Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 362 328

Количество 362 328

github логотип

GHSA-3h89-g9r5-cvx9

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Use a cpumask to know what threads are kthreads The start_kthread() and stop_thread() code was not always called with the interface_lock held. This means that the kthread variable could be unexpectedly changed causing the kthread_stop() to be called on it when it should not have been, leading to: while true; do rtla timerlat top -u -q & PID=$!; sleep 5; kill -INT $PID; sleep 0.001; kill -TERM $PID; wait $PID; done Causing the following OOPS: Oops: general protection fault, probably for non-canonical address 0xdffffc0000000002: 0000 [#1] PREEMPT SMP KASAN PTI KASAN: null-ptr-deref in range [0x0000000000000010-0x0000000000000017] CPU: 5 UID: 0 PID: 885 Comm: timerlatu/5 Not tainted 6.11.0-rc4-test-00002-gbc754cc76d1b-dirty #125 a533010b71dab205ad2f507188ce8c82203b0254 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014 RIP: 0010:hrt...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3h89-9mrm-gjxw

12 дней назад

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h89-7v9c-8256

больше 1 года назад

Missing Authorization vulnerability in EPC Photography. This issue affects Photography: from n/a through 7.5.2.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-3h89-3vxh-28m9

4 месяца назад

A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This impacts an unknown function of the component Login RMI Interface. The manipulation of the argument clientVersion leads to improper authentication. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3h88-qhgq-2p27

больше 4 лет назад

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘health_alt_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h88-phwh-c45g

больше 4 лет назад

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (kernel panic) via incoming IP fragmented (1) COOKIE_ECHO and (2) HEARTBEAT SCTP control chunks.

EPSS: Низкий
github логотип

GHSA-3h88-j436-w3r5

больше 3 лет назад

In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-246749764

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3h87-v52r-p9rg

почти 5 лет назад

Out of bounds write in reorder

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-3h85-7292-2f8x

6 месяцев назад

The Custom Block Builder – Lazy Blocks plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.2.0 via multiple functions in the 'LazyBlocks_Blocks' class. This makes it possible for authenticated attackers, with Contributor-level access and above, to execute code on the server.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h85-679h-c4f3

около 1 года назад

The WP-Members Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpmem_login_link' shortcode in all versions up to, and including, 3.5.4.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-3h84-xx23-2982

больше 4 лет назад

Format string vulnerability in Tftpd32 2.81 allows remote attackers to cause a denial of service via format string specifiers in a filename in a (1) GET or (2) SEND request.

EPSS: Низкий
github логотип

GHSA-3h84-fcgx-2vcg

больше 4 лет назад

The mintToken function of a smart contract implementation for Easticoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3h84-2wm8-rxr6

около 2 лет назад

Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h84-29wj-g8q3

около 4 лет назад

HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN1912BR or higher) have a Cross-Site Request Forgery (CSRF) vulnerability that could lead to a denial of service (DOS) or device misconfiguration.

EPSS: Низкий
github логотип

GHSA-3h83-c8w5-cccx

около 1 месяца назад

The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.8.6. This is due to improper validation of the fieldIds parameter in the Pro Forms registration action, which allows attacker-supplied field IDs to be added to the trusted form-field whitelist. This makes it possible for unauthenticated attackers to register a new administrator account by submitting a crafted request to a publicly accessible Bricksforge Pro Forms registration form. Successful exploitation requires that the site has a public Bricksforge Pro Forms element configured with the User Registration action.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3h82-23p6-hhff

6 месяцев назад

Insertion of Sensitive Information Into Sent Data vulnerability in RadiusTheme Classified Listing classified-listing allows Retrieve Embedded Sensitive Data.This issue affects Classified Listing: from n/a through <= 5.3.4.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3h7x-hf52-fwj9

7 месяцев назад

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Account allows an unauthorized attacker to perform spoofing over a network.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-3h7x-h2gx-59gv

около 2 лет назад

Linksys WRT54G v4.21.5 has a stack overflow vulnerability in get_merge_mac function.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3h7x-5mvc-5r6p

около 2 лет назад

A stored cross-site scripting (XSS) vulnerability exists in ResidenceCMS 2.10.1 that allows a low-privilege user to create malicious property content with HTML inside which acts as a stored XSS payload.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3h7w-w4qf-f3pr

около 4 лет назад

In JetBrains Hub versions earlier than 2018.4.11298, the audit events for SMTPSettings show a cleartext password to the admin user. It is only relevant in cases where a password has not changed since 2017, and if the audit log still contains events from before that period.

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3h89-g9r5-cvx9

In the Linux kernel, the following vulnerability has been resolved: tracing/osnoise: Use a cpumask to know what threads are kthreads The start_kthread() and stop_thread() code was not always called with the interface_lock held. This means that the kthread variable could be unexpectedly changed causing the kthread_stop() to be called on it when it should not have been, leading to: while true; do rtla timerlat top -u -q & PID=$!; sleep 5; kill -INT $PID; sleep 0.001; kill -TERM $PID; wait $PID; done Causing the following OOPS: Oops: general protection fault, probably for non-canonical address 0xdffffc0000000002: 0000 [#1] PREEMPT SMP KASAN PTI KASAN: null-ptr-deref in range [0x0000000000000010-0x0000000000000017] CPU: 5 UID: 0 PID: 885 Comm: timerlatu/5 Not tainted 6.11.0-rc4-test-00002-gbc754cc76d1b-dirty #125 a533010b71dab205ad2f507188ce8c82203b0254 Hardware name: QEMU Standard PC (Q35 + ICH9, 2009), BIOS 1.16.3-debian-1.16.3-2 04/01/2014 RIP: 0010:hrt...

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-3h89-9mrm-gjxw

Server-side request forgery (ssrf) in Microsoft Office SharePoint allows an authorized attacker to elevate privileges over a network.

CVSS3: 8.8
1%
Низкий
12 дней назад
github логотип
GHSA-3h89-7v9c-8256

Missing Authorization vulnerability in EPC Photography. This issue affects Photography: from n/a through 7.5.2.

CVSS3: 6.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-3h89-3vxh-28m9

A vulnerability was identified in Industrial Application Software IAS Canias ERP 8.03. This impacts an unknown function of the component Login RMI Interface. The manipulation of the argument clientVersion leads to improper authentication. It is possible to initiate the attack remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 5.3
0%
Низкий
4 месяца назад
github логотип
GHSA-3h88-qhgq-2p27

A specially-crafted HTTP request can lead to SQL injection. An attacker can make authenticated HTTP requests to trigger this vulnerability at ‘health_alt_filter’ parameter. This can be done as any authenticated user or through cross-site request forgery.

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3h88-phwh-c45g

Linux SCTP (lksctp) before 2.6.17 allows remote attackers to cause a denial of service (kernel panic) via incoming IP fragmented (1) COOKIE_ECHO and (2) HEARTBEAT SCTP control chunks.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-3h88-j436-w3r5

In multiple locations, there is a possible way to trigger a persistent reboot loop due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-246749764

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-3h87-v52r-p9rg

Out of bounds write in reorder

CVSS3: 7.3
1%
Низкий
почти 5 лет назад
github логотип
GHSA-3h85-7292-2f8x

The Custom Block Builder – Lazy Blocks plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 4.2.0 via multiple functions in the 'LazyBlocks_Blocks' class. This makes it possible for authenticated attackers, with Contributor-level access and above, to execute code on the server.

CVSS3: 8.8
9%
Низкий
6 месяцев назад
github логотип
GHSA-3h85-679h-c4f3

The WP-Members Membership Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpmem_login_link' shortcode in all versions up to, and including, 3.5.4.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
около 1 года назад
github логотип
GHSA-3h84-xx23-2982

Format string vulnerability in Tftpd32 2.81 allows remote attackers to cause a denial of service via format string specifiers in a filename in a (1) GET or (2) SEND request.

8%
Низкий
больше 4 лет назад
github логотип
GHSA-3h84-fcgx-2vcg

The mintToken function of a smart contract implementation for Easticoin, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3h84-2wm8-rxr6

Windows Layer-2 Bridge Network Driver Remote Code Execution Vulnerability

CVSS3: 8.8
1%
Низкий
около 2 лет назад
github логотип
GHSA-3h84-29wj-g8q3

HP DeskJet 3630 All-in-One Printers models F5S43A - F5S57A, K4T93A - K4T99C, K4U00B - K4U03B, and V3F21A - V3F22A (firmware version SWP1FN1912BR or higher) have a Cross-Site Request Forgery (CSRF) vulnerability that could lead to a denial of service (DOS) or device misconfiguration.

1%
Низкий
около 4 лет назад
github логотип
GHSA-3h83-c8w5-cccx

The Bricksforge plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 3.1.8.6. This is due to improper validation of the fieldIds parameter in the Pro Forms registration action, which allows attacker-supplied field IDs to be added to the trusted form-field whitelist. This makes it possible for unauthenticated attackers to register a new administrator account by submitting a crafted request to a publicly accessible Bricksforge Pro Forms registration form. Successful exploitation requires that the site has a public Bricksforge Pro Forms element configured with the User Registration action.

CVSS3: 9.8
0%
Низкий
около 1 месяца назад
github логотип
GHSA-3h82-23p6-hhff

Insertion of Sensitive Information Into Sent Data vulnerability in RadiusTheme Classified Listing classified-listing allows Retrieve Embedded Sensitive Data.This issue affects Classified Listing: from n/a through <= 5.3.4.

CVSS3: 6.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-3h7x-hf52-fwj9

Improper neutralization of input during web page generation ('cross-site scripting') in Microsoft Account allows an unauthorized attacker to perform spoofing over a network.

CVSS3: 9.3
0%
Низкий
7 месяцев назад
github логотип
GHSA-3h7x-h2gx-59gv

Linksys WRT54G v4.21.5 has a stack overflow vulnerability in get_merge_mac function.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-3h7x-5mvc-5r6p

A stored cross-site scripting (XSS) vulnerability exists in ResidenceCMS 2.10.1 that allows a low-privilege user to create malicious property content with HTML inside which acts as a stored XSS payload.

CVSS3: 5.4
1%
Низкий
около 2 лет назад
github логотип
GHSA-3h7w-w4qf-f3pr

In JetBrains Hub versions earlier than 2018.4.11298, the audit events for SMTPSettings show a cleartext password to the admin user. It is only relevant in cases where a password has not changed since 2017, and if the audit log still contains events from before that period.

CVSS3: 7.2
1%
Низкий
около 4 лет назад

Уязвимостей на страницу