Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 358 043

Количество 358 043

github логотип

GHSA-35r7-vh9q-xpf7

больше 2 лет назад

Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-35r7-4rp8-9885

больше 4 лет назад

Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors.

EPSS: Низкий
github логотип

GHSA-35r6-wcp2-v9mw

около 1 месяца назад

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-35r6-q59h-rp4f

около 1 года назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme Avaz allows PHP Local File Inclusion. This issue affects Avaz: from n/a through 2.8.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-35r5-x2r5-c49q

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for durable handle context Add missing bounds check for durable handle context.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-35r5-pw6j-5f37

больше 4 лет назад

Unspecified vulnerability in Cisco IOS 12.2 through 12.4, when certificate-based authentication is enabled for IKE, allows remote attackers to cause a denial of service (Phase 1 SA exhaustion) via crafted requests, aka Bug IDs CSCsy07555 and CSCee72997.

EPSS: Низкий
github логотип

GHSA-35r5-j2wv-ff34

больше 1 года назад

Missing Authorization vulnerability in quillforms.com Quill Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quill Forms: from n/a through 3.3.0.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-35r4-97wh-88x3

около 4 лет назад

ModernFlow before 1.3.00.208 does not constrain web-page access to members of a security group, as demonstrated by the Search Screen and the Profile Screen.

EPSS: Низкий
github логотип

GHSA-35r4-377q-pc5v

больше 1 года назад

CyberPanel (aka Cyber Panel) before 6778ad1 does not require the FilemanagerAdmin capability for restartMySQL actions.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-35r3-xfww-vf6j

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: ceph: fix cred leak in ceph_mds_check_access() get_current_cred() increments the reference counter, but the put_cred() call was missing.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-35qx-qjjj-9pfh

12 месяцев назад

OperaMasks SDK ELite Script Engine v0.5.0 was discovered to contain a deserialization vulnerability.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-35qx-pprw-fwph

около 3 лет назад

A vulnerability was found in SourceCodester Sales Tracker Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /classes/Users.php?f=save. The manipulation of the argument firstname/middlename/lastname/username leads to cross site scripting. The attack may be launched remotely. The identifier of this vulnerability is VDB-231164.

CVSS3: 2.4
EPSS: Низкий
github логотип

GHSA-35qx-m8hh-rrjv

около 4 лет назад

Race condition in the virNetServerClientStartKeepAlive function in libvirt before 1.2.1 allows remote attackers to cause a denial of service (libvirtd crash) by closing a connection before a keepalive response is sent.

EPSS: Низкий
github логотип

GHSA-35qx-9vmg-3r4c

около 4 лет назад

(1) services/twitter/twitter-contact-view.c and (2) services/twitter/twitter-item-view.c in libsocialweb before 0.25.20 automatically connect to Twitter when no Twitter account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.

EPSS: Низкий
github логотип

GHSA-35qx-2fq7-2xm7

больше 4 лет назад

Maxthon 1.2.0 and 1.2.1 allows remote attackers to bypass the security ID and use restricted plugin API functions via script that includes the max.src file into the source page.

EPSS: Низкий
github логотип

GHSA-35qx-2fp8-64h3

26 дней назад

In the Linux kernel, the following vulnerability has been resolved: hwmon: (lm90) Stop work before releasing hwmon device Sashiko reports: In lm90_probe(), the devm action to cancel the alert_work and report_work (lm90_restore_conf) is registered in lm90_init_client() before devm_hwmon_device_register_with_info() is called. Because devm executes cleanup actions in reverse order during module unbind or probe failure, the hwmon device is unregistered and freed first. If lm90_alert_work() or lm90_report_alarms() runs in the window between the hwmon device being freed and the delayed works being cancelled, lm90_update_alarms() will dereference the freed data->hwmon_dev here. Fix the problem by canceling the workers separately after registering the hwmon device and before registering the interrupt handler. This ensures that the workers are canceled after interrupts are disabled and before the hwmon device is released. Add "shutdown" flag to indicate that device shutdown is in progr...

EPSS: Низкий
github логотип

GHSA-35qw-m5x8-mjp9

около 2 лет назад

SQL injection vulnerability in processscore.php in Itsourcecode Learning Management System Project In PHP With Source Code v1.0 allows remote attackers to execute arbitrary SQL commands via the LessonID parameter.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-35qw-h594-mg3j

больше 2 лет назад

Information disclosure while parsing dts header atom in Video.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-35qw-c8w7-fcg8

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix GCC_GCC_PCIE_HOT_RST definition for WCN7850 GCC_GCC_PCIE_HOT_RST is wrongly defined for WCN7850, causing kernel crash on some specific platforms. Since this register is divergent for WCN7850 and QCN9274, move it to register table to allow different definitions. Then correct the register address for WCN7850 to fix this issue. Note IPQ5332 is not affected as it is not PCIe based device. Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-35qw-9rhr-g626

больше 1 года назад

A vulnerability classified as critical has been found in LmxCMS 1.41. Affected is the function manageZt of the file c\admin\ZtAction.class.php of the component POST Request Handler. The manipulation of the argument sortid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-35r7-vh9q-xpf7

Use after free in Navigation in Google Chrome prior to 119.0.6045.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
30%
Средний
больше 2 лет назад
github логотип
GHSA-35r7-4rp8-9885

Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-35r6-wcp2-v9mw

Bridge is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
около 1 месяца назад
github логотип
GHSA-35r6-q59h-rp4f

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in snstheme Avaz allows PHP Local File Inclusion. This issue affects Avaz: from n/a through 2.8.

CVSS3: 8.1
1%
Низкий
около 1 года назад
github логотип
GHSA-35r5-x2r5-c49q

In the Linux kernel, the following vulnerability has been resolved: ksmbd: add bounds check for durable handle context Add missing bounds check for durable handle context.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-35r5-pw6j-5f37

Unspecified vulnerability in Cisco IOS 12.2 through 12.4, when certificate-based authentication is enabled for IKE, allows remote attackers to cause a denial of service (Phase 1 SA exhaustion) via crafted requests, aka Bug IDs CSCsy07555 and CSCee72997.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-35r5-j2wv-ff34

Missing Authorization vulnerability in quillforms.com Quill Forms allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Quill Forms: from n/a through 3.3.0.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-35r4-97wh-88x3

ModernFlow before 1.3.00.208 does not constrain web-page access to members of a security group, as demonstrated by the Search Screen and the Profile Screen.

2%
Низкий
около 4 лет назад
github логотип
GHSA-35r4-377q-pc5v

CyberPanel (aka Cyber Panel) before 6778ad1 does not require the FilemanagerAdmin capability for restartMySQL actions.

CVSS3: 4.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-35r3-xfww-vf6j

In the Linux kernel, the following vulnerability has been resolved: ceph: fix cred leak in ceph_mds_check_access() get_current_cred() increments the reference counter, but the put_cred() call was missing.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-35qx-qjjj-9pfh

OperaMasks SDK ELite Script Engine v0.5.0 was discovered to contain a deserialization vulnerability.

CVSS3: 8.8
1%
Низкий
12 месяцев назад
github логотип
GHSA-35qx-pprw-fwph

A vulnerability was found in SourceCodester Sales Tracker Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /classes/Users.php?f=save. The manipulation of the argument firstname/middlename/lastname/username leads to cross site scripting. The attack may be launched remotely. The identifier of this vulnerability is VDB-231164.

CVSS3: 2.4
2%
Низкий
около 3 лет назад
github логотип
GHSA-35qx-m8hh-rrjv

Race condition in the virNetServerClientStartKeepAlive function in libvirt before 1.2.1 allows remote attackers to cause a denial of service (libvirtd crash) by closing a connection before a keepalive response is sent.

2%
Низкий
около 4 лет назад
github логотип
GHSA-35qx-9vmg-3r4c

(1) services/twitter/twitter-contact-view.c and (2) services/twitter/twitter-item-view.c in libsocialweb before 0.25.20 automatically connect to Twitter when no Twitter account is set, which might allow remote attackers to obtain sensitive information via a man-in-the-middle (MITM) attack.

2%
Низкий
около 4 лет назад
github логотип
GHSA-35qx-2fq7-2xm7

Maxthon 1.2.0 and 1.2.1 allows remote attackers to bypass the security ID and use restricted plugin API functions via script that includes the max.src file into the source page.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-35qx-2fp8-64h3

In the Linux kernel, the following vulnerability has been resolved: hwmon: (lm90) Stop work before releasing hwmon device Sashiko reports: In lm90_probe(), the devm action to cancel the alert_work and report_work (lm90_restore_conf) is registered in lm90_init_client() before devm_hwmon_device_register_with_info() is called. Because devm executes cleanup actions in reverse order during module unbind or probe failure, the hwmon device is unregistered and freed first. If lm90_alert_work() or lm90_report_alarms() runs in the window between the hwmon device being freed and the delayed works being cancelled, lm90_update_alarms() will dereference the freed data->hwmon_dev here. Fix the problem by canceling the workers separately after registering the hwmon device and before registering the interrupt handler. This ensures that the workers are canceled after interrupts are disabled and before the hwmon device is released. Add "shutdown" flag to indicate that device shutdown is in progr...

0%
Низкий
26 дней назад
github логотип
GHSA-35qw-m5x8-mjp9

SQL injection vulnerability in processscore.php in Itsourcecode Learning Management System Project In PHP With Source Code v1.0 allows remote attackers to execute arbitrary SQL commands via the LessonID parameter.

CVSS3: 8.8
1%
Низкий
около 2 лет назад
github логотип
GHSA-35qw-h594-mg3j

Information disclosure while parsing dts header atom in Video.

CVSS3: 6.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-35qw-c8w7-fcg8

In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix GCC_GCC_PCIE_HOT_RST definition for WCN7850 GCC_GCC_PCIE_HOT_RST is wrongly defined for WCN7850, causing kernel crash on some specific platforms. Since this register is divergent for WCN7850 and QCN9274, move it to register table to allow different definitions. Then correct the register address for WCN7850 to fix this issue. Note IPQ5332 is not affected as it is not PCIe based device. Tested-on: WCN7850 hw2.0 PCI WLAN.HMT.1.0.c5-00481-QCAHMTSWPL_V1.0_V2.0_SILICONZ-3

CVSS3: 5.5
0%
Низкий
около 1 года назад
github логотип
GHSA-35qw-9rhr-g626

A vulnerability classified as critical has been found in LmxCMS 1.41. Affected is the function manageZt of the file c\admin\ZtAction.class.php of the component POST Request Handler. The manipulation of the argument sortid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
0%
Низкий
больше 1 года назад

Уязвимостей на страницу