Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 354 225

Количество 354 225

github логотип

GHSA-2pq2-xg2g-983m

около 4 лет назад

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0061, CVE-2016-0063, CVE-2016-0067, and CVE-2016-0072.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-2pq2-mgvm-4q69

около 4 лет назад

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, and SDX20, after loading a dynamically loaded code section, I-Cache is not invalidated, which could lead to executing code from stale cache lines.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2ppx-95fm-57j3

около 4 лет назад

The SplashID (aka com.splashidandroid) application 7.2.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-2ppx-66jv-wpw5

25 дней назад

Windmill: Resource-scoped API tokens can read script contents outside their allowed path via scripts/list_search

EPSS: Низкий
github логотип

GHSA-2ppw-6xvg-rwgw

около 4 лет назад

GeniXCMS SQL injection vulnerability

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2ppv-w959-m8mp

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in DanPHPSupport 0.5, and other versions before 1.0, allow remote attackers to inject arbitrary web script or HTML via the (1) page parameter in index.php or the (2) do parameter in admin.php.

EPSS: Низкий
github логотип

GHSA-2ppv-h935-cr9p

около 4 лет назад

Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect integrity via unknown vectors, a different vulnerability than CVE-2016-0690.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-2ppv-95h6-36pf

больше 4 лет назад

IBM DB2 9.1 before FP8 does not require the SETSESSIONUSER privilege for the SET SESSION AUTHORIZATION statement, which has unspecified impact and remote attack vectors.

EPSS: Низкий
github логотип

GHSA-2ppq-6498-fqj9

около 4 лет назад

Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2ppp-xj34-vvf7

больше 4 лет назад

Apache Struts's CookieInterceptor component does not use the parameter-name whitelist

EPSS: Критический
github логотип

GHSA-2ppp-9496-p23q

около 6 лет назад

Insufficient Entropy in Spring Security

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2ppm-vr48-8v34

почти 2 года назад

Windows Mobile Broadband Driver Denial of Service Vulnerability

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2ppj-vxw6-593j

почти 4 года назад

In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242259918

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2ppj-9hhv-grqq

около 4 лет назад

SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent attackers to obtain sensitive information.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2pph-9j29-pp7r

больше 4 лет назад

NetLeaf Limited NotJustBrowsing 1.0.3 stores the View Lock Password in plaintext in the notjustbrowsing.prf file, which allows local users to gain privileges.

EPSS: Низкий
github логотип

GHSA-2pph-66px-9x3w

12 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: media: ti: j721e-csi2rx: fix list_del corruption If ti_csi2rx_start_dma() fails in ti_csi2rx_dma_callback(), the buffer is marked done with VB2_BUF_STATE_ERROR but is not removed from the DMA queue. This causes the same buffer to be retried in the next iteration, resulting in a double list_del() and eventual list corruption. Fix this by removing the buffer from the queue before calling vb2_buffer_done() on error. This resolves a crash due to list_del corruption: [ 37.811243] j721e-csi2rx 30102000.ticsi2rx: Failed to queue the next buffer for DMA [ 37.832187] slab kmalloc-2k start ffff00000255b000 pointer offset 1064 size 2048 [ 37.839761] list_del corruption. next->prev should be ffff00000255bc28, but was ffff00000255d428. (next=ffff00000255b428) [ 37.850799] ------------[ cut here ]------------ [ 37.855424] kernel BUG at lib/list_debug.c:65! [ 37.859876] Internal error: Oops - BUG: 00000000f2000800...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2pph-3mjw-53c3

больше 4 лет назад

GNOME OCRFeeder before 0.8.4 allows OS command injection via shell metacharacters in a PDF or image filename.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2ppg-mx5c-6pmw

больше 4 лет назад

Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPEG file.

EPSS: Низкий
github логотип

GHSA-2ppg-jmhh-7wx9

больше 3 лет назад

Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer overflow is in the function that manages the 'vpn l2tp advanced name WORD dns (yes|no) mtu <128-16384> mru <128-16384> auth (on|off) password (WORD|null) options WORD' command template.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2ppg-9297-h3vc

около 1 года назад

When a Stream Control Transmission Protocol (SCTP) profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2pq2-xg2g-983m

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Browser Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0061, CVE-2016-0063, CVE-2016-0067, and CVE-2016-0072.

CVSS3: 8.8
28%
Средний
около 4 лет назад
github логотип
GHSA-2pq2-mgvm-4q69

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, and SDX20, after loading a dynamically loaded code section, I-Cache is not invalidated, which could lead to executing code from stale cache lines.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-2ppx-95fm-57j3

The SplashID (aka com.splashidandroid) application 7.2.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2ppx-66jv-wpw5

Windmill: Resource-scoped API tokens can read script contents outside their allowed path via scripts/list_search

25 дней назад
github логотип
GHSA-2ppw-6xvg-rwgw

GeniXCMS SQL injection vulnerability

CVSS3: 7.2
2%
Низкий
около 4 лет назад
github логотип
GHSA-2ppv-w959-m8mp

Multiple cross-site scripting (XSS) vulnerabilities in DanPHPSupport 0.5, and other versions before 1.0, allow remote attackers to inject arbitrary web script or HTML via the (1) page parameter in index.php or the (2) do parameter in admin.php.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2ppv-h935-cr9p

Unspecified vulnerability in the RDBMS Security component in Oracle Database Server 11.2.0.4, 12.1.0.1, and 12.1.0.2 allows local users to affect integrity via unknown vectors, a different vulnerability than CVE-2016-0690.

CVSS3: 3.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-2ppv-95h6-36pf

IBM DB2 9.1 before FP8 does not require the SETSESSIONUSER privilege for the SET SESSION AUTHORIZATION statement, which has unspecified impact and remote attack vectors.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2ppq-6498-fqj9

Adobe Acrobat and Reader versions 2019.008.20081 and earlier, 2019.008.20080 and earlier, 2019.008.20081 and earlier, 2017.011.30106 and earlier version, 2017.011.30105 and earlier version, 2015.006.30457 and earlier, and 2015.006.30456 and earlier have a heap overflow vulnerability. Successful exploitation could lead to arbitrary code execution.

CVSS3: 9.8
10%
Низкий
около 4 лет назад
github логотип
GHSA-2ppp-xj34-vvf7

Apache Struts's CookieInterceptor component does not use the parameter-name whitelist

98%
Критический
больше 4 лет назад
github логотип
GHSA-2ppp-9496-p23q

Insufficient Entropy in Spring Security

CVSS3: 6.5
2%
Низкий
около 6 лет назад
github логотип
GHSA-2ppm-vr48-8v34

Windows Mobile Broadband Driver Denial of Service Vulnerability

CVSS3: 6.5
1%
Низкий
почти 2 года назад
github логотип
GHSA-2ppj-vxw6-593j

In Messaging, There has unauthorized broadcast, this could cause Local Deny of Service.Product: AndroidVersions: Android SoCAndroid ID: A-242259918

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-2ppj-9hhv-grqq

SepCity Classified Ads stores the admin password in cleartext in data/classifieds.mdb, which allows context-dependent attackers to obtain sensitive information.

CVSS3: 7.5
3%
Низкий
около 4 лет назад
github логотип
GHSA-2pph-9j29-pp7r

NetLeaf Limited NotJustBrowsing 1.0.3 stores the View Lock Password in plaintext in the notjustbrowsing.prf file, which allows local users to gain privileges.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2pph-66px-9x3w

In the Linux kernel, the following vulnerability has been resolved: media: ti: j721e-csi2rx: fix list_del corruption If ti_csi2rx_start_dma() fails in ti_csi2rx_dma_callback(), the buffer is marked done with VB2_BUF_STATE_ERROR but is not removed from the DMA queue. This causes the same buffer to be retried in the next iteration, resulting in a double list_del() and eventual list corruption. Fix this by removing the buffer from the queue before calling vb2_buffer_done() on error. This resolves a crash due to list_del corruption: [ 37.811243] j721e-csi2rx 30102000.ticsi2rx: Failed to queue the next buffer for DMA [ 37.832187] slab kmalloc-2k start ffff00000255b000 pointer offset 1064 size 2048 [ 37.839761] list_del corruption. next->prev should be ffff00000255bc28, but was ffff00000255d428. (next=ffff00000255b428) [ 37.850799] ------------[ cut here ]------------ [ 37.855424] kernel BUG at lib/list_debug.c:65! [ 37.859876] Internal error: Oops - BUG: 00000000f2000800...

CVSS3: 5.5
0%
Низкий
12 месяцев назад
github логотип
GHSA-2pph-3mjw-53c3

GNOME OCRFeeder before 0.8.4 allows OS command injection via shell metacharacters in a PDF or image filename.

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-2ppg-mx5c-6pmw

Adobe InDesign version 16.4 (and earlier) is affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious JPEG file.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2ppg-jmhh-7wx9

Several stack-based buffer overflow vulnerabilities exist in the DetranCLI command parsing functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted network packet can lead to arbitrary command execution. An attacker can send a sequence of requests to trigger these vulnerabilities.This buffer overflow is in the function that manages the 'vpn l2tp advanced name WORD dns (yes|no) mtu <128-16384> mru <128-16384> auth (on|off) password (WORD|null) options WORD' command template.

CVSS3: 7.2
2%
Низкий
больше 3 лет назад
github логотип
GHSA-2ppg-9297-h3vc

When a Stream Control Transmission Protocol (SCTP) profile is configured on a virtual server, undisclosed requests can cause an increase in memory resource utilization. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 7.5
0%
Низкий
около 1 года назад

Уязвимостей на страницу