Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 972

Количество 353 972

github логотип

GHSA-2p6p-9rc9-62j9

больше 1 года назад

Craft CMS has potential RCE when PHP `register_argc_argv` config setting is enabled

CVSS3: 9.8
EPSS: Критический
github логотип

GHSA-2p6p-7p5q-rwp9

около 4 лет назад

The FC SCSI protocol driver in IBM AIX 6.1 does not verify that a timer is unused before deallocating this timer, which might allow attackers to cause a denial of service (system crash) via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-2p6p-6m75-rrxf

около 4 лет назад

An issue was discovered in Repute ARForms 3.5.1 and prior. An attacker is able to delete any file on the server with web server privileges by sending a malicious request to admin-ajax.php.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2p6j-qj7g-xj7q

7 месяцев назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-2p6h-wfw7-47wv

5 месяцев назад

A weakness has been identified in feiyuchuixue sz-boot-parent up to 1.3.2-beta. This vulnerability affects unknown code of the file /api/admin/common/files/download. Executing a manipulation of the argument url can lead to server-side request forgery. The attack can be executed remotely. Attacks of this nature are highly complex. It is stated that the exploitability is difficult. Upgrading to version 1.3.3-beta is able to resolve this issue. This patch is called aefaabfd7527188bfba3c8c9eee17c316d094802. Upgrading the affected component is advised. The project was informed beforehand and acted very professional: "We have added a URL protocol whitelist validation to the file download interface, allowing only http and https protocols."

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-2p6g-gjp8-ggg9

почти 6 лет назад

personnummer/php vulnerable to Improper Input Validation

EPSS: Низкий
github логотип

GHSA-2p6g-cq2j-fghg

около 4 лет назад

The consume_init_expr function in wasm.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2p6g-86q5-vxxh

больше 1 года назад

IBM MQ Appliance 9.3 LTS, 9.3 CD, and 9.4 LTS web console could allow an authenticated user to cause a denial-of-service when trace is enabled due to information being written into memory outside of the intended buffer size.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2p6f-qh49-9c92

около 4 лет назад

The I-O DATA TS-WLCAM camera with firmware 1.06 and earlier, TS-WLCAM/V camera with firmware 1.06 and earlier, TS-WPTCAM camera with firmware 1.08 and earlier, TS-PTCAM camera with firmware 1.08 and earlier, TS-PTCAM/POE camera with firmware 1.08 and earlier, and TS-WLC2 camera with firmware 1.02 and earlier allow remote attackers to bypass authentication, and consequently obtain sensitive credential and configuration data, via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-2p6f-9v7m-pxpr

около 4 лет назад

IBM General Parallel File System (GPFS) 3.5.x before 3.5.0.27 and 4.1.x before 4.1.1.2 and Spectrum Scale 4.1.1.x before 4.1.1.2 allow local users to obtain sensitive information from system memory via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-2p6c-c9wq-4fxf

около 4 лет назад

An issue was discovered in Adobe Photoshop 18.1.1 (2017.1.1) and earlier versions. An exploitable use-after-free vulnerability exists. Successful exploitation could lead to arbitrary code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2p6c-99qx-rqfx

около 3 лет назад

The Shield Security plugin for WordPress is vulnerable to stored Cross-Site Scripting in versions up to, and including, 17.0.17 via the 'User-Agent' header. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 7.2
EPSS: Критический
github логотип

GHSA-2p6c-33px-9jhq

около 4 лет назад

On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, under certain circumstances, attackers can decrypt configuration items that are encrypted because the vCMP configuration unit key is generated with insufficient randomness. The attack prerequisite is direct access to encrypted configuration and/or UCS files.

EPSS: Низкий
github логотип

GHSA-2p69-hxpm-h4q5

около 1 года назад

A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function sprintf of the file /goform/formSetWanNonLogin of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2p69-hm49-c5f7

около 1 года назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in LCweb PrivateContent - Mail Actions allows PHP Local File Inclusion. This issue affects PrivateContent - Mail Actions: from n/a through 2.3.2.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2p69-gxpm-5469

около 8 лет назад

Downloads Resources over HTTP in alto-saxophone

EPSS: Низкий
github логотип

GHSA-2p69-65qq-262h

около 4 лет назад

CactusVPN 5.3.6 for macOS contains a root privilege escalation vulnerability through a setuid root binary called runme. The binary takes a single command line argument and passes this argument to a system() call, thus allowing low privileged users to execute commands as root.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2p68-f74v-9wc6

около 6 лет назад

ActiveSupport potentially unintended unmarshalling of user-provided objects in MemCacheStore and RedisCacheStore

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-2p68-5cjx-px9g

около 3 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.6 versions.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2p67-36h6-33v6

больше 2 лет назад

An information exposure vulnerability has been found, the exploitation of which could allow a remote user to retrieve sensitive information stored on the server such as credential files, configuration files, application files, etc., simply by appending any of the following parameters to the end of the URL: %00 %0a, %20, %2a, %a0, %aa, %c0 and %ca.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2p6p-9rc9-62j9

Craft CMS has potential RCE when PHP `register_argc_argv` config setting is enabled

CVSS3: 9.8
97%
Критический
больше 1 года назад
github логотип
GHSA-2p6p-7p5q-rwp9

The FC SCSI protocol driver in IBM AIX 6.1 does not verify that a timer is unused before deallocating this timer, which might allow attackers to cause a denial of service (system crash) via unspecified vectors.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2p6p-6m75-rrxf

An issue was discovered in Repute ARForms 3.5.1 and prior. An attacker is able to delete any file on the server with web server privileges by sending a malicious request to admin-ajax.php.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-2p6j-qj7g-xj7q

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

7 месяцев назад
github логотип
GHSA-2p6h-wfw7-47wv

A weakness has been identified in feiyuchuixue sz-boot-parent up to 1.3.2-beta. This vulnerability affects unknown code of the file /api/admin/common/files/download. Executing a manipulation of the argument url can lead to server-side request forgery. The attack can be executed remotely. Attacks of this nature are highly complex. It is stated that the exploitability is difficult. Upgrading to version 1.3.3-beta is able to resolve this issue. This patch is called aefaabfd7527188bfba3c8c9eee17c316d094802. Upgrading the affected component is advised. The project was informed beforehand and acted very professional: "We have added a URL protocol whitelist validation to the file download interface, allowing only http and https protocols."

CVSS3: 3.1
0%
Низкий
5 месяцев назад
github логотип
GHSA-2p6g-gjp8-ggg9

personnummer/php vulnerable to Improper Input Validation

почти 6 лет назад
github логотип
GHSA-2p6g-cq2j-fghg

The consume_init_expr function in wasm.c in radare2 1.3.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Web Assembly file.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2p6g-86q5-vxxh

IBM MQ Appliance 9.3 LTS, 9.3 CD, and 9.4 LTS web console could allow an authenticated user to cause a denial-of-service when trace is enabled due to information being written into memory outside of the intended buffer size.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2p6f-qh49-9c92

The I-O DATA TS-WLCAM camera with firmware 1.06 and earlier, TS-WLCAM/V camera with firmware 1.06 and earlier, TS-WPTCAM camera with firmware 1.08 and earlier, TS-PTCAM camera with firmware 1.08 and earlier, TS-PTCAM/POE camera with firmware 1.08 and earlier, and TS-WLC2 camera with firmware 1.02 and earlier allow remote attackers to bypass authentication, and consequently obtain sensitive credential and configuration data, via unspecified vectors.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2p6f-9v7m-pxpr

IBM General Parallel File System (GPFS) 3.5.x before 3.5.0.27 and 4.1.x before 4.1.1.2 and Spectrum Scale 4.1.1.x before 4.1.1.2 allow local users to obtain sensitive information from system memory via unspecified vectors.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2p6c-c9wq-4fxf

An issue was discovered in Adobe Photoshop 18.1.1 (2017.1.1) and earlier versions. An exploitable use-after-free vulnerability exists. Successful exploitation could lead to arbitrary code execution.

CVSS3: 9.8
7%
Низкий
около 4 лет назад
github логотип
GHSA-2p6c-99qx-rqfx

The Shield Security plugin for WordPress is vulnerable to stored Cross-Site Scripting in versions up to, and including, 17.0.17 via the 'User-Agent' header. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 7.2
93%
Критический
около 3 лет назад
github логотип
GHSA-2p6c-33px-9jhq

On BIG-IP 14.1.0-14.1.0.5, 14.0.0-14.0.0.4, 13.0.0-13.1.1.4, and 12.1.0-12.1.4, under certain circumstances, attackers can decrypt configuration items that are encrypted because the vCMP configuration unit key is generated with insufficient randomness. The attack prerequisite is direct access to encrypted configuration and/or UCS files.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2p69-hxpm-h4q5

A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function sprintf of the file /goform/formSetWanNonLogin of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 8.8
1%
Низкий
около 1 года назад
github логотип
GHSA-2p69-hm49-c5f7

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in LCweb PrivateContent - Mail Actions allows PHP Local File Inclusion. This issue affects PrivateContent - Mail Actions: from n/a through 2.3.2.

CVSS3: 7.5
0%
Низкий
около 1 года назад
github логотип
GHSA-2p69-gxpm-5469

Downloads Resources over HTTP in alto-saxophone

2%
Низкий
около 8 лет назад
github логотип
GHSA-2p69-65qq-262h

CactusVPN 5.3.6 for macOS contains a root privilege escalation vulnerability through a setuid root binary called runme. The binary takes a single command line argument and passes this argument to a system() call, thus allowing low privileged users to execute commands as root.

CVSS3: 8.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-2p68-f74v-9wc6

ActiveSupport potentially unintended unmarshalling of user-provided objects in MemCacheStore and RedisCacheStore

CVSS3: 9.8
46%
Средний
около 6 лет назад
github логотип
GHSA-2p68-5cjx-px9g

Cross-Site Request Forgery (CSRF) vulnerability in Pixelgrade Comments Ratings plugin <= 1.1.6 versions.

CVSS3: 4.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-2p67-36h6-33v6

An information exposure vulnerability has been found, the exploitation of which could allow a remote user to retrieve sensitive information stored on the server such as credential files, configuration files, application files, etc., simply by appending any of the following parameters to the end of the URL: %00 %0a, %20, %2a, %a0, %aa, %c0 and %ca.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу