Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 364 920

Количество 364 920

github логотип

GHSA-3rhq-qjcj-26w7

больше 4 лет назад

, aka 'Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-17152.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3rhq-g36f-cvc7

4 месяца назад

The Smartcat Translator for WPML plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'routeData' REST endpoint in all versions up to, and including, 3.1.77. This makes it possible for unauthenticated attackers to overwrite the plugin's Smartcat API credentials (account ID, API secret key, hub key, API host, and hub host), effectively hijacking the translation service or causing a denial of service.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3rhq-47cj-h9g4

больше 2 лет назад

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVSS3: 6.5
EPSS: Средний
github логотип

GHSA-3rhq-2g85-5xqr

больше 4 лет назад

Stack-based buffer overflow in Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed RAR file to the Internet Content Adaptation Protocol (ICAP) port (1344/tcp).

EPSS: Низкий
github логотип

GHSA-3rhp-x8rm-9rvr

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in the mod_negotiation module in the Apache HTTP Server 2.2.6 and earlier in the 2.2.x series, 2.0.61 and earlier in the 2.0.x series, and 1.3.39 and earlier in the 1.3.x series allows remote authenticated users to inject arbitrary web script or HTML by uploading a file with a name containing XSS sequences and a file extension, which leads to injection within a (1) "406 Not Acceptable" or (2) "300 Multiple Choices" HTTP response when the extension is omitted in a request for the file.

EPSS: Средний
github логотип

GHSA-3rhp-fxgx-2hgj

больше 4 лет назад

Stack-based buffer overflow in the reboot program on IBM AIX 5.2 and 5.3 allows local users in the shutdown group to gain privileges.

EPSS: Низкий
github логотип

GHSA-3rhm-pw9f-4xg6

почти 4 года назад

In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, and 14.1.x before 14.1.5.1, when an LTM TCP profile with Auto Receive Window Enabled is configured on a virtual server, undisclosed traffic can cause the virtual server to stop processing new client connections.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3rhm-67j6-42jq

почти 8 лет назад

Exposure of Sensitive information in authentikat-jwt

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3rhj-w962-9mr3

около 1 года назад

A vulnerability was found in chaitak-gorai Blogbook up to 92f5cf90f8a7e6566b576fe0952e14e1c6736513. It has been classified as critical. Affected is an unknown function of the file /user.php of the component GET Parameter Handler. The manipulation of the argument u_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-3rhj-p6qq-r5mv

больше 4 лет назад

A buffer overflow occurs when drawing and validating elements using Direct 3D 9 with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. Note: This attack only affects Windows operating systems. Other operating systems are unaffected. This vulnerability affects Thunderbird < 52.5.2, Firefox ESR < 52.5.2, and Firefox < 57.0.2.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3rhh-97v9-2g42

больше 2 лет назад

In setMediaButtonReceiver of MediaSessionRecord.java, there is a possible way to send a pending intent on behalf of system_server due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-3rhg-qq6v-6gmc

больше 4 лет назад

Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.

EPSS: Низкий
github логотип

GHSA-3rhg-f794-8r8h

больше 4 лет назад

Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials

EPSS: Средний
github логотип

GHSA-3rhf-q6c8-mqq2

больше 4 лет назад

An arbitrary file upload vulnerability in Jizhicms v1.5 allows attackers to execute arbitrary code via a crafted .jpg file which is later changed to a PHP file.

EPSS: Низкий
github логотип

GHSA-3rhf-g27v-qpj7

6 месяцев назад

Unrestricted Upload of File with Dangerous Type vulnerability in Bravis-Themes Bravis Addons bravis-addons allows Using Malicious Files.This issue affects Bravis Addons: from n/a through <= 1.1.9.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-3rhc-pc7v-fhr7

больше 4 лет назад

Juniper Junos 11.4 before 11.4R12, 12.1X44 before 12.1X44-D32, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, and 12.1X47 before 12.1X47-D10 on SRX Series devices, when NAT protocol translation from IPv4 to IPv6 is enabled, allows remote attackers to cause a denial of service (flowd hang or crash) via a crafted packet.

EPSS: Низкий
github логотип

GHSA-3rhc-hj98-5mpj

около 1 года назад

Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the tor blocking feature when the Devolutions hosted endpoint is not reachable.

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-3rhc-g969-jjxw

11 месяцев назад

A weakness has been identified in Campcodes Online Learning Management System 1.0. This vulnerability affects unknown code of the file /admin/admin_user.php. Executing manipulation of the argument firstname can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-3rhc-44qf-c226

больше 3 лет назад

A vulnerability has been discovered in Rocket.Chat, where editing messages can change the original timestamp, causing the UI to display messages in an incorrect order.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3rh8-vm3g-5r4x

больше 4 лет назад

TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to escalate privileges.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3rhq-qjcj-26w7

, aka 'Microsoft Dynamics 365 for Finance and Operations (on-premises) Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-17152.

CVSS3: 8.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhq-g36f-cvc7

The Smartcat Translator for WPML plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'routeData' REST endpoint in all versions up to, and including, 3.1.77. This makes it possible for unauthenticated attackers to overwrite the plugin's Smartcat API credentials (account ID, API secret key, hub key, API host, and hub host), effectively hijacking the translation service or causing a denial of service.

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-3rhq-47cj-h9g4

Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

CVSS3: 6.5
32%
Средний
больше 2 лет назад
github логотип
GHSA-3rhq-2g85-5xqr

Stack-based buffer overflow in Symantec Decomposer, as used in certain Symantec antivirus products including Symantec Scan Engine 5.1.2 and other versions before 5.1.6.31, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a malformed RAR file to the Internet Content Adaptation Protocol (ICAP) port (1344/tcp).

4%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhp-x8rm-9rvr

Cross-site scripting (XSS) vulnerability in the mod_negotiation module in the Apache HTTP Server 2.2.6 and earlier in the 2.2.x series, 2.0.61 and earlier in the 2.0.x series, and 1.3.39 and earlier in the 1.3.x series allows remote authenticated users to inject arbitrary web script or HTML by uploading a file with a name containing XSS sequences and a file extension, which leads to injection within a (1) "406 Not Acceptable" or (2) "300 Multiple Choices" HTTP response when the extension is omitted in a request for the file.

65%
Средний
больше 4 лет назад
github логотип
GHSA-3rhp-fxgx-2hgj

Stack-based buffer overflow in the reboot program on IBM AIX 5.2 and 5.3 allows local users in the shutdown group to gain privileges.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhm-pw9f-4xg6

In BIG-IP versions 17.0.x before 17.0.0.1, 16.1.x before 16.1.3.1, 15.1.x before 15.1.7, and 14.1.x before 14.1.5.1, when an LTM TCP profile with Auto Receive Window Enabled is configured on a virtual server, undisclosed traffic can cause the virtual server to stop processing new client connections.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-3rhm-67j6-42jq

Exposure of Sensitive information in authentikat-jwt

CVSS3: 9.8
2%
Низкий
почти 8 лет назад
github логотип
GHSA-3rhj-w962-9mr3

A vulnerability was found in chaitak-gorai Blogbook up to 92f5cf90f8a7e6566b576fe0952e14e1c6736513. It has been classified as critical. Affected is an unknown function of the file /user.php of the component GET Parameter Handler. The manipulation of the argument u_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 7.3
1%
Низкий
около 1 года назад
github логотип
GHSA-3rhj-p6qq-r5mv

A buffer overflow occurs when drawing and validating elements using Direct 3D 9 with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being passed within the library during checks and results in a potentially exploitable crash. Note: This attack only affects Windows operating systems. Other operating systems are unaffected. This vulnerability affects Thunderbird < 52.5.2, Firefox ESR < 52.5.2, and Firefox < 57.0.2.

CVSS3: 8.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhh-97v9-2g42

In setMediaButtonReceiver of MediaSessionRecord.java, there is a possible way to send a pending intent on behalf of system_server due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.

CVSS3: 8.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3rhg-qq6v-6gmc

Cisco AnyConnect Secure Mobility Client 4.1(8) on OS X and Linux does not verify pathnames before installation actions, which allows local users to obtain root privileges via a crafted installation file, aka Bug ID CSCuv11947.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhg-f794-8r8h

Hikvision DS-2CD7153-E IP Camera has security bypass via hardcoded credentials

36%
Средний
больше 4 лет назад
github логотип
GHSA-3rhf-q6c8-mqq2

An arbitrary file upload vulnerability in Jizhicms v1.5 allows attackers to execute arbitrary code via a crafted .jpg file which is later changed to a PHP file.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhf-g27v-qpj7

Unrestricted Upload of File with Dangerous Type vulnerability in Bravis-Themes Bravis Addons bravis-addons allows Using Malicious Files.This issue affects Bravis Addons: from n/a through <= 1.1.9.

CVSS3: 9.9
0%
Низкий
6 месяцев назад
github логотип
GHSA-3rhc-pc7v-fhr7

Juniper Junos 11.4 before 11.4R12, 12.1X44 before 12.1X44-D32, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, and 12.1X47 before 12.1X47-D10 on SRX Series devices, when NAT protocol translation from IPv4 to IPv6 is enabled, allows remote attackers to cause a denial of service (flowd hang or crash) via a crafted packet.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3rhc-hj98-5mpj

Improper access control in Tor network blocking feature in Devolutions Server 2025.1.10.0 and earlier allows an authenticated user to bypass the tor blocking feature when the Devolutions hosted endpoint is not reachable.

CVSS3: 5
0%
Низкий
около 1 года назад
github логотип
GHSA-3rhc-g969-jjxw

A weakness has been identified in Campcodes Online Learning Management System 1.0. This vulnerability affects unknown code of the file /admin/admin_user.php. Executing manipulation of the argument firstname can lead to sql injection. The attack may be launched remotely. The exploit has been made available to the public and could be exploited.

CVSS3: 7.3
0%
Низкий
11 месяцев назад
github логотип
GHSA-3rhc-44qf-c226

A vulnerability has been discovered in Rocket.Chat, where editing messages can change the original timestamp, causing the UI to display messages in an incorrect order.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3rh8-vm3g-5r4x

TechSmith Snagit 19.1.0.2653 uses Object Linking and Embedding (OLE) which can allow attackers to obfuscate and embed crafted files used to escalate privileges.

CVSS3: 8.8
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу