Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 883

Количество 353 883

github логотип

GHSA-2m9c-52fv-92g6

4 месяца назад

Multiple stored cross-site scripting (XSS) vulnerabilities in the submit_add_user.asp endpoint of DDSN Interactive Acora CMS v10.7.1 allow attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the First Name and Last Name parameters.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2m99-pq2j-5j4f

около 4 лет назад

A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Microsoft Graphics Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1144, CVE-2019-1149, CVE-2019-1150, CVE-2019-1151, CVE-2019-1152.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-2m99-h743-796m

больше 4 лет назад

ftpd, as used by Gentoo and Debian Linux, sets the gid to the effective uid instead of the effective group id before executing /bin/ls, which allows remote authenticated users to list arbitrary directories with the privileges of gid 0 and possibly enable additional attack vectors.

EPSS: Низкий
github логотип

GHSA-2m99-7562-fw7j

больше 4 лет назад

Stack-based buffer overflow in Rhino Software, Inc. FTP Voyager 14.0.0.3 and earlier allows remote servers to cause a denial of service (crash) via a long response to a CWD command, which triggers the overflow when the user aborts the command.

EPSS: Низкий
github логотип

GHSA-2m99-5fff-xf2f

больше 4 лет назад

Multiple PHP remote file inclusion vulnerabilities in FSphp 0.2.1 allow remote attackers to execute arbitrary PHP code via a URL in the FSPHP_LIB parameter to (1) FSphp.php, (2) navigation.php, and (3) pathwrite.php in lib/.

EPSS: Низкий
github логотип

GHSA-2m99-4pvv-v23q

больше 4 лет назад

publish.ical.php in Jim Hu and Chad Little PHP iCalendar 2.21 and earlier does not require authentication for write access to the calendars directory, which allows remote attackers to upload and execute arbitrary PHP scripts via a WebDAV PUT request with a filename containing a .php extension and a trailing null character.

EPSS: Низкий
github логотип

GHSA-2m99-2wq3-prpf

около 4 лет назад

IBM API Connect 5.0.0.0 through 5.0.8.8 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 175489.

EPSS: Низкий
github логотип

GHSA-2m98-w299-f59w

около 1 года назад

Missing Authorization vulnerability in ThemeGoods Grand Restaurant WordPress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grand Restaurant WordPress: from n/a through 7.0.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2m98-c6h7-m59r

около 4 лет назад

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing SGI files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-13355)

EPSS: Низкий
github логотип

GHSA-2m97-x65p-qfv6

больше 4 лет назад

SQL injection vulnerability in image.php in OpenImpro 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

EPSS: Низкий
github логотип

GHSA-2m97-wq46-x8xx

около 4 лет назад

Open-AudIT 3.3.0 allows an XSS attack after login.

EPSS: Низкий
github логотип

GHSA-2m97-q37r-gwpc

почти 2 года назад

Llama Stack prior to revision 7a8aa775e5a267cf8660d83140011a0b7f91e005 used pickle as a serialization format for socket communication, potentially allowing for remote code execution. Socket communication has been changed to use JSON instead.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2m97-7j97-3fhw

больше 4 лет назад

Directory traversal vulnerability in IronWebMail before 6.1.1 HotFix-17 allows remote attackers to read arbitrary files via a GET request to the IM_FILE identifier with double-url-encoded "../" sequences ("%252e%252e/").

EPSS: Низкий
github логотип

GHSA-2m96-fxj3-h8fg

больше 3 лет назад

A vulnerability in Cisco TelePresence CE and RoomOS Software could allow an authenticated, local attacker to bypass access controls and conduct an SSRF attack through an affected device. This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to a user of the web application. A successful exploit could allow the attacker to send arbitrary network requests that are sourced from the affected system.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-2m96-9w4j-wgv7

почти 6 лет назад

Prototype Pollution in lodash.merge

EPSS: Низкий
github логотип

GHSA-2m96-99w5-8w8h

больше 1 года назад

The Email Subscription Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's print_email_subscribe_form shortcode in all versions up to, and including, 1.2.22 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-2m96-7r2c-fq6j

около 4 лет назад

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

EPSS: Низкий
github логотип

GHSA-2m96-52r3-2f3g

почти 2 года назад

fugit parse and parse_nat stall on lengthy input

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2m95-fcm7-gqw8

около 4 лет назад

Ovarro TBox TWinSoft uses the custom hardcoded user “TWinSoft” with a hardcoded key.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2m95-7f8j-m6vw

больше 2 лет назад

A vulnerability, which was classified as critical, has been found in unknown-o download-station up to 1.1.8. This issue affects some unknown processing of the file index.php. The manipulation of the argument f leads to path traversal: '../filedir'. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250121 was assigned to this vulnerability.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2m9c-52fv-92g6

Multiple stored cross-site scripting (XSS) vulnerabilities in the submit_add_user.asp endpoint of DDSN Interactive Acora CMS v10.7.1 allow attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the First Name and Last Name parameters.

CVSS3: 5.4
0%
Низкий
4 месяца назад
github логотип
GHSA-2m99-pq2j-5j4f

A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Microsoft Graphics Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1144, CVE-2019-1149, CVE-2019-1150, CVE-2019-1151, CVE-2019-1152.

CVSS3: 8.8
13%
Средний
около 4 лет назад
github логотип
GHSA-2m99-h743-796m

ftpd, as used by Gentoo and Debian Linux, sets the gid to the effective uid instead of the effective group id before executing /bin/ls, which allows remote authenticated users to list arbitrary directories with the privileges of gid 0 and possibly enable additional attack vectors.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-2m99-7562-fw7j

Stack-based buffer overflow in Rhino Software, Inc. FTP Voyager 14.0.0.3 and earlier allows remote servers to cause a denial of service (crash) via a long response to a CWD command, which triggers the overflow when the user aborts the command.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-2m99-5fff-xf2f

Multiple PHP remote file inclusion vulnerabilities in FSphp 0.2.1 allow remote attackers to execute arbitrary PHP code via a URL in the FSPHP_LIB parameter to (1) FSphp.php, (2) navigation.php, and (3) pathwrite.php in lib/.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-2m99-4pvv-v23q

publish.ical.php in Jim Hu and Chad Little PHP iCalendar 2.21 and earlier does not require authentication for write access to the calendars directory, which allows remote attackers to upload and execute arbitrary PHP scripts via a WebDAV PUT request with a filename containing a .php extension and a trailing null character.

7%
Низкий
больше 4 лет назад
github логотип
GHSA-2m99-2wq3-prpf

IBM API Connect 5.0.0.0 through 5.0.8.8 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session. IBM X-Force ID: 175489.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2m98-w299-f59w

Missing Authorization vulnerability in ThemeGoods Grand Restaurant WordPress allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Grand Restaurant WordPress: from n/a through 7.0.

CVSS3: 5.3
0%
Низкий
около 1 года назад
github логотип
GHSA-2m98-c6h7-m59r

A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing SGI files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-13355)

2%
Низкий
около 4 лет назад
github логотип
GHSA-2m97-x65p-qfv6

SQL injection vulnerability in image.php in OpenImpro 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2m97-wq46-x8xx

Open-AudIT 3.3.0 allows an XSS attack after login.

3%
Низкий
около 4 лет назад
github логотип
GHSA-2m97-q37r-gwpc

Llama Stack prior to revision 7a8aa775e5a267cf8660d83140011a0b7f91e005 used pickle as a serialization format for socket communication, potentially allowing for remote code execution. Socket communication has been changed to use JSON instead.

CVSS3: 6.3
1%
Низкий
почти 2 года назад
github логотип
GHSA-2m97-7j97-3fhw

Directory traversal vulnerability in IronWebMail before 6.1.1 HotFix-17 allows remote attackers to read arbitrary files via a GET request to the IM_FILE identifier with double-url-encoded "../" sequences ("%252e%252e/").

4%
Низкий
больше 4 лет назад
github логотип
GHSA-2m96-fxj3-h8fg

A vulnerability in Cisco TelePresence CE and RoomOS Software could allow an authenticated, local attacker to bypass access controls and conduct an SSRF attack through an affected device. This vulnerability is due to improper validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to a user of the web application. A successful exploit could allow the attacker to send arbitrary network requests that are sourced from the affected system.

CVSS3: 4.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2m96-9w4j-wgv7

Prototype Pollution in lodash.merge

почти 6 лет назад
github логотип
GHSA-2m96-99w5-8w8h

The Email Subscription Popup plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's print_email_subscribe_form shortcode in all versions up to, and including, 1.2.22 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-2m96-7r2c-fq6j

When a Web Extension had the all-urls permission and made a fetch request with a mode set to 'same-origin', it was possible for the Web Extension to read local files. This vulnerability affects Firefox < 74.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2m96-52r3-2f3g

fugit parse and parse_nat stall on lengthy input

CVSS3: 5.3
1%
Низкий
почти 2 года назад
github логотип
GHSA-2m95-fcm7-gqw8

Ovarro TBox TWinSoft uses the custom hardcoded user “TWinSoft” with a hardcoded key.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-2m95-7f8j-m6vw

A vulnerability, which was classified as critical, has been found in unknown-o download-station up to 1.1.8. This issue affects some unknown processing of the file index.php. The manipulation of the argument f leads to path traversal: '../filedir'. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250121 was assigned to this vulnerability.

CVSS3: 5.3
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу