Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 346 378

Количество 346 378

github логотип

GHSA-26hf-8wp7-h2jq

7 месяцев назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-26hc-78hm-m2x7

12 месяцев назад

RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build has a hardcoded SSH private key for a root-equivalent user account.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-26h9-w3fm-wprg

около 1 года назад

A missing authentication vulnerability in Palo Alto Networks Cortex XDR® Broker VM allows an unauthenticated user to disable certain internal services on the Broker VM.  The attacker must have network access to the Broker VM to exploit this issue.

EPSS: Низкий
github логотип

GHSA-26h8-5m63-2p8j

больше 4 лет назад

Admin.php in Olate Download (od) 3.4.1 uses an MD5 hash of the admin username, user id, and group id, to compose the OD3_AutoLogin authentication cookie, which makes it easier for remote attackers to guess the cookie and access the Admin area.

EPSS: Низкий
github логотип

GHSA-26h8-43q7-4r2w

около 4 лет назад

lldpd before 0.8.0 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via a malformed packet.

EPSS: Низкий
github логотип

GHSA-26h7-ghcj-373h

около 1 месяца назад

In the Linux kernel, the following vulnerability has been resolved: md: wake raid456 reshape waiters before suspend During raid456 reshape, direct IO across the reshape position can sleep in raid5_make_request() waiting for reshape progress while still holding an active_io reference. If userspace then freezes reshape and writes md/suspend_lo or md/suspend_hi, mddev_suspend() kills active_io and waits for all in-flight IO to drain. This can deadlock: the IO needs reshape progress to continue, but the reshape thread is already frozen, so the active_io reference is never dropped and suspend never completes. raid5_prepare_suspend() already wakes wait_for_reshape for dm-raid. Do the same for normal md suspend when reshape is already interrupted, so waiting raid456 IO can abort, drop its reference, and let suspend finish. The mdadm test tests/25raid456-reshape-deadlock reproduces the hang.

EPSS: Низкий
github логотип

GHSA-26h7-5j9f-3jj7

почти 4 года назад

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-26h6-6mgm-v632

около 4 лет назад

When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/wav.c.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-26h6-63w6-777w

больше 4 лет назад

Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in FV Flowplayer Video Player (WordPress plugin) versions <= 7.5.18.727 via &fv_wp_flowplayer_field_splash parameter.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-26h5-qgg3-p324

около 4 лет назад

WEBrick::HTTPAuth::DigestAuth in Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 has a regular expression Denial of Service cause by looping/backtracking. A victim must expose a WEBrick server that uses DigestAuth to the Internet or a untrusted network.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-26h2-xpj3-3r9v

больше 1 года назад

07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via /erp.07fly.net:80/oa/OaWorkReport/edit.html

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-26h2-jmcv-j5g4

около 4 лет назад

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Out of Bounds Write vulnerability because of not validating input values from IOCtl 0x83000058, a related issue to CVE-2017-17112.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-26h2-7ff9-7pj5

около 4 лет назад

CMD_FTEST_CONFIG in the TP-Link Device Debug protocol in TP-Link Wireless Router Archer Router version 1.0.0 Build 20180502 rel.45702 (EU) and earlier is prone to a stack-based buffer overflow, which allows a remote attacker to achieve code execution or denial of service by sending a crafted payload to the listening server.

EPSS: Низкий
github логотип

GHSA-26gw-crpw-vhg7

около 4 лет назад

The Aptallik Testi (aka com.wAptallikTesti) application 4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-26gw-4gmp-qgf3

около 4 лет назад

In ARM Trusted Firmware 1.3, RO memory is always executable at AArch64 Secure EL1, allowing attackers to bypass the MT_EXECUTE_NEVER protection mechanism. This issue occurs because of inconsistency in the number of execute-never bits (one bit versus two bits).

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-26gv-x98q-gqcw

11 месяцев назад

A vulnerability was detected in Mercury KM08-708H GiGA WiFi Wave2 1.1.14. This affects an unknown function of the component HTTP Header Handler. The manipulation of the argument Host results in stack-based buffer overflow. The attack can be executed remotely. The exploit is now public and may be used.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-26gv-chv5-g7q6

больше 1 года назад

An attacker could expose cross-user personal identifiable information (PII) and personal health information transmitted to the Android device via the Dario Health application database.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-26gr-cvq3-qxgf

около 5 лет назад

Improper Authentication in Apache Shiro

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-26gr-c7rc-wwqj

около 4 лет назад

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.

EPSS: Низкий
github логотип

GHSA-26gq-p245-cq98

больше 4 лет назад

An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.10 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. A regular expression used for handling user input (notes, comments, etc) was susceptible to catastrophic backtracking that could cause a DOS attack.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-26hf-8wp7-h2jq

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

7 месяцев назад
github логотип
GHSA-26hc-78hm-m2x7

RUCKUS SmartZone (SZ) before 6.1.2p3 Refresh Build has a hardcoded SSH private key for a root-equivalent user account.

CVSS3: 9
1%
Низкий
12 месяцев назад
github логотип
GHSA-26h9-w3fm-wprg

A missing authentication vulnerability in Palo Alto Networks Cortex XDR® Broker VM allows an unauthenticated user to disable certain internal services on the Broker VM.  The attacker must have network access to the Broker VM to exploit this issue.

0%
Низкий
около 1 года назад
github логотип
GHSA-26h8-5m63-2p8j

Admin.php in Olate Download (od) 3.4.1 uses an MD5 hash of the admin username, user id, and group id, to compose the OD3_AutoLogin authentication cookie, which makes it easier for remote attackers to guess the cookie and access the Admin area.

5%
Низкий
больше 4 лет назад
github логотип
GHSA-26h8-43q7-4r2w

lldpd before 0.8.0 allows remote attackers to cause a denial of service (assertion failure and daemon crash) via a malformed packet.

3%
Низкий
около 4 лет назад
github логотип
GHSA-26h7-ghcj-373h

In the Linux kernel, the following vulnerability has been resolved: md: wake raid456 reshape waiters before suspend During raid456 reshape, direct IO across the reshape position can sleep in raid5_make_request() waiting for reshape progress while still holding an active_io reference. If userspace then freezes reshape and writes md/suspend_lo or md/suspend_hi, mddev_suspend() kills active_io and waits for all in-flight IO to drain. This can deadlock: the IO needs reshape progress to continue, but the reshape thread is already frozen, so the active_io reference is never dropped and suspend never completes. raid5_prepare_suspend() already wakes wait_for_reshape for dm-raid. Do the same for normal md suspend when reshape is already interrupted, so waiting raid456 IO can abort, drop its reference, and let suspend finish. The mdadm test tests/25raid456-reshape-deadlock reproduces the hang.

0%
Низкий
около 1 месяца назад
github логотип
GHSA-26h7-5j9f-3jj7

Dell BIOS contains an improper input validation vulnerability. A local authenticated malicious user may potentially exploit this vulnerability by using an SMI to gain arbitrary code execution in SMRAM.

CVSS3: 8.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-26h6-6mgm-v632

When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/wav.c.

CVSS3: 8.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-26h6-63w6-777w

Authenticated Persistent Cross-Site Scripting (XSS) vulnerability in FV Flowplayer Video Player (WordPress plugin) versions <= 7.5.18.727 via &fv_wp_flowplayer_field_splash parameter.

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
github логотип
GHSA-26h5-qgg3-p324

WEBrick::HTTPAuth::DigestAuth in Ruby through 2.4.7, 2.5.x through 2.5.6, and 2.6.x through 2.6.4 has a regular expression Denial of Service cause by looping/backtracking. A victim must expose a WEBrick server that uses DigestAuth to the Internet or a untrusted network.

CVSS3: 7.5
5%
Низкий
около 4 лет назад
github логотип
GHSA-26h2-xpj3-3r9v

07FLYCMS V1.3.9 was discovered to contain a Cross-Site Request Forgery (CSRF) via /erp.07fly.net:80/oa/OaWorkReport/edit.html

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-26h2-jmcv-j5g4

In IKARUS anti.virus before 2.16.18, the ntguard.sys driver contains an Out of Bounds Write vulnerability because of not validating input values from IOCtl 0x83000058, a related issue to CVE-2017-17112.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-26h2-7ff9-7pj5

CMD_FTEST_CONFIG in the TP-Link Device Debug protocol in TP-Link Wireless Router Archer Router version 1.0.0 Build 20180502 rel.45702 (EU) and earlier is prone to a stack-based buffer overflow, which allows a remote attacker to achieve code execution or denial of service by sending a crafted payload to the listening server.

3%
Низкий
около 4 лет назад
github логотип
GHSA-26gw-crpw-vhg7

The Aptallik Testi (aka com.wAptallikTesti) application 4.0 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
около 4 лет назад
github логотип
GHSA-26gw-4gmp-qgf3

In ARM Trusted Firmware 1.3, RO memory is always executable at AArch64 Secure EL1, allowing attackers to bypass the MT_EXECUTE_NEVER protection mechanism. This issue occurs because of inconsistency in the number of execute-never bits (one bit versus two bits).

CVSS3: 8.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-26gv-x98q-gqcw

A vulnerability was detected in Mercury KM08-708H GiGA WiFi Wave2 1.1.14. This affects an unknown function of the component HTTP Header Handler. The manipulation of the argument Host results in stack-based buffer overflow. The attack can be executed remotely. The exploit is now public and may be used.

CVSS3: 9.8
1%
Низкий
11 месяцев назад
github логотип
GHSA-26gv-chv5-g7q6

An attacker could expose cross-user personal identifiable information (PII) and personal health information transmitted to the Android device via the Dario Health application database.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-26gr-cvq3-qxgf

Improper Authentication in Apache Shiro

CVSS3: 9.8
24%
Средний
около 5 лет назад
github логотип
GHSA-26gr-c7rc-wwqj

Drupal 6.x before 6.34 and 7.x before 7.34 allows remote attackers to hijack sessions via a crafted request, as demonstrated by a crafted request to a server that supports both HTTP and HTTPS sessions.

2%
Низкий
около 4 лет назад
github логотип
GHSA-26gq-p245-cq98

An issue has been discovered in GitLab CE/EE affecting all versions starting from 12.10 before 14.3.6, all versions starting from 14.4 before 14.4.4, all versions starting from 14.5 before 14.5.2. A regular expression used for handling user input (notes, comments, etc) was susceptible to catastrophic backtracking that could cause a DOS attack.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу