Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 972

Количество 353 972

github логотип

GHSA-2mqf-25vp-cxfr

больше 4 лет назад

This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Free Antivirus 20.2.0.0. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the use of named pipes. The issue results from allowing an untrusted process to impersonate the client of a pipe. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-14208.

EPSS: Низкий
github логотип

GHSA-2mqc-5vrf-pmw6

около 4 лет назад

Cloudera Navigator 2.2.x before 2.2.4 and 2.3.x before 2.3.3 include support for SSLv3 when configured to use SSL/TLS, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, a variant of CVE-2014-3566 (aka POODLE).

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-2mqc-3p57-rvmw

около 4 лет назад

Cross-site scripting (XSS) vulnerability in MQ XR WebSockets Listener in WMQ Telemetry in IBM WebSphere MQ 8.0 before 8.0.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URI that is included in an error response.

EPSS: Низкий
github логотип

GHSA-2mq9-hm29-8qch

7 месяцев назад

Label Studio is vulnerable to full account takeover by chaining Stored XSS + IDOR in User Profile via custom_hotkeys field

EPSS: Низкий
github логотип

GHSA-2mq8-jgr8-vqp6

8 месяцев назад

In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead of QODevice::WriteOnly.

CVSS3: 3.2
EPSS: Низкий
github логотип

GHSA-2mq8-fvvr-mhhg

больше 4 лет назад

Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 allows remote authenticated users to execute arbitrary Ruby code via unspecified vectors, possibly related to incorrect input validation by (1) conf.rhtml and (2) i.conf.rhtml. NOTE: some of these details are obtained from third party information.

EPSS: Низкий
github логотип

GHSA-2mq8-99q7-55wx

около 5 лет назад

Code injection in keycloak

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-2mq8-26cv-3wh3

больше 4 лет назад

An improper privilege management vulnerability in Apps Edge application prior to SMR Dec-2021 Release 1 allows unauthorized access to some device data on the lockscreen.

EPSS: Низкий
github логотип

GHSA-2mq7-p542-2496

около 4 лет назад

Open-Xchange GmbH OX Cloud Plugins 1.4.0 and earlier is affected by: Missing Authorization.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2mq6-rxq2-qgxv

около 4 лет назад

Portainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API endpoint will return 404 if admin was not created and 204 if it was already created. Attackers can set an admin password in the 404 case.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2mq6-r48x-9jhh

больше 3 лет назад

In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446207; Issue ID: ALPS07446207.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-2mq5-vgx2-cq4h

около 1 года назад

When running in Appliance mode, a command injection vulnerability exists in an undisclosed iControl REST and BIG-IP TMOS Shell (tmsh) command which may allow an authenticated attacker with administrator role privileges to execute arbitrary system commands. A successful exploit can allow the attacker to cross a security boundary.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 8.7
EPSS: Средний
github логотип

GHSA-2mq5-fr5w-rr29

4 месяца назад

Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenID Connect / OAuth client allows Server Side Request Forgery.This issue affects OpenID Connect / OAuth client: from 0.0.0 before 1.5.0.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2mq3-p658-px4g

больше 3 лет назад

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2mq3-gxhp-m36q

около 4 лет назад

Directory traversal in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running an application via the pagename parameter to wex/html.php.

EPSS: Низкий
github логотип

GHSA-2mq2-3qcr-37mp

около 4 лет назад

Google Chrome before 23.0.1271.97 does not properly restrict instantiation of the Chromoting client plug-in, which has unspecified impact and attack vectors.

EPSS: Низкий
github логотип

GHSA-2mpx-xxgw-cq6p

26 дней назад

When the application opens a PDF and JavaScript resets the form fields, the script re-enters the interface. The underlying native object is damaged, but the application does not perform validation. The function call on the damaged object leads to the application crashing.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2mpx-hg3q-3wq8

больше 1 года назад

A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-2mpw-v9vf-mx9c

около 2 месяцев назад

Unauthenticated Local File Inclusion in ITactics <= 1.0 versions.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2mpw-8427-rgcw

больше 1 года назад

Issue that bypasses the "Mark of the Web" security warning function for files when opening a symbolic link that points to an executable file exists in WinRAR versions prior to 7.11. If a symbolic link specially crafted by an attacker is opened on the affected product, arbitrary code may be executed.

CVSS3: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2mqf-25vp-cxfr

This vulnerability allows local attackers to escalate privileges on affected installations of Panda Security Free Antivirus 20.2.0.0. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The specific flaw exists within the use of named pipes. The issue results from allowing an untrusted process to impersonate the client of a pipe. An attacker can leverage this vulnerability to escalate privileges and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-14208.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-2mqc-5vrf-pmw6

Cloudera Navigator 2.2.x before 2.2.4 and 2.3.x before 2.3.3 include support for SSLv3 when configured to use SSL/TLS, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, a variant of CVE-2014-3566 (aka POODLE).

CVSS3: 3.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-2mqc-3p57-rvmw

Cross-site scripting (XSS) vulnerability in MQ XR WebSockets Listener in WMQ Telemetry in IBM WebSphere MQ 8.0 before 8.0.0.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URI that is included in an error response.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2mq9-hm29-8qch

Label Studio is vulnerable to full account takeover by chaining Stored XSS + IDOR in User Profile via custom_hotkeys field

0%
Низкий
7 месяцев назад
github логотип
GHSA-2mq8-jgr8-vqp6

In KDE Skanpage before 25.08.0, an attempt at file overwrite can result in the contents of the new file at the beginning followed by the partial contents of the old file at the end, because of use of QIODevice::ReadWrite instead of QODevice::WriteOnly.

CVSS3: 3.2
0%
Низкий
8 месяцев назад
github логотип
GHSA-2mq8-fvvr-mhhg

Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 allows remote authenticated users to execute arbitrary Ruby code via unspecified vectors, possibly related to incorrect input validation by (1) conf.rhtml and (2) i.conf.rhtml. NOTE: some of these details are obtained from third party information.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2mq8-99q7-55wx

Code injection in keycloak

CVSS3: 8.3
1%
Низкий
около 5 лет назад
github логотип
GHSA-2mq8-26cv-3wh3

An improper privilege management vulnerability in Apps Edge application prior to SMR Dec-2021 Release 1 allows unauthorized access to some device data on the lockscreen.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-2mq7-p542-2496

Open-Xchange GmbH OX Cloud Plugins 1.4.0 and earlier is affected by: Missing Authorization.

CVSS3: 7.2
1%
Низкий
около 4 лет назад
github логотип
GHSA-2mq6-rxq2-qgxv

Portainer through 1.19.2 provides an API endpoint (/api/users/admin/check) to verify that the admin user is already created. This API endpoint will return 404 if admin was not created and 204 if it was already created. Attackers can set an admin password in the 404 case.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-2mq6-r48x-9jhh

In widevine, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07446207; Issue ID: ALPS07446207.

CVSS3: 6.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2mq5-vgx2-cq4h

When running in Appliance mode, a command injection vulnerability exists in an undisclosed iControl REST and BIG-IP TMOS Shell (tmsh) command which may allow an authenticated attacker with administrator role privileges to execute arbitrary system commands. A successful exploit can allow the attacker to cross a security boundary.  Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 8.7
28%
Средний
около 1 года назад
github логотип
GHSA-2mq5-fr5w-rr29

Server-Side Request Forgery (SSRF) vulnerability in Drupal OpenID Connect / OAuth client allows Server Side Request Forgery.This issue affects OpenID Connect / OAuth client: from 0.0.0 before 1.5.0.

CVSS3: 4.3
0%
Низкий
4 месяца назад
github логотип
GHSA-2mq3-p658-px4g

In wlan driver, there is a possible missing bounds check. This could lead to local denial of service in wlan services.

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2mq3-gxhp-m36q

Directory traversal in Wcms 0.3.2 allows an attacker to read arbitrary files on the server that is running an application via the pagename parameter to wex/html.php.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2mq2-3qcr-37mp

Google Chrome before 23.0.1271.97 does not properly restrict instantiation of the Chromoting client plug-in, which has unspecified impact and attack vectors.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2mpx-xxgw-cq6p

When the application opens a PDF and JavaScript resets the form fields, the script re-enters the interface. The underlying native object is damaged, but the application does not perform validation. The function call on the damaged object leads to the application crashing.

CVSS3: 7.8
0%
Низкий
26 дней назад
github логотип
GHSA-2mpx-hg3q-3wq8

A DLL hijacking vulnerability in AMD Integrated Management Technology (AIM-T) Manageability Service could allow an attacker to achieve privilege escalation potentially resulting in arbitrary code execution.

CVSS3: 7.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2mpw-v9vf-mx9c

Unauthenticated Local File Inclusion in ITactics <= 1.0 versions.

CVSS3: 8.1
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-2mpw-8427-rgcw

Issue that bypasses the "Mark of the Web" security warning function for files when opening a symbolic link that points to an executable file exists in WinRAR versions prior to 7.11. If a symbolic link specially crafted by an attacker is opened on the affected product, arbitrary code may be executed.

CVSS3: 6.8
1%
Низкий
больше 1 года назад

Уязвимостей на страницу