased DSA nonces. This allows a remote attacker to compute the long term private key from several hundred DSA signatures via a lattice attack. The issue occurs because dsa.c fixes two bits of the generated nonces.

EPSS: Низкий
github логотип

GHSA-3w65-g885-345g

около 1 года назад

Prior to 25.2, a local authenticated attacker can elevate privileges on a system with Privilege Management for Windows installed, via the manipulation of COM objects under certain circumstances where an EPM policy allows for automatic privilege elevation of a user process.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3w65-74c3-p8jp

больше 4 лет назад

Burp Suite Community Edition 1.7.32 and 1.7.33 fail to validate the server certificate in a couple of HTTPS requests which allows a man in the middle to modify or view traffic.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-3w65-72f9-frg9

больше 4 лет назад

Remote Cross-site Request forgery (CSRF) potential has been identified in UCMBD Browser version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15, 4.15.1 which could allow for remote unsafe deserialization and cross-site request forgery (CSRF).

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3w64-72gj-893r

почти 3 года назад

Authentication Bypass Using an Alternate Path or Channel vulnerability in Yepas Digital Yepas allows Authentication Bypass.This issue affects Digital Yepas: before 1.0.1.

CVSS3: 10
EPSS: Низкий
github логотип

GHSA-3w63-x258-gcc6

больше 4 лет назад

The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles.

EPSS: Низкий
github логотип

GHSA-3w63-gvhp-2wgh

5 месяцев назад

Missing Authorization vulnerability in Arjan Pronk linkPizza-Manager linkpizza-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects linkPizza-Manager: from n/a through <= 5.5.5.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3w5x-77vf-5frq

больше 4 лет назад

Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leading to data loss.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-3w5w-m35v-rfp7

больше 1 года назад

In LibRaw before 0.21.4, phase_one_correct in decoders/load_mfbacks.cpp allows out-of-buffer access because split_col and split_row values are not checked in 0x041f tag processing.

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-3w5w-f88w-pjxg

больше 1 года назад

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

EPSS: Низкий
github логотип

GHSA-3w5w-5g86-h65c

почти 4 года назад

A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V17 Update 4), SIMATIC HMI KTP Mobile Panels (All versions < V17 Update 4), SIMATIC HMI KTP1200 Basic (All versions < V17 Update 5), SIMATIC HMI KTP400 Basic (All versions < V17 Update 5), SIMATIC HMI KTP700 Basic (All versions < V17 Update 5), SIMATIC HMI KTP900 Basic (All versions < V17 Update 5), SIPLUS HMI KTP1200 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP400 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP700 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP900 BASIC (All versions < V17 Update 5). Affected devices do not properly validate input sent to certain services over TCP. This could allow an unauthenticated remote attacker to cause a permanent denial of service condition (requiring a device reboot) by sending specially crafted TCP packets.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3w5w-2v95-54r9

почти 2 года назад

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ipaddrmsk%d parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3w5v-p54c-f74x

почти 9 лет назад

ejs is vulnerable to remote code execution due to weak input validation

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3w5v-ccpq-xw6c

больше 4 лет назад

In Charm 0.43, any two users can collude to achieve the ability to decrypt YCT14 data.

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3w67-7h76-28wg

Use after free in WebSQL in Google Chrome prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-3w66-p7cp-w8h7

TP-Link TL-WR940N V4, TL-WR841N V8/V10, TL-WR740N V1/V2, TL-WR940N V2/V3, and TL-WR941ND V5/V6 were discovered to contain a buffer overflow in the component /userRpm/AccessCtrlTimeSchedRpm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted GET request.

CVSS3: 7.5
1%
Низкий
около 3 лет назад
github логотип
GHSA-3w66-m37p-v74f

Missing Authorization vulnerability in Torod Holding LTD Torod allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Torod: from n/a through 1.7.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3w66-jjx9-6wph

Vulnerability in the Oracle Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Log Management). The supported version that is affected is 13.5.0.0. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Enterprise Manager Base Platform. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle Enterprise Manager Base Platform, attacks may significantly impact additional products (scope change). Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Enterprise Manager Base Platform accessible data as well as unauthorized update, insert or delete access to some of Oracle Enterprise Manager Base Platform accessible data and unauthorized ability to cause a partial denial of service (partial DOS) of Oracle Enterprise Manager Base Platform. CVSS 3.1 Base Scor...

