Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 356

Количество 375 356

github логотип

GHSA-3pj3-xgvr-86pc

около 1 месяца назад

Unauthenticated Cross Site Scripting (XSS) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.10.0 versions.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3pj3-7wm6-rfv4

больше 4 лет назад

SQL injection vulnerability in ProductDetails.asp in Lotfian Request For Travel 1.0 allows remote attackers to execute arbitrary SQL commands via the PID parameter.

EPSS: Низкий
github логотип

GHSA-3pj2-rvj5-6646

больше 4 лет назад

An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3pj2-86g9-6mf7

около 2 лет назад

IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user with access to the package to obtain sensitive information through a directory listing.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3pj2-6fqg-5xxm

9 месяцев назад

Rejected reason: Not used

EPSS: Низкий
github логотип

GHSA-3pj2-53jv-g287

около 3 лет назад

A vulnerability, which was classified as critical, has been found in Beijing Baichuo Smart S85F Management Platform up to 20230820 on Smart. Affected by this issue is some unknown functionality of the file /sysmanage/updateos.php. The manipulation of the argument 1_file_upload leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-238628. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-3phx-v48r-rmwc

около 2 лет назад

A TOCTOU (Time-Of-Check-Time-Of-Use) in SMM may allow an attacker with ring0 privileges and access to the BIOS menu or UEFI shell to modify the communications buffer potentially resulting in arbitrary code execution.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3phx-q7wc-mf8g

больше 4 лет назад

Buffer overflow in ircd allows arbitrary command execution.

EPSS: Низкий
github логотип

GHSA-3phx-j4jx-m3fr

6 месяцев назад

Missing Authorization vulnerability in vowelweb VW Photography vw-photography allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects VW Photography: from n/a through <= 1.3.8.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3phx-h87m-px77

больше 4 лет назад

This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.5. A malicious application may be able to bypass Privacy preferences.

EPSS: Низкий
github логотип

GHSA-3phx-gw24-fgrp

больше 4 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the MPostWriteBarrier class in js/src/jit/MIR.h and stack alignment in js/src/jit/AsmJS.cpp in OdinMonkey, and unknown other vectors.

EPSS: Низкий
github логотип

GHSA-3phw-vqfc-p5mc

больше 4 лет назад

Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument to the saveNessusRC method, which writes text specified by the addsetConfig method, possibly related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll. NOTE: this can be leveraged for code execution by writing to a Startup folder.

EPSS: Средний
github логотип

GHSA-3phw-rjrc-v4hm

больше 4 лет назад

AxiomSL's Axiom Google Web Toolkit module 9.5.3 and earlier is vulnerable to a Session Fixation attack.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3phw-p7mq-hmvf

12 дней назад

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3phw-gjj5-pgh6

больше 4 лет назад

Cross-site request forgery (CSRF) vulnerability in IBM Leads 7.x, 8.1.0 before 8.1.0.14, 8.2, 8.5.0 before 8.5.0.7.3, 8.6.0 before 8.6.0.8.1, 9.0.0 through 9.0.0.4, 9.1.0 before 9.1.0.6.1, and 9.1.1 before 9.1.1.0.2 allows remote authenticated users to hijack the authentication of customer accounts.

EPSS: Низкий
github логотип

GHSA-3phv-83cj-p8p7

почти 2 года назад

nope-validator Regular Expression Denial of Service vulnerability

EPSS: Низкий
github логотип

GHSA-3phv-44jf-4v33

больше 2 лет назад

Insecure permissions for log files of AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS allow members (with local access to the UMP application server) to access credentials to authenticate to all services, and to decrypt sensitive data stored in the database.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3phr-xc4f-rfjf

больше 4 лет назад

Multiple SQL injection vulnerabilities in Qualiteam X-Cart 4.0.8 allow remote attackers to execute arbitrary SQL commands via the (1) cat or (2) printable parameter to home.php, (3) productid or (4) mode parameter to product.php, (5) id parameter to error_message.php, (6) section parameter to help.php, (7) mode parameter to orders.php, (8) mode parameter to register.php, (9) mode parameter to search.php, or the (10) gcid or (11) gcindex parameter to giftcert.php.

EPSS: Низкий
github логотип

GHSA-3phr-p473-vc8q

5 месяцев назад

The AcyMailing plugin for WordPress is vulnerable to privilege escalation in all versions From 9.11.0 up to, and including, 10.8.1 due to a missing capability check on the `wp_ajax_acymailing_router` AJAX handler. This makes it possible for authenticated attackers, with Subscriber-level access and above, to access admin-only controllers (including configuration management), enable the autologin feature, create a malicious newsletter subscriber with an injected `cms_id` pointing to any WordPress user, and then use the autologin URL to authenticate as that user, including administrators.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3phq-v5rj-pfgp

больше 1 года назад

A vulnerability was found in PHPGurukul Daily Expense Tracker System 1.1. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user-profile.php. The manipulation of the argument fullname/contactnumber leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3pj3-xgvr-86pc

Unauthenticated Cross Site Scripting (XSS) in Colissimo Officiel : Méthodes de livraison pour WooCommerce <= 2.10.0 versions.

CVSS3: 7.1
0%
Низкий
около 1 месяца назад
github логотип
GHSA-3pj3-7wm6-rfv4

SQL injection vulnerability in ProductDetails.asp in Lotfian Request For Travel 1.0 allows remote attackers to execute arbitrary SQL commands via the PID parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3pj2-rvj5-6646

An attacker may perform a DoS attack to prevent a user from sending encrypted email to a correspondent. If an attacker creates a crafted OpenPGP key with a subkey that has an invalid self signature, and the Thunderbird user imports the crafted key, then Thunderbird may try to use the invalid subkey, but the RNP library rejects it from being used, causing encryption to fail. This vulnerability affects Thunderbird < 78.9.1.

CVSS3: 6.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3pj2-86g9-6mf7

IBM Aspera Faspex 5.0.0 through 5.0.9 could allow a user with access to the package to obtain sensitive information through a directory listing.

CVSS3: 6.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-3pj2-6fqg-5xxm

Rejected reason: Not used

9 месяцев назад
github логотип
GHSA-3pj2-53jv-g287

A vulnerability, which was classified as critical, has been found in Beijing Baichuo Smart S85F Management Platform up to 20230820 on Smart. Affected by this issue is some unknown functionality of the file /sysmanage/updateos.php. The manipulation of the argument 1_file_upload leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-238628. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
4%
Низкий
около 3 лет назад
github логотип
GHSA-3phx-v48r-rmwc

A TOCTOU (Time-Of-Check-Time-Of-Use) in SMM may allow an attacker with ring0 privileges and access to the BIOS menu or UEFI shell to modify the communications buffer potentially resulting in arbitrary code execution.

CVSS3: 7.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-3phx-q7wc-mf8g

Buffer overflow in ircd allows arbitrary command execution.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3phx-j4jx-m3fr

Missing Authorization vulnerability in vowelweb VW Photography vw-photography allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects VW Photography: from n/a through <= 1.3.8.

CVSS3: 5.3
0%
Низкий
6 месяцев назад
github логотип
GHSA-3phx-h87m-px77

This issue was addressed with improved entitlements. This issue is fixed in macOS Big Sur 11.5. A malicious application may be able to bypass Privacy preferences.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3phx-gw24-fgrp

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the MPostWriteBarrier class in js/src/jit/MIR.h and stack alignment in js/src/jit/AsmJS.cpp in OdinMonkey, and unknown other vectors.

7%
Низкий
больше 4 лет назад
github логотип
GHSA-3phw-vqfc-p5mc

Directory traversal vulnerability in a certain ActiveX control in Nessus Vulnerability Scanner 3.0.6 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in the argument to the saveNessusRC method, which writes text specified by the addsetConfig method, possibly related to the SCANCTRL.ScanCtrlCtrl.1 ActiveX control in scan.dll. NOTE: this can be leveraged for code execution by writing to a Startup folder.

11%
Средний
больше 4 лет назад
github логотип
GHSA-3phw-rjrc-v4hm

AxiomSL's Axiom Google Web Toolkit module 9.5.3 and earlier is vulnerable to a Session Fixation attack.

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3phw-p7mq-hmvf

Heap-based buffer overflow in Windows Win32K allows an authorized attacker to elevate privileges locally.

CVSS3: 7.8
0%
Низкий
12 дней назад
github логотип
GHSA-3phw-gjj5-pgh6

Cross-site request forgery (CSRF) vulnerability in IBM Leads 7.x, 8.1.0 before 8.1.0.14, 8.2, 8.5.0 before 8.5.0.7.3, 8.6.0 before 8.6.0.8.1, 9.0.0 through 9.0.0.4, 9.1.0 before 9.1.0.6.1, and 9.1.1 before 9.1.1.0.2 allows remote authenticated users to hijack the authentication of customer accounts.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-3phv-83cj-p8p7

nope-validator Regular Expression Denial of Service vulnerability

0%
Низкий
почти 2 года назад
github логотип
GHSA-3phv-44jf-4v33

Insecure permissions for log files of AVSystem Unified Management Platform (UMP) 23.07.0.16567~LTS allow members (with local access to the UMP application server) to access credentials to authenticate to all services, and to decrypt sensitive data stored in the database.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3phr-xc4f-rfjf

Multiple SQL injection vulnerabilities in Qualiteam X-Cart 4.0.8 allow remote attackers to execute arbitrary SQL commands via the (1) cat or (2) printable parameter to home.php, (3) productid or (4) mode parameter to product.php, (5) id parameter to error_message.php, (6) section parameter to help.php, (7) mode parameter to orders.php, (8) mode parameter to register.php, (9) mode parameter to search.php, or the (10) gcid or (11) gcindex parameter to giftcert.php.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3phr-p473-vc8q

The AcyMailing plugin for WordPress is vulnerable to privilege escalation in all versions From 9.11.0 up to, and including, 10.8.1 due to a missing capability check on the `wp_ajax_acymailing_router` AJAX handler. This makes it possible for authenticated attackers, with Subscriber-level access and above, to access admin-only controllers (including configuration management), enable the autologin feature, create a malicious newsletter subscriber with an injected `cms_id` pointing to any WordPress user, and then use the autologin URL to authenticate as that user, including administrators.

CVSS3: 8.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-3phq-v5rj-pfgp

A vulnerability was found in PHPGurukul Daily Expense Tracker System 1.1. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user-profile.php. The manipulation of the argument fullname/contactnumber leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
1%
Низкий
больше 1 года назад

Уязвимостей на страницу