Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 358 234

Количество 358 234

github логотип

GHSA-3699-c5vc-4r22

больше 4 лет назад

The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.

EPSS: Низкий
github логотип

GHSA-3699-7c24-vh7q

около 4 лет назад

utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effectively replace any directory with a new filesystem, and consequently gain privileges, via a mount system call.

EPSS: Низкий
github логотип

GHSA-3698-xpjv-mhxj

около 4 лет назад

ED01-CMS v1.0 was discovered to contain a SQL injection in the component cposts.php via the cid parameter.

EPSS: Низкий
github логотип

GHSA-3698-cx82-84gv

больше 1 года назад

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in totalprocessing Total processing card payments for WooCommerce allows Path Traversal. This issue affects Total processing card payments for WooCommerce: from n/a through 7.1.5.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3697-9w4g-6gpf

почти 4 года назад

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, macOS Monterey 12.6. An app may be able to access user-sensitive data.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3696-x4fh-6hw8

около 4 лет назад

Cross-site scripting (XSS) vulnerability in js/tabletools/zeroclipboard.swf in the WP-Table Reloaded module before 1.9.4 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: this might be the same vulnerability as CVE-2013-1808. If so, it is likely that CVE-2013-1463 will be REJECTed.

EPSS: Низкий
github логотип

GHSA-3696-vcmq-4g83

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: fs/nfs/read: fix double-unlock bug in nfs_return_empty_folio() Sometimes, when a file was read while it was being truncated by another NFS client, the kernel could deadlock because folio_unlock() was called twice, and the second call would XOR back the `PG_locked` flag. Most of the time (depending on the timing of the truncation), nobody notices the problem because folio_unlock() gets called three times, which flips `PG_locked` back off: 1. vfs_read, nfs_read_folio, ... nfs_read_add_folio, nfs_return_empty_folio 2. vfs_read, nfs_read_folio, ... netfs_read_collection, netfs_unlock_abandoned_read_pages 3. vfs_read, ... nfs_do_read_folio, nfs_read_add_folio, nfs_return_empty_folio The problem is that nfs_read_add_folio() is not supposed to unlock the folio if fscache is enabled, and a nfs_netfs_folio_unlock() check is missing in nfs_return_empty_folio(). Rarely this leads to a warning in netfs_read...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3696-mpwc-5fpg

около 4 лет назад

OpenBSD 5.8 and 5.9 allows local users to cause a denial of service (NULL pointer dereference and panic) via a sysctl call with a path starting with 10,9.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3696-9vfx-q3qw

около 4 лет назад

iBooks Commerce in Apple OS X before 10.9.4 places Apple ID credentials in the iBooks log, which allows local users to obtain sensitive information by reading this file.

EPSS: Низкий
github логотип

GHSA-3695-47qv-rc3x

больше 1 года назад

Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Exploitation requires administrative authentication credentials on the host system.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3694-7mhw-w3xx

около 4 лет назад

Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Documentum WDK before 6.7SP1 P28 and 6.7SP2 before P15 allow remote attackers to hijack the authentication of arbitrary users.

EPSS: Низкий
github логотип

GHSA-3693-57g2-4j5q

около 2 лет назад

The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the uploadFile function in all versions up to, and including, 3.1.1. This makes it possible for authenticated attackers, with contributor access or higher, to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3692-hqvq-62f5

около 4 лет назад

Cloudera Manager 5.x before 5.7.1 places Sensitive Data in cleartext Readable Files.

EPSS: Низкий
github логотип

GHSA-368x-wmmg-hq5c

больше 3 лет назад

Apollo has potential access control security issue in eureka

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-368x-vqh8-wg8x

больше 2 лет назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WooCommerce Product Vendors allows SQL Injection.This issue affects Product Vendors: from n/a through 2.1.76.

CVSS3: 8.5
EPSS: Низкий
github логотип

GHSA-368x-rx64-j3wc

7 месяцев назад

Outline 1.6.0 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted service path in the OutlineService executable to inject malicious code that will be executed with LocalSystem permissions.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-368x-g6j7-2g8q

около 4 лет назад

Directory traversal vulnerability in index.php in OTManager CMS 24a allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conteudo parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.

EPSS: Низкий
github логотип

GHSA-368w-vm6r-8gm2

больше 4 лет назад

Buffer overflow in the expandtabs function in 2fax 3.04 allows remote attackers to execute arbitrary code via a text file that is converted to TIFF.

EPSS: Низкий
github логотип

GHSA-368v-m4p5-vmm4

около 4 лет назад

IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199230.

EPSS: Низкий
github логотип

GHSA-368v-7v32-52fx

больше 3 лет назад

Overflow in `ResizeNearestNeighborGrad`

CVSS3: 4.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3699-c5vc-4r22

The wrap CGI program in IRIX allows remote attackers to view arbitrary directory listings via a .. (dot dot) attack.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3699-7c24-vh7q

utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effectively replace any directory with a new filesystem, and consequently gain privileges, via a mount system call.

0%
Низкий
около 4 лет назад
github логотип
GHSA-3698-xpjv-mhxj

ED01-CMS v1.0 was discovered to contain a SQL injection in the component cposts.php via the cid parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-3698-cx82-84gv

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in totalprocessing Total processing card payments for WooCommerce allows Path Traversal. This issue affects Total processing card payments for WooCommerce: from n/a through 7.1.5.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3697-9w4g-6gpf

An access issue was addressed with additional sandbox restrictions. This issue is fixed in macOS Big Sur 11.7, macOS Ventura 13, macOS Monterey 12.6. An app may be able to access user-sensitive data.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-3696-x4fh-6hw8

Cross-site scripting (XSS) vulnerability in js/tabletools/zeroclipboard.swf in the WP-Table Reloaded module before 1.9.4 for Wordpress allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: this might be the same vulnerability as CVE-2013-1808. If so, it is likely that CVE-2013-1463 will be REJECTed.

6%
Низкий
около 4 лет назад
github логотип
GHSA-3696-vcmq-4g83

In the Linux kernel, the following vulnerability has been resolved: fs/nfs/read: fix double-unlock bug in nfs_return_empty_folio() Sometimes, when a file was read while it was being truncated by another NFS client, the kernel could deadlock because folio_unlock() was called twice, and the second call would XOR back the `PG_locked` flag. Most of the time (depending on the timing of the truncation), nobody notices the problem because folio_unlock() gets called three times, which flips `PG_locked` back off: 1. vfs_read, nfs_read_folio, ... nfs_read_add_folio, nfs_return_empty_folio 2. vfs_read, nfs_read_folio, ... netfs_read_collection, netfs_unlock_abandoned_read_pages 3. vfs_read, ... nfs_do_read_folio, nfs_read_add_folio, nfs_return_empty_folio The problem is that nfs_read_add_folio() is not supposed to unlock the folio if fscache is enabled, and a nfs_netfs_folio_unlock() check is missing in nfs_return_empty_folio(). Rarely this leads to a warning in netfs_read...

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-3696-mpwc-5fpg

OpenBSD 5.8 and 5.9 allows local users to cause a denial of service (NULL pointer dereference and panic) via a sysctl call with a path starting with 10,9.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-3696-9vfx-q3qw

iBooks Commerce in Apple OS X before 10.9.4 places Apple ID credentials in the iBooks log, which allows local users to obtain sensitive information by reading this file.

0%
Низкий
около 4 лет назад
github логотип
GHSA-3695-47qv-rc3x

Multiple command injection vulnerabilities exist in the web interface of the 501 Wireless Client Bridge which could lead to authenticated remote command execution. Successful exploitation of these vulnerabilities result in the ability of an attacker to execute arbitrary commands as a privileged user on the underlying operating system. Exploitation requires administrative authentication credentials on the host system.

CVSS3: 7.2
2%
Низкий
больше 1 года назад
github логотип
GHSA-3694-7mhw-w3xx

Multiple cross-site request forgery (CSRF) vulnerabilities in EMC Documentum WDK before 6.7SP1 P28 and 6.7SP2 before P15 allow remote attackers to hijack the authentication of arbitrary users.

1%
Низкий
около 4 лет назад
github логотип
GHSA-3693-57g2-4j5q

The Slider and Carousel slider by Depicter plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the uploadFile function in all versions up to, and including, 3.1.1. This makes it possible for authenticated attackers, with contributor access or higher, to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVSS3: 8.8
1%
Низкий
около 2 лет назад
github логотип
GHSA-3692-hqvq-62f5

Cloudera Manager 5.x before 5.7.1 places Sensitive Data in cleartext Readable Files.

1%
Низкий
около 4 лет назад
github логотип
GHSA-368x-wmmg-hq5c

Apollo has potential access control security issue in eureka

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-368x-vqh8-wg8x

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WooCommerce Product Vendors allows SQL Injection.This issue affects Product Vendors: from n/a through 2.1.76.

CVSS3: 8.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-368x-rx64-j3wc

Outline 1.6.0 contains an unquoted service path vulnerability that allows local attackers to potentially execute arbitrary code with elevated system privileges. Attackers can exploit the unquoted service path in the OutlineService executable to inject malicious code that will be executed with LocalSystem permissions.

CVSS3: 8.4
0%
Низкий
7 месяцев назад
github логотип
GHSA-368x-g6j7-2g8q

Directory traversal vulnerability in index.php in OTManager CMS 24a allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conteudo parameter. NOTE: in some environments, this can be leveraged for remote file inclusion by using a UNC share pathname or an ftp, ftps, or ssh2.sftp URL.

2%
Низкий
около 4 лет назад
github логотип
GHSA-368w-vm6r-8gm2

Buffer overflow in the expandtabs function in 2fax 3.04 allows remote attackers to execute arbitrary code via a text file that is converted to TIFF.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-368v-m4p5-vmm4

IBM Sterling File Gateway 2.2.0.0 through 6.1.1.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 199230.

1%
Низкий
около 4 лет назад
github логотип
GHSA-368v-7v32-52fx

Overflow in `ResizeNearestNeighborGrad`

CVSS3: 4.8
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу