Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 628

Количество 355 628

github логотип

GHSA-2w93-2gh9-c8c2

около 4 лет назад

A SQL Injection vulnerability exists in Western Bridge Cobub Razor 0.8.0 via the channel_name or platform parameter in a /index.php?/manage/channel/addchannel request, related to /application/controllers/manage/channel.php.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-2w93-2cv6-8w7c

почти 4 года назад

The WP Social Chat WordPress plugin before 6.0.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-2w92-jpj9-jcf2

больше 4 лет назад

In TBD of TBD, there is a possible downgrade attack due to under utilized anti-rollback protections. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-194697257References: N/A

EPSS: Низкий
github логотип

GHSA-2w92-jcqh-43jc

4 месяца назад

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

EPSS: Низкий
github логотип

GHSA-2w92-h6fh-j7gw

почти 2 года назад

Missing Authorization vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Asset CleanUp: Page Speed Booster: from n/a through 1.3.9.3.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2w8x-pfh9-cp77

больше 1 года назад

In Helix Core versions prior to 2024.2, an unauthenticated remote Denial of Service (DoS) via the refuse function was identified. Reported by Karol Więsek.

EPSS: Низкий
github логотип

GHSA-2w8x-37m4-26px

около 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in vTiger CRM 5.2.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) viewname parameter in a CalendarAjax action, (2) activity_mode parameter in a DetailView action, (3) contact_id and (4) parent_id parameters in an EditView action, (5) day, (6) month, (7) subtab, (8) view, and (9) viewOption parameters in the index action, and (10) start parameter in the ListView action to the Calendar module; (11) return_action and (12) return_module parameters in the EditView action, and (13) query parameter in an index action to the Campaigns module; (14) return_url and (15) workflow_id parameters in an editworkflow action to the com_vtiger_workflow module; (16) display_view parameter in an index action to the Dashboard module; (17) closingdate_end, (18) closingdate_start, (19) date_closed, (20) owner, (21) leadsource, (22) sales_stage, and (23) type parameters in a ListView action to the Potentials module; ...

EPSS: Низкий
github логотип

GHSA-2w8x-224x-785m

5 месяцев назад

sjcl is missing point-on-curve validation in sjcl.ecc.basicKey.publicKey

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w8w-qhg4-f78j

около 3 лет назад

A stored XSS in jaeger UI might allow an attacker who controls a trace to perform arbitrary jaeger queries

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2w8w-7v4c-mfg3

около 4 лет назад

User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an attacker gains access to the CommandPost, these values could be decoded and used to login to the application. The vulnerability is present in Fidelis Network and Deception versions prior to 9.3.3. This vulnerability has been addressed in version 9.3.3 and subsequent versions.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w8v-rcqr-7wxj

около 2 лет назад

The YITH Essential Kit for WooCommerce #1 plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'activate_module', 'deactivate_module', and 'install_module' functions in all versions up to, and including, 2.34.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to install, activate, and deactivate plugins from a pre-defined list of available YITH plugins.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2w8r-9xj7-69j5

около 1 месяца назад

mktemp: empty TMPDIR creates temp files in CWD instead of /tmp

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-2w8q-jwxq-9mrg

около 1 месяца назад

Insufficient policy enforcement in Spellcheck in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2w8q-69fh-9gq6

почти 6 лет назад

Malicious Package in bufger-xor

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2w8p-mpf2-3mcq

больше 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bamboo Mcr Bamboo Columns allows Stored XSS.This issue affects Bamboo Columns: from n/a through 1.6.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2w8m-f4xv-fpww

около 4 лет назад

jhead through 3.04 has a heap-based buffer over-read in process_DQT in jpgqguess.c.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-2w8j-h6jx-gc5q

больше 1 года назад

Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has identified an issue with a specific file that the server is using. A non-admin user can modify this file to either create files or change the content of files in an admin-protected location. Axis has released a patched version for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2w8j-8xc6-4wcx

больше 1 года назад

SQL Injection vulnerability in Simple Laboratory Management System using PHP and MySQL v.1.0 allows a remote attacker to cause a denial of service via the delete_users function in the Useres.php

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2w8h-mqc4-qvfp

около 4 лет назад

Cross-site scripting (XSS) vulnerability in IBM ENOVIA 6 allows remote attackers to inject arbitrary web script or HTML via vectors related to the emxFramework.FilterParameterPattern property.

EPSS: Низкий
github логотип

GHSA-2w8h-hch2-v23h

почти 2 года назад

mudler/LocalAI version 2.17.1 allows for arbitrary file write due to improper handling of automatic archive extraction. When model configurations specify additional files as archives (e.g., .tar), these archives are automatically extracted after downloading. This behavior can be exploited to perform a 'tarslip' attack, allowing files to be written to arbitrary locations on the server, bypassing checks that normally restrict files to the models directory. This vulnerability can lead to remote code execution (RCE) by overwriting backend assets used by the server.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2w93-2gh9-c8c2

A SQL Injection vulnerability exists in Western Bridge Cobub Razor 0.8.0 via the channel_name or platform parameter in a /index.php?/manage/channel/addchannel request, related to /application/controllers/manage/channel.php.

CVSS3: 9.8
22%
Средний
около 4 лет назад
github логотип
GHSA-2w93-2cv6-8w7c

The WP Social Chat WordPress plugin before 6.0.5 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks.

