Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 354 225

Количество 354 225

github логотип

GHSA-2phm-q6hw-h5mw

больше 4 лет назад

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

EPSS: Средний
github логотип

GHSA-2phj-rv58-qq6m

6 месяцев назад

Discord Client Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Discord Client. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the discord_rpc module. The product loads a file from an unsecured location. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of a target user. Was ZDI-CAN-27057.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-2phh-vpwq-x849

2 месяца назад

A reflected cross-site scripting issue exists in URL handling.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2phh-fpc3-4x9w

больше 1 года назад

The Ultimate Dashboard – Custom WordPress Dashboard plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the handle_module_actions function in all versions up to, and including, 3.8.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to activate/deactivate plugin modules.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2phg-qgmm-r638

5 месяцев назад

Sliver has Potential Zip Bomb Denial of Service in GzipEncoder

EPSS: Низкий
github логотип

GHSA-2phg-f479-57pq

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Only disable IRQ1 wakeup where i8042 actually enabled it Wakeup for IRQ1 should be disabled only in cases where i8042 had actually enabled it, otherwise "wake_depth" for this IRQ will try to drop below zero and there will be an unpleasant WARN() logged: kernel: atkbd serio0: Disabling IRQ1 wakeup source to avoid platform firmware bug kernel: ------------[ cut here ]------------ kernel: Unbalanced IRQ 1 wake disable kernel: WARNING: CPU: 10 PID: 6431 at kernel/irq/manage.c:920 irq_set_irq_wake+0x147/0x1a0 The PMC driver uses DEFINE_SIMPLE_DEV_PM_OPS() to define its dev_pm_ops which sets amd_pmc_suspend_handler() to the .suspend, .freeze, and .poweroff handlers. i8042_pm_suspend(), however, is only set as the .suspend handler. Fix the issue by call PMC suspend handler only from the same set of dev_pm_ops handlers as i8042_pm_suspend(), which currently means just the .suspend handler. To rep...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2phg-847f-rp75

около 4 лет назад

E-Series SANtricity OS Controller Software 11.x versions prior to 11.70.1 are susceptible to a vulnerability which when successfully exploited could allow privileged attackers to execute arbitrary code.

EPSS: Низкий
github логотип

GHSA-2phf-r2fp-pcw5

больше 4 лет назад

InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component get_cgi_from_memory. This vulnerability is triggered via a crafted packet.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2phf-fxqr-gpvg

11 месяцев назад

The Html Social share buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'zm_sh_btn' shortcode in all versions up to, and including, 2.1.16 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2phf-6xf7-m2rp

около 4 лет назад

Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2phc-gxq3-33rm

около 4 лет назад

The "CFB Mobile Banking" by Citizens First Bank Wisconsin app 3.0.1 -- aka cfb-mobile-banking/id1081102805 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-2phc-gpx4-h876

около 4 лет назад

Unrestricted file upload vulnerability in upload.php in the Powerplay Gallery plugin 3.3 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in *_uploadfolder/big/.

EPSS: Низкий
github логотип

GHSA-2phc-7cq6-m4fq

около 4 лет назад

The Inetc plugin for Nullsoft Scriptable Install System (NSIS), as used in CERT/CC Failure Observation Engine (FOE) and other products, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and possibly execute arbitrary code by sending a crafted certificate in a download session for Windows executable files.

EPSS: Низкий
github логотип

GHSA-2ph9-m2f8-vv39

больше 4 лет назад

SQL injection vulnerability in MKPortal 1.1.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, aka ZD-00000008. this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.

EPSS: Низкий
github логотип

GHSA-2ph9-8x3x-w6jx

около 2 лет назад

Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a crafted script.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2ph9-2cph-r5j9

больше 4 лет назад

lscfg in IBM AIX 5.2 and 5.3 allows local users to modify arbitrary files via a symlink attack.

EPSS: Низкий
github логотип

GHSA-2ph8-ww3f-hhw3

почти 4 года назад

Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /maintenance/manage_leave_type.php.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2ph8-rh6h-6gpc

около 4 лет назад

CA Automic Automation 12.2 and 12.3 contain an insecure memory handling vulnerability in the Automic agent that could allow a remote attacker to potentially access sensitive data.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2ph6-gc2m-75x2

больше 4 лет назад

Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.5, Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, and Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i) has unspecified impact and attack vectors, as identified by Oracle Vuln# DBC01 in the Protocol Support component.

EPSS: Низкий
github логотип

GHSA-2ph5-q865-h92c

около 4 лет назад

License Manager Service of YOKOGAWA products (CENTUM VP (R5.01.00 - R6.06.00), CENTUM VP Entry Class (R5.01.00 - R6.06.00), ProSafe-RS (R3.01.00 - R4.04.00), PRM (R4.01.00 - R4.02.00), B/M9000 VP(R7.01.01 - R8.02.03)) allows remote attackers to bypass access restriction to send malicious files to the PC where License Manager Service runs via unspecified vectors.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2phm-q6hw-h5mw

Format string vulnerability in nslookupComplain function in BIND 4 allows remote attackers to gain root privileges.

11%
Средний
больше 4 лет назад
github логотип
GHSA-2phj-rv58-qq6m

Discord Client Uncontrolled Search Path Element Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Discord Client. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the discord_rpc module. The product loads a file from an unsecured location. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of a target user. Was ZDI-CAN-27057.

CVSS3: 7.3
0%
Низкий
6 месяцев назад
github логотип
GHSA-2phh-vpwq-x849

A reflected cross-site scripting issue exists in URL handling.

CVSS3: 6.1
0%
Низкий
2 месяца назад
github логотип
GHSA-2phh-fpc3-4x9w

The Ultimate Dashboard – Custom WordPress Dashboard plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the handle_module_actions function in all versions up to, and including, 3.8.7. This makes it possible for authenticated attackers, with Subscriber-level access and above, to activate/deactivate plugin modules.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2phg-qgmm-r638

Sliver has Potential Zip Bomb Denial of Service in GzipEncoder

5 месяцев назад
github логотип
GHSA-2phg-f479-57pq

In the Linux kernel, the following vulnerability has been resolved: platform/x86/amd/pmc: Only disable IRQ1 wakeup where i8042 actually enabled it Wakeup for IRQ1 should be disabled only in cases where i8042 had actually enabled it, otherwise "wake_depth" for this IRQ will try to drop below zero and there will be an unpleasant WARN() logged: kernel: atkbd serio0: Disabling IRQ1 wakeup source to avoid platform firmware bug kernel: ------------[ cut here ]------------ kernel: Unbalanced IRQ 1 wake disable kernel: WARNING: CPU: 10 PID: 6431 at kernel/irq/manage.c:920 irq_set_irq_wake+0x147/0x1a0 The PMC driver uses DEFINE_SIMPLE_DEV_PM_OPS() to define its dev_pm_ops which sets amd_pmc_suspend_handler() to the .suspend, .freeze, and .poweroff handlers. i8042_pm_suspend(), however, is only set as the .suspend handler. Fix the issue by call PMC suspend handler only from the same set of dev_pm_ops handlers as i8042_pm_suspend(), which currently means just the .suspend handler. To rep...

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-2phg-847f-rp75

E-Series SANtricity OS Controller Software 11.x versions prior to 11.70.1 are susceptible to a vulnerability which when successfully exploited could allow privileged attackers to execute arbitrary code.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2phf-r2fp-pcw5

InHand Networks InRouter 900 Industrial 4G Router before v1.0.0.r11700 was discovered to contain a remote code execution (RCE) vulnerability via the component get_cgi_from_memory. This vulnerability is triggered via a crafted packet.

CVSS3: 9.8
4%
Низкий
больше 4 лет назад
github логотип
GHSA-2phf-fxqr-gpvg

The Html Social share buttons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'zm_sh_btn' shortcode in all versions up to, and including, 2.1.16 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 5.3
0%
Низкий
11 месяцев назад
github логотип
GHSA-2phf-6xf7-m2rp

Pexip Infinity before 27.3 allows remote attackers to force a software abort via HTTP.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2phc-gxq3-33rm

The "CFB Mobile Banking" by Citizens First Bank Wisconsin app 3.0.1 -- aka cfb-mobile-banking/id1081102805 for iOS does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

CVSS3: 5.9
0%
Низкий
около 4 лет назад
github логотип
GHSA-2phc-gpx4-h876

Unrestricted file upload vulnerability in upload.php in the Powerplay Gallery plugin 3.3 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in *_uploadfolder/big/.

5%
Низкий
около 4 лет назад
github логотип
GHSA-2phc-7cq6-m4fq

The Inetc plugin for Nullsoft Scriptable Install System (NSIS), as used in CERT/CC Failure Observation Engine (FOE) and other products, does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and possibly execute arbitrary code by sending a crafted certificate in a download session for Windows executable files.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2ph9-m2f8-vv39

SQL injection vulnerability in MKPortal 1.1.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, aka ZD-00000008. this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2ph9-8x3x-w6jx

Insecure Permissions vulnerability in VITEC AvediaServer (Model avsrv-m8105) 8.6.2-1 allows a remote attacker to escalate privileges via a crafted script.

CVSS3: 8.8
1%
Низкий
около 2 лет назад
github логотип
GHSA-2ph9-2cph-r5j9

lscfg in IBM AIX 5.2 and 5.3 allows local users to modify arbitrary files via a symlink attack.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-2ph8-ww3f-hhw3

Online Leave Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /maintenance/manage_leave_type.php.

CVSS3: 7.2
1%
Низкий
почти 4 года назад
github логотип
GHSA-2ph8-rh6h-6gpc

CA Automic Automation 12.2 and 12.3 contain an insecure memory handling vulnerability in the Automic agent that could allow a remote attacker to potentially access sensitive data.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2ph6-gc2m-75x2

Unspecified vulnerability in Oracle Database Server 8.1.7.4, 9.0.1.5, 9.0.1.5 FIPS, 9.2.0.7, and 10.1.0.5, Application Server 1.0.2.2, 9.0.4.2, and 10.1.2.0.2, and Collaboration Suite Release 2, version 9.0.4.2 (Oracle9i) has unspecified impact and attack vectors, as identified by Oracle Vuln# DBC01 in the Protocol Support component.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-2ph5-q865-h92c

License Manager Service of YOKOGAWA products (CENTUM VP (R5.01.00 - R6.06.00), CENTUM VP Entry Class (R5.01.00 - R6.06.00), ProSafe-RS (R3.01.00 - R4.04.00), PRM (R4.01.00 - R4.02.00), B/M9000 VP(R7.01.01 - R8.02.03)) allows remote attackers to bypass access restriction to send malicious files to the PC where License Manager Service runs via unspecified vectors.

CVSS3: 9.8
5%
Низкий
около 4 лет назад

Уязвимостей на страницу