Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 356

Количество 375 356

github логотип

GHSA-3pg9-qqg9-8485

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the web interface in ClearCase RWP server in IBM Rational ClearCase 7.0.0 before 7.0.0.4, and 7.0.1.1-RATL-RCC-IFIX02 and possibly other 7.0.1 versions before 7.0.1.3, allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO of a URI associated with a VOB page.

EPSS: Низкий
github логотип

GHSA-3pg9-mr9f-v7qm

около 4 лет назад

HiCOS’ client-side citizen certificate component has a double free vulnerability. An unauthenticated physical attacker can exploit this vulnerability to corrupt memory and execute arbitrary code, manipulate system data or terminate service.

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-3pg9-h6fh-rxcr

больше 4 лет назад

SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

EPSS: Низкий
github логотип

GHSA-3pg9-h44j-gvg9

больше 4 лет назад

Unquoted Windows search path vulnerability in the guest service in Unisys s-Par before 4.4.20 allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-3pg9-gwgr-fmmw

3 месяца назад

A security flaw has been discovered in Investintech SlimPDFReader up to 2.0.14. Affected by this issue is the function SlimPDFReader!Investintech::PCV::TeighaDo+0x25cde0 of the file SlimPDFReader.exe of the component PDF File Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-3pg9-fj7q-9h7m

больше 3 лет назад

Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary data. An attacker should send an authenticated HTTP request to trigger this vulnerability. In cmd s_b, at 0x9d016578, the value for the `val` key is copied using `strcpy` to the buffer at `$sp+0x2b0`.This buffer is 32 bytes large, sending anything longer will cause a buffer overflow.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3pg9-8r34-25v2

почти 3 года назад

Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a crafted script to the Page Specific Metadata and Smarty data parameters in the Content Manager Menu component.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3pg9-3f6q-hjf5

больше 4 лет назад

Blink, as used in Google Chrome before 43.0.2357.130, does not properly restrict the creation context during creation of a DOM wrapper, which allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code that uses a Blink public API, related to WebArrayBufferConverter.cpp, WebBlob.cpp, WebDOMError.cpp, and WebDOMFileSystem.cpp.

EPSS: Низкий
github логотип

GHSA-3pg8-c473-w6rr

больше 4 лет назад

Stored Cross-site Scripting in showdoc

CVSS3: 6.9
EPSS: Низкий
github логотип

GHSA-3pg8-5qjj-jmqc

больше 4 лет назад

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where improper access controls allow a regular user to write a part of the registry intended for privileged users only, leading to escalation of privileges.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3pg8-3336-w32h

больше 4 лет назад

Directory traversal vulnerability in UploadServlet in the Remote Management component in Novell ZENworks Configuration Management (ZCM) 10 before 10.3 allows remote attackers to execute arbitrary code via a crafted WAR pathname in the filename parameter in conjunction with WAR content in the POST data, a different vulnerability than CVE-2010-5324.

EPSS: Средний
github логотип

GHSA-3pg7-g63q-54p4

больше 4 лет назад

Morpho Itemiser 3 8.17 has hardcoded administrative credentials, which makes it easier for remote attackers to obtain access via a login request.

EPSS: Низкий
github логотип

GHSA-3pg6-r94f-fcvh

13 дней назад

A vulnerability was identified in java-json-tools json-patch up to 1.13. This affects the function CopyOperation.apply/MoveOperation.apply of the file src/main/java/com/github/fge/jsonpatch/CopyOperation.java of the component Copy Move Operations. The manipulation leads to improper access controls. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-3pg4-qwc8-426r

почти 2 года назад

OpenRefine leaks Google API credentials in releases

EPSS: Низкий
github логотип

GHSA-3pg4-7fgq-vhrc

почти 2 года назад

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functionality provided by SSH and Telnet.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-3pg4-4j4q-43cp

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: irqchip/apple-aic: Fix refcount leak in aic_of_ic_init of_get_child_by_name() returns a node pointer with refcount incremented, we should use of_node_put() on it when not need anymore. Add missing of_node_put() to avoid refcount leak.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3pg4-4j29-q4rr

3 месяца назад

Incorrect calculation of buffer size in Windows TCP/IP allows an authorized attacker to deny service over an adjacent network.

CVSS3: 5.7
EPSS: Низкий
github логотип

GHSA-3pg3-7f5j-x2m5

больше 2 лет назад

Microsoft SharePoint Server Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-3pg2-q6q7-9rmm

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: iio: adis16475: fix deadlock on frequency set With commit 39c024b51b560 ("iio: adis16475: improve sync scale mode handling"), two deadlocks were introduced: 1) The call to 'adis_write_reg_16()' was not changed to it's unlocked version. 2) The lock was not being released on the success path of the function. This change fixes both these issues.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3pg2-4qfr-5gqp

больше 4 лет назад

PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the pathtoserverdata parameter. NOTE: the installation instructions specify deleting the install/ folder.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3pg9-qqg9-8485

Multiple cross-site scripting (XSS) vulnerabilities in the web interface in ClearCase RWP server in IBM Rational ClearCase 7.0.0 before 7.0.0.4, and 7.0.1.1-RATL-RCC-IFIX02 and possibly other 7.0.1 versions before 7.0.1.3, allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO of a URI associated with a VOB page.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg9-mr9f-v7qm

HiCOS’ client-side citizen certificate component has a double free vulnerability. An unauthenticated physical attacker can exploit this vulnerability to corrupt memory and execute arbitrary code, manipulate system data or terminate service.

CVSS3: 6.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-3pg9-h6fh-rxcr

SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg9-h44j-gvg9

Unquoted Windows search path vulnerability in the guest service in Unisys s-Par before 4.4.20 allows local users to gain privileges via a Trojan horse executable file in the %SYSTEMDRIVE% directory, as demonstrated by program.exe.

CVSS3: 6.7
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg9-gwgr-fmmw

A security flaw has been discovered in Investintech SlimPDFReader up to 2.0.14. Affected by this issue is the function SlimPDFReader!Investintech::PCV::TeighaDo+0x25cde0 of the file SlimPDFReader.exe of the component PDF File Handler. Performing a manipulation results in out-of-bounds read. It is possible to initiate the attack remotely. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 4.3
1%
Низкий
3 месяца назад
github логотип
GHSA-3pg9-fj7q-9h7m

Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon Hub running firmware version 1012. Specially crafted commands sent through the PubNub service can cause a stack-based buffer overflow overwriting arbitrary data. An attacker should send an authenticated HTTP request to trigger this vulnerability. In cmd s_b, at 0x9d016578, the value for the `val` key is copied using `strcpy` to the buffer at `$sp+0x2b0`.This buffer is 32 bytes large, sending anything longer will cause a buffer overflow.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-3pg9-8r34-25v2

Cross Site Scripting vulnerability in CMSmadesimple v.2.2.18 allows a local attacker to execute arbitrary code via a crafted script to the Page Specific Metadata and Smarty data parameters in the Content Manager Menu component.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
github логотип
GHSA-3pg9-3f6q-hjf5

Blink, as used in Google Chrome before 43.0.2357.130, does not properly restrict the creation context during creation of a DOM wrapper, which allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code that uses a Blink public API, related to WebArrayBufferConverter.cpp, WebBlob.cpp, WebDOMError.cpp, and WebDOMFileSystem.cpp.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg8-c473-w6rr

Stored Cross-site Scripting in showdoc

CVSS3: 6.9
3%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg8-5qjj-jmqc

All versions of NVIDIA Windows GPU Display Driver contain a vulnerability in the kernel mode layer (nvlddmkm.sys) handler for DxgDdiEscape where improper access controls allow a regular user to write a part of the registry intended for privileged users only, leading to escalation of privileges.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg8-3336-w32h

Directory traversal vulnerability in UploadServlet in the Remote Management component in Novell ZENworks Configuration Management (ZCM) 10 before 10.3 allows remote attackers to execute arbitrary code via a crafted WAR pathname in the filename parameter in conjunction with WAR content in the POST data, a different vulnerability than CVE-2010-5324.

14%
Средний
больше 4 лет назад
github логотип
GHSA-3pg7-g63q-54p4

Morpho Itemiser 3 8.17 has hardcoded administrative credentials, which makes it easier for remote attackers to obtain access via a login request.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3pg6-r94f-fcvh

A vulnerability was identified in java-json-tools json-patch up to 1.13. This affects the function CopyOperation.apply/MoveOperation.apply of the file src/main/java/com/github/fge/jsonpatch/CopyOperation.java of the component Copy Move Operations. The manipulation leads to improper access controls. Remote exploitation of the attack is possible. The exploit is publicly available and might be used. The project was informed of the problem early through an issue report but has not responded yet.

CVSS3: 6.3
0%
Низкий
13 дней назад
github логотип
GHSA-3pg4-qwc8-426r

OpenRefine leaks Google API credentials in releases

почти 2 года назад
github логотип
GHSA-3pg4-7fgq-vhrc

The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functionality provided by SSH and Telnet.

CVSS3: 7.2
1%
Низкий
почти 2 года назад
github логотип
GHSA-3pg4-4j4q-43cp

In the Linux kernel, the following vulnerability has been resolved: irqchip/apple-aic: Fix refcount leak in aic_of_ic_init of_get_child_by_name() returns a node pointer with refcount incremented, we should use of_node_put() on it when not need anymore. Add missing of_node_put() to avoid refcount leak.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3pg4-4j29-q4rr

Incorrect calculation of buffer size in Windows TCP/IP allows an authorized attacker to deny service over an adjacent network.

CVSS3: 5.7
0%
Низкий
3 месяца назад
github логотип
GHSA-3pg3-7f5j-x2m5

Microsoft SharePoint Server Remote Code Execution Vulnerability

CVSS3: 8.8
31%
Средний
больше 2 лет назад
github логотип
GHSA-3pg2-q6q7-9rmm

In the Linux kernel, the following vulnerability has been resolved: iio: adis16475: fix deadlock on frequency set With commit 39c024b51b560 ("iio: adis16475: improve sync scale mode handling"), two deadlocks were introduced: 1) The call to 'adis_write_reg_16()' was not changed to it's unlocked version. 2) The lock was not being released on the success path of the function. This change fixes both these issues.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3pg2-4qfr-5gqp

PHP remote file inclusion vulnerability in install/di.php in AjaxPortal 3.0 allows remote attackers to execute arbitrary PHP code via a URL in the pathtoserverdata parameter