Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 365 060

Количество 365 060

github логотип

GHSA-3vcv-283p-87rc

3 месяца назад

Unauthenticated PHP Object Injection in Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms <= 1.4.3 versions.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3vcr-vjpj-p33c

больше 4 лет назад

join.asp in MiniHTTP Web Forum & File Server PowerPack 4.0 allows remote attackers to add or modify arbitrary user accounts via modified (1) frmMailBox and (2) frmUserPass parameters.

EPSS: Низкий
github логотип

GHSA-3vcr-m67m-mr3p

больше 4 лет назад

Format string vulnerability in ePO service for McAfee ePolicy Orchestrator 2.0, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code via a POST request with format strings in the computerlist parameter, which are used when logging a failed name resolution.

EPSS: Низкий
github логотип

GHSA-3vcr-g3hm-2qr2

5 месяцев назад

Ado::Sessions versions through 0.935 for Perl generates insecure session ids. The session id is generated from a SHA-1 hash seeded with the built-in rand function, the epoch time, and the PID. The PID will come from a small set of numbers, and the epoch time may be guessed, if it is not leaked from the HTTP Date header. The built-in rand function is unsuitable for cryptographic usage. Predicable session ids could allow an attacker to gain access to systems. Note that Ado is no longer maintained, and has been removed from the CPAN index. It is still available on BackPAN.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3vcr-579j-4x48

почти 3 года назад

Stored XSS vulnerability in Jenkins TAP Plugin

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3vcq-64gh-84x2

больше 4 лет назад

Directory traversal vulnerability in file.php in Moodle 1.4.2 and earlier allows remote attackers to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter.

EPSS: Низкий
github логотип

GHSA-3vcp-wrg5-3827

6 месяцев назад

Missing Authorization vulnerability in WP Grids WP Wand ai-content-generation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Wand: from n/a through <= 1.3.07.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3vcp-r62v-xpvg

12 месяцев назад

Apache DolphinScheduler vulnerable to Alert Script Attack

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3vcp-chfh-f6r2

4 месяца назад

Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin

EPSS: Низкий
github логотип

GHSA-3vcm-c42p-3hhf

12 месяцев назад

Mattermost Missing Authorization vulnerability

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3vcm-c256-hxfx

больше 4 лет назад

Mumble 1.2.3 and earlier uses world-readable permissions for .local/share/data/Mumble/.mumble.sqlite files in home directories, which might allow local users to obtain a cleartext password and configuration data by reading a file.

EPSS: Низкий
github логотип

GHSA-3vcm-9wgv-947g

4 месяца назад

A heap-based out-of-bounds read vulnerability in RWObj_Reader::read in the OBJ file parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows user-assisted attackers to cause a denial of service or obtain sensitive information by persuading a victim to open a crafted OBJ file. The issue occurs because Standard_ReadLineBuffer::ReadLine() can return a 1-byte buffer for a minimal OBJ line, and RWObj_Reader::read() calls pushIndices(aLine + 2) without validating the buffer length.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3vcm-3w42-g672

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in search.asp in DT Centrepiece 4.0 allows remote attackers to inject arbitrary web script or HTML via the searchFor parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS: Низкий
github логотип

GHSA-3vcj-x75g-g7r9

больше 3 лет назад

In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628612; Issue ID: ALPS07628612.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-3vcj-crmp-9f49

больше 4 лет назад

Multiple SQL injection vulnerabilities in QuickTicket 1.2 build:20070621 and QuickTalk Forum 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) t and (2) f parameters in (a) qti_ind_post.php and (b) qti_ind_post_prt.php; (3) dir and (4) order parameters in qti_ind_member.php; (5) id parameter in qti_usr.php; and the (6) f parameter in qti_ind_topic.php. NOTE: it was later reported that vector 5 also affects 1.4, 1.5, and 1.5.0.3.

EPSS: Низкий
github логотип

GHSA-3vcj-cj9g-vfr3

11 месяцев назад

This vulnerability exists in the Syrotech SY-GPON-2010-WADONT router due to improper access control in its FTP service. A remote attacker could exploit this vulnerability by establishing an FTP connection using default credentials, potentially gaining unauthorized access to configuration files, user credentials, or other sensitive information stored on the targeted device.

EPSS: Низкий
github логотип

GHSA-3vcj-6338-x74x

больше 4 лет назад

BEA WebLogic Server and WebLogic Express 7.0 through SP5 and 8.1 through SP2, when editing weblogic.xml using WebLogic Builder or the SecurityRoleAssignmentMBean.toXML method, inadvertently removes security-role-assignment tags when weblogic.xml does not have a principal-name tag, which can remove intended access restrictions for the associated web application.

EPSS: Низкий
github логотип

GHSA-3vch-5776-vg3j

больше 4 лет назад

An issue was discovered in ZOHO ManageEngine OpManager 12.2. An authenticated user can upload any file they want to share in the "Group Chat" or "Alarm" section. This functionality can be abused by a malicious user by uploading a web shell.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3vcg-pv95-pq54

2 месяца назад

SFTPGo has stored XSS via inline parameter on public shares and user file download

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-3vcg-p7rg-2799

26 дней назад

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20268 are related to issues with improper restriction of operations within the bounds of a memory buffer that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-119.

CVSS3: 8.6
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3vcv-283p-87rc

Unauthenticated PHP Object Injection in Integration for Salesforce and Contact Form 7, WPForms, Elementor, Formidable, Ninja Forms <= 1.4.3 versions.

