Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 357 271

Количество 357 271

github логотип

GHSA-33j3-f98h-3v38

больше 4 лет назад

Info Touch Surfnet kiosk allows local users to crash Surfnet and access the underlying operating system via the CMD_CREDITCARD_CHARGE command.

EPSS: Низкий
github логотип

GHSA-33j2-rmf2-wf3v

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: sched, cpuset: Fix dl_cpu_busy() panic due to empty cs->cpus_allowed With cgroup v2, the cpuset's cpus_allowed mask can be empty indicating that the cpuset will just use the effective CPUs of its parent. So cpuset_can_attach() can call task_can_attach() with an empty mask. This can lead to cpumask_any_and() returns nr_cpu_ids causing the call to dl_bw_of() to crash due to percpu value access of an out of bound CPU value. For example: [80468.182258] BUG: unable to handle page fault for address: ffffffff8b6648b0 : [80468.191019] RIP: 0010:dl_cpu_busy+0x30/0x2b0 : [80468.207946] Call Trace: [80468.208947] cpuset_can_attach+0xa0/0x140 [80468.209953] cgroup_migrate_execute+0x8c/0x490 [80468.210931] cgroup_update_dfl_csses+0x254/0x270 [80468.211898] cgroup_subtree_control_write+0x322/0x400 [80468.212854] kernfs_fop_write_iter+0x11c/0x1b0 [80468.213777] new_sync_write+0x11f/0x1b0 [80468.214689] vf...

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-33j2-jx3h-wp85

больше 2 лет назад

Adobe After Effects version 24.0.2 (and earlier) and 23.6 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-33j2-jqmj-8hx4

около 4 лет назад

The Gentoo sci-mathematics/gimps package before 28.10-r1 for Great Internet Mersenne Prime Search (GIMPS) allows local users to gain privileges by creating a hard link under /var/lib/gimps, because an unsafe "chown -R" command is executed.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-33j2-92xf-fwm3

около 3 лет назад

HashiCorp Vault Enterprise 1.13.0 up to 1.13.1 is vulnerable to a padding oracle attack when using an HSM in conjunction with the CKM_AES_CBC_PAD or CKM_AES_CBC encryption mechanisms. An attacker with privileges to modify storage and restart Vault may be able to intercept or modify cipher text in order to derive Vault’s root key. Fixed in 1.13.2

CVSS3: 2.5
EPSS: Низкий
github логотип

GHSA-33hx-w9g7-6rmq

14 дней назад

The WPC Badge Management for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'text' attribute of the `wpcbm_best_seller` shortcode in all versions up to, and including, 3.1.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-33hx-6698-q89r

около 4 лет назад

A logic issue was addressed with improved state management. This issue is fixed in iOS 15 and iPadOS 15. In certain situations, the baseband would fail to enable integrity and ciphering protection.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-33hw-p8gg-wmfg

около 4 лет назад

Use-after-free vulnerability in Google Chrome before 12.0.742.112 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to text selection.

EPSS: Низкий
github логотип

GHSA-33hv-cjr4-37wm

около 4 лет назад

Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.46 and prior, 5.7.28 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Client. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-33hq-v9c2-967m

больше 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Rara Theme Construction Landing Page allows Cross Site Request Forgery.This issue affects Construction Landing Page: from n/a through 1.3.5.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-33hq-r9r9-2w2h

около 4 лет назад

SQL injection vulnerability in add_ons.php in Jaow 2.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the add_ons parameter.

EPSS: Низкий
github логотип

GHSA-33hq-fvwr-56pm

6 месяцев назад

devalue affected by CPU and memory amplification from sparse arrays

EPSS: Низкий
github логотип

GHSA-33hq-f2mf-jm3c

около 3 лет назад

kyverno seccomp control can be circumvented

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-33hq-6mqq-8gjp

больше 2 лет назад

Windows Telephony Server Elevation of Privilege Vulnerability

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-33hm-x4hv-3825

около 4 лет назад

Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload 'php' file to the website through uploader_paste.php, then overwrite /framework/conf/config.php, which leads to arbitrary code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33hm-cq8r-wc49

5 месяцев назад

Temporary path handling could write outside OpenClaw temp boundary

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33hj-rcmx-86mv

6 месяцев назад

Undertow Servlets Vulnerable to Remote DoS via OutOfMemoryError when Passed Large Parameter Names

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-33hj-r9x4-46jq

около 4 лет назад

The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-33hj-pw6w-7p8m

около 4 лет назад

customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33hj-h3v9-w687

почти 3 года назад

Improper path handling in Typora before 1.7.0-dev on Windows and Linux allows a crafted webpage to access local files and exfiltrate them to remote web servers via "typora://app/typemark/". This vulnerability can be exploited if a user opens a malicious markdown file in Typora, or copies text from a malicious webpage and paste it into Typora.

CVSS3: 6.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-33j3-f98h-3v38

Info Touch Surfnet kiosk allows local users to crash Surfnet and access the underlying operating system via the CMD_CREDITCARD_CHARGE command.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-33j2-rmf2-wf3v

In the Linux kernel, the following vulnerability has been resolved: sched, cpuset: Fix dl_cpu_busy() panic due to empty cs->cpus_allowed With cgroup v2, the cpuset's cpus_allowed mask can be empty indicating that the cpuset will just use the effective CPUs of its parent. So cpuset_can_attach() can call task_can_attach() with an empty mask. This can lead to cpumask_any_and() returns nr_cpu_ids causing the call to dl_bw_of() to crash due to percpu value access of an out of bound CPU value. For example: [80468.182258] BUG: unable to handle page fault for address: ffffffff8b6648b0 : [80468.191019] RIP: 0010:dl_cpu_busy+0x30/0x2b0 : [80468.207946] Call Trace: [80468.208947] cpuset_can_attach+0xa0/0x140 [80468.209953] cgroup_migrate_execute+0x8c/0x490 [80468.210931] cgroup_update_dfl_csses+0x254/0x270 [80468.211898] cgroup_subtree_control_write+0x322/0x400 [80468.212854] kernfs_fop_write_iter+0x11c/0x1b0 [80468.213777] new_sync_write+0x11f/0x1b0 [80468.214689] vf...

CVSS3: 7.1
0%
Низкий
около 1 года назад
github логотип
GHSA-33j2-jx3h-wp85

Adobe After Effects version 24.0.2 (and earlier) and 23.6 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-33j2-jqmj-8hx4

The Gentoo sci-mathematics/gimps package before 28.10-r1 for Great Internet Mersenne Prime Search (GIMPS) allows local users to gain privileges by creating a hard link under /var/lib/gimps, because an unsafe "chown -R" command is executed.

CVSS3: 7.3
0%
Низкий
около 4 лет назад
github логотип
GHSA-33j2-92xf-fwm3

HashiCorp Vault Enterprise 1.13.0 up to 1.13.1 is vulnerable to a padding oracle attack when using an HSM in conjunction with the CKM_AES_CBC_PAD or CKM_AES_CBC encryption mechanisms. An attacker with privileges to modify storage and restart Vault may be able to intercept or modify cipher text in order to derive Vault’s root key. Fixed in 1.13.2

CVSS3: 2.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-33hx-w9g7-6rmq

The WPC Badge Management for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'text' attribute of the `wpcbm_best_seller` shortcode in all versions up to, and including, 3.1.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with Contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
14 дней назад
github логотип
GHSA-33hx-6698-q89r

A logic issue was addressed with improved state management. This issue is fixed in iOS 15 and iPadOS 15. In certain situations, the baseband would fail to enable integrity and ciphering protection.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-33hw-p8gg-wmfg

Use-after-free vulnerability in Google Chrome before 12.0.742.112 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to text selection.

1%
Низкий
около 4 лет назад
github логотип
GHSA-33hv-cjr4-37wm

Vulnerability in the MySQL Client product of Oracle MySQL (component: C API). Supported versions that are affected are 5.6.46 and prior, 5.7.28 and prior and 8.0.18 and prior. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise MySQL Client. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Client. CVSS 3.0 Base Score 5.9 (Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 5.9
3%
Низкий
около 4 лет назад
github логотип
GHSA-33hq-v9c2-967m

Cross-Site Request Forgery (CSRF) vulnerability in Rara Theme Construction Landing Page allows Cross Site Request Forgery.This issue affects Construction Landing Page: from n/a through 1.3.5.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-33hq-r9r9-2w2h

SQL injection vulnerability in add_ons.php in Jaow 2.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the add_ons parameter.

2%
Низкий
около 4 лет назад
github логотип
GHSA-33hq-fvwr-56pm

devalue affected by CPU and memory amplification from sparse arrays

6 месяцев назад
github логотип
GHSA-33hq-f2mf-jm3c

kyverno seccomp control can be circumvented

CVSS3: 4.6
0%
Низкий
около 3 лет назад
github логотип
GHSA-33hq-6mqq-8gjp

Windows Telephony Server Elevation of Privilege Vulnerability

CVSS3: 7.5
24%
Средний
больше 2 лет назад
github логотип
GHSA-33hm-x4hv-3825

Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload 'php' file to the website through uploader_paste.php, then overwrite /framework/conf/config.php, which leads to arbitrary code execution.

CVSS3: 9.8
4%
Низкий
около 4 лет назад
github логотип
GHSA-33hm-cq8r-wc49

Temporary path handling could write outside OpenClaw temp boundary

CVSS3: 6.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-33hj-rcmx-86mv

Undertow Servlets Vulnerable to Remote DoS via OutOfMemoryError when Passed Large Parameter Names

CVSS3: 7.5
1%
Низкий
6 месяцев назад
github логотип
GHSA-33hj-r9x4-46jq

The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-33hj-pw6w-7p8m

customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.

CVSS3: 6.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-33hj-h3v9-w687

Improper path handling in Typora before 1.7.0-dev on Windows and Linux allows a crafted webpage to access local files and exfiltrate them to remote web servers via "typora://app/typemark/". This vulnerability can be exploited if a user opens a malicious markdown file in Typora, or copies text from a malicious webpage and paste it into Typora.

CVSS3: 6.3
0%
Низкий
почти 3 года назад

Уязвимостей на страницу