Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 972

Количество 353 972

github логотип

GHSA-2mv2-frc6-w8q9

больше 4 лет назад

SQL injection vulnerability in wp-download_monitor/download.php in the Download Monitor 2.0.6 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS: Низкий
github логотип

GHSA-2mrx-q835-w93g

около 4 лет назад

In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 and 1.5.0 the remote logging functionality is impaired by the lack of memory release for data structures from syslog-ng when remote logging is active

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2mrx-4g5g-2vw5

около 4 лет назад

MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ to the UPnP server, as demonstrated by the /../../conf/template/uhttpd.json URI.

EPSS: Низкий
github логотип

GHSA-2mrv-xv63-4p6g

11 месяцев назад

Pega Platform versions 7.1.0 to Infinity 24.2.2 are affected by a Stored XSS issue in a user interface component.  Requires a high privileged user with a developer role.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2mrv-739m-rgj5

больше 4 лет назад

SQL injection vulnerability in the Highwood Design hwdVideoShare (com_hwdvideoshare) 1.1.3 Alpha component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a viewcategory action to index.php.

EPSS: Низкий
github логотип

GHSA-2mrq-w8pv-5pvq

больше 2 лет назад

Malicious input can provoke XSS when preserving comments

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2mrq-w8h7-cwxm

больше 4 лет назад

GoAhead WebServer before 2.1.1 allows remote attackers to cause a denial of service (CPU consumption) by performing a socket disconnect to terminate a request before it has been fully processed by the server.

EPSS: Низкий
github логотип

GHSA-2mrq-pgfw-gj9v

больше 4 лет назад

SQL injection vulnerability in index.php in Gonafish LinksCaffePRO 4.5 allows remote attackers to execute arbitrary SQL commands via the idd parameter in a deadlink action.

EPSS: Низкий
github логотип

GHSA-2mrp-w9h4-p35m

около 4 лет назад

Unspecified vulnerability in the Network Layer component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Windows, allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2012-1747.

EPSS: Низкий
github логотип

GHSA-2mrp-h89g-g693

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix memory leak in audio daemon attach operation Audio PD daemon send the name as part of the init IOCTL call. This name needs to be copied to kernel for which memory is allocated. This memory is never freed which might result in memory leak. Free the memory when it is not needed.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2mrj-7qjv-g6rj

около 4 лет назад

An information disclosure vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Information Disclosure Vulnerability'.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2mrj-435v-c2cr

больше 6 лет назад

Duplicate Advisory: possible DoS caused by malformed signature decoding in Pure-Python ECDSA

EPSS: Низкий
github логотип

GHSA-2mrh-g8f4-xvjv

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked The SEV platform device can be shutdown with a null psp_master, e.g., using DEBUG_TEST_DRIVER_REMOVE. Found using KASAN: [ 137.148210] ccp 0000:23:00.1: enabling device (0000 -> 0002) [ 137.162647] ccp 0000:23:00.1: no command queues available [ 137.170598] ccp 0000:23:00.1: sev enabled [ 137.174645] ccp 0000:23:00.1: psp enabled [ 137.178890] general protection fault, probably for non-canonical address 0xdffffc000000001e: 0000 [#1] PREEMPT SMP DEBUG_PAGEALLOC KASAN NOPTI [ 137.182693] KASAN: null-ptr-deref in range [0x00000000000000f0-0x00000000000000f7] [ 137.182693] CPU: 93 PID: 1 Comm: swapper/0 Not tainted 6.8.0-rc1+ #311 [ 137.182693] RIP: 0010:__sev_platform_shutdown_locked+0x51/0x180 [ 137.182693] Code: 08 80 3c 08 00 0f 85 0e 01 00 00 48 8b 1d 67 b6 01 08 48 b8 00 00 00 00 00 fc ff df 48 8d bb f0 00 00 00 48 89 f9 48 c...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2mrh-8f77-q7p2

около 4 лет назад

IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.

EPSS: Низкий
github логотип

GHSA-2mrh-6cph-qr8h

около 1 года назад

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 2.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 2.3
EPSS: Низкий
github логотип

GHSA-2mrg-vqm4-vxr2

около 4 лет назад

The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs, design files (i.e., a history of print files), and more are exposed to unauthenticated attackers through this HTTP server.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2mrg-gjxq-2gvr

11 дней назад

PHPSpreadsheet: Gnumeric reader unbounded gzip expansion causes memory exhaustion

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2mrg-35hw-x3x9

около 2 месяцев назад

Gotenberg: SSRF via LibreOffice document processing

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2mrg-2qcj-p8qp

8 месяцев назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Towny towny allows PHP Local File Inclusion.This issue affects Towny: from n/a through <= 1.16.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-2mr8-vqq3-7957

больше 4 лет назад

mapserv.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 does not ensure that the string holding the id parameter ends in a '\0' character, which allows remote attackers to conduct buffer-overflow attacks or have unspecified other impact via a long id parameter in a query action.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2mv2-frc6-w8q9

SQL injection vulnerability in wp-download_monitor/download.php in the Download Monitor 2.0.6 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2mrx-q835-w93g

In Phoenix Contact FL MGUARD 1102 and 1105 in Versions 1.4.0, 1.4.1 and 1.5.0 the remote logging functionality is impaired by the lack of memory release for data structures from syslog-ng when remote logging is active

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2mrx-4g5g-2vw5

MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ to the UPnP server, as demonstrated by the /../../conf/template/uhttpd.json URI.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2mrv-xv63-4p6g

Pega Platform versions 7.1.0 to Infinity 24.2.2 are affected by a Stored XSS issue in a user interface component.  Requires a high privileged user with a developer role.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-2mrv-739m-rgj5

SQL injection vulnerability in the Highwood Design hwdVideoShare (com_hwdvideoshare) 1.1.3 Alpha component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a viewcategory action to index.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2mrq-w8pv-5pvq

Malicious input can provoke XSS when preserving comments

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2mrq-w8h7-cwxm

GoAhead WebServer before 2.1.1 allows remote attackers to cause a denial of service (CPU consumption) by performing a socket disconnect to terminate a request before it has been fully processed by the server.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2mrq-pgfw-gj9v

SQL injection vulnerability in index.php in Gonafish LinksCaffePRO 4.5 allows remote attackers to execute arbitrary SQL commands via the idd parameter in a deadlink action.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2mrp-w9h4-p35m

Unspecified vulnerability in the Network Layer component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Windows, allows remote attackers to affect availability via unknown vectors, a different vulnerability than CVE-2012-1747.

3%
Низкий
около 4 лет назад
github логотип
GHSA-2mrp-h89g-g693

In the Linux kernel, the following vulnerability has been resolved: misc: fastrpc: Fix memory leak in audio daemon attach operation Audio PD daemon send the name as part of the init IOCTL call. This name needs to be copied to kernel for which memory is allocated. This memory is never freed which might result in memory leak. Free the memory when it is not needed.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-2mrj-7qjv-g6rj

An information disclosure vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Information Disclosure Vulnerability'.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2mrj-435v-c2cr

Duplicate Advisory: possible DoS caused by malformed signature decoding in Pure-Python ECDSA

больше 6 лет назад
github логотип
GHSA-2mrh-g8f4-xvjv

In the Linux kernel, the following vulnerability has been resolved: crypto: ccp - Fix null pointer dereference in __sev_platform_shutdown_locked The SEV platform device can be shutdown with a null psp_master, e.g., using DEBUG_TEST_DRIVER_REMOVE. Found using KASAN: [ 137.148210] ccp 0000:23:00.1: enabling device (0000 -> 0002) [ 137.162647] ccp 0000:23:00.1: no command queues available [ 137.170598] ccp 0000:23:00.1: sev enabled [ 137.174645] ccp 0000:23:00.1: psp enabled [ 137.178890] general protection fault, probably for non-canonical address 0xdffffc000000001e: 0000 [#1] PREEMPT SMP DEBUG_PAGEALLOC KASAN NOPTI [ 137.182693] KASAN: null-ptr-deref in range [0x00000000000000f0-0x00000000000000f7] [ 137.182693] CPU: 93 PID: 1 Comm: swapper/0 Not tainted 6.8.0-rc1+ #311 [ 137.182693] RIP: 0010:__sev_platform_shutdown_locked+0x51/0x180 [ 137.182693] Code: 08 80 3c 08 00 0f 85 0e 01 00 00 48 8b 1d 67 b6 01 08 48 b8 00 00 00 00 00 fc ff df 48 8d bb f0 00 00 00 48 89 f9 48 c...

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2mrh-8f77-q7p2

IBM Security Key Lifecycle Manager 3.0.1 and 4.0 could allow a remote attacker to obtain sensitive information when a detailed technical error message is returned in the browser. This information could be used in further attacks against the system. IBM X-Force ID: 190290.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2mrh-6cph-qr8h

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Oracle VM VirtualBox accessible data. CVSS 3.1 Base Score 2.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N).

CVSS3: 2.3
0%
Низкий
около 1 года назад
github логотип
GHSA-2mrg-vqm4-vxr2

The MakerBot Replicator 5G printer runs an Apache HTTP Server with directory indexing enabled. Apache logs, system logs, design files (i.e., a history of print files), and more are exposed to unauthenticated attackers through this HTTP server.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2mrg-gjxq-2gvr

PHPSpreadsheet: Gnumeric reader unbounded gzip expansion causes memory exhaustion

CVSS3: 7.5
1%
Низкий
11 дней назад
github логотип
GHSA-2mrg-35hw-x3x9

Gotenberg: SSRF via LibreOffice document processing

CVSS3: 7.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-2mrg-2qcj-p8qp

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Towny towny allows PHP Local File Inclusion.This issue affects Towny: from n/a through <= 1.16.

CVSS3: 8.2
0%
Низкий
8 месяцев назад
github логотип
GHSA-2mr8-vqq3-7957

mapserv.c in mapserv in MapServer 4.x before 4.10.4 and 5.x before 5.2.2 does not ensure that the string holding the id parameter ends in a '\0' character, which allows remote attackers to conduct buffer-overflow attacks or have unspecified other impact via a long id parameter in a query action.

4%
Низкий
больше 4 лет назад

Уязвимостей на страницу