Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 357 271

Количество 357 271

github логотип

GHSA-33mf-f48h-g743

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Yblog allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in (a) funk.php, or the (2) action parameter in (b) tem.php and (c) uss.php.

EPSS: Низкий
github логотип

GHSA-33m9-pm4r-23hx

около 4 лет назад

Race condition in Apple iOS 4.0 through 4.1 for iPhone 3G and later allows physically proximate attackers to bypass the passcode lock by making a call from the Emergency Call screen, then quickly pressing the Sleep/Wake button.

EPSS: Низкий
github логотип

GHSA-33m9-pfw5-gmf2

около 4 лет назад

In Xiaomi router R3600, ROM version<1.0.20, the connection service can be injected through the web interface, resulting in stack overflow or remote code execution.

EPSS: Низкий
github логотип

GHSA-33m9-4q46-9q55

25 дней назад

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 allows authenticated users with OWNER or EDITOR permissions (at the root, namespace, or database level) to define custom database functions via DEFINE FUNCTION using nested FOR loops. Although a single loop's iteration count is constrained, nesting multiple loops (e.g., each with 1,000,000 iterations) is not, so an attacker can execute a function that consumes all server CPU time. Configured timeouts do not stop the execution, rendering the server unresponsive to other queries and connections until it is manually restarted.

EPSS: Низкий
github логотип

GHSA-33m8-f4hw-wm3q

больше 3 лет назад

usememos/memos Denial of Service vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-33m7-qmp2-vj6x

около 4 лет назад

ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/ URI.

EPSS: Низкий
github логотип

GHSA-33m7-2r3h-jgfx

больше 1 года назад

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-33m6-wpwp-3cw5

больше 4 лет назад

Multiple unspecified vulnerabilities in the Vsftpd Webmin module before 1.3b for the Vsftpd server have unknown impact and attack vectors related to "Some security issues."

EPSS: Низкий
github логотип

GHSA-33m6-q9v5-62r7

больше 3 лет назад

go.uuid has Predictable UUID Identifiers

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33m6-hpxx-phxq

1 день назад

Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-33m5-rgm6-r8x3

почти 4 года назад

Microsoft Business Central Information Disclosure Vulnerability.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-33m5-hqp9-97pw

3 месяца назад

Craft CMS's Missing Volume Permission Check in AssetsController::actionShowInFolder Allows Information Disclosure

EPSS: Низкий
github логотип

GHSA-33m4-frvp-3wr7

около 4 лет назад

An information disclosure vulnerability in Web Vulnerability Scan profile of Fortinet's FortiWeb version 6.2.x below 6.2.4 and version 6.3.x below 6.3.5 may allow a remote authenticated attacker to read the password used by the FortiWeb scanner to access the device defined in the scan profile.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33m4-3j2c-23xq

около 1 года назад

Improper authorization in Kibana can lead to privilege abuse via a direct HTTP request to a Synthetic monitor endpoint.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-33m3-hvgx-q2v6

больше 2 лет назад

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to blind SQL Injection via the ‘id’ parameter of the RM_Form shortcode in all versions up to, and including, 5.3.1.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-33m3-2pr9-32p7

больше 1 года назад

Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics DRASimuCAD. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of STP files. The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22450.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-33m2-72q5-r28q

больше 1 года назад

The Liveticker (by stklcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'liveticker' shortcode in all versions up to, and including, 1.2.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-33jx-rwv5-rjcv

около 4 лет назад

A vulnerability in the web-based management interface of Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface of the affected software. The vulnerability is due to insufficient validation of user-supplied input by the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to click a maliciously crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-33jx-32r4-fm3g

около 4 лет назад

A micro-core of QMP transportation may cause a macro-core to read from or write to arbitrary memory in Snapdragon Mobile in version SD 845, SD 850.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-33jw-h57w-fr79

около 4 лет назад

The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to cause a denial of service (integer overflow and stack-based buffer overflow) or possibly have unspecified other impact via large integers in a crafted printf function call in a SELECT statement.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-33mf-f48h-g743

Multiple cross-site scripting (XSS) vulnerabilities in Yblog allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter in (a) funk.php, or the (2) action parameter in (b) tem.php and (c) uss.php.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-33m9-pm4r-23hx

Race condition in Apple iOS 4.0 through 4.1 for iPhone 3G and later allows physically proximate attackers to bypass the passcode lock by making a call from the Emergency Call screen, then quickly pressing the Sleep/Wake button.

0%
Низкий
около 4 лет назад
github логотип
GHSA-33m9-pfw5-gmf2

In Xiaomi router R3600, ROM version<1.0.20, the connection service can be injected through the web interface, resulting in stack overflow or remote code execution.

2%
Низкий
около 4 лет назад
github логотип
GHSA-33m9-4q46-9q55

SurrealDB before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.2 allows authenticated users with OWNER or EDITOR permissions (at the root, namespace, or database level) to define custom database functions via DEFINE FUNCTION using nested FOR loops. Although a single loop's iteration count is constrained, nesting multiple loops (e.g., each with 1,000,000 iterations) is not, so an attacker can execute a function that consumes all server CPU time. Configured timeouts do not stop the execution, rendering the server unresponsive to other queries and connections until it is manually restarted.

0%
Низкий
25 дней назад
github логотип
GHSA-33m8-f4hw-wm3q

usememos/memos Denial of Service vulnerability

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-33m7-qmp2-vj6x

ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/ URI.

1%
Низкий
около 4 лет назад
github логотип
GHSA-33m7-2r3h-jgfx

Buffer over-read in Windows NTFS allows an unauthorized attacker to disclose information locally.

CVSS3: 5.5
1%
Низкий
больше 1 года назад
github логотип
GHSA-33m6-wpwp-3cw5

Multiple unspecified vulnerabilities in the Vsftpd Webmin module before 1.3b for the Vsftpd server have unknown impact and attack vectors related to "Some security issues."

2%
Низкий
больше 4 лет назад
github логотип
GHSA-33m6-q9v5-62r7

go.uuid has Predictable UUID Identifiers

CVSS3: 9.8
2%
Низкий
больше 3 лет назад
github логотип
GHSA-33m6-hpxx-phxq

Heap-based buffer overflow in Windows LUAFV allows an authorized attacker to elevate privileges locally.

CVSS3: 7
1 день назад
github логотип
GHSA-33m5-rgm6-r8x3

Microsoft Business Central Information Disclosure Vulnerability.

CVSS3: 4.4
1%
Низкий
почти 4 года назад
github логотип
GHSA-33m5-hqp9-97pw

Craft CMS's Missing Volume Permission Check in AssetsController::actionShowInFolder Allows Information Disclosure

0%
Низкий
3 месяца назад
github логотип
GHSA-33m4-frvp-3wr7

An information disclosure vulnerability in Web Vulnerability Scan profile of Fortinet's FortiWeb version 6.2.x below 6.2.4 and version 6.3.x below 6.3.5 may allow a remote authenticated attacker to read the password used by the FortiWeb scanner to access the device defined in the scan profile.

CVSS3: 6.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-33m4-3j2c-23xq

Improper authorization in Kibana can lead to privilege abuse via a direct HTTP request to a Synthetic monitor endpoint.

CVSS3: 7.6
0%
Низкий
около 1 года назад
github логотип
GHSA-33m3-hvgx-q2v6

The RegistrationMagic – Custom Registration Forms, User Registration, Payment, and User Login plugin for WordPress is vulnerable to blind SQL Injection via the ‘id’ parameter of the RM_Form shortcode in all versions up to, and including, 5.3.1.0 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-33m3-2pr9-32p7

Delta Electronics DRASimuCAD STP File Parsing Type Confusion Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Delta Electronics DRASimuCAD. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of STP files. The issue results from the lack of proper validation of user-supplied data, which can result in a type confusion condition. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-22450.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-33m2-72q5-r28q

The Liveticker (by stklcode) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'liveticker' shortcode in all versions up to, and including, 1.2.2 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-33jx-rwv5-rjcv

A vulnerability in the web-based management interface of Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface of the affected software. The vulnerability is due to insufficient validation of user-supplied input by the affected software. An attacker could exploit this vulnerability by persuading a user of the interface to click a maliciously crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-33jx-32r4-fm3g

A micro-core of QMP transportation may cause a macro-core to read from or write to arbitrary memory in Snapdragon Mobile in version SD 845, SD 850.

CVSS3: 7.1
0%
Низкий
около 4 лет назад
github логотип
GHSA-33jw-h57w-fr79

The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to cause a denial of service (integer overflow and stack-based buffer overflow) or possibly have unspecified other impact via large integers in a crafted printf function call in a SELECT statement.

6%
Низкий
около 4 лет назад

Уязвимостей на страницу