Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 714

Количество 353 714

github логотип

GHSA-2jcq-2g28-r229

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in Dragonfly CMS 9.0.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search field.

EPSS: Низкий
github логотип

GHSA-2jcp-ppp2-c9rv

около 4 лет назад

A local attacker can create a hard-link between a file to which the Check Point Endpoint Security client for Windows before E80.96 writes and another BAT file, then by impersonating the WPAD server, the attacker can write BAT commands into that file that will later be run by the user or the system.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-2jcp-chpc-f9r6

около 4 лет назад

An XSS vulnerability in the "Email Subscribers & Newsletters" plugin 4.1.6 for WordPress allows an attacker to inject malicious JavaScript code through a publicly available subscription form using the esfpx_name wp-admin/admin-ajax.php POST parameter.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2jcp-64q4-69c4

почти 3 года назад

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. A website may be able to access sensitive user data when resolving symlinks.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2jcp-473g-fc9m

больше 1 года назад

Windows upnphost.dll Denial of Service Vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2jcm-jwvc-6vhm

2 дня назад

The Remote API WordPress plugin through 0.2 does not authenticate a request before deserializing user-supplied input, allowing unauthenticated attackers to inject arbitrary PHP objects, which can lead to remote code execution when a suitable gadget chain is present through another installed Remote API WordPress plugin through 0.2.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-2jcm-hq8r-84wx

около 2 месяцев назад

kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in SCRAM authentication handling that allows a malicious or machine-in-the-middle broker to freeze the client event loop by supplying an excessively large iteration count. In scram.py, ScramClient.process_server_first_message() passes the broker-controlled SCRAM iteration count directly to hashlib.pbkdf2_hmac() without validation, blocking producer sends, consumer polls, admin operations, and heartbeats, which can cause consumer group eviction and repeated reconnect failures.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2jcm-hjv4-6679

около 4 лет назад

SQL injection vulnerability in the UnbDbEncode function in unb_lib/database.lib.php in Unclassified NewsBoard (UNB) 1.6.4 allows remote attackers to execute arbitrary SQL commands via the Query parameter in a search action to forum.php, a different vector than CVE-2005-3686.

EPSS: Низкий
github логотип

GHSA-2jcm-5xf4-f336

8 месяцев назад

The User Generator and Importer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to and including 1.2.2. This is due to missing nonce validation in the "Import Using CSV File" function. This makes it possible for unauthenticated attackers to elevate user privileges by creating arbitrary accounts with administrator privileges via a forged request, provided they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2jcj-vrgw-29h7

около 4 лет назад

In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8300212C.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2jch-w7cm-rw24

около 4 лет назад

Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 through 2.9.0, as used in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1, allows remote attackers to inject arbitrary web script or HTML via vectors related to swfstore.swf, a similar issue to CVE-2010-4209.

EPSS: Низкий
github логотип

GHSA-2jch-qc96-9f5g

почти 2 года назад

Flowise Cross-site Scripting in api/v1/chatflows/id

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2jcg-qqf4-66c8

около 4 лет назад

The (1) texmacs and (2) tm_mupad_help scripts in TeXmacs 1.0.7.4 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

EPSS: Низкий
github логотип

GHSA-2jcg-ch57-hfxf

больше 4 лет назад

install.php in phpBB 2.0 through 2.0.1, when "allow_url_fopen" and "register_globals" variables are set to "on", allows remote attackers to execute arbitrary PHP code by modifying the phpbb_root_dir parameter to reference a URL on a remote web server that contains the code.

EPSS: Низкий
github логотип

GHSA-2jcg-8888-49p2

больше 4 лет назад

Multiple SQL injection vulnerabilities in Pixel Motion Blog allow remote attackers to execute arbitrary SQL commands via the (1) date parameter in index.php or bypass authentication via the (2) password parameter in admin/index.php.

EPSS: Низкий
github логотип

GHSA-2jcg-6j47-2v6m

около 4 лет назад

In ONAP Logging through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operations Manager (OOM) setups are affected.

EPSS: Низкий
github логотип

GHSA-2jcg-3vg6-cmgv

около 4 лет назад

In GPAC before 0.8.0, isomedia/isom_read.c in libgpac.a has a heap-based buffer over-read, as demonstrated by a crash in gf_m2ts_sync in media_tools/mpegts.c.

EPSS: Низкий
github логотип

GHSA-2jcf-pv2j-gqvq

около 4 лет назад

Race condition in the rmtree function in File::Path.pm in Perl before 5.8.4 allows local users to create arbitrary setuid binaries in the tree being deleted, a different vulnerability than CVE-2004-0452.

EPSS: Низкий
github логотип

GHSA-2jcf-hjwv-mmmw

больше 2 лет назад

NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be used to execute arbitrary code at the SMM level. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, and information disclosure.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2jcc-mxv7-p3f9

24 дня назад

oasdiff does not enforce --allow-external-refs=false on the git-revision load path (SSRF / local file read)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2jcq-2g28-r229

Cross-site scripting (XSS) vulnerability in Dragonfly CMS 9.0.6.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search field.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2jcp-ppp2-c9rv

A local attacker can create a hard-link between a file to which the Check Point Endpoint Security client for Windows before E80.96 writes and another BAT file, then by impersonating the WPAD server, the attacker can write BAT commands into that file that will later be run by the user or the system.

CVSS3: 7
0%
Низкий
около 4 лет назад
github логотип
GHSA-2jcp-chpc-f9r6

An XSS vulnerability in the "Email Subscribers & Newsletters" plugin 4.1.6 for WordPress allows an attacker to inject malicious JavaScript code through a publicly available subscription form using the esfpx_name wp-admin/admin-ajax.php POST parameter.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-2jcp-64q4-69c4

This issue was addressed with improved handling of symlinks. This issue is fixed in macOS Sonoma 14.1, macOS Monterey 12.7.1, macOS Ventura 13.6.1. A website may be able to access sensitive user data when resolving symlinks.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-2jcp-473g-fc9m

Windows upnphost.dll Denial of Service Vulnerability

CVSS3: 7.5
2%
Низкий
больше 1 года назад
github логотип
GHSA-2jcm-jwvc-6vhm

The Remote API WordPress plugin through 0.2 does not authenticate a request before deserializing user-supplied input, allowing unauthenticated attackers to inject arbitrary PHP objects, which can lead to remote code execution when a suitable gadget chain is present through another installed Remote API WordPress plugin through 0.2.

CVSS3: 9
1%
Низкий
2 дня назад
github логотип
GHSA-2jcm-hq8r-84wx

kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in SCRAM authentication handling that allows a malicious or machine-in-the-middle broker to freeze the client event loop by supplying an excessively large iteration count. In scram.py, ScramClient.process_server_first_message() passes the broker-controlled SCRAM iteration count directly to hashlib.pbkdf2_hmac() without validation, blocking producer sends, consumer polls, admin operations, and heartbeats, which can cause consumer group eviction and repeated reconnect failures.

CVSS3: 7.5
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-2jcm-hjv4-6679

SQL injection vulnerability in the UnbDbEncode function in unb_lib/database.lib.php in Unclassified NewsBoard (UNB) 1.6.4 allows remote attackers to execute arbitrary SQL commands via the Query parameter in a search action to forum.php, a different vector than CVE-2005-3686.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2jcm-5xf4-f336

The User Generator and Importer plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to and including 1.2.2. This is due to missing nonce validation in the "Import Using CSV File" function. This makes it possible for unauthenticated attackers to elevate user privileges by creating arbitrary accounts with administrator privileges via a forged request, provided they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 8.8
0%
Низкий
8 месяцев назад
github логотип
GHSA-2jcj-vrgw-29h7

In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x8300212C.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-2jch-w7cm-rw24

Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 through 2.9.0, as used in Bugzilla 3.7.x and 4.0.x before 4.0.9, 4.1.x and 4.2.x before 4.2.4, and 4.3.x and 4.4.x before 4.4rc1, allows remote attackers to inject arbitrary web script or HTML via vectors related to swfstore.swf, a similar issue to CVE-2010-4209.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2jch-qc96-9f5g

Flowise Cross-site Scripting in api/v1/chatflows/id

CVSS3: 6.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-2jcg-qqf4-66c8

The (1) texmacs and (2) tm_mupad_help scripts in TeXmacs 1.0.7.4 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2jcg-ch57-hfxf

install.php in phpBB 2.0 through 2.0.1, when "allow_url_fopen" and "register_globals" variables are set to "on", allows remote attackers to execute arbitrary PHP code by modifying the phpbb_root_dir parameter to reference a URL on a remote web server that contains the code.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2jcg-8888-49p2

Multiple SQL injection vulnerabilities in Pixel Motion Blog allow remote attackers to execute arbitrary SQL commands via the (1) date parameter in index.php or bypass authentication via the (2) password parameter in admin/index.php.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2jcg-6j47-2v6m

In ONAP Logging through Dublin, by accessing an applicable port (30234, 30290, 32010, 30270, 30224, 30281, 30254, 30285, and/or 30271), an attacker gains full access to the respective ONAP services without any authentication. All ONAP Operations Manager (OOM) setups are affected.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2jcg-3vg6-cmgv

In GPAC before 0.8.0, isomedia/isom_read.c in libgpac.a has a heap-based buffer over-read, as demonstrated by a crash in gf_m2ts_sync in media_tools/mpegts.c.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2jcf-pv2j-gqvq

Race condition in the rmtree function in File::Path.pm in Perl before 5.8.4 allows local users to create arbitrary setuid binaries in the tree being deleted, a different vulnerability than CVE-2004-0452.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2jcf-hjwv-mmmw

NVIDIA DGX A100 SBIOS contains a vulnerability where an attacker may cause an SMI callout vulnerability that could be used to execute arbitrary code at the SMM level. A successful exploit of this vulnerability may lead to code execution, denial of service, escalation of privileges, and information disclosure.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2jcc-mxv7-p3f9

oasdiff does not enforce --allow-external-refs=false on the git-revision load path (SSRF / local file read)

24 дня назад

Уязвимостей на страницу