Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 704

Количество 355 704

github логотип

GHSA-2wq7-x39p-77fm

около 4 лет назад

Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to media buffers.

EPSS: Низкий
github логотип

GHSA-2wq7-p5vp-5q7g

около 4 лет назад

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper length check Validation in WLAN function can lead to driver writes the default rsn capabilities to the memory not allocated to the frame.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2wq7-hx2p-5748

больше 1 года назад

Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network.

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-2wq7-hcmr-3vvx

около 4 лет назад

In gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to a missing bounds check. This could lead to remote information disclosure in the Bluetooth process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android ID: A-73172115.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2wq6-27jx-rfq7

около 4 лет назад

Inappropriate implementation in Navigation in Google Chrome on iOS prior to 90.0.4430.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

EPSS: Низкий
github логотип

GHSA-2wq5-j34g-97x4

3 месяца назад

A vulnerability was identified in Open5GS up to 2.7.7. Affected by this vulnerability is the function ogs_timer_add in the library /src/ausf/nausf-handler.c of the component AUSF. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2wq5-g96f-mv3v

почти 2 года назад

Ouch! allows a segmentation fault due to use of uninitialized memory

EPSS: Низкий
github логотип

GHSA-2wq5-6p78-9f3j

около 2 лет назад

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Perials Simple Social Share allows Stored XSS.This issue affects Simple Social Share: from n/a through 3.0.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-2wq3-r2pm-pwfm

около 4 лет назад

Inappropriate implementation in Navigation in Google Chrome prior to 93.0.4577.63 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2wq2-vmgv-993c

около 4 лет назад

Akaunting version 2.1.12 and earlier suffers from a code injection issue in the Money.php component of the application. A POST sent to /{company_id}/sales/invoices/{invoice_id} with an items[0][price] that includes a PHP callable function is executed directly. This issue was fixed in version 2.1.13 of the product.

EPSS: Низкий
github логотип

GHSA-2wpx-v6qf-p32x

больше 4 лет назад

A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A remote attacker could use this flaw to crash the VNC server by sending a specially crafted ClientCutText message from a VNC client.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2wpx-r7mp-wg22

больше 1 года назад

The Responsive Videos plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'somryv' shortcode in all versions up to, and including, 2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-2wpx-qpw2-g5h5

3 месяца назад

CoreDNS' DoQ worker pool does not bound stream backlog

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2wpx-p7qg-954w

около 4 лет назад

CF CLI version prior to v6.45.0 (bosh release version 1.16.0) writes the client id and secret to its config file when the user authenticates with --client-credentials flag. A local authenticated malicious user with access to the CF CLI config file can act as that client, who is the owner of the leaked credentials.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2wpw-x29g-2vrh

8 месяцев назад

Missing Authorization vulnerability in SALESmanago SALESmanago salesmanago allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SALESmanago: from n/a through <= 3.9.0.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2wpw-cm9w-v4xm

больше 3 лет назад

rdiffweb vulnerable to Business Logic Errors

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-2wpw-75c5-m9hx

больше 3 лет назад

The Replyable WordPress plugin before 2.2.10 does not validate the class name submitted by the request when instantiating an object in the prompt_dismiss_notice action and also lacks CSRF check in the related action. This could allow any authenticated users, such as subscriber to perform Object Injection attacks. The attack could also be done via a CSRF vector against any authenticated user

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2wpw-3v5g-3wff

около 1 года назад

A privilege escalation vulnerability exists in Apache CloudStack versions 4.10.0.0 through 4.20.0.0 where a malicious Domain Admin user in the ROOT domain can get the API key and secret key of user-accounts of Admin role type in the same domain. This operation is not appropriately restricted and allows the attacker to assume control over higher-privileged user-accounts. A malicious Domain Admin attacker can impersonate an Admin user-account and gain access to sensitive APIs and resources that could result in the compromise of resource integrity and confidentiality, data loss, denial of service, and availability of infrastructure managed by CloudStack. Users are recommended to upgrade to Apache CloudStack 4.19.3.0 or 4.20.1.0, which fixes the issue with the following: * Strict validation on Role Type hierarchy: the caller's role must be equal to or higher than the target user's role.  * API privilege comparison: the caller must possess all privileges of the user they are op...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2wpr-26w9-94vp

около 4 лет назад

Microsoft .NET Framework 2.0 SP2, 3.5, and 3.5.1 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka ".NET ASLR Bypass."

EPSS: Средний
github логотип

GHSA-2wpq-vvw6-67wr

почти 8 лет назад

nodecaffe is malware

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2wq7-x39p-77fm

Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to media buffers.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2wq7-p5vp-5q7g

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper length check Validation in WLAN function can lead to driver writes the default rsn capabilities to the memory not allocated to the frame.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-2wq7-hx2p-5748

Improper authorization in Azure Bot Framework SDK allows an unauthorized attacker to elevate privileges over a network.

CVSS3: 8.7
1%
Низкий
больше 1 года назад
github логотип
GHSA-2wq7-hcmr-3vvx

In gatts_process_attribute_req of gatt_sc.cc, there is a possible read of uninitialized data due to a missing bounds check. This could lead to remote information disclosure in the Bluetooth process with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-6.0 Android-6.0.1 Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android ID: A-73172115.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-2wq6-27jx-rfq7

Inappropriate implementation in Navigation in Google Chrome on iOS prior to 90.0.4430.72 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2wq5-j34g-97x4

A vulnerability was identified in Open5GS up to 2.7.7. Affected by this vulnerability is the function ogs_timer_add in the library /src/ausf/nausf-handler.c of the component AUSF. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 4.3
0%
Низкий
3 месяца назад
github логотип
GHSA-2wq5-g96f-mv3v

Ouch! allows a segmentation fault due to use of uninitialized memory

почти 2 года назад
github логотип
GHSA-2wq5-6p78-9f3j

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Perials Simple Social Share allows Stored XSS.This issue affects Simple Social Share: from n/a through 3.0.

CVSS3: 5.9
0%
Низкий
около 2 лет назад
github логотип
GHSA-2wq3-r2pm-pwfm

Inappropriate implementation in Navigation in Google Chrome prior to 93.0.4577.63 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

CVSS3: 6.5
6%
Низкий
около 4 лет назад
github логотип
GHSA-2wq2-vmgv-993c

Akaunting version 2.1.12 and earlier suffers from a code injection issue in the Money.php component of the application. A POST sent to /{company_id}/sales/invoices/{invoice_id} with an items[0][price] that includes a PHP callable function is executed directly. This issue was fixed in version 2.1.13 of the product.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2wpx-v6qf-p32x

A NULL pointer dereference flaw was found in the way LibVNCServer before 0.9.9 handled certain ClientCutText message. A remote attacker could use this flaw to crash the VNC server by sending a specially crafted ClientCutText message from a VNC client.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-2wpx-r7mp-wg22

The Responsive Videos plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'somryv' shortcode in all versions up to, and including, 2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-2wpx-qpw2-g5h5

CoreDNS' DoQ worker pool does not bound stream backlog

CVSS3: 7.5
0%
Низкий
3 месяца назад
github логотип
GHSA-2wpx-p7qg-954w

CF CLI version prior to v6.45.0 (bosh release version 1.16.0) writes the client id and secret to its config file when the user authenticates with --client-credentials flag. A local authenticated malicious user with access to the CF CLI config file can act as that client, who is the owner of the leaked credentials.

CVSS3: 7.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-2wpw-x29g-2vrh

Missing Authorization vulnerability in SALESmanago SALESmanago salesmanago allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects SALESmanago: from n/a through <= 3.9.0.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
github логотип
GHSA-2wpw-cm9w-v4xm

rdiffweb vulnerable to Business Logic Errors

CVSS3: 5.7
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2wpw-75c5-m9hx

The Replyable WordPress plugin before 2.2.10 does not validate the class name submitted by the request when instantiating an object in the prompt_dismiss_notice action and also lacks CSRF check in the related action. This could allow any authenticated users, such as subscriber to perform Object Injection attacks. The attack could also be done via a CSRF vector against any authenticated user

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2wpw-3v5g-3wff

A privilege escalation vulnerability exists in Apache CloudStack versions 4.10.0.0 through 4.20.0.0 where a malicious Domain Admin user in the ROOT domain can get the API key and secret key of user-accounts of Admin role type in the same domain. This operation is not appropriately restricted and allows the attacker to assume control over higher-privileged user-accounts. A malicious Domain Admin attacker can impersonate an Admin user-account and gain access to sensitive APIs and resources that could result in the compromise of resource integrity and confidentiality, data loss, denial of service, and availability of infrastructure managed by CloudStack. Users are recommended to upgrade to Apache CloudStack 4.19.3.0 or 4.20.1.0, which fixes the issue with the following: * Strict validation on Role Type hierarchy: the caller's role must be equal to or higher than the target user's role.  * API privilege comparison: the caller must possess all privileges of the user they are op...

CVSS3: 8.8
0%
Низкий
около 1 года назад
github логотип
GHSA-2wpr-26w9-94vp

Microsoft .NET Framework 2.0 SP2, 3.5, and 3.5.1 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka ".NET ASLR Bypass."

13%
Средний
около 4 лет назад
github логотип
GHSA-2wpq-vvw6-67wr

nodecaffe is malware

CVSS3: 7.5
1%
Низкий
почти 8 лет назад

Уязвимостей на страницу