CVSS3: 9.8
0%
Низкий
3 месяца назад
github логотип
GHSA-3vcr-vjpj-p33c

join.asp in MiniHTTP Web Forum & File Server PowerPack 4.0 allows remote attackers to add or modify arbitrary user accounts via modified (1) frmMailBox and (2) frmUserPass parameters.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcr-m67m-mr3p

Format string vulnerability in ePO service for McAfee ePolicy Orchestrator 2.0, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code via a POST request with format strings in the computerlist parameter, which are used when logging a failed name resolution.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcr-g3hm-2qr2

Ado::Sessions versions through 0.935 for Perl generates insecure session ids. The session id is generated from a SHA-1 hash seeded with the built-in rand function, the epoch time, and the PID. The PID will come from a small set of numbers, and the epoch time may be guessed, if it is not leaked from the HTTP Date header. The built-in rand function is unsuitable for cryptographic usage. Predicable session ids could allow an attacker to gain access to systems. Note that Ado is no longer maintained, and has been removed from the CPAN index. It is still available on BackPAN.

CVSS3: 5.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-3vcr-579j-4x48

Stored XSS vulnerability in Jenkins TAP Plugin

CVSS3: 5.4
1%
Низкий
почти 3 года назад
github логотип
GHSA-3vcq-64gh-84x2

Directory traversal vulnerability in file.php in Moodle 1.4.2 and earlier allows remote attackers to read arbitrary session files for known session IDs via a .. (dot dot) in the file parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcp-wrg5-3827

Missing Authorization vulnerability in WP Grids WP Wand ai-content-generation allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WP Wand: from n/a through <= 1.3.07.

CVSS3: 5.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-3vcp-r62v-xpvg

Apache DolphinScheduler vulnerable to Alert Script Attack

CVSS3: 8.8
0%
Низкий
12 месяцев назад
github логотип
GHSA-3vcp-chfh-f6r2

Default kuma-cp leaks admin token cross-origin via CORS wildcard + LocalhostIsAdmin

0%
Низкий
4 месяца назад
github логотип
GHSA-3vcm-c42p-3hhf

Mattermost Missing Authorization vulnerability

CVSS3: 6.5
0%
Низкий
12 месяцев назад
github логотип
GHSA-3vcm-c256-hxfx

Mumble 1.2.3 and earlier uses world-readable permissions for .local/share/data/Mumble/.mumble.sqlite files in home directories, which might allow local users to obtain a cleartext password and configuration data by reading a file.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcm-9wgv-947g

A heap-based out-of-bounds read vulnerability in RWObj_Reader::read in the OBJ file parser in Open CASCADE Technology (OCCT) V8_0_0_rc5 allows user-assisted attackers to cause a denial of service or obtain sensitive information by persuading a victim to open a crafted OBJ file. The issue occurs because Standard_ReadLineBuffer::ReadLine() can return a 1-byte buffer for a minimal OBJ line, and RWObj_Reader::read() calls pushIndices(aLine + 2) without validating the buffer length.

CVSS3: 7.1
0%
Низкий
4 месяца назад
github логотип
GHSA-3vcm-3w42-g672

Cross-site scripting (XSS) vulnerability in search.asp in DT Centrepiece 4.0 allows remote attackers to inject arbitrary web script or HTML via the searchFor parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcj-x75g-g7r9

In ril, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07628612; Issue ID: ALPS07628612.

CVSS3: 4.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3vcj-crmp-9f49

Multiple SQL injection vulnerabilities in QuickTicket 1.2 build:20070621 and QuickTalk Forum 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) t and (2) f parameters in (a) qti_ind_post.php and (b) qti_ind_post_prt.php; (3) dir and (4) order parameters in qti_ind_member.php; (5) id parameter in qti_usr.php; and the (6) f parameter in qti_ind_topic.php. NOTE: it was later reported that vector 5 also affects 1.4, 1.5, and 1.5.0.3.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcj-cj9g-vfr3

This vulnerability exists in the Syrotech SY-GPON-2010-WADONT router due to improper access control in its FTP service. A remote attacker could exploit this vulnerability by establishing an FTP connection using default credentials, potentially gaining unauthorized access to configuration files, user credentials, or other sensitive information stored on the targeted device.

0%
Низкий
11 месяцев назад
github логотип
GHSA-3vcj-6338-x74x

BEA WebLogic Server and WebLogic Express 7.0 through SP5 and 8.1 through SP2, when editing weblogic.xml using WebLogic Builder or the SecurityRoleAssignmentMBean.toXML method, inadvertently removes security-role-assignment tags when weblogic.xml does not have a principal-name tag, which can remove intended access restrictions for the associated web application.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3vch-5776-vg3j

An issue was discovered in ZOHO ManageEngine OpManager 12.2. An authenticated user can upload any file they want to share in the "Group Chat" or "Alarm" section. This functionality can be abused by a malicious user by uploading a web shell.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-3vcg-pv95-pq54

SFTPGo has stored XSS via inline parameter on public shares and user file download

CVSS3: 3.7
0%
Низкий
2 месяца назад
github логотип
GHSA-3vcg-p7rg-2799

As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco IOS XE Software engineering team has conducted a comprehensive internal security review. This review resulted in software hardening releases that address multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-20268 are related to issues with improper restriction of operations within the bounds of a memory buffer that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-119.

CVSS3: 8.6
0%
Низкий
26 дней назад

Уязвимостей на страницу