Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 628

Количество 355 628

github логотип

GHSA-2w54-gxr7-rr24

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in WebCT Campus Edition 4.1.1.5 allows remote attackers to inject arbitrary web script or HTML via the @import URL function in a CSS style tag.

EPSS: Низкий
github логотип

GHSA-2w53-9734-xpfw

11 месяцев назад

Missing Authorization vulnerability in RadiusTheme Team allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Team: from n/a through 5.0.6.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2w53-4977-5w7j

около 4 лет назад

Nortel Networks UNIStim IP Phone 0604DAS allows remote attackers to cause a denial of service (crash) via a long ping packet ("ping of death"). NOTE: this issue could not be reproduced by a third party, who tested it on 0604DAD. In addition, the original researcher was not able to reliably reproduce the issue.

EPSS: Низкий
github логотип

GHSA-2w53-3qhg-wqq3

около 1 года назад

A Server-Side Request Forgery (SSRF) in the component TunnelServlet of agorum Software GmbH Agorum core open v11.9.2 & v11.10.1 allows attackers to forcefully initiate connections to arbitrary internal and external resources via a crafted request. This can lead to sensitive data exposure.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2w52-p6rg-2493

больше 4 лет назад

Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).

EPSS: Высокий
github логотип

GHSA-2w52-h5q8-4cwq

около 4 лет назад

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012, and Windows RT allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."

EPSS: Низкий
github логотип

GHSA-2w4x-rxp7-grg7

около 4 лет назад

Exposure of Sensitive Information to an Unauthorized Actor in Jenkins

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2w4w-qvp3-4g7g

около 1 года назад

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-2w4w-4385-vh4h

больше 1 года назад

wgp race condition in inner::drop

CVSS3: 2.9
EPSS: Низкий
github логотип

GHSA-2w4r-h739-965w

больше 2 лет назад

D-Link DAP-2622 DDP Get SSID List WPA PSK Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2622 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the DDP service. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-20078.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-2w4r-fj83-hjp4

больше 3 лет назад

Windows Bind Filter Driver Elevation of Privilege Vulnerability.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-2w4r-8725-xcxv

больше 2 лет назад

An issue was discovered in AMCS Group Trux Waste Management Software before version 7.19.0018.26912, allows local attackers to obtain sensitive information via a static, hard-coded AES Key-IV pair in the TxUtilities.dll and TruxUser.cfg components.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-2w4r-7g95-jpmw

около 4 лет назад

LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed_image_t)+T.tlength) occurs without validating T.tlength.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4r-5ff7-6h3j

около 4 лет назад

Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows remote code execution if a user opens a specially crafted PDF file, aka "Windows PDF Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0292.

CVSS3: 7.8
EPSS: Средний
github логотип

GHSA-2w4q-4463-64h2

около 4 лет назад

An exploitable denial-of-service vulnerability exists in the thumbnail display functionality of the NT9665X Chipset firmware, running on the Anker Roav A1 Dashcam, version RoavA1SWV1.9. A specially crafted packet can cause a null pointer dereference, resulting in a device reboot.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4p-mxxg-4x58

больше 3 лет назад

Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterGet function.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4p-2hf7-gh8x

около 2 лет назад

Alpine allows URL access filter bypass

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4m-xhc4-2cxx

около 4 лет назад

A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions < V4.1), SIMATIC S7-300 PN/DP CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V6 and below CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants) (All versions). Affected devices contain a vulnerability that could cause a Denial-of-Service condition of the web server by sending specially crafted HTTP requests to ports 80/tcp and 443/tcp. The security vulnerability could be exploited by an attacker with network access to an affected device. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise the availability of the device’s web server. Beyond the web service, no other functions or interfaces are affected by the Denial-of-Service condition.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2w4m-xg3v-rm3m

больше 4 лет назад

Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.

EPSS: Низкий
github логотип

GHSA-2w4m-rf78-pvxh

почти 2 года назад

An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.

CVSS3: 4.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2w54-gxr7-rr24

Cross-site scripting (XSS) vulnerability in WebCT Campus Edition 4.1.1.5 allows remote attackers to inject arbitrary web script or HTML via the @import URL function in a CSS style tag.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2w53-9734-xpfw

Missing Authorization vulnerability in RadiusTheme Team allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Team: from n/a through 5.0.6.

CVSS3: 4.3
0%
Низкий
11 месяцев назад
github логотип
GHSA-2w53-4977-5w7j

Nortel Networks UNIStim IP Phone 0604DAS allows remote attackers to cause a denial of service (crash) via a long ping packet ("ping of death"). NOTE: this issue could not be reproduced by a third party, who tested it on 0604DAD. In addition, the original researcher was not able to reliably reproduce the issue.

4%
Низкий
около 4 лет назад
github логотип
GHSA-2w53-3qhg-wqq3

A Server-Side Request Forgery (SSRF) in the component TunnelServlet of agorum Software GmbH Agorum core open v11.9.2 & v11.10.1 allows attackers to forcefully initiate connections to arbitrary internal and external resources via a crafted request. This can lead to sensitive data exposure.

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-2w52-p6rg-2493

Buffer overflow in Microsoft Internet Information Services (IIS) 5.0, 5.1, and 6.0 allows local and possibly remote attackers to execute arbitrary code via crafted Active Server Pages (ASP).

85%
Высокий
больше 4 лет назад
github логотип
GHSA-2w52-h5q8-4cwq

win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2003 SP2 and R2 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012, and Windows RT allows local users to gain privileges via a crafted application, aka "Win32k Elevation of Privilege Vulnerability."

2%
Низкий
около 4 лет назад
github логотип
GHSA-2w4x-rxp7-grg7

Exposure of Sensitive Information to an Unauthorized Actor in Jenkins

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-2w4w-qvp3-4g7g

A USB backdoor feature can be triggered by attaching a USB drive that contains specially crafted "salia.ini" files. The .ini file can contain several "commands" that could be exploited by an attacker to export or modify the device configuration, enable an SSH backdoor  or perform other administrative actions. Ultimately, this backdoor also allows arbitrary execution of OS commands.

CVSS3: 6.2
0%
Низкий
около 1 года назад
github логотип
GHSA-2w4w-4385-vh4h

wgp race condition in inner::drop

CVSS3: 2.9
0%
Низкий
больше 1 года назад
github логотип
GHSA-2w4r-h739-965w

D-Link DAP-2622 DDP Get SSID List WPA PSK Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of D-Link DAP-2622 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the DDP service. The issue results from the lack of authentication prior to allowing access to functionality. An attacker can leverage this vulnerability to disclose stored credentials, leading to further compromise. Was ZDI-CAN-20078.

CVSS3: 7.4
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2w4r-fj83-hjp4

Windows Bind Filter Driver Elevation of Privilege Vulnerability.

CVSS3: 7
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4r-8725-xcxv

An issue was discovered in AMCS Group Trux Waste Management Software before version 7.19.0018.26912, allows local attackers to obtain sensitive information via a static, hard-coded AES Key-IV pair in the TxUtilities.dll and TruxUser.cfg components.

CVSS3: 6.2
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2w4r-7g95-jpmw

LibRaw before 0.20-RC1 lacks a thumbnail size range check. This affects decoders/unpack_thumb.cpp, postprocessing/mem_image.cpp, and utils/thumb_utils.cpp. For example, malloc(sizeof(libraw_processed_image_t)+T.tlength) occurs without validating T.tlength.

CVSS3: 7.5
4%
Низкий
около 4 лет назад
github логотип
GHSA-2w4r-5ff7-6h3j

Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows remote code execution if a user opens a specially crafted PDF file, aka "Windows PDF Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0292.

CVSS3: 7.8
20%
Средний
около 4 лет назад
github логотип
GHSA-2w4q-4463-64h2

An exploitable denial-of-service vulnerability exists in the thumbnail display functionality of the NT9665X Chipset firmware, running on the Anker Roav A1 Dashcam, version RoavA1SWV1.9. A specially crafted packet can cause a null pointer dereference, resulting in a device reboot.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-2w4p-mxxg-4x58

Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the index parameter in the formWifiMacFilterGet function.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2w4p-2hf7-gh8x

Alpine allows URL access filter bypass

CVSS3: 7.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-2w4m-xhc4-2cxx

A vulnerability has been identified in SIMATIC S7-1200 CPU family (incl. SIPLUS variants) (All versions < V4.1), SIMATIC S7-300 PN/DP CPU family (incl. related ET200 CPUs and SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V6 and below CPU family (incl. SIPLUS variants) (All versions), SIMATIC S7-400 PN/DP V7 CPU family (incl. SIPLUS variants) (All versions). Affected devices contain a vulnerability that could cause a Denial-of-Service condition of the web server by sending specially crafted HTTP requests to ports 80/tcp and 443/tcp. The security vulnerability could be exploited by an attacker with network access to an affected device. Successful exploitation requires no system privileges and no user interaction. An attacker could use the vulnerability to compromise the availability of the device’s web server. Beyond the web service, no other functions or interfaces are affected by the Denial-of-Service condition.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-2w4m-xg3v-rm3m

Buffer overflow in the DNS SRV code for nss_ldap before nss_ldap-198 allows remote attackers to cause a denial of service and possibly execute arbitrary code.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2w4m-rf78-pvxh

An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.

CVSS3: 4.9
0%
Низкий
почти 2 года назад

Уязвимостей на страницу