Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 356

Количество 375 356

github логотип

GHSA-3v7g-4pg3-7r6j

больше 4 лет назад

OS Command injection in Apache Airflow

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-3v7f-rjgx-9grq

около 3 лет назад

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. When nf_tables_delrule() is flushing table rules, it is not checked whether the chain is bound and the chain's owner rule can also release the objects in certain circumstances. We recommend upgrading past commit 6eaf41e87a223ae6f8e7a28d6e78384ad7e407f8.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3v7f-ppjx-349f

больше 4 лет назад

Ziproxy 2.6.0, when transparent interception mode is enabled, uses the HTTP Host header to determine the remote endpoint, which allows remote attackers to bypass access controls for Flash, Java, Silverlight, and probably other technologies, and possibly communicate with restricted intranet sites, via a crafted web page that causes a client to send HTTP requests with a modified Host header.

EPSS: Низкий
github логотип

GHSA-3v7f-822w-wj7f

6 месяцев назад

jetCast Server 2.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Log directory configuration field. Attackers can paste a buffer of 5000 characters into the Log directory input, then click Start to trigger a crash that terminates the server process.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3v7f-55p6-f55p

6 месяцев назад

Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3v7c-xw2c-76j5

около 2 лет назад

ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15 uses hard-coded credentials, which may allow a network-adjacent attacker with an administrative privilege to alter the configuration of the device.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3v7c-v9wf-3c7v

больше 2 лет назад

There is a Cross-site scripting (XSS)  vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack will be triggered.

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-3v7c-p24m-p9gr

больше 4 лет назад

Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) sent directly to the router, which can cause the RPD routing process to crash and restart. Unlike BGP UPDATEs, which are transitive in nature, this issue can only be triggered by a packet sent directly to the IP address of the router. Repeated crashes of the rpd daemon can result in an extended denial of service condition. This issue only affects devices running Junos OS 16.1R1 and services releases based off of 16.1R1 (e.g. 16.1R1-S1, 16.1R1-S2, 16.1R1-S3). No prior versions of Junos OS are affected by this vulnerability, and this issue was resolved in Junos OS 16.2 prior to 16.2R1. No other Juniper Networks products or platforms are affected by this issue. This issue was found during internal product security testing.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3v7c-g8p3-w3h6

около 2 месяцев назад

NVIDIA NeMo for Linux contains a vulnerability where an attacker may cause OS command injection. A successful exploit of this vulnerability may lead to code execution, data tampering, escalation of privileges and information disclosure.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3v79-q7ph-j75h

больше 2 лет назад

MLFlow Cross-site Scripting vulnerability leads to client-side Remote Code Execution

CVSS3: 9.6
EPSS: Низкий
github логотип

GHSA-3v79-p2r2-6744

больше 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Reilly Configure SMTP allows Reflected XSS.This issue affects Configure SMTP: from n/a through 3.1.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3v79-m2cg-89ww

2 месяца назад

Nuclio: Unsanitized runtimeAttributes.repositories injected into Groovy build.gradle leads to build-time RCE

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-3v79-5f35-jq7j

больше 4 лет назад

Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3v78-x6p4-8r93

больше 1 года назад

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in MarketingFire Widget Options allows OS Command Injection.This issue affects Widget Options: from n/a through 4.1.0.

CVSS3: 9.9
EPSS: Низкий
github логотип

GHSA-3v77-c57x-prrv

больше 4 лет назад

ChakraCore and Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-11792, CVE-2017-11793, CVE-2017-11796, CVE-2017-11797, CVE-2017-11798, CVE-2017-11799, CVE-2017-11800, CVE-2017-11801, CVE-2017-11802, CVE-2017-11804, CVE-2017-11805, CVE-2017-11806, CVE-2017-11807, CVE-2017-11808, CVE-2017-11809, CVE-2017-11810, CVE-2017-11812, and CVE-2017-11821.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-3v76-qg7g-rx9c

почти 3 года назад

OpenSIS Classic Community Edition version 9.0 lacks cross-site request forgery (CSRF) protection throughout the whole app. This may allow an attacker to trick an authenticated user into performing any kind of state changing request.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3v76-jmwq-837x

больше 4 лет назад

Local file inclusion vulnerability in Zenphoto 1.4.14 and earlier allows a remote attacker with an administrative privilege to execute arbitrary code or obtain sensitive information.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3v75-r9p2-79hc

больше 4 лет назад

In ged, there is a possible system crash due to an improper input validation. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05342338.

EPSS: Низкий
github логотип

GHSA-3v75-9ch3-wfrw

больше 4 лет назад

In Roundcube from versions 1.2.0 to 1.3.5, with the archive plugin enabled and configured, it's possible to exploit the unsanitized, user-controlled "_uid" parameter (in an archive.php _task=mail&_mbox=INBOX&_action=plugin.move2archive request) to perform an MX (IMAP) injection attack by placing an IMAP command after a %0d%0a sequence. NOTE: this is less easily exploitable in 1.3.4 and later because of a Same Origin Policy protection mechanism.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3v74-rm67-6782

около 2 лет назад

An issue was discovered in Technitium 11.0.2. There is a vulnerability (called BadDNS) in DNS resolving software, which triggers a resolver to ignore valid responses, thus causing DoS (denial of service) for normal resolution. The effects of an exploit would be widespread and highly impactful, because the attacker could just forge a response targeting the source port of a vulnerable resolver without the need to guess the correct TXID.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3v7g-4pg3-7r6j

OS Command injection in Apache Airflow

CVSS3: 8.8
78%
Высокий
больше 4 лет назад
github логотип
GHSA-3v7f-rjgx-9grq

A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local privilege escalation. When nf_tables_delrule() is flushing table rules, it is not checked whether the chain is bound and the chain's owner rule can also release the objects in certain circumstances. We recommend upgrading past commit 6eaf41e87a223ae6f8e7a28d6e78384ad7e407f8.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-3v7f-ppjx-349f

Ziproxy 2.6.0, when transparent interception mode is enabled, uses the HTTP Host header to determine the remote endpoint, which allows remote attackers to bypass access controls for Flash, Java, Silverlight, and probably other technologies, and possibly communicate with restricted intranet sites, via a crafted web page that causes a client to send HTTP requests with a modified Host header.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3v7f-822w-wj7f

jetCast Server 2.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the Log directory configuration field. Attackers can paste a buffer of 5000 characters into the Log directory input, then click Start to trigger a crash that terminates the server process.

CVSS3: 5.5
0%
Низкий
6 месяцев назад
github логотип
GHSA-3v7f-55p6-f55p

Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching

CVSS3: 5.3
0%
Низкий
6 месяцев назад
github логотип
GHSA-3v7c-xw2c-76j5

ZWX-2000CSW2-HN firmware versions prior to Ver.0.3.15 uses hard-coded credentials, which may allow a network-adjacent attacker with an administrative privilege to alter the configuration of the device.

CVSS3: 8.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-3v7c-v9wf-3c7v

There is a Cross-site scripting (XSS)  vulnerability in ZTE MF258. Due to insufficient input validation of SMS interface parameter, an XSS attack will be triggered.

CVSS3: 5.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3v7c-p24m-p9gr

Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted BGP Protocol Data Unit (PDU) sent directly to the router, which can cause the RPD routing process to crash and restart. Unlike BGP UPDATEs, which are transitive in nature, this issue can only be triggered by a packet sent directly to the IP address of the router. Repeated crashes of the rpd daemon can result in an extended denial of service condition. This issue only affects devices running Junos OS 16.1R1 and services releases based off of 16.1R1 (e.g. 16.1R1-S1, 16.1R1-S2, 16.1R1-S3). No prior versions of Junos OS are affected by this vulnerability, and this issue was resolved in Junos OS 16.2 prior to 16.2R1. No other Juniper Networks products or platforms are affected by this issue. This issue was found during internal product security testing.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3v7c-g8p3-w3h6

NVIDIA NeMo for Linux contains a vulnerability where an attacker may cause OS command injection. A successful exploit of this vulnerability may lead to code execution, data tampering, escalation of privileges and information disclosure.

CVSS3: 7.8
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-3v79-q7ph-j75h

MLFlow Cross-site Scripting vulnerability leads to client-side Remote Code Execution

CVSS3: 9.6
1%
Низкий
больше 2 лет назад
github логотип
GHSA-3v79-p2r2-6744

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scott Reilly Configure SMTP allows Reflected XSS.This issue affects Configure SMTP: from n/a through 3.1.

CVSS3: 7.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3v79-m2cg-89ww

Nuclio: Unsanitized runtimeAttributes.repositories injected into Groovy build.gradle leads to build-time RCE

CVSS3: 8
0%
Низкий
2 месяца назад
github логотип
GHSA-3v79-5f35-jq7j

Multiple buffer overflows in kernel in Intel Trusted Execution Engine Firmware 3.0 allow attacker with local access to the system to execute arbitrary code.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3v78-x6p4-8r93

Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in MarketingFire Widget Options allows OS Command Injection.This issue affects Widget Options: from n/a through 4.1.0.

CVSS3: 9.9
1%
Низкий
больше 1 года назад
github логотип
GHSA-3v77-c57x-prrv

ChakraCore and Microsoft Edge in Microsoft Windows 10 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-11792, CVE-2017-11793, CVE-2017-11796, CVE-2017-11797, CVE-2017-11798, CVE-2017-11799, CVE-2017-11800, CVE-2017-11801, CVE-2017-11802, CVE-2017-11804, CVE-2017-11805, CVE-2017-11806, CVE-2017-11807, CVE-2017-11808, CVE-2017-11809, CVE-2017-11810, CVE-2017-11812, and CVE-2017-11821.

CVSS3: 7.5
47%
Средний
больше 4 лет назад
github логотип
GHSA-3v76-qg7g-rx9c

OpenSIS Classic Community Edition version 9.0 lacks cross-site request forgery (CSRF) protection throughout the whole app. This may allow an attacker to trick an authenticated user into performing any kind of state changing request.

CVSS3: 8.8
0%
Низкий
почти 3 года назад
github логотип
GHSA-3v76-jmwq-837x

Local file inclusion vulnerability in Zenphoto 1.4.14 and earlier allows a remote attacker with an administrative privilege to execute arbitrary code or obtain sensitive information.

CVSS3: 7.2
2%
Низкий
больше 4 лет назад
github логотип
GHSA-3v75-r9p2-79hc

In ged, there is a possible system crash due to an improper input validation. This could lead to local denial of service with System execution privileges needed. User interaction is not needed for exploitation. Product: Android; Versions: Android-11; Patch ID: ALPS05342338.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3v75-9ch3-wfrw

In Roundcube from versions 1.2.0 to 1.3.5, with the archive plugin enabled and configured, it's possible to exploit the unsanitized, user-controlled "_uid" parameter (in an archive.php _task=mail&_mbox=INBOX&_action=plugin.move2archive request) to perform an MX (IMAP) injection attack by placing an IMAP command after a %0d%0a sequence. NOTE: this is less easily exploitable in 1.3.4 and later because of a Same Origin Policy protection mechanism.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-3v74-rm67-6782

An issue was discovered in Technitium 11.0.2. There is a vulnerability (called BadDNS) in DNS resolving software, which triggers a resolver to ignore valid responses, thus causing DoS (denial of service) for normal resolution. The effects of an exploit would be widespread and highly impactful, because the attacker could just forge a response targeting the source port of a vulnerable resolver without the need to guess the correct TXID.

CVSS3: 7.5
1%
Низкий
около 2 лет назад

Уязвимостей на страницу