Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 883

Количество 353 883

github логотип

GHSA-2m84-36h6-49q2

почти 2 года назад

FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookie's component.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2m83-rpm6-8hrh

почти 4 года назад

The d8s-asns package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-html package. The affected version is 0.1.0.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2m83-cjg7-5x73

4 месяца назад

A critical vulnerability in the Talend JobServer and Talend Runtime allows unauthenticated remote code execution via the JMX monitoring port. The attack vector is the JMX monitoring port of the Talend JobServer. The vulnerability can be mitigated for the Talend JobServer by requiring TLS client authentication for the monitoring port; however, the patch must be applied for full mitigation. For Talend ESB Runtime, the vulnerability can be mitigated by disabling the JobServer JMX monitoring port, which is disabled by default from the R2024-07-RT patch.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2m82-vj3v-6q9q

больше 1 года назад

The Academist Membership plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.1.6. This is due to the academist_membership_check_facebook_user() function not properly verifying a user's identity prior to authenticating them. This makes it possible for unauthenticated attackers to log in as any user, including site administrators.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2m82-q8pv-p7fx

больше 1 года назад

IBM Security Directory Integrator 7.2.0 through 7.2.0.13 and 10.0.0 through 10.0.3 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-2m7x-c7px-hp58

больше 2 лет назад

Server Side Template Injection (SSTI) via Twig escape handler

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2m7x-2cj2-wg69

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adjust PHY FSM transition to TX_EN-to-PLL_ON for TMDS on DCN35 [Why] A backport of the change made for DCN401 that addresses an issue where we turn off the PHY PLL when disabling TMDS output, which causes the OTG to remain stuck. The OTG being stuck can lead to a hang in the DCHVM's ability to ACK invalidations when it thinks the HUBP is still on but it's not receiving global sync. The transition to PLL_ON needs to be atomic as there's no guarantee that the thread isn't pre-empted or is able to complete before the IOMMU watchdog times out. [How] Backport the implementation from dcn401 back to dcn35. There's a functional difference in when the eDP output is disabled in dcn401 code so we don't want to utilize it directly.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2m7w-mxjw-2c3q

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in index.php in SugarCRM 1.X allows remote attackers to inject arbitrary web script or HTML via the (1) return_module, (2) return_action, (3) name, (4) module, or (5) record parameter.

EPSS: Низкий
github логотип

GHSA-2m7w-ch42-4cm9

9 месяцев назад

Missing Authorization vulnerability in uxper Togo togo.This issue affects Togo: from n/a through < 1.0.4.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2m7w-32cj-4pj7

10 месяцев назад

The Pz-LinkCard WordPress plugin before 2.5.7 does not validate a parameter before making a request to it, which could allow users with a role as low as Contributor to perform SSRF attack.

CVSS3: 3.8
EPSS: Низкий
github логотип

GHSA-2m7v-wmjf-9gq6

9 месяцев назад

Vulnerability in LimeSurvey 6.13.0 in the endpoint /optout that causes infinite HTTP redirects when accessed directly. This behavior can be exploited to generate a Denegation of Service (DoS attack), by exhausting server or client resources. The system is unable to break the redirect loop, which can cause service degradation or browser instability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2m7v-q2j4-mr6f

26 дней назад

Cross-site request forgery vulnerability exists in SEIKO EPSON Web Config. If a user views a malicious page while logged into Web Config, unintended operations may be performed.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2m7v-fvqp-gr2c

больше 1 года назад

A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnerability is the function uploadPicture of the file src/main/java/org/zdd/bookstore/web/controller/admin/AdminBookController. java. The manipulation of the argument pictureFile leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-2m7v-8fgj-5354

около 1 года назад

Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal.This issue affects rLottie: V0.2.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2m7r-x6hh-8373

больше 2 лет назад

A vulnerability has been found in Campcodes Online Job Finder System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/category/controller.php. The manipulation of the argument CATEGORYID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-257377 was assigned to this vulnerability.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2m7r-mqpg-x97r

около 4 лет назад

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2m7r-8x5f-v32g

больше 4 лет назад

list.php in w-Agora 4.1.6a allows remote attackers to reveal the full path via a crafted HTTP request, possibly involving a malformed id parameter.

EPSS: Низкий
github логотип

GHSA-2m7r-8cjp-ww5h

около 4 лет назад

The iwgif_read_image function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2m7q-gxv6-mxf5

около 4 лет назад

Remote code execution in Hanwha Techwin Smartcams

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2m7q-86j6-pc24

5 месяцев назад

An improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3.0 through 7.3.4 may allow a remote unauthenticated attacker to provide arbitrary data enabling a social engineering attack via spoofed URL parameters.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2m84-36h6-49q2

FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to store authentication data via the cookie's component.

CVSS3: 8.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-2m83-rpm6-8hrh

The d8s-asns package for Python, as distributed on PyPI, included a potential code-execution backdoor inserted by a third party. The backdoor is the democritus-html package. The affected version is 0.1.0.

CVSS3: 9.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-2m83-cjg7-5x73

A critical vulnerability in the Talend JobServer and Talend Runtime allows unauthenticated remote code execution via the JMX monitoring port. The attack vector is the JMX monitoring port of the Talend JobServer. The vulnerability can be mitigated for the Talend JobServer by requiring TLS client authentication for the monitoring port; however, the patch must be applied for full mitigation. For Talend ESB Runtime, the vulnerability can be mitigated by disabling the JobServer JMX monitoring port, which is disabled by default from the R2024-07-RT patch.

CVSS3: 9.8
1%
Низкий
4 месяца назад
github логотип
GHSA-2m82-vj3v-6q9q

The Academist Membership plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 1.1.6. This is due to the academist_membership_check_facebook_user() function not properly verifying a user's identity prior to authenticating them. This makes it possible for unauthenticated attackers to log in as any user, including site administrators.

CVSS3: 9.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-2m82-q8pv-p7fx

IBM Security Directory Integrator 7.2.0 through 7.2.0.13 and 10.0.0 through 10.0.3 could allow a remote authenticated attacker to execute arbitrary commands on the system by sending a specially crafted request.

CVSS3: 6.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-2m7x-c7px-hp58

Server Side Template Injection (SSTI) via Twig escape handler

CVSS3: 8.8
2%
Низкий
больше 2 лет назад
github логотип
GHSA-2m7x-2cj2-wg69

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Adjust PHY FSM transition to TX_EN-to-PLL_ON for TMDS on DCN35 [Why] A backport of the change made for DCN401 that addresses an issue where we turn off the PHY PLL when disabling TMDS output, which causes the OTG to remain stuck. The OTG being stuck can lead to a hang in the DCHVM's ability to ACK invalidations when it thinks the HUBP is still on but it's not receiving global sync. The transition to PLL_ON needs to be atomic as there's no guarantee that the thread isn't pre-empted or is able to complete before the IOMMU watchdog times out. [How] Backport the implementation from dcn401 back to dcn35. There's a functional difference in when the eDP output is disabled in dcn401 code so we don't want to utilize it directly.

CVSS3: 5.5
0%
Низкий
3 месяца назад
github логотип
GHSA-2m7w-mxjw-2c3q

Cross-site scripting (XSS) vulnerability in index.php in SugarCRM 1.X allows remote attackers to inject arbitrary web script or HTML via the (1) return_module, (2) return_action, (3) name, (4) module, or (5) record parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2m7w-ch42-4cm9

Missing Authorization vulnerability in uxper Togo togo.This issue affects Togo: from n/a through < 1.0.4.

CVSS3: 6.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-2m7w-32cj-4pj7

The Pz-LinkCard WordPress plugin before 2.5.7 does not validate a parameter before making a request to it, which could allow users with a role as low as Contributor to perform SSRF attack.

CVSS3: 3.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-2m7v-wmjf-9gq6

Vulnerability in LimeSurvey 6.13.0 in the endpoint /optout that causes infinite HTTP redirects when accessed directly. This behavior can be exploited to generate a Denegation of Service (DoS attack), by exhausting server or client resources. The system is unable to break the redirect loop, which can cause service degradation or browser instability.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-2m7v-q2j4-mr6f

Cross-site request forgery vulnerability exists in SEIKO EPSON Web Config. If a user views a malicious page while logged into Web Config, unintended operations may be performed.

CVSS3: 4.3
0%
Низкий
26 дней назад
github логотип
GHSA-2m7v-fvqp-gr2c

A vulnerability was found in donglight bookstore电商书城系统说明 1.0. It has been declared as critical. Affected by this vulnerability is the function uploadPicture of the file src/main/java/org/zdd/bookstore/web/controller/admin/AdminBookController. java. The manipulation of the argument pictureFile leads to unrestricted upload. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 4.7
0%
Низкий
больше 1 года назад
github логотип
GHSA-2m7v-8fgj-5354

Improper Input Validation vulnerability in Samsung Open Source rLottie allows Path Traversal.This issue affects rLottie: V0.2.

CVSS3: 9.8
0%
Низкий
около 1 года назад
github логотип
GHSA-2m7r-x6hh-8373

A vulnerability has been found in Campcodes Online Job Finder System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/category/controller.php. The manipulation of the argument CATEGORYID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-257377 was assigned to this vulnerability.

CVSS3: 6.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2m7r-mqpg-x97r

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 13.6 and iPadOS 13.6, macOS Catalina 10.15.6, tvOS 13.4.8. Processing a maliciously crafted USD file may lead to unexpected application termination or arbitrary code execution.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-2m7r-8x5f-v32g

list.php in w-Agora 4.1.6a allows remote attackers to reveal the full path via a crafted HTTP request, possibly involving a malformed id parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2m7r-8cjp-ww5h

The iwgif_read_image function in imagew-gif.c in libimageworsener.a in ImageWorsener 1.3.0 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted file.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2m7q-gxv6-mxf5

Remote code execution in Hanwha Techwin Smartcams

CVSS3: 9.8
4%
Низкий
около 4 лет назад
github логотип
GHSA-2m7q-86j6-pc24

An improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Fortinet FortiSIEM 7.4.0, FortiSIEM 7.3.0 through 7.3.4 may allow a remote unauthenticated attacker to provide arbitrary data enabling a social engineering attack via spoofed URL parameters.

CVSS3: 4.3
0%
Низкий
5 месяцев назад

Уязвимостей на страницу