Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 363 419

Количество 363 419

github логотип

GHSA-3m5x-89wr-x574

больше 4 лет назад

The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 does not properly enforce policy rules, which allows local in-instance users to bypass intended access restrictions and (1) create a stack via the CreateStack method or (2) update a stack via the UpdateStack method.

EPSS: Низкий
github логотип

GHSA-3m5x-223v-jq2m

11 дней назад

In the Linux kernel, the following vulnerability has been resolved: hwmon: (nzxt-smart2) DMA-align output buffer Sashiko reports: When send_output_report() calls hid_hw_output_report(), the underlying USB HID core calls usb_interrupt_msg() which maps this buffer directly for DMA. When the DMA mapping flushes or invalidates the cacheline, it will corrupt the adjacent variables (mutex, update_interval) that were modified concurrently by the CPU. This causes memory corruption due to cacheline sharing on non-coherent CPU architectures (such as ARM or MIPS). The DMA API debugging tool (CONFIG_DMA_API_DEBUG) will trigger runtime warnings for this violation. Any operation that triggers send_output_report() (like setting a fan speed or updating the interval) causes the USB DMA mapping. On systems with non-coherent caches, this structural bug causes immediate and deterministic memory corruption. Align the output buffer to ARCH_DMA_MINALIGN to fix the problem.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3m5v-mwj4-jp69

10 месяцев назад

The Classified Pro theme for WordPress is vulnerable to unauthorized plugin installation due to a missing capability check in the 'cwp_addons_update_plugin_cb' function in all versions up to, and including, 1.0.14. This makes it possible for authenticated attackers, with subscriber-level access and above, to install arbitrary plugins on the affected site's server which may make remote code execution possible. Note: The required nonce for the vulnerability is in the CubeWP Framework plugin.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3m5v-fjjv-99m5

5 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: properly drop the usb interface reference on disconnect When the device is disconnected from the driver, there is a "dangling" reference count on the usb interface that was grabbed in the probe callback. Fix this up by properly dropping the reference after we are done with it.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3m5v-crmw-qqfm

больше 4 лет назад

SQL injection vulnerability in customprofile.php in 2daybiz Matrimonial Script allows remote attackers to execute arbitrary SQL commands via the id parameter.

EPSS: Низкий
github логотип

GHSA-3m5v-4xp5-gjg2

5 месяцев назад

Graphiti Affected by Arbitrary Method Execution via Unvalidated Relationship Names

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-3m5r-wc67-jg8m

больше 4 лет назад

Buffer overflow in Tellurian TftpdNT 1.8 allows remote attackers to execute arbitrary code via a TFTP request with a long filename.

EPSS: Средний
github логотип

GHSA-3m5r-vf35-8v65

больше 4 лет назад

A stored cross site scripting (XSS) vulnerability in the /sys/attachment/uploaderServlet component of Landray EKP V12.0.9.R.20160325 allows attackers to execute arbitrary web scripts or HTML via a crafted SVG, SHTML, or MHT file.

EPSS: Низкий
github логотип

GHSA-3m5q-q39v-xf8f

почти 3 года назад

nocodb SQL Injection vulnerability

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3m5q-4mj3-9362

больше 4 лет назад

pam_motd (aka the MOTD module) in libpam-modules before 1.1.0-2ubuntu1.1 in PAM on Ubuntu 9.10 and libpam-modules before 1.1.1-2ubuntu5 in PAM on Ubuntu 10.04 LTS allows local users to change the ownership of arbitrary files via a symlink attack on .cache in a user's home directory, related to "user file stamps" and the motd.legal-notice file.

EPSS: Низкий
github логотип

GHSA-3m5q-2hhf-3c5f

3 месяца назад

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-45207 but exists in a different process protection communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3m5m-x34p-6vq4

почти 2 года назад

memory corruption when an invalid firehose patch command is invoked.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-3m5j-rg6q-w4gv

около 3 лет назад

SQL Injection (SQLi) vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3m5j-r9wr-wr68

больше 4 лет назад

The Kunena extension before 5.1.14 for Joomla! allows XSS via BBCode.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3m5j-q5c3-cr8m

больше 4 лет назад

Monkey's Audio before 4.02 allows remote attackers to cause a denial of service (application crash) via a malformed APE file.

EPSS: Низкий
github логотип

GHSA-3m5j-38m5-7239

больше 4 лет назад

An issue was discovered in Mattermost Desktop App before 4.0.0. It mishandled the Same Origin Policy for setPermissionRequestHandler (e.g., video, audio, and notifications).

EPSS: Низкий
github логотип

GHSA-3m5h-3839-5w2g

больше 4 лет назад

Vulnerability in Network Node Manager (NNM) 6.2 and earlier in HP OpenView allows a local user to execute arbitrary code, possibly via a buffer overflow in a long hostname or object ID.

EPSS: Низкий
github логотип

GHSA-3m5c-7hqx-55x7

больше 4 лет назад

Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

EPSS: Низкий
github логотип

GHSA-3m59-fh79-m7m6

около 2 лет назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in creativeon WHMpress allows Reflected XSS.This issue affects WHMpress: from n/a through 6.2-revision-5.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3m59-c9cm-pmrv

больше 4 лет назад

/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for the extraction of crafted archives to overwrite arbitrary files via an extract action, aka Directory Traversal.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3m5x-89wr-x574

The cloudformation-compatible API in OpenStack Orchestration API (Heat) before Havana 2013.2.1 and Icehouse before icehouse-2 does not properly enforce policy rules, which allows local in-instance users to bypass intended access restrictions and (1) create a stack via the CreateStack method or (2) update a stack via the UpdateStack method.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5x-223v-jq2m

In the Linux kernel, the following vulnerability has been resolved: hwmon: (nzxt-smart2) DMA-align output buffer Sashiko reports: When send_output_report() calls hid_hw_output_report(), the underlying USB HID core calls usb_interrupt_msg() which maps this buffer directly for DMA. When the DMA mapping flushes or invalidates the cacheline, it will corrupt the adjacent variables (mutex, update_interval) that were modified concurrently by the CPU. This causes memory corruption due to cacheline sharing on non-coherent CPU architectures (such as ARM or MIPS). The DMA API debugging tool (CONFIG_DMA_API_DEBUG) will trigger runtime warnings for this violation. Any operation that triggers send_output_report() (like setting a fan speed or updating the interval) causes the USB DMA mapping. On systems with non-coherent caches, this structural bug causes immediate and deterministic memory corruption. Align the output buffer to ARCH_DMA_MINALIGN to fix the problem.

CVSS3: 7.8
0%
Низкий
11 дней назад
github логотип
GHSA-3m5v-mwj4-jp69

The Classified Pro theme for WordPress is vulnerable to unauthorized plugin installation due to a missing capability check in the 'cwp_addons_update_plugin_cb' function in all versions up to, and including, 1.0.14. This makes it possible for authenticated attackers, with subscriber-level access and above, to install arbitrary plugins on the affected site's server which may make remote code execution possible. Note: The required nonce for the vulnerability is in the CubeWP Framework plugin.

CVSS3: 8.8
1%
Низкий
10 месяцев назад
github логотип
GHSA-3m5v-fjjv-99m5

In the Linux kernel, the following vulnerability has been resolved: nfc: pn533: properly drop the usb interface reference on disconnect When the device is disconnected from the driver, there is a "dangling" reference count on the usb interface that was grabbed in the probe callback. Fix this up by properly dropping the reference after we are done with it.

CVSS3: 5.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-3m5v-crmw-qqfm

SQL injection vulnerability in customprofile.php in 2daybiz Matrimonial Script allows remote attackers to execute arbitrary SQL commands via the id parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5v-4xp5-gjg2

Graphiti Affected by Arbitrary Method Execution via Unvalidated Relationship Names

CVSS3: 9.1
1%
Низкий
5 месяцев назад
github логотип
GHSA-3m5r-wc67-jg8m

Buffer overflow in Tellurian TftpdNT 1.8 allows remote attackers to execute arbitrary code via a TFTP request with a long filename.

10%
Средний
больше 4 лет назад
github логотип
GHSA-3m5r-vf35-8v65

A stored cross site scripting (XSS) vulnerability in the /sys/attachment/uploaderServlet component of Landray EKP V12.0.9.R.20160325 allows attackers to execute arbitrary web scripts or HTML via a crafted SVG, SHTML, or MHT file.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5q-q39v-xf8f

nocodb SQL Injection vulnerability

CVSS3: 6.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-3m5q-4mj3-9362

pam_motd (aka the MOTD module) in libpam-modules before 1.1.0-2ubuntu1.1 in PAM on Ubuntu 9.10 and libpam-modules before 1.1.1-2ubuntu5 in PAM on Ubuntu 10.04 LTS allows local users to change the ownership of arbitrary files via a symlink attack on .cache in a user's home directory, related to "user file stamps" and the motd.legal-notice file.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5q-2hhf-3c5f

An origin validation vulnerability in the Apex One/SEP agent could allow a local attacker to escalate privileges on affected installations. This is similar to CVE-2026-45207 but exists in a different process protection communication mechanism. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.

CVSS3: 7.8
0%
Низкий
3 месяца назад
github логотип
GHSA-3m5m-x34p-6vq4

memory corruption when an invalid firehose patch command is invoked.

CVSS3: 6.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-3m5j-rg6q-w4gv

SQL Injection (SQLi) vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.

CVSS3: 8.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-3m5j-r9wr-wr68

The Kunena extension before 5.1.14 for Joomla! allows XSS via BBCode.

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5j-q5c3-cr8m

Monkey's Audio before 4.02 allows remote attackers to cause a denial of service (application crash) via a malformed APE file.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5j-38m5-7239

An issue was discovered in Mattermost Desktop App before 4.0.0. It mishandled the Same Origin Policy for setPermissionRequestHandler (e.g., video, audio, and notifications).

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5h-3839-5w2g

Vulnerability in Network Node Manager (NNM) 6.2 and earlier in HP OpenView allows a local user to execute arbitrary code, possibly via a buffer overflow in a long hostname or object ID.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m5c-7hqx-55x7

Double free vulnerability in libxml2 2.7.8 and other versions, as used in Google Chrome before 8.0.552.215 and other products, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

8%
Низкий
больше 4 лет назад
github логотип
GHSA-3m59-fh79-m7m6

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in creativeon WHMpress allows Reflected XSS.This issue affects WHMpress: from n/a through 6.2-revision-5.

CVSS3: 7.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-3m59-c9cm-pmrv

/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for the extraction of crafted archives to overwrite arbitrary files via an extract action, aka Directory Traversal.

CVSS3: 5.5
6%
Низкий
больше 4 лет назад

Уязвимостей на страницу