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3w66-96j7-fmcp

The boot loader in Das U-Boot before 2021.04-rc2 mishandles a modified FIT.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3w66-95m3-8jxg

The public dashboard query endpoint does not limit request body size before processing, allowing unauthenticated attackers to trigger excessive memory allocation by sending arbitrarily large JSON payloads. This can lead to denial of service through memory exhaustion. No valid dashboard access token or authentication is required to exploit this vulnerability.

CVSS3: 7.5
0%
Низкий
2 месяца назад
github логотип
GHSA-3w65-mh9h-3g82

wolfSSL and wolfCrypt 4.1.0 and earlier (formerly known as CyaSSL) generate biased DSA nonces. This allows a remote attacker to compute the long term private key from several hundred DSA signatures via a lattice attack. The issue occurs because dsa.c fixes two bits of the generated nonces.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3w65-g885-345g

Prior to 25.2, a local authenticated attacker can elevate privileges on a system with Privilege Management for Windows installed, via the manipulation of COM objects under certain circumstances where an EPM policy allows for automatic privilege elevation of a user process.

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-3w65-74c3-p8jp

Burp Suite Community Edition 1.7.32 and 1.7.33 fail to validate the server certificate in a couple of HTTPS requests which allows a man in the middle to modify or view traffic.

CVSS3: 7.4
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3w65-72f9-frg9

Remote Cross-site Request forgery (CSRF) potential has been identified in UCMBD Browser version 4.10, 4.11, 4.12, 4.13, 4.14, 4.15, 4.15.1 which could allow for remote unsafe deserialization and cross-site request forgery (CSRF).

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3w64-72gj-893r

Authentication Bypass Using an Alternate Path or Channel vulnerability in Yepas Digital Yepas allows Authentication Bypass.This issue affects Digital Yepas: before 1.0.1.

CVSS3: 10
1%
Низкий
почти 3 года назад
github логотип
GHSA-3w63-x258-gcc6

The WPBakery plugin before 6.4.1 for WordPress allows XSS because it calls kses_remove_filters to disable the standard WordPress XSS protection mechanism for the Author and Contributor roles.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3w63-gvhp-2wgh

Missing Authorization vulnerability in Arjan Pronk linkPizza-Manager linkpizza-manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects linkPizza-Manager: from n/a through <= 5.5.5.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-3w5x-77vf-5frq

Dell PowerScale OneFS, 8.2.2-9.3.x, contains a predictable file name from observable state vulnerability. An unprivileged network attacker could potentially exploit this vulnerability, leading to data loss.

CVSS3: 9.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3w5w-m35v-rfp7

In LibRaw before 0.21.4, phase_one_correct in decoders/load_mfbacks.cpp allows out-of-buffer access because split_col and split_row values are not checked in 0x041f tag processing.

CVSS3: 2.9
0%
Низкий
больше 1 года назад
github логотип
GHSA-3w5w-f88w-pjxg

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

больше 1 года назад
github логотип
GHSA-3w5w-5g86-h65c

A vulnerability has been identified in SIMATIC HMI Comfort Panels (incl. SIPLUS variants) (All versions < V17 Update 4), SIMATIC HMI KTP Mobile Panels (All versions < V17 Update 4), SIMATIC HMI KTP1200 Basic (All versions < V17 Update 5), SIMATIC HMI KTP400 Basic (All versions < V17 Update 5), SIMATIC HMI KTP700 Basic (All versions < V17 Update 5), SIMATIC HMI KTP900 Basic (All versions < V17 Update 5), SIPLUS HMI KTP1200 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP400 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP700 BASIC (All versions < V17 Update 5), SIPLUS HMI KTP900 BASIC (All versions < V17 Update 5). Affected devices do not properly validate input sent to certain services over TCP. This could allow an unauthenticated remote attacker to cause a permanent denial of service condition (requiring a device reboot) by sending specially crafted TCP packets.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-3w5w-2v95-54r9

Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the ipaddrmsk%d parameter at v2x00.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

CVSS3: 7.5
1%
Низкий
почти 2 года назад
github логотип
GHSA-3w5v-p54c-f74x

ejs is vulnerable to remote code execution due to weak input validation

CVSS3: 9.8
6%
Низкий
почти 9 лет назад
github логотип
GHSA-3w5v-ccpq-xw6c

In Charm 0.43, any two users can collude to achieve the ability to decrypt YCT14 data.

CVSS3: 5.9
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу