Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 348 397

Количество 348 397

github логотип

GHSA-2fjq-599h-52qf

почти 4 года назад

IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e30.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2fjp-hx49-4fqh

около 4 лет назад

Array index error in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher 97 file, aka "Memory Corruption Due To Invalid Index Into Array in Pubconv.dll Vulnerability."

EPSS: Средний
github логотип

GHSA-2fjp-fr4m-265h

больше 4 лет назад

The escape_dangerous_chars function in CGI::Lite 2.0 and earlier does not correctly remove special characters including (1) "\" (backslash), (2) "?", (3) "~" (tilde), (4) "^" (carat), (5) newline, or (6) carriage return, which could allow remote attackers to read or write arbitrary files, or execute arbitrary commands, in shell scripts that rely on CGI::Lite to filter such dangerous inputs.

EPSS: Низкий
github логотип

GHSA-2fjp-4847-82hw

около 4 лет назад

The 10Web Photo Gallery plugin before 1.5.23 for WordPress has authenticated stored XSS.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2fjm-qc6m-8q8h

около 3 лет назад

Use of Hard-coded Password vulnerability in FTP function on Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP allows a remote unauthenticated attacker to obtain a hard-coded password and access to the module via FTP.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-2fjm-5v6j-7r68

больше 2 лет назад

NETGEAR ProSAFE Network Management System saveNodeLabel Cross-Site Scripting Privilege Escalation Vulnerability. This vulnerability allows remote attackers to escalate privileges on affected installations of NETGEAR ProSAFE Network Management System. Minimal user interaction is required to exploit this vulnerability. The specific flaw exists within the saveNodeLabel method. The issue results from the lack of proper validation of user-supplied data, which can lead to the injection of an arbitrary script. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the user. Was ZDI-CAN-21838.

CVSS3: 8
EPSS: Средний
github логотип

GHSA-2fjm-52x8-rrh8

больше 4 лет назад

Unspecified vulnerability in Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string that triggers memory corruption.

EPSS: Средний
github логотип

GHSA-2fjj-qqg8-fg7x

около 2 месяцев назад

praisonai-platform: Authorization Bypass Through User-Controlled Key

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2fjj-c2r7-57f3

около 4 лет назад

SAP HANA SPS09 1.00.091.00.14186593 allows local users to obtain sensitive information by leveraging the EXPORT statement to export files, aka SAP Security Note 2252941.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2fjh-pp98-gvch

около 4 лет назад

Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 6u131, 7u121 and 8u112. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS v3.0 Base Score 3.7 (Confidentiality impacts).

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-2fjh-g9hr-2x3g

7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: refscale: Fix uninitalized use of wait_queue_head_t Running the refscale test occasionally crashes the kernel with the following error: [ 8569.952896] BUG: unable to handle page fault for address: ffffffffffffffe8 [ 8569.952900] #PF: supervisor read access in kernel mode [ 8569.952902] #PF: error_code(0x0000) - not-present page [ 8569.952904] PGD c4b048067 P4D c4b049067 PUD c4b04b067 PMD 0 [ 8569.952910] Oops: 0000 [#1] PREEMPT_RT SMP NOPTI [ 8569.952916] Hardware name: Dell Inc. PowerEdge R750/0WMWCR, BIOS 1.2.4 05/28/2021 [ 8569.952917] RIP: 0010:prepare_to_wait_event+0x101/0x190 : [ 8569.952940] Call Trace: [ 8569.952941] <TASK> [ 8569.952944] ref_scale_reader+0x380/0x4a0 [refscale] [ 8569.952959] kthread+0x10e/0x130 [ 8569.952966] ret_from_fork+0x1f/0x30 [ 8569.952973] </TASK> The likely cause is that init_waitqueue_head() is called after the call to the torture_create_kthread() function that creates ...

EPSS: Низкий
github логотип

GHSA-2fjh-82vp-xrjj

больше 4 лет назад

PHP remote file inclusion vulnerability in functions/update.php in Cicoandcico CcMail 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the functions_dir parameter.

EPSS: Низкий
github логотип

GHSA-2fjf-h46q-8mfr

почти 3 года назад

Transient DOS in WLAN firmware while parsing MLO (multi-link operation).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2fjf-4mmg-2c65

больше 4 лет назад

An Incorrect Access Control vulnerability exists in zzcms less than or equal to 2019 via admin.php. After disabling JavaScript, you can directly access the administrator console.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2fjc-qvwr-7hf8

около 4 лет назад

Mozilla Firefox before 48.0 does not properly restrict drag-and-drop (aka dataTransfer) actions for file: URIs, which allows user-assisted remote attackers to access local files via a crafted web site.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2fjc-pm99-j2c2

около 4 лет назад

An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The User Type on the admin/list_user page allows stored XSS via the type parameter.

EPSS: Низкий
github логотип

GHSA-2fjc-28hf-57c3

около 4 лет назад

Microsoft SharePoint Server Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-40487.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2fj9-fc6x-hgw7

больше 1 года назад

A vulnerability classified as critical was found in Weitong Mall 1.0.0. This vulnerability affects unknown code of the file /queryTotal of the component Product Statistics Handler. The manipulation of the argument isDelete with the input 1 leads to improper access controls. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2fj9-2rp2-mmg4

больше 4 лет назад

Windows Hyper-V Denial of Service Vulnerability.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2fj8-grv4-35fw

больше 4 лет назад

MultiTheftAuto 0.5 patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted command 40 that causes a -1 length to be used and triggers an out-of-bounds read.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2fjq-599h-52qf

IrfanView 4.54 allows a user-mode write access violation starting at FORMATS!GetPlugInInfo+0x0000000000007e30.

CVSS3: 7.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-2fjp-hx49-4fqh

Array index error in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher 97 file, aka "Memory Corruption Due To Invalid Index Into Array in Pubconv.dll Vulnerability."

22%
Средний
около 4 лет назад
github логотип
GHSA-2fjp-fr4m-265h

The escape_dangerous_chars function in CGI::Lite 2.0 and earlier does not correctly remove special characters including (1) "\" (backslash), (2) "?", (3) "~" (tilde), (4) "^" (carat), (5) newline, or (6) carriage return, which could allow remote attackers to read or write arbitrary files, or execute arbitrary commands, in shell scripts that rely on CGI::Lite to filter such dangerous inputs.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2fjp-4847-82hw

The 10Web Photo Gallery plugin before 1.5.23 for WordPress has authenticated stored XSS.

CVSS3: 5.4
1%
Низкий
около 4 лет назад
github логотип
GHSA-2fjm-qc6m-8q8h

Use of Hard-coded Password vulnerability in FTP function on Mitsubishi Electric Corporation MELSEC iQ-R Series EtherNet/IP module RJ71EIP91 and MELSEC iQ-F Series EtherNet/IP module FX5-ENET/IP allows a remote unauthenticated attacker to obtain a hard-coded password and access to the module via FTP.

CVSS3: 6.2
1%
Низкий
около 3 лет назад
github логотип
GHSA-2fjm-5v6j-7r68

NETGEAR ProSAFE Network Management System saveNodeLabel Cross-Site Scripting Privilege Escalation Vulnerability. This vulnerability allows remote attackers to escalate privileges on affected installations of NETGEAR ProSAFE Network Management System. Minimal user interaction is required to exploit this vulnerability. The specific flaw exists within the saveNodeLabel method. The issue results from the lack of proper validation of user-supplied data, which can lead to the injection of an arbitrary script. An attacker can leverage this vulnerability to escalate privileges to resources normally protected from the user. Was ZDI-CAN-21838.

CVSS3: 8
53%
Средний
больше 2 лет назад
github логотип
GHSA-2fjm-52x8-rrh8

Unspecified vulnerability in Microsoft Office 2000, XP, 2003, 2004 for Mac, and v.X for Mac allows remote user-assisted attackers to execute arbitrary code via a crafted string that triggers memory corruption.

30%
Средний
больше 4 лет назад
github логотип
GHSA-2fjj-qqg8-fg7x

praisonai-platform: Authorization Bypass Through User-Controlled Key

CVSS3: 4.3
около 2 месяцев назад
github логотип
GHSA-2fjj-c2r7-57f3

SAP HANA SPS09 1.00.091.00.14186593 allows local users to obtain sensitive information by leveraging the EXPORT statement to export files, aka SAP Security Note 2252941.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2fjh-pp98-gvch

Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affected are Java SE: 6u131, 7u121 and 8u112. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Java SE accessible data. Note: This vulnerability applies to Java deployments, typically in clients running sandboxed Java Web Start applications or sandboxed Java applets, that load and run untrusted code (e.g., code that comes from the internet) and rely on the Java sandbox for security. This vulnerability does not apply to Java deployments, typically in servers, that load and run only trusted code (e.g., code installed by an administrator). CVSS v3.0 Base Score 3.7 (Confidentiality impacts).

CVSS3: 3.7
2%
Низкий
около 4 лет назад
github логотип
GHSA-2fjh-g9hr-2x3g

In the Linux kernel, the following vulnerability has been resolved: refscale: Fix uninitalized use of wait_queue_head_t Running the refscale test occasionally crashes the kernel with the following error: [ 8569.952896] BUG: unable to handle page fault for address: ffffffffffffffe8 [ 8569.952900] #PF: supervisor read access in kernel mode [ 8569.952902] #PF: error_code(0x0000) - not-present page [ 8569.952904] PGD c4b048067 P4D c4b049067 PUD c4b04b067 PMD 0 [ 8569.952910] Oops: 0000 [#1] PREEMPT_RT SMP NOPTI [ 8569.952916] Hardware name: Dell Inc. PowerEdge R750/0WMWCR, BIOS 1.2.4 05/28/2021 [ 8569.952917] RIP: 0010:prepare_to_wait_event+0x101/0x190 : [ 8569.952940] Call Trace: [ 8569.952941] <TASK> [ 8569.952944] ref_scale_reader+0x380/0x4a0 [refscale] [ 8569.952959] kthread+0x10e/0x130 [ 8569.952966] ret_from_fork+0x1f/0x30 [ 8569.952973] </TASK> The likely cause is that init_waitqueue_head() is called after the call to the torture_create_kthread() function that creates ...

0%
Низкий
7 месяцев назад
github логотип
GHSA-2fjh-82vp-xrjj

PHP remote file inclusion vulnerability in functions/update.php in Cicoandcico CcMail 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the functions_dir parameter.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-2fjf-h46q-8mfr

Transient DOS in WLAN firmware while parsing MLO (multi-link operation).

CVSS3: 7.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-2fjf-4mmg-2c65

An Incorrect Access Control vulnerability exists in zzcms less than or equal to 2019 via admin.php. After disabling JavaScript, you can directly access the administrator console.

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-2fjc-qvwr-7hf8

Mozilla Firefox before 48.0 does not properly restrict drag-and-drop (aka dataTransfer) actions for file: URIs, which allows user-assisted remote attackers to access local files via a crafted web site.

CVSS3: 8.1
2%
Низкий
около 4 лет назад
github логотип
GHSA-2fjc-pm99-j2c2

An issue was discovered in Serpico (aka SimplE RePort wrIting and CollaboratiOn tool) 1.3.0. The User Type on the admin/list_user page allows stored XSS via the type parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2fjc-28hf-57c3

Microsoft SharePoint Server Remote Code Execution Vulnerability This CVE ID is unique from CVE-2021-40487.

CVSS3: 8.1
6%
Низкий
около 4 лет назад
github логотип
GHSA-2fj9-fc6x-hgw7

A vulnerability classified as critical was found in Weitong Mall 1.0.0. This vulnerability affects unknown code of the file /queryTotal of the component Product Statistics Handler. The manipulation of the argument isDelete with the input 1 leads to improper access controls. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 5.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-2fj9-2rp2-mmg4

Windows Hyper-V Denial of Service Vulnerability.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-2fj8-grv4-35fw

MultiTheftAuto 0.5 patch 1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted command 40 that causes a -1 length to be used and triggers an out-of-bounds read.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу