Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 364 463

Количество 364 463

github логотип

GHSA-3pww-vcvm-3gmj

около 1 месяца назад

Gitea: API access token scope enforcement bypass on repository RSS/Atom feed endpoints leaks private repository commit data

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-3pww-qvr8-6mhp

почти 3 года назад

Ray Path Traversal vulnerability

CVSS3: 9.3
EPSS: Средний
github логотип

GHSA-3pww-q2mq-vwqc

больше 4 лет назад

Bugzilla 2.x and 3.x before 3.4.14, 3.5.x and 3.6.x before 3.6.8, 3.7.x and 4.0.x before 4.0.4, and 4.1.x and 4.2.x before 4.2rc2 does not reject non-ASCII characters in e-mail addresses of new user accounts, which makes it easier for remote authenticated users to spoof other user accounts by choosing a similar e-mail address.

EPSS: Низкий
github логотип

GHSA-3pww-pqg2-m2hm

почти 3 года назад

A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious hypervisor to masquerade as the guest's migration agent resulting in a potential loss of guest integrity.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-3pww-g69g-29xx

больше 4 лет назад

Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.

EPSS: Средний
github логотип

GHSA-3pwv-p24f-xm44

больше 4 лет назад

Stack-based buffer overflow in the read_1_3_textobject function in f_readold.c in Xfig 3.2.5b and earlier, and in the read_textobject function in read1_3.c in fig2dev in Transfig 3.2.5a and earlier, allows remote attackers to execute arbitrary code via a long string in a malformed .fig file that uses the 1.3 file format. NOTE: some of these details are obtained from third party information.

EPSS: Средний
github логотип

GHSA-3pwv-c34f-6vh9

больше 4 лет назад

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6068, CVE-2015-6072, CVE-2015-6073, CVE-2015-6075, CVE-2015-6077, CVE-2015-6079, and CVE-2015-6082.

EPSS: Средний
github логотип

GHSA-3pwv-39qr-v742

больше 4 лет назад

The Bill G. Bennett (aka com.billgbennett) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-3pwr-r68f-2f34

почти 3 года назад

mooSocial v3.1.8 was discovered to contain a cross-site scripting (XSS) vulnerability via the change email function.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-3pwr-226w-jqr2

больше 4 лет назад

Google Chrome before 27.0.1453.110 does not properly handle SSL sockets, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-3pwq-cm7p-cvv5

больше 4 лет назад

The DrayTek Vigor 2700 router 2.8.3 allows remote attackers to execute arbitrary JavaScript code, and modify settings or the DNS cache, via a crafted SSID value that is not properly handled during insertion into the sWlessSurvey value in variables.js.

EPSS: Низкий
github логотип

GHSA-3pwq-c4jq-fp68

11 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix defrag path triggering jbd2 ASSERT code path: ocfs2_ioctl_move_extents ocfs2_move_extents ocfs2_defrag_extent __ocfs2_move_extent + ocfs2_journal_access_di + ocfs2_split_extent //sub-paths call jbd2_journal_restart + ocfs2_journal_dirty //crash by jbs2 ASSERT crash stacks: PID: 11297 TASK: ffff974a676dcd00 CPU: 67 COMMAND: "defragfs.ocfs2" #0 [ffffb25d8dad3900] machine_kexec at ffffffff8386fe01 #1 [ffffb25d8dad3958] __crash_kexec at ffffffff8395959d #2 [ffffb25d8dad3a20] crash_kexec at ffffffff8395a45d #3 [ffffb25d8dad3a38] oops_end at ffffffff83836d3f #4 [ffffb25d8dad3a58] do_trap at ffffffff83833205 #5 [ffffb25d8dad3aa0] do_invalid_op at ffffffff83833aa6 #6 [ffffb25d8dad3ac0] invalid_op at ffffffff84200d18 [exception RIP: jbd2_journal_dirty_metadata+0x2ba] RIP: ffffffffc09ca54a RSP: ffffb25d8dad3b70 RFLAGS: 00010207 RAX: 0000000000000000 RBX: ffff9706eedc...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3pwp-q9xp-9x6x

около 3 лет назад

A command injection vulnerability exists in the “dash export” feature of the ScienceLogic SL1 that takes unsanitized user controlled input and passes it directly to a shell command. This allows for the injection of arbitrary commands to the underlying operating system.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3pwp-g2mj-5p3v

около 1 месяца назад

WordPress Coding Standards (WordPressCS) contains an arbitrary code execution vulnerability

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-3pwp-6v4c-x7pg

больше 4 лет назад

Fiyo CMS 2.0.6.1 allows remote authenticated users to gain privileges via a modified level parameter to dapur/ in an app=user&act=edit action.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3pwp-5j95-ggvq

больше 4 лет назад

The System V (SYS5) shared memory implementation for Linux kernel before 2.2.19 could allow attackers to modify recently freed memory.

EPSS: Низкий
github логотип

GHSA-3pwp-2fqj-6g2p

больше 1 года назад

Duplicate Advisory: Qiskit allows arbitrary code execution decoding QPY format versions < 13

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3pwm-r9r6-wpwp

больше 4 лет назад

The Mozilla Windows updater can be called by a non-privileged user to delete an arbitrary local file by passing a special path to the callback parameter through the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 45.8 and Firefox < 52.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3pwm-r3r4-xpvf

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: usb: config: fix iteration issue in 'usb_get_bos_descriptor()' The BOS descriptor defines a root descriptor and is the base descriptor for accessing a family of related descriptors. Function 'usb_get_bos_descriptor()' encounters an iteration issue when skipping the 'USB_DT_DEVICE_CAPABILITY' descriptor type. This results in the same descriptor being read repeatedly. To address this issue, a 'goto' statement is introduced to ensure that the pointer and the amount read is updated correctly. This ensures that the function iterates to the next descriptor instead of reading the same descriptor repeatedly.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3pwm-prvj-wfpw

больше 4 лет назад

The XSS Auditor in Google Chrome before 25.0.1364.152 allows remote attackers to obtain sensitive HTTP Referer information via unspecified vectors.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3pww-vcvm-3gmj

Gitea: API access token scope enforcement bypass on repository RSS/Atom feed endpoints leaks private repository commit data

CVSS3: 4.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-3pww-qvr8-6mhp

Ray Path Traversal vulnerability

CVSS3: 9.3
37%
Средний
почти 3 года назад
github логотип
GHSA-3pww-q2mq-vwqc

Bugzilla 2.x and 3.x before 3.4.14, 3.5.x and 3.6.x before 3.6.8, 3.7.x and 4.0.x before 4.0.4, and 4.1.x and 4.2.x before 4.2rc2 does not reject non-ASCII characters in e-mail addresses of new user accounts, which makes it easier for remote authenticated users to spoof other user accounts by choosing a similar e-mail address.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3pww-pqg2-m2hm

A Use-After-Free vulnerability in the management of an SNP guest context page may allow a malicious hypervisor to masquerade as the guest's migration agent resulting in a potential loss of guest integrity.

CVSS3: 3.3
0%
Низкий
почти 3 года назад
github логотип
GHSA-3pww-g69g-29xx

Internet Explorer 5.0 through 5.5 allows remote attackers to read arbitrary files from the client via the INPUT TYPE element in an HTML form, aka the "File Upload via Form" vulnerability.

14%
Средний
больше 4 лет назад
github логотип
GHSA-3pwv-p24f-xm44

Stack-based buffer overflow in the read_1_3_textobject function in f_readold.c in Xfig 3.2.5b and earlier, and in the read_textobject function in read1_3.c in fig2dev in Transfig 3.2.5a and earlier, allows remote attackers to execute arbitrary code via a long string in a malformed .fig file that uses the 1.3 file format. NOTE: some of these details are obtained from third party information.

11%
Средний
больше 4 лет назад
github логотип
GHSA-3pwv-c34f-6vh9

Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6068, CVE-2015-6072, CVE-2015-6073, CVE-2015-6075, CVE-2015-6077, CVE-2015-6079, and CVE-2015-6082.

13%
Средний
больше 4 лет назад
github логотип
GHSA-3pwv-39qr-v742

The Bill G. Bennett (aka com.billgbennett) application 1.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3pwr-r68f-2f34

mooSocial v3.1.8 was discovered to contain a cross-site scripting (XSS) vulnerability via the change email function.

CVSS3: 6.1
2%
Низкий
почти 3 года назад
github логотип
GHSA-3pwr-226w-jqr2

Google Chrome before 27.0.1453.110 does not properly handle SSL sockets, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-3pwq-cm7p-cvv5

The DrayTek Vigor 2700 router 2.8.3 allows remote attackers to execute arbitrary JavaScript code, and modify settings or the DNS cache, via a crafted SSID value that is not properly handled during insertion into the sWlessSurvey value in variables.js.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3pwq-c4jq-fp68

In the Linux kernel, the following vulnerability has been resolved: ocfs2: fix defrag path triggering jbd2 ASSERT code path: ocfs2_ioctl_move_extents ocfs2_move_extents ocfs2_defrag_extent __ocfs2_move_extent + ocfs2_journal_access_di + ocfs2_split_extent //sub-paths call jbd2_journal_restart + ocfs2_journal_dirty //crash by jbs2 ASSERT crash stacks: PID: 11297 TASK: ffff974a676dcd00 CPU: 67 COMMAND: "defragfs.ocfs2" #0 [ffffb25d8dad3900] machine_kexec at ffffffff8386fe01 #1 [ffffb25d8dad3958] __crash_kexec at ffffffff8395959d #2 [ffffb25d8dad3a20] crash_kexec at ffffffff8395a45d #3 [ffffb25d8dad3a38] oops_end at ffffffff83836d3f #4 [ffffb25d8dad3a58] do_trap at ffffffff83833205 #5 [ffffb25d8dad3aa0] do_invalid_op at ffffffff83833aa6 #6 [ffffb25d8dad3ac0] invalid_op at ffffffff84200d18 [exception RIP: jbd2_journal_dirty_metadata+0x2ba] RIP: ffffffffc09ca54a RSP: ffffb25d8dad3b70 RFLAGS: 00010207 RAX: 0000000000000000 RBX: ffff9706eedc...

CVSS3: 5.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-3pwp-q9xp-9x6x

A command injection vulnerability exists in the “dash export” feature of the ScienceLogic SL1 that takes unsanitized user controlled input and passes it directly to a shell command. This allows for the injection of arbitrary commands to the underlying operating system.

CVSS3: 8.8
2%
Низкий
около 3 лет назад
github логотип
GHSA-3pwp-g2mj-5p3v

WordPress Coding Standards (WordPressCS) contains an arbitrary code execution vulnerability

CVSS3: 8.6
0%
Низкий
около 1 месяца назад
github логотип
GHSA-3pwp-6v4c-x7pg

Fiyo CMS 2.0.6.1 allows remote authenticated users to gain privileges via a modified level parameter to dapur/ in an app=user&act=edit action.

CVSS3: 8.8
8%
Низкий
больше 4 лет назад
github логотип
GHSA-3pwp-5j95-ggvq

The System V (SYS5) shared memory implementation for Linux kernel before 2.2.19 could allow attackers to modify recently freed memory.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3pwp-2fqj-6g2p

Duplicate Advisory: Qiskit allows arbitrary code execution decoding QPY format versions < 13

CVSS3: 9.8
больше 1 года назад
github логотип
GHSA-3pwm-r9r6-wpwp

The Mozilla Windows updater can be called by a non-privileged user to delete an arbitrary local file by passing a special path to the callback parameter through the Mozilla Maintenance Service, which has privileged access. Note: This attack requires local system access and only affects Windows. Other operating systems are not affected. This vulnerability affects Firefox ESR < 45.8 and Firefox < 52.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3pwm-r3r4-xpvf

In the Linux kernel, the following vulnerability has been resolved: usb: config: fix iteration issue in 'usb_get_bos_descriptor()' The BOS descriptor defines a root descriptor and is the base descriptor for accessing a family of related descriptors. Function 'usb_get_bos_descriptor()' encounters an iteration issue when skipping the 'USB_DT_DEVICE_CAPABILITY' descriptor type. This results in the same descriptor being read repeatedly. To address this issue, a 'goto' statement is introduced to ensure that the pointer and the amount read is updated correctly. This ensures that the function iterates to the next descriptor instead of reading the same descriptor repeatedly.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3pwm-prvj-wfpw

The XSS Auditor in Google Chrome before 25.0.1364.152 allows remote attackers to obtain sensitive HTTP Referer information via unspecified vectors.

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу