Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 354 500

Количество 354 500

github логотип

GHSA-2qmc-x97c-8pmc

7 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: tcp: fix a signed-integer-overflow bug in tcp_add_backlog() The type of sk_rcvbuf and sk_sndbuf in struct sock is int, and in tcp_add_backlog(), the variable limit is caculated by adding sk_rcvbuf, sk_sndbuf and 64 * 1024, it may exceed the max value of int and overflow. This patch reduces the limit budget by halving the sndbuf to solve this issue since ACK packets are much smaller than the payload.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2qmc-vhxj-23ch

около 4 лет назад

evCal Events Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to (1) evcal.mdb and (2) evcal97.mdb.

EPSS: Низкий
github логотип

GHSA-2qmc-ch65-q9cm

11 месяцев назад

In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded I/O read loop, causing an unexpected consumption of CPU resources.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-2qmc-7r7p-g995

около 4 лет назад

SQL injection vulnerability in pub/m_pending_news/delete_pending_news.jsp in Enorth Webpublisher CMS allows remote attackers to execute arbitrary SQL commands via the cbNewsId parameter.

EPSS: Низкий
github логотип

GHSA-2qm9-f7hv-vwh4

около 4 лет назад

The opj_pi_update_decode_poc function in pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, miscalculates a certain layer index value, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2qm9-92xg-cr8h

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: media: imon: fix access to invalid resource for the second interface imon driver probes two USB interfaces, and at the probe of the second interface, the driver assumes blindly that the first interface got bound with the same imon driver. It's usually true, but it's still possible that the first interface is bound with another driver via a malformed descriptor. Then it may lead to a memory corruption, as spotted by syzkaller; imon driver accesses the data from drvdata as struct imon_context object although it's a completely different one that was assigned by another driver. This patch adds a sanity check -- whether the first interface is really bound with the imon driver or not -- for avoiding the problem above at the probe time.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2qm9-76vg-gjp3

почти 3 года назад

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in NooTheme Noo Timetable plugin <= 2.1.3 versions.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2qm8-q42c-mmjx

около 4 лет назад

Windows Remote Procedure Call Information Disclosure Vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2qm8-p8fp-jq4w

около 4 лет назад

The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2qm8-c884-3666

около 4 лет назад

Redmine before 4.0.7 and 4.1.x before 4.1.1 allows attackers to discover the subject of a non-visible issue by performing a CSV export and reading time entries.

EPSS: Низкий
github логотип

GHSA-2qm8-4j25-v4w6

больше 2 лет назад

gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2qm6-vprh-vgfc

7 месяцев назад

Xspeeder SXZOS through 2025-12-26 allows root remote code execution via base64-encoded Python code in the chkid parameter to vLogin.py. The title and oIP parameters are also used.

CVSS3: 10
EPSS: Средний
github логотип

GHSA-2qm5-r82g-5hcx

около 4 лет назад

ThinkAdmin directory traversal vulnerability

CVSS3: 7.5
EPSS: Высокий
github логотип

GHSA-2qm5-pr8v-rjvp

10 месяцев назад

A syntax error in the component proxy_tensor.py of pytorch v2.7.0 allows attackers to cause a Denial of Service (DoS).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2qm5-cxh9-vcp8

около 4 лет назад

The videowhisper-video-presentation plugin 3.31.17 for WordPress allows remote attackers to execute arbitrary code because vp/vw_upload.php considers a file safe when "html" are the last four characters, as demonstrated by a .phtml file containing PHP code.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2qm5-8w93-25r5

15 дней назад

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Coherence accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2qm4-gmxg-8pc5

больше 4 лет назад

PHP remote file inclusion vulnerability in inertianews_class.php in inertianews 0.02 beta and earlier allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.

EPSS: Низкий
github логотип

GHSA-2qm4-8qh4-4729

около 4 лет назад

Microsoft Edge in Windows 10 1709 allows an attacker to execute arbitrary code in the context of the current user, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2018-0758, CVE-2018-0762, CVE-2018-0768, CVE-2018-0769, CVE-2018-0770, CVE-2018-0772, CVE-2018-0773, CVE-2018-0775, CVE-2018-0776, CVE-2018-0777, CVE-2018-0778, and CVE-2018-0781.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-2qm4-5wpq-jgj4

больше 4 лет назад

Directory traversal vulnerability in ttawebtop.cgi in Tarantella Enterprise 3.00 and 3.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the pg parameter.

EPSS: Низкий
github логотип

GHSA-2qm3-qr87-f567

2 месяца назад

Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2qmc-x97c-8pmc

In the Linux kernel, the following vulnerability has been resolved: tcp: fix a signed-integer-overflow bug in tcp_add_backlog() The type of sk_rcvbuf and sk_sndbuf in struct sock is int, and in tcp_add_backlog(), the variable limit is caculated by adding sk_rcvbuf, sk_sndbuf and 64 * 1024, it may exceed the max value of int and overflow. This patch reduces the limit budget by halving the sndbuf to solve this issue since ACK packets are much smaller than the payload.

CVSS3: 7.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-2qmc-vhxj-23ch

evCal Events Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to (1) evcal.mdb and (2) evcal97.mdb.

3%
Низкий
около 4 лет назад
github логотип
GHSA-2qmc-ch65-q9cm

In some circumstances, when DNSdist is configured to use the nghttp2 library to process incoming DNS over HTTPS queries, an attacker might be able to cause a denial of service by crafting a DoH exchange that triggers an unbounded I/O read loop, causing an unexpected consumption of CPU resources.

CVSS3: 3.7
0%
Низкий
11 месяцев назад
github логотип
GHSA-2qmc-7r7p-g995

SQL injection vulnerability in pub/m_pending_news/delete_pending_news.jsp in Enorth Webpublisher CMS allows remote attackers to execute arbitrary SQL commands via the cbNewsId parameter.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2qm9-f7hv-vwh4

The opj_pi_update_decode_poc function in pi.c in OpenJPEG, as used in PDFium in Google Chrome before 48.0.2564.109, miscalculates a certain layer index value, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted PDF document.

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-2qm9-92xg-cr8h

In the Linux kernel, the following vulnerability has been resolved: media: imon: fix access to invalid resource for the second interface imon driver probes two USB interfaces, and at the probe of the second interface, the driver assumes blindly that the first interface got bound with the same imon driver. It's usually true, but it's still possible that the first interface is bound with another driver via a malformed descriptor. Then it may lead to a memory corruption, as spotted by syzkaller; imon driver accesses the data from drvdata as struct imon_context object although it's a completely different one that was assigned by another driver. This patch adds a sanity check -- whether the first interface is really bound with the imon driver or not -- for avoiding the problem above at the probe time.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-2qm9-76vg-gjp3

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in NooTheme Noo Timetable plugin <= 2.1.3 versions.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-2qm8-q42c-mmjx

Windows Remote Procedure Call Information Disclosure Vulnerability

CVSS3: 7.5
4%
Низкий
около 4 лет назад
github логотип
GHSA-2qm8-p8fp-jq4w

The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

CVSS3: 7.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-2qm8-c884-3666

Redmine before 4.0.7 and 4.1.x before 4.1.1 allows attackers to discover the subject of a non-visible issue by performing a CSV export and reading time entries.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2qm8-4j25-v4w6

gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2qm6-vprh-vgfc

Xspeeder SXZOS through 2025-12-26 allows root remote code execution via base64-encoded Python code in the chkid parameter to vLogin.py. The title and oIP parameters are also used.

CVSS3: 10
14%
Средний
7 месяцев назад
github логотип
GHSA-2qm5-r82g-5hcx

ThinkAdmin directory traversal vulnerability

CVSS3: 7.5
76%
Высокий
около 4 лет назад
github логотип
GHSA-2qm5-pr8v-rjvp

A syntax error in the component proxy_tensor.py of pytorch v2.7.0 allows attackers to cause a Denial of Service (DoS).

CVSS3: 7.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-2qm5-cxh9-vcp8

The videowhisper-video-presentation plugin 3.31.17 for WordPress allows remote attackers to execute arbitrary code because vp/vw_upload.php considers a file safe when "html" are the last four characters, as demonstrated by a .phtml file containing PHP code.

CVSS3: 9.8
5%
Низкий
около 4 лет назад
github логотип
GHSA-2qm5-8w93-25r5

Vulnerability in the Oracle Coherence product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0, 14.1.1.0.0, 14.1.2.0.0 and 15.1.1.0.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Coherence. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle Coherence accessible data. CVSS 3.1 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 5.3
0%
Низкий
15 дней назад
github логотип
GHSA-2qm4-gmxg-8pc5

PHP remote file inclusion vulnerability in inertianews_class.php in inertianews 0.02 beta and earlier allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2qm4-8qh4-4729

Microsoft Edge in Windows 10 1709 allows an attacker to execute arbitrary code in the context of the current user, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2018-0758, CVE-2018-0762, CVE-2018-0768, CVE-2018-0769, CVE-2018-0770, CVE-2018-0772, CVE-2018-0773, CVE-2018-0775, CVE-2018-0776, CVE-2018-0777, CVE-2018-0778, and CVE-2018-0781.

CVSS3: 7.5
68%
Средний
около 4 лет назад
github логотип
GHSA-2qm4-5wpq-jgj4

Directory traversal vulnerability in ttawebtop.cgi in Tarantella Enterprise 3.00 and 3.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the pg parameter.

8%
Низкий
больше 4 лет назад
github логотип
GHSA-2qm3-qr87-f567

Insufficient policy enforcement in Chrome for iOS in Google Chrome on iOS prior to 149.0.7827.53 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium security severity: Low)

CVSS3: 4.3
0%
Низкий
2 месяца назад

Уязвимостей на страницу