Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 558

Количество 355 558

github логотип

GHSA-2vwm-r72j-grv9

около 4 лет назад

Static code injection vulnerability in user/settings/ in DeStar 0.2.2-5 allows remote authenticated users to add arbitrary administrators and inject arbitrary Python code into destar_cfg.py via a crafted pin parameter.

EPSS: Низкий
github логотип

GHSA-2vwm-3r62-68r6

около 2 лет назад

Adobe Experience Manager versions 6.5.20 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. This vulnerability could allow an attacker to execute arbitrary JavaScript code in the context of the victim's browser session. Exploitation of this issue typically requires user interaction, such as convincing a user to click on a malicious link or to interact with a maliciously crafted web page.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2vwj-xrr6-mmcf

почти 3 года назад

A Cross-site scripting (XSS) vulnerability in Froala Editor v.4.1.1 allows attackers to execute arbitrary code via the Markdown component.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2vwj-qg8g-pq5g

около 4 лет назад

Cross-site request forgery (CSRF) vulnerability in loader/DocumentThreadableLoader.cpp in WebCore in WebKit before r57041, as used in Google Chrome before 4.1.249.1059, allows remote attackers to hijack the authentication of unspecified victims via a crafted synchronous preflight XMLHttpRequest operation.

EPSS: Низкий
github логотип

GHSA-2vwj-p4xr-gwcv

больше 2 лет назад

An issue was discovered in the PageTriage extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2. XSS can occur via the rev-deleted-user, pagetriage-tags-quickfilter-label, pagetriage-triage, pagetriage-filter-date-range-format-placeholder, pagetriage-filter-date-range-to, pagetriage-filter-date-range-from, pagetriage-filter-date-range-heading, pagetriage-filter-set-button, or pagetriage-filter-reset-button message.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2vwj-hgqw-6q5c

около 4 лет назад

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2vwh-mc47-47fv

больше 1 года назад

Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2vwh-gpg3-5pm3

около 4 лет назад

A vulnerability in the file system of Cisco Elastic Services Controllers could allow an authenticated, local attacker to gain access to sensitive user credentials that are stored in an affected system. More Information: CSCvd73677. Known Affected Releases: 2.3(2).

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2vwh-54r8-6xwg

12 месяцев назад

The AL Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the check_activate_permission() permission callback for the /wp-json/presslearn/v1/activate REST API endpoint in all versions up to, and including, 1.0.2. The callback reads the client-supplied Origin header and, after parsing, allows the request if it matches one of the trusted domains, without ever verifying user authentication, capabilities, or nonce tokens. This makes it possible for unauthenticated attackers to activate premium features by simply spoofing the Origin header.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2vwg-wm97-9xx9

около 4 лет назад

An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.

EPSS: Низкий
github логотип

GHSA-2vwg-j5r8-rc77

больше 4 лет назад

The Teredo implementation in Microsoft Windows Vista uses the same nonce for communication with different UDP ports within a solicitation session, which makes it easier for remote attackers to spoof the nonce through brute force attacks.

EPSS: Средний
github логотип

GHSA-2vwg-39m6-fw44

7 месяцев назад

A stored cross-site scripting (XSS) vulnerability exists in the user profile text fields of Altium 365. Insufficient server-side input sanitization allows authenticated users to inject arbitrary HTML and JavaScript payloads using whitespace-based attribute parsing bypass techniques. The injected payload is persisted and executed when other users view the affected profile page, potentially allowing session token theft, phishing attacks, or malicious redirects. Exploitation requires an authenticated account and user interaction to view the crafted profile.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-2vwf-xc9m-9w4j

около 4 лет назад

gpc_api.php in MantisBT 1.2.17 and earlier allows remote attackers to bypass authenticated via a password starting will a null byte, which triggers an unauthenticated bind.

EPSS: Низкий
github логотип

GHSA-2vwf-jqh3-5vjp

почти 2 года назад

Exposure of sensitive information in System UI prior to SMR Nov-2024 Release 1 allow local attackers to make malicious apps appear as legitimate.

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-2vwc-94q4-mqwr

больше 4 лет назад

Sweex Wireless Broadband Router/Accesspoint 802.11g (LC000060) allows remote attackers to obtain sensitive information and gain privileges by using TFTP to download the nvram file, then extracting the username, password, and other data from the file.

EPSS: Низкий
github логотип

GHSA-2vw9-m8gq-4436

около 4 лет назад

In JetBrains TeamCity before 2019.1.5, some server-stored passwords could be shown via the web UI.

EPSS: Низкий
github логотип

GHSA-2vw8-r286-4wvc

около 4 лет назад

An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Keyboard Suggestions" component. It allows attackers to obtain sensitive information by reading keyboard autocorrect suggestions.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2vw7-qgh3-r4pc

около 4 лет назад

An issue was discovered in the Widgets extension through 1.4.0 for MediaWiki. Improper title sanitization allowed for the execution of any wiki page as a widget (as defined by this extension) via MediaWiki's {{#widget:}} parser function.

EPSS: Низкий
github логотип

GHSA-2vw7-pgw6-fj2h

больше 4 лет назад

SQL injection vulnerability in headeruserdata.php in Visual Shapers ezContents 2.0.3 allows remote attackers to execute arbitrary SQL commands via the groupname parameter.

EPSS: Низкий
github логотип

GHSA-2vw7-mrf4-v3mh

4 месяца назад

Microsoft Bing Elevation of Privilege Vulnerability

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2vwm-r72j-grv9

Static code injection vulnerability in user/settings/ in DeStar 0.2.2-5 allows remote authenticated users to add arbitrary administrators and inject arbitrary Python code into destar_cfg.py via a crafted pin parameter.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2vwm-3r62-68r6

Adobe Experience Manager versions 6.5.20 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. This vulnerability could allow an attacker to execute arbitrary JavaScript code in the context of the victim's browser session. Exploitation of this issue typically requires user interaction, such as convincing a user to click on a malicious link or to interact with a maliciously crafted web page.

CVSS3: 5.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-2vwj-xrr6-mmcf

A Cross-site scripting (XSS) vulnerability in Froala Editor v.4.1.1 allows attackers to execute arbitrary code via the Markdown component.

CVSS3: 6.1
1%
Низкий
почти 3 года назад
github логотип
GHSA-2vwj-qg8g-pq5g

Cross-site request forgery (CSRF) vulnerability in loader/DocumentThreadableLoader.cpp in WebCore in WebKit before r57041, as used in Google Chrome before 4.1.249.1059, allows remote attackers to hijack the authentication of unspecified victims via a crafted synchronous preflight XMLHttpRequest operation.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2vwj-p4xr-gwcv

An issue was discovered in the PageTriage extension in MediaWiki before 1.35.14, 1.36.x through 1.39.x before 1.39.6, and 1.40.x before 1.40.2. XSS can occur via the rev-deleted-user, pagetriage-tags-quickfilter-label, pagetriage-triage, pagetriage-filter-date-range-format-placeholder, pagetriage-filter-date-range-to, pagetriage-filter-date-range-from, pagetriage-filter-date-range-heading, pagetriage-filter-set-button, or pagetriage-filter-reset-button message.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2vwj-hgqw-6q5c

Adobe Flash Player before 18.0.0.333 and 19.x through 21.x before 21.0.0.182 on Windows and OS X and before 11.2.202.577 on Linux, Adobe AIR before 21.0.0.176, Adobe AIR SDK before 21.0.0.176, and Adobe AIR SDK & Compiler before 21.0.0.176 allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2016-0961, CVE-2016-0962, CVE-2016-0986, CVE-2016-0989, CVE-2016-0992, CVE-2016-1002, and CVE-2016-1005.

CVSS3: 9.8
4%
Низкий
около 4 лет назад
github логотип
GHSA-2vwh-mc47-47fv

Substance3D - Sampler versions 4.5.2 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-2vwh-gpg3-5pm3

A vulnerability in the file system of Cisco Elastic Services Controllers could allow an authenticated, local attacker to gain access to sensitive user credentials that are stored in an affected system. More Information: CSCvd73677. Known Affected Releases: 2.3(2).

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-2vwh-54r8-6xwg

The AL Pack plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the check_activate_permission() permission callback for the /wp-json/presslearn/v1/activate REST API endpoint in all versions up to, and including, 1.0.2. The callback reads the client-supplied Origin header and, after parsing, allows the request if it matches one of the trusted domains, without ever verifying user authentication, capabilities, or nonce tokens. This makes it possible for unauthenticated attackers to activate premium features by simply spoofing the Origin header.

CVSS3: 7.5
0%
Низкий
12 месяцев назад
github логотип
GHSA-2vwg-wm97-9xx9

An Incorrect Access Control issue was discovered in K7Computing K7AntiVirus Premium 15.01.00.53.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2vwg-j5r8-rc77

The Teredo implementation in Microsoft Windows Vista uses the same nonce for communication with different UDP ports within a solicitation session, which makes it easier for remote attackers to spoof the nonce through brute force attacks.

11%
Средний
больше 4 лет назад
github логотип
GHSA-2vwg-39m6-fw44

A stored cross-site scripting (XSS) vulnerability exists in the user profile text fields of Altium 365. Insufficient server-side input sanitization allows authenticated users to inject arbitrary HTML and JavaScript payloads using whitespace-based attribute parsing bypass techniques. The injected payload is persisted and executed when other users view the affected profile page, potentially allowing session token theft, phishing attacks, or malicious redirects. Exploitation requires an authenticated account and user interaction to view the crafted profile.

CVSS3: 7.6
0%
Низкий
7 месяцев назад
github логотип
GHSA-2vwf-xc9m-9w4j

gpc_api.php in MantisBT 1.2.17 and earlier allows remote attackers to bypass authenticated via a password starting will a null byte, which triggers an unauthenticated bind.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2vwf-jqh3-5vjp

Exposure of sensitive information in System UI prior to SMR Nov-2024 Release 1 allow local attackers to make malicious apps appear as legitimate.

CVSS3: 4
0%
Низкий
почти 2 года назад
github логотип
GHSA-2vwc-94q4-mqwr

Sweex Wireless Broadband Router/Accesspoint 802.11g (LC000060) allows remote attackers to obtain sensitive information and gain privileges by using TFTP to download the nvram file, then extracting the username, password, and other data from the file.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2vw9-m8gq-4436

In JetBrains TeamCity before 2019.1.5, some server-stored passwords could be shown via the web UI.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2vw8-r286-4wvc

An issue was discovered in certain Apple products. iOS before 11 is affected. The issue involves the "Keyboard Suggestions" component. It allows attackers to obtain sensitive information by reading keyboard autocorrect suggestions.

CVSS3: 5.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-2vw7-qgh3-r4pc

An issue was discovered in the Widgets extension through 1.4.0 for MediaWiki. Improper title sanitization allowed for the execution of any wiki page as a widget (as defined by this extension) via MediaWiki's {{#widget:}} parser function.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2vw7-pgw6-fj2h

SQL injection vulnerability in headeruserdata.php in Visual Shapers ezContents 2.0.3 allows remote attackers to execute arbitrary SQL commands via the groupname parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2vw7-mrf4-v3mh

Microsoft Bing Elevation of Privilege Vulnerability

CVSS3: 6.5
1%
Низкий
4 месяца назад

Уязвимостей на страницу