Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 344 874

Количество 344 874

github логотип

GHSA-277v-gwfr-hmpj

почти 7 лет назад

Missing Authentication for Critical Function in LibreNMS

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-277q-9jj6-mg2v

около 4 лет назад

Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authenticated users to cause a denial of service (device crash) by establishing multiple sessions, aka Bug ID CSCtc59462.

EPSS: Низкий
github логотип

GHSA-277p-xwpp-3jf7

почти 6 лет назад

Malicious Package in rrgod

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-277p-ffm3-r4h5

около 4 лет назад

** DISPUTED ** CMS Made Simple (CMSMS) 2.1.6 allows remote authenticated administrators to execute arbitrary PHP code via the code parameter to admin/editusertag.php, related to the CreateTagFunction and CallUserTag functions. NOTE: the vendor reportedly has stated this is "a feature, not a bug."

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-277j-xqqh-j9j2

больше 4 лет назад

Unspecified cross-site scripting (XSS) vulnerability in Horde before 2.2.9 allows remote attackers to inject arbitrary web script or HTML via "not properly escaped error messages".

EPSS: Низкий
github логотип

GHSA-277j-v92f-57q6

больше 4 лет назад

Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Microsoft Office Excel DbOrParamQry Record Parsing Vulnerability."

EPSS: Средний
github логотип

GHSA-277j-v78r-mm9w

больше 4 лет назад

Microsoft SQL Server 7.0 and 2000 installs with weak permissions for extended stored procedures that are associated with helper functions, which could allow unprivileged users, and possibly remote attackers, to run stored procedures with administrator privileges via (1) xp_execresultset, (2) xp_printstatements, or (3) xp_displayparamstmt.

EPSS: Средний
github логотип

GHSA-277j-7gg4-fp2x

больше 3 лет назад

A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platforms with MPC10/MPC11 line cards, allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). Devices are only vulnerable when the Suspicious Control Flow Detection (scfd) feature is enabled. Upon enabling this specific feature, an attacker sending specific traffic is causing memory to be allocated dynamically and it is not freed. Memory is not freed even after deactivating this feature. Sustained processing of such traffic will eventually lead to an out of memory condition that prevents all services from continuing to function, and requires a manual restart to recover. The FPC memory usage can be monitored using the CLI command "show chassis fpc". On running the above command, the memory of AftDdosScfdFlow can be observed to detect the memory leak. This issue affects Juniper Networks Junos OS on MX Series: All versions prior to 20.2R3-S5; 20.3 ve...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-277h-px4m-62q8

почти 2 года назад

@saltcorn/server arbitrary file zip read and download when downloading auto backups

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-277h-m4vc-5wqc

больше 4 лет назад

Buffer overflow in Microsoft Windows Media Player 6.4 allows remote attackers to execute arbitrary code via a malformed Advanced Streaming Format (ASF) file.

EPSS: Средний
github логотип

GHSA-277h-hmwq-93fq

больше 4 лет назад

There is a logic bypass vulnerability in smartphones. Successful exploitation of this vulnerability may cause code injection.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-277h-8wc5-7qfc

около 1 года назад

An out-of-bounds read vulnerability exists in High-Logic FontCreator 15.0.0.3015. A specially crafted font file can trigger this vulnerability which can lead to disclosure of sensitive information. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-277g-784h-5869

около 4 лет назад

libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:620:27.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-277f-xx4c-9mf5

около 4 лет назад

Stored cross-site scripting vulnerability in CMONOS.JP ver2.0.20191009 and earlier allows remote attackers to inject arbitrary script via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-277f-9qjf-83fr

7 месяцев назад

A security flaw has been discovered in code-projects Online Product Reservation System 1.0. This affects an unknown function of the file /handgunner-administrator/register_code.php of the component User Registration Handler. Performing a manipulation of the argument fname/lname/address/city/province/country/zip/tel_no/email/username results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-277f-37gw-9gmq

около 1 года назад

raspap-webgui has a Directory Traversal vulnerability

EPSS: Низкий
github логотип

GHSA-277c-h7c7-c26c

больше 1 года назад

A vulnerability was found in rizinorg rizin up to 0.7.4. It has been rated as critical. This issue affects the function msf_stream_directory_free in the library /librz/bin/pdb/pdb.c. The manipulation of the argument -P leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 0.8.0 is able to address this issue. It is recommended to upgrade the affected component.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-277c-5vvj-9pwx

около 2 лет назад

Flooding Server with Thumbnail files

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2779-qh7w-73rg

больше 3 лет назад

The YourChannel plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check when clearing the plugin cache via the yrc_clear_cache GET parameter in versions up to, and including, 1.2.3. This makes it possible for unauthenticated attackers to clear the plugin's cache.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2779-2c23-rw2v

больше 1 года назад

The WP-Revive Adserver plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wprevive_async' shortcode in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-277v-gwfr-hmpj

Missing Authentication for Critical Function in LibreNMS

CVSS3: 9.1
2%
Низкий
почти 7 лет назад
github логотип
GHSA-277q-9jj6-mg2v

Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authenticated users to cause a denial of service (device crash) by establishing multiple sessions, aka Bug ID CSCtc59462.

1%
Низкий
около 4 лет назад
github логотип
GHSA-277p-xwpp-3jf7

Malicious Package in rrgod

CVSS3: 9.8
почти 6 лет назад
github логотип
GHSA-277p-ffm3-r4h5

** DISPUTED ** CMS Made Simple (CMSMS) 2.1.6 allows remote authenticated administrators to execute arbitrary PHP code via the code parameter to admin/editusertag.php, related to the CreateTagFunction and CallUserTag functions. NOTE: the vendor reportedly has stated this is "a feature, not a bug."

CVSS3: 7.2
3%
Низкий
около 4 лет назад
github логотип
GHSA-277j-xqqh-j9j2

Unspecified cross-site scripting (XSS) vulnerability in Horde before 2.2.9 allows remote attackers to inject arbitrary web script or HTML via "not properly escaped error messages".

2%
Низкий
больше 4 лет назад
github логотип
GHSA-277j-v92f-57q6

Microsoft Office Excel 2002 SP3, Office 2004 and 2008 for Mac, and Open XML File Format Converter for Mac do not properly parse the Excel file format, which allows remote attackers to execute arbitrary code via a crafted spreadsheet, aka "Microsoft Office Excel DbOrParamQry Record Parsing Vulnerability."

21%
Средний
больше 4 лет назад
github логотип
GHSA-277j-v78r-mm9w

Microsoft SQL Server 7.0 and 2000 installs with weak permissions for extended stored procedures that are associated with helper functions, which could allow unprivileged users, and possibly remote attackers, to run stored procedures with administrator privileges via (1) xp_execresultset, (2) xp_printstatements, or (3) xp_displayparamstmt.

46%
Средний
больше 4 лет назад
github логотип
GHSA-277j-7gg4-fp2x

A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platforms with MPC10/MPC11 line cards, allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). Devices are only vulnerable when the Suspicious Control Flow Detection (scfd) feature is enabled. Upon enabling this specific feature, an attacker sending specific traffic is causing memory to be allocated dynamically and it is not freed. Memory is not freed even after deactivating this feature. Sustained processing of such traffic will eventually lead to an out of memory condition that prevents all services from continuing to function, and requires a manual restart to recover. The FPC memory usage can be monitored using the CLI command "show chassis fpc". On running the above command, the memory of AftDdosScfdFlow can be observed to detect the memory leak. This issue affects Juniper Networks Junos OS on MX Series: All versions prior to 20.2R3-S5; 20.3 ve...

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-277h-px4m-62q8

@saltcorn/server arbitrary file zip read and download when downloading auto backups

CVSS3: 4.4
почти 2 года назад
github логотип
GHSA-277h-m4vc-5wqc

Buffer overflow in Microsoft Windows Media Player 6.4 allows remote attackers to execute arbitrary code via a malformed Advanced Streaming Format (ASF) file.

18%
Средний
больше 4 лет назад
github логотип
GHSA-277h-hmwq-93fq

There is a logic bypass vulnerability in smartphones. Successful exploitation of this vulnerability may cause code injection.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-277h-8wc5-7qfc

An out-of-bounds read vulnerability exists in High-Logic FontCreator 15.0.0.3015. A specially crafted font file can trigger this vulnerability which can lead to disclosure of sensitive information. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability.

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-277g-784h-5869

libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:620:27.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-277f-xx4c-9mf5

Stored cross-site scripting vulnerability in CMONOS.JP ver2.0.20191009 and earlier allows remote attackers to inject arbitrary script via unspecified vectors.

1%
Низкий
около 4 лет назад
github логотип
GHSA-277f-9qjf-83fr

A security flaw has been discovered in code-projects Online Product Reservation System 1.0. This affects an unknown function of the file /handgunner-administrator/register_code.php of the component User Registration Handler. Performing a manipulation of the argument fname/lname/address/city/province/country/zip/tel_no/email/username results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be used for attacks.

CVSS3: 7.3
0%
Низкий
7 месяцев назад
github логотип
GHSA-277f-37gw-9gmq

raspap-webgui has a Directory Traversal vulnerability

1%
Низкий
около 1 года назад
github логотип
GHSA-277c-h7c7-c26c

A vulnerability was found in rizinorg rizin up to 0.7.4. It has been rated as critical. This issue affects the function msf_stream_directory_free in the library /librz/bin/pdb/pdb.c. The manipulation of the argument -P leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 0.8.0 is able to address this issue. It is recommended to upgrade the affected component.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-277c-5vvj-9pwx

Flooding Server with Thumbnail files

CVSS3: 7.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-2779-qh7w-73rg

The YourChannel plugin for WordPress is vulnerable to unauthorized loss of data due to a missing capability check when clearing the plugin cache via the yrc_clear_cache GET parameter in versions up to, and including, 1.2.3. This makes it possible for unauthenticated attackers to clear the plugin's cache.

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2779-2c23-rw2v

The WP-Revive Adserver plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wprevive_async' shortcode in all versions up to, and including, 2.2.1 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад

Уязвимостей на страницу