Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 364 463

Количество 364 463

github логотип

GHSA-3q87-6fcw-7mj7

больше 4 лет назад

A Remote Command Injection vulnerability exists in DrayTek Vigor 2960 1.5.1.3, DrayTek Vigor 3900 1.5.1.3, and DrayTek Vigor 300B 1.5.1.3 via a crafted HTTP message containing malformed QUERY STRING in mainfunction.cgi, which could let a remote malicious user execute arbitrary code.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-3q87-289f-8v5m

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vivek Marakana Tabbed Login Widget allows Stored XSS. This issue affects Tabbed Login Widget: from n/a through 1.1.2.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3q86-wm23-88hm

больше 4 лет назад

The mintToken function of a smart contract implementation for ComBillAdvancedToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3q86-v8qf-7gw8

около 2 лет назад

The WP Prayer II WordPress plugin through 2.4.7 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-3q86-gfmq-f6c6

больше 4 лет назад

Buffer overflow in BIND 8.2 via NXT records.

EPSS: Низкий
github логотип

GHSA-3q85-vgcx-wv5m

больше 4 лет назад

In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote attackers to execute code when the configuration is running, because a JMX server listens on all interfaces (instead of listening on only the localhost interface). This issue has been fixed in the following versions: 2019.1, 2018.3.4, 2018.2.8, 2018.1.8, and 2017.3.7.

EPSS: Низкий
github логотип

GHSA-3q85-q2w5-phw4

больше 4 лет назад

Solaris 2.6 HW3/98 installs admintool with world-writable permissions, which allows local users to gain privileges by replacing it with a Trojan horse program.

EPSS: Низкий
github логотип

GHSA-3q84-vrvx-rfvf

больше 4 лет назад

Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-3q84-pcr7-4gjf

около 2 лет назад

Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the ASP Secure OS kernel virtual address space, potentially leading to privilege escalation.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-3q84-3x2q-qwx9

почти 4 года назад

Use after free in PhoneHub in Google Chrome on Chrome OS prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3q83-x89h-m869

больше 2 лет назад

Utilizing a 302 redirect, an attacker could have conducted a Universal Cross-Site Scripting (UXSS) on a victim website, if the victim had a link to the attacker's website. This vulnerability affects Focus for iOS < 123.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3q83-m7xx-4ggv

больше 4 лет назад

A denial of service issue was addressed with improved validation. This issue is fixed in iOS 12.4, tvOS 12.4, watchOS 5.3. Processing a maliciously crafted image may lead to a denial of service.

EPSS: Низкий
github логотип

GHSA-3q83-jxph-xjf8

больше 4 лет назад

Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Diameter dictionary file.

EPSS: Низкий
github логотип

GHSA-3q83-hx7r-8c7j

около 2 лет назад

Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-3q83-gf9g-9qxm

около 1 месяца назад

An access control vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows multiple simultaneous sessions to run without proper client validation or session integrity checks. An attacker with a modified version of the app can connect to the robot during an active, legitimate session. This allows the attacker to bypass control restrictions, intercept sensitive information (such as real-time video), and partially interact with the system unnoticed and without disconnecting the legitimate user, compromising confidentiality and operational security.

EPSS: Низкий
github логотип

GHSA-3q83-ffw9-5j7c

14 дней назад

In the Linux kernel, the following vulnerability has been resolved: afs: Fix misplaced inc of net->cells_outstanding Fix net->cells_outstanding being incremented before the check for failure of idr_alloc_cyclic(), leaving the count incremented on error.

EPSS: Низкий
github логотип

GHSA-3q83-f89f-8f5x

больше 4 лет назад

The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a look-behind expression.

EPSS: Низкий
github логотип

GHSA-3q83-64qj-63c8

8 месяцев назад

The Image Photo Gallery Final Tiles Grid plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.6.7. This is due to the plugin not properly verifying that a user is authorized to perform actions on gallery management functions. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete, modify, or clone galleries created by any user, including administrators.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3q82-rr95-h5gf

больше 3 лет назад

The WP TripAdvisor Review Slider WordPress plugin before 10.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as subscriber.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3q82-m6mw-7r6x

больше 4 лет назад

In netdiag, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05475124.

CVSS3: 4.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3q87-6fcw-7mj7

A Remote Command Injection vulnerability exists in DrayTek Vigor 2960 1.5.1.3, DrayTek Vigor 3900 1.5.1.3, and DrayTek Vigor 300B 1.5.1.3 via a crafted HTTP message containing malformed QUERY STRING in mainfunction.cgi, which could let a remote malicious user execute arbitrary code.

CVSS3: 9.8
35%
Средний
больше 4 лет назад
github логотип
GHSA-3q87-289f-8v5m

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Vivek Marakana Tabbed Login Widget allows Stored XSS. This issue affects Tabbed Login Widget: from n/a through 1.1.2.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3q86-wm23-88hm

The mintToken function of a smart contract implementation for ComBillAdvancedToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3q86-v8qf-7gw8

The WP Prayer II WordPress plugin through 2.4.7 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

CVSS3: 4.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-3q86-gfmq-f6c6

Buffer overflow in BIND 8.2 via NXT records.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3q85-vgcx-wv5m

In several JetBrains IntelliJ IDEA versions, a Spring Boot run configuration with the default setting allowed remote attackers to execute code when the configuration is running, because a JMX server listens on all interfaces (instead of listening on only the localhost interface). This issue has been fixed in the following versions: 2019.1, 2018.3.4, 2018.2.8, 2018.1.8, and 2017.3.7.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-3q85-q2w5-phw4

Solaris 2.6 HW3/98 installs admintool with world-writable permissions, which allows local users to gain privileges by replacing it with a Trojan horse program.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3q84-vrvx-rfvf

Multiple vulnerabilities allow bypassing path filtering of agent-to-controller access control in Jenkins

CVSS3: 9
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3q84-pcr7-4gjf

Insufficient checking of memory buffer in ASP Secure OS may allow an attacker with a malicious TA to read/write to the ASP Secure OS kernel virtual address space, potentially leading to privilege escalation.

CVSS3: 7
0%
Низкий
около 2 лет назад
github логотип
GHSA-3q84-3x2q-qwx9

Use after free in PhoneHub in Google Chrome on Chrome OS prior to 105.0.5195.52 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-3q83-x89h-m869

Utilizing a 302 redirect, an attacker could have conducted a Universal Cross-Site Scripting (UXSS) on a victim website, if the victim had a link to the attacker's website. This vulnerability affects Focus for iOS < 123.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3q83-m7xx-4ggv

A denial of service issue was addressed with improved validation. This issue is fixed in iOS 12.4, tvOS 12.4, watchOS 5.3. Processing a maliciously crafted image may lead to a denial of service.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3q83-jxph-xjf8

Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Diameter dictionary file.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3q83-hx7r-8c7j

Improper access control in SmartThingsService prior to SMR Aug-2024 Release 1 allows local attackers to bypass restrictions on starting services from the background.

CVSS3: 6.2
0%
Низкий
около 2 лет назад
github логотип
GHSA-3q83-gf9g-9qxm

An access control vulnerability in the mobile app (APK v5.5.0) for Ghost Robotics' Vision 60 robot allows multiple simultaneous sessions to run without proper client validation or session integrity checks. An attacker with a modified version of the app can connect to the robot during an active, legitimate session. This allows the attacker to bypass control restrictions, intercept sensitive information (such as real-time video), and partially interact with the system unnoticed and without disconnecting the legitimate user, compromising confidentiality and operational security.

0%
Низкий
около 1 месяца назад
github логотип
GHSA-3q83-ffw9-5j7c

In the Linux kernel, the following vulnerability has been resolved: afs: Fix misplaced inc of net->cells_outstanding Fix net->cells_outstanding being incremented before the check for failure of idr_alloc_cyclic(), leaving the count incremented on error.

0%
Низкий
14 дней назад
github логотип
GHSA-3q83-f89f-8f5x

The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a look-behind expression.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3q83-64qj-63c8

The Image Photo Gallery Final Tiles Grid plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 3.6.7. This is due to the plugin not properly verifying that a user is authorized to perform actions on gallery management functions. This makes it possible for authenticated attackers, with Contributor-level access and above, to delete, modify, or clone galleries created by any user, including administrators.

CVSS3: 5.4
0%
Низкий
8 месяцев назад
github логотип
GHSA-3q82-rr95-h5gf

The WP TripAdvisor Review Slider WordPress plugin before 10.8 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as subscriber.

CVSS3: 8.8
4%
Низкий
больше 3 лет назад
github логотип
GHSA-3q82-m6mw-7r6x

In netdiag, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05475124.

CVSS3: 4.4
0%
Низкий
больше 4 лет назад

Уязвимостей на страницу