CVSS3: 4.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-2w92-jpj9-jcf2

In TBD of TBD, there is a possible downgrade attack due to under utilized anti-rollback protections. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-194697257References: N/A

0%
Низкий
больше 4 лет назад
github логотип
GHSA-2w92-jcqh-43jc

The "profiling.sampling" module (Python 3.15+) and "asyncio introspection capabilities" (3.14+, "python -m asyncio ps" and "python -m asyncio pstree") features could be used to read and write addresses in a privileged process if that process connected to a malicious or "infected" Python process via the remote debugging feature. This vulnerability requires persistently and repeatedly connecting to the process to be exploited, even after the connecting process crashes with high likelihood due to ASLR.

0%
Низкий
4 месяца назад
github логотип
GHSA-2w92-h6fh-j7gw

Missing Authorization vulnerability in Gabe Livan Asset CleanUp: Page Speed Booster allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Asset CleanUp: Page Speed Booster: from n/a through 1.3.9.3.

CVSS3: 4.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-2w8x-pfh9-cp77

In Helix Core versions prior to 2024.2, an unauthenticated remote Denial of Service (DoS) via the refuse function was identified. Reported by Karol Więsek.

0%
Низкий
больше 1 года назад
github логотип
GHSA-2w8x-37m4-26px

Multiple cross-site scripting (XSS) vulnerabilities in vTiger CRM 5.2.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) viewname parameter in a CalendarAjax action, (2) activity_mode parameter in a DetailView action, (3) contact_id and (4) parent_id parameters in an EditView action, (5) day, (6) month, (7) subtab, (8) view, and (9) viewOption parameters in the index action, and (10) start parameter in the ListView action to the Calendar module; (11) return_action and (12) return_module parameters in the EditView action, and (13) query parameter in an index action to the Campaigns module; (14) return_url and (15) workflow_id parameters in an editworkflow action to the com_vtiger_workflow module; (16) display_view parameter in an index action to the Dashboard module; (17) closingdate_end, (18) closingdate_start, (19) date_closed, (20) owner, (21) leadsource, (22) sales_stage, and (23) type parameters in a ListView action to the Potentials module; ...

3%
Низкий
около 4 лет назад
github логотип
GHSA-2w8x-224x-785m

sjcl is missing point-on-curve validation in sjcl.ecc.basicKey.publicKey

CVSS3: 7.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-2w8w-qhg4-f78j

A stored XSS in jaeger UI might allow an attacker who controls a trace to perform arbitrary jaeger queries

CVSS3: 6.5
около 3 лет назад
github логотип
GHSA-2w8w-7v4c-mfg3

User credentials stored in a recoverable format within Fidelis Network and Deception CommandPost. In the event that an attacker gains access to the CommandPost, these values could be decoded and used to login to the application. The vulnerability is present in Fidelis Network and Deception versions prior to 9.3.3. This vulnerability has been addressed in version 9.3.3 and subsequent versions.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2w8v-rcqr-7wxj

The YITH Essential Kit for WooCommerce #1 plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'activate_module', 'deactivate_module', and 'install_module' functions in all versions up to, and including, 2.34.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to install, activate, and deactivate plugins from a pre-defined list of available YITH plugins.

CVSS3: 4.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-2w8r-9xj7-69j5

mktemp: empty TMPDIR creates temp files in CWD instead of /tmp

CVSS3: 3.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-2w8q-jwxq-9mrg

Insufficient policy enforcement in Spellcheck in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-2w8q-69fh-9gq6

Malicious Package in bufger-xor

CVSS3: 9.8
почти 6 лет назад
github логотип
GHSA-2w8p-mpf2-3mcq

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Bamboo Mcr Bamboo Columns allows Stored XSS.This issue affects Bamboo Columns: from n/a through 1.6.1.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2w8m-f4xv-fpww

jhead through 3.04 has a heap-based buffer over-read in process_DQT in jpgqguess.c.

CVSS3: 7.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-2w8j-h6jx-gc5q

Gee-netics, member of AXIS Camera Station Pro Bug Bounty Program, has identified an issue with a specific file that the server is using. A non-admin user can modify this file to either create files or change the content of files in an admin-protected location. Axis has released a patched version for the highlighted flaw. Please refer to the Axis security advisory for more information and solution.

CVSS3: 6.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-2w8j-8xc6-4wcx

SQL Injection vulnerability in Simple Laboratory Management System using PHP and MySQL v.1.0 allows a remote attacker to cause a denial of service via the delete_users function in the Useres.php

CVSS3: 4.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-2w8h-mqc4-qvfp

Cross-site scripting (XSS) vulnerability in IBM ENOVIA 6 allows remote attackers to inject arbitrary web script or HTML via vectors related to the emxFramework.FilterParameterPattern property.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2w8h-hch2-v23h

mudler/LocalAI version 2.17.1 allows for arbitrary file write due to improper handling of automatic archive extraction. When model configurations specify additional files as archives (e.g., .tar), these archives are automatically extracted after downloading. This behavior can be exploited to perform a 'tarslip' attack, allowing files to be written to arbitrary locations on the server, bypassing checks that normally restrict files to the models directory. This vulnerability can lead to remote code execution (RCE) by overwriting backend assets used by the server.

CVSS3: 8.1
2%
Низкий
почти 2 года назад

Уязвимостей на страницу