Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 364 867

Количество 364 867

github логотип

GHSA-3r2g-rwx7-4qwp

больше 4 лет назад

Windows DCOM Server Security Feature Bypass

CVSS3: 6.5
EPSS: Средний
github логотип

GHSA-3r2f-rpgw-83gm

больше 4 лет назад

Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown

EPSS: Средний
github логотип

GHSA-3r2c-w822-3j3f

больше 4 лет назад

IBM Security Guardium Insights 2.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 174406.

EPSS: Низкий
github логотип

GHSA-3r2c-p78w-vg88

8 месяцев назад

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed an unauthenticated user to execute arbitrary code in the context of an authenticated user's browser by convincing the legitimate user to visit a specially crafted webpage.

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-3r2c-g2rm-78cq

больше 4 лет назад

Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory.

EPSS: Низкий
github логотип

GHSA-3r28-rgp9-qgv4

около 3 лет назад

pf4j vulnerable to remote code execution via the zippluginPath parameter

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3r28-q7qr-3hmj

почти 3 года назад

Incomplete cleanup for some Intel Unison software may allow a privileged user to potentially enable denial of service via local access.

CVSS3: 1.9
EPSS: Низкий
github логотип

GHSA-3r28-hhhx-hfjf

9 месяцев назад

In bigo_worker_thread of private/google-modules/video/gchips/bigo.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-3r27-cgcx-x497

10 дней назад

Renovate versions >= 13.87.0 and <= 19.38.6 leak temporary repository tokens into pull request comments during certain Go Modules update failure scenarios. The issue is fixed in version 19.38.7. Anyone able to view the affected pull request comments could obtain the exposed tokens.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3r27-2vg8-fjmx

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: block: Fix page refcounts for unaligned buffers in __bio_release_pages() Fix an incorrect number of pages being released for buffers that do not start at the beginning of a page.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3r26-v5mf-w4gg

10 дней назад

Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3r26-7xv7-xpjf

8 месяцев назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-3r24-qx7j-4fr4

около 1 года назад

The Map My Locations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'map_my_locations' shortcode in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3r23-64c4-mj87

около 2 лет назад

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module, which might allow an attacker to over-read NGINX worker memory resulting in its termination, using a specially crafted mp4 file. The issue only affects NGINX if it is built with the ngx_http_mp4_module and the mp4 directive is used in the configuration file. Additionally, the attack is possible only if an attacker can trigger the processing of a specially crafted mp4 file with the ngx_http_mp4_module.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-3r22-jvx3-7mjc

около 3 лет назад

A CWE-427 - Uncontrolled Search Path Element vulnerability exists that could allow an attacker with a local privileged account to place a specially crafted file on the target machine, which may give the attacker the ability to execute arbitrary code during the installation process initiated by a valid user. Affected Products: Easergy Builder Installer (1.7.23 and prior)

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-3qxw-r9qq-5f2p

10 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CrocoBlock JetBlog jet-blog allows Reflected XSS.This issue affects JetBlog: from n/a through <= 2.4.4.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3qxw-7f8c-wvj7

больше 4 лет назад

The com.android.phone process in Android 1.5 CRBxx allows remote attackers to cause a denial of service (application restart and network disconnection) via an SMS message containing a malformed WAP Push message that triggers an ArrayIndexOutOfBoundsException exception, possibly a related issue to CVE-2009-2656.

EPSS: Низкий
github логотип

GHSA-3qxv-x8gq-wgff

13 дней назад

Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to .NET's String.PadLeft/PadRight. When an application exposes Scriban to untrusted template input, an attacker can supply an arbitrarily large width value (e.g., 500,000,000) to trigger ~1GB memory allocations in a single call, resulting in OutOfMemoryException and denial of service. The TemplateContext.LimitToString limit does not prevent this because it is only enforced after the string has been fully allocated.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3qxv-v5fx-gc4p

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Carbonize Lazarus Guestbook 1.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the show parameter in codes-english.php and (2) the img parameter in picture.php, after the name of an existing file.

EPSS: Низкий
github логотип

GHSA-3qxv-gfg4-4cc8

около 3 лет назад

In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3r2g-rwx7-4qwp

Windows DCOM Server Security Feature Bypass

CVSS3: 6.5
50%
Средний
больше 4 лет назад
github логотип
GHSA-3r2f-rpgw-83gm

Insufficient input sanitization in Mermaid markdown in GitLab CE/EE version 11.4 and up allows an attacker to exploit a stored cross-site scripting vulnerability via a specially-crafted markdown

64%
Средний
больше 4 лет назад
github логотип
GHSA-3r2c-w822-3j3f

IBM Security Guardium Insights 2.0.1 is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trusts. IBM X-Force ID: 174406.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3r2c-p78w-vg88

GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.6 before 18.6.3, and 18.7 before 18.7.1 that could have allowed an unauthenticated user to execute arbitrary code in the context of an authenticated user's browser by convincing the legitimate user to visit a specially crafted webpage.

CVSS3: 8
1%
Низкий
8 месяцев назад
github логотип
GHSA-3r2c-g2rm-78cq

Buffer overflow in AnalogX SimpleServer 1.05 allows a remote attacker to cause a denial of service via a long GET request for a program in the cgi-bin directory.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3r28-rgp9-qgv4

pf4j vulnerable to remote code execution via the zippluginPath parameter

CVSS3: 7.5
1%
Низкий
около 3 лет назад
github логотип
GHSA-3r28-q7qr-3hmj

Incomplete cleanup for some Intel Unison software may allow a privileged user to potentially enable denial of service via local access.

CVSS3: 1.9
0%
Низкий
почти 3 года назад
github логотип
GHSA-3r28-hhhx-hfjf

In bigo_worker_thread of private/google-modules/video/gchips/bigo.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 6.7
0%
Низкий
9 месяцев назад
github логотип
GHSA-3r27-cgcx-x497

Renovate versions >= 13.87.0 and <= 19.38.6 leak temporary repository tokens into pull request comments during certain Go Modules update failure scenarios. The issue is fixed in version 19.38.7. Anyone able to view the affected pull request comments could obtain the exposed tokens.

CVSS3: 7.5
0%
Низкий
10 дней назад
github логотип
GHSA-3r27-2vg8-fjmx

In the Linux kernel, the following vulnerability has been resolved: block: Fix page refcounts for unaligned buffers in __bio_release_pages() Fix an incorrect number of pages being released for buffers that do not start at the beginning of a page.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3r26-v5mf-w4gg

Dell RecoverPoint for VMs, versions 6.0.3 and 6.0.3.1, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.

CVSS3: 7.2
1%
Низкий
10 дней назад
github логотип
GHSA-3r26-7xv7-xpjf

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

8 месяцев назад
github логотип
GHSA-3r24-qx7j-4fr4

The Map My Locations plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'map_my_locations' shortcode in all versions up to, and including, 1.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
около 1 года назад
github логотип
GHSA-3r23-64c4-mj87

NGINX Open Source and NGINX Plus have a vulnerability in the ngx_http_mp4_module, which might allow an attacker to over-read NGINX worker memory resulting in its termination, using a specially crafted mp4 file. The issue only affects NGINX if it is built with the ngx_http_mp4_module and the mp4 directive is used in the configuration file. Additionally, the attack is possible only if an attacker can trigger the processing of a specially crafted mp4 file with the ngx_http_mp4_module.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 4.7
0%
Низкий
около 2 лет назад
github логотип
GHSA-3r22-jvx3-7mjc

A CWE-427 - Uncontrolled Search Path Element vulnerability exists that could allow an attacker with a local privileged account to place a specially crafted file on the target machine, which may give the attacker the ability to execute arbitrary code during the installation process initiated by a valid user. Affected Products: Easergy Builder Installer (1.7.23 and prior)

CVSS3: 6.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-3qxw-r9qq-5f2p

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in CrocoBlock JetBlog jet-blog allows Reflected XSS.This issue affects JetBlog: from n/a through <= 2.4.4.

CVSS3: 6.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-3qxw-7f8c-wvj7

The com.android.phone process in Android 1.5 CRBxx allows remote attackers to cause a denial of service (application restart and network disconnection) via an SMS message containing a malformed WAP Push message that triggers an ArrayIndexOutOfBoundsException exception, possibly a related issue to CVE-2009-2656.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3qxv-x8gq-wgff

Scriban before 7.0.0 (affected versions <= 6.6.0) contains an uncontrolled memory allocation vulnerability in the string.pad_left and string.pad_right template functions, which perform no validation on the width parameter before delegating to .NET's String.PadLeft/PadRight. When an application exposes Scriban to untrusted template input, an attacker can supply an arbitrarily large width value (e.g., 500,000,000) to trigger ~1GB memory allocations in a single call, resulting in OutOfMemoryException and denial of service. The TemplateContext.LimitToString limit does not prevent this because it is only enforced after the string has been fully allocated.

CVSS3: 7.5
0%
Низкий
13 дней назад
github логотип
GHSA-3qxv-v5fx-gc4p

Multiple cross-site scripting (XSS) vulnerabilities in Carbonize Lazarus Guestbook 1.6 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the show parameter in codes-english.php and (2) the img parameter in picture.php, after the name of an existing file.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3qxv-gfg4-4cc8

In Contacts Service, there is a possible missing permission check.This could lead to local information disclosure with no additional execution privileges

CVSS3: 5.5
0%
Низкий
около 3 лет назад

Уязвимостей на страницу