Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 356 366

Количество 356 366

github логотип

GHSA-3247-hfh9-m3hv

около 4 лет назад

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 7.3 (E0504) was found. The problem was resolved in HPE Intelligent Management Center PLAT v7.3 (E0506) or any subsequent version.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3247-33gc-rgpq

больше 4 лет назад

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3246-g44m-35rw

11 месяцев назад

IBM Transformation Advisor 2.0.1 through 4.3.1 incorrectly assigns privileges to security critical files which could allow a local root escalation inside a container running the IBM Transformation Advisor Operator Catalog image.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-3244-vj38-xw85

больше 1 года назад

A vulnerability was found in ScriptAndTools Online-Travling-System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/viewenquiry.php. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3244-jfpr-7px4

больше 4 лет назад

The WP Review Slider WordPress plugin before 11.0 does not sanitise and escape the pid parameter when copying a Twitter source, which could allow a high privilege users to perform SQL Injections attacks

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3244-j874-rhc2

2 месяца назад

Netty: Memory Exhaustion in RedisArrayAggregator due to Deeply Nested Arrays

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3244-8mff-w398

больше 3 лет назад

Reflected XSS in Gotify's /docs via import of outdated Swagger UI

EPSS: Низкий
github логотип

GHSA-3244-863h-59jf

около 1 года назад

The Firelight Lightbox WordPress plugin before 2.3.16 does not sanitise and escape title attributes before outputting them in the page, which could allow users with a role as low as contributors to perform stored Cross-Site Scripting attacks.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3243-w5fh-rcj8

больше 1 года назад

Incorrect Access Control in Unifiedtransform 2.X leads to Privilege Escalation allowing teachers to create syllabus.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-3243-c96f-w7x3

около 4 лет назад

The mintToken function of a smart contract implementation for WXSLToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3242-rqgf-8x5v

6 месяцев назад

A flaw has been found in Open5GS up to 2.7.6. The impacted element is the function sgwc_tunnel_add of the file /src/sgwc/context.c of the component SGWC. Executing a manipulation of the argument pdr can lead to reachable assertion. The attack can be executed remotely. The exploit has been published and may be used. It is advisable to implement a patch to correct this issue. The issue report is flagged as already-fixed.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3242-q5qv-pxx7

5 месяцев назад

The Name Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'name_directory_name' parameter in all versions up to, and including, 1.32.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability was partially patched in versions 1.30.3 and 1.32.1.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3242-hvmp-wgvm

больше 3 лет назад

The AAWP WordPress plugin before 3.12.3 can be used to abuse trusted domains to load malware or other files through it (Reflected File Download) to bypass firewall rules in companies.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3242-g4f6-mjm3

больше 4 лет назад

Oracle 10g Database Server stores the password for the SYSMAN account in cleartext in the world-readable emoms.properties file, which could allow local users to gain DBA privileges.

EPSS: Средний
github логотип

GHSA-323x-wpgh-r8q4

около 3 лет назад

A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to download selling data.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-323x-vj5p-jwh3

11 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: jfs: upper bound check of tree index in dbAllocAG When computing the tree index in dbAllocAG, we never check if we are out of bounds realative to the size of the stree. This could happen in a scenario where the filesystem metadata are corrupted.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-323x-m6wx-9h98

около 4 лет назад

Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Solaris Management Console.

EPSS: Низкий
github логотип

GHSA-323w-xf3r-4754

около 4 лет назад

Buffer overflow in phrelay in BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868 that leverage improper handling of the /dev/photon device file.

EPSS: Низкий
github логотип

GHSA-323w-vcff-w7mp

около 4 лет назад

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0.25114. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the processing of script within a Keystroke action of a listbox field. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-9081.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-323w-6p85-26fr

больше 1 года назад

Duplicate Advisory: Plenti - Code Injection - Denial of Services

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3247-hfh9-m3hv

A Remote Code Execution vulnerability in HPE Intelligent Management Center (iMC) PLAT version PLAT 7.3 (E0504) was found. The problem was resolved in HPE Intelligent Management Center PLAT v7.3 (E0506) or any subsequent version.

CVSS3: 8.8
6%
Низкий
около 4 лет назад
github логотип
GHSA-3247-33gc-rgpq

Improper input validation vulnerability in InstallAgent in Galaxy Store prior to version 4.5.41.8 allows attacker to overwrite files stored in a specific path. The patch adds proper protection to prevent overwrite to existing files.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3246-g44m-35rw

IBM Transformation Advisor 2.0.1 through 4.3.1 incorrectly assigns privileges to security critical files which could allow a local root escalation inside a container running the IBM Transformation Advisor Operator Catalog image.

CVSS3: 6.7
0%
Низкий
11 месяцев назад
github логотип
GHSA-3244-vj38-xw85

A vulnerability was found in ScriptAndTools Online-Travling-System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/viewenquiry.php. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-3244-jfpr-7px4

The WP Review Slider WordPress plugin before 11.0 does not sanitise and escape the pid parameter when copying a Twitter source, which could allow a high privilege users to perform SQL Injections attacks

CVSS3: 7.2
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3244-j874-rhc2

Netty: Memory Exhaustion in RedisArrayAggregator due to Deeply Nested Arrays

CVSS3: 7.5
0%
Низкий
2 месяца назад
github логотип
GHSA-3244-8mff-w398

Reflected XSS in Gotify's /docs via import of outdated Swagger UI

больше 3 лет назад
github логотип
GHSA-3244-863h-59jf

The Firelight Lightbox WordPress plugin before 2.3.16 does not sanitise and escape title attributes before outputting them in the page, which could allow users with a role as low as contributors to perform stored Cross-Site Scripting attacks.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-3243-w5fh-rcj8

Incorrect Access Control in Unifiedtransform 2.X leads to Privilege Escalation allowing teachers to create syllabus.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-3243-c96f-w7x3

The mintToken function of a smart contract implementation for WXSLToken, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-3242-rqgf-8x5v

A flaw has been found in Open5GS up to 2.7.6. The impacted element is the function sgwc_tunnel_add of the file /src/sgwc/context.c of the component SGWC. Executing a manipulation of the argument pdr can lead to reachable assertion. The attack can be executed remotely. The exploit has been published and may be used. It is advisable to implement a patch to correct this issue. The issue report is flagged as already-fixed.

CVSS3: 5.3
1%
Низкий
6 месяцев назад
github логотип
GHSA-3242-q5qv-pxx7

The Name Directory plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'name_directory_name' parameter in all versions up to, and including, 1.32.1 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability was partially patched in versions 1.30.3 and 1.32.1.

CVSS3: 7.2
0%
Низкий
5 месяцев назад
github логотип
GHSA-3242-hvmp-wgvm

The AAWP WordPress plugin before 3.12.3 can be used to abuse trusted domains to load malware or other files through it (Reflected File Download) to bypass firewall rules in companies.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-3242-g4f6-mjm3

Oracle 10g Database Server stores the password for the SYSMAN account in cleartext in the world-readable emoms.properties file, which could allow local users to gain DBA privileges.

15%
Средний
больше 4 лет назад
github логотип
GHSA-323x-wpgh-r8q4

A broken authentication mechanism in the endpoint excel.php of POS Codekop v2.0 allows unauthenticated attackers to download selling data.

CVSS3: 7.5
34%
Средний
около 3 лет назад
github логотип
GHSA-323x-vj5p-jwh3

In the Linux kernel, the following vulnerability has been resolved: jfs: upper bound check of tree index in dbAllocAG When computing the tree index in dbAllocAG, we never check if we are out of bounds realative to the size of the stree. This could happen in a scenario where the filesystem metadata are corrupted.

CVSS3: 7.8
0%
Низкий
11 месяцев назад
github логотип
GHSA-323x-m6wx-9h98

Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Solaris Management Console.

2%
Низкий
около 4 лет назад
github логотип
GHSA-323w-xf3r-4754

Buffer overflow in phrelay in BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868 that leverage improper handling of the /dev/photon device file.

7%
Низкий
около 4 лет назад
github логотип
GHSA-323w-vcff-w7mp

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit PhantomPDF 9.6.0.25114. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the processing of script within a Keystroke action of a listbox field. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-9081.

CVSS3: 8.8
6%
Низкий
около 4 лет назад
github логотип
GHSA-323w-6p85-26fr

Duplicate Advisory: Plenti - Code Injection - Denial of Services

CVSS3: 6.5
больше 1 года назад

Уязвимостей на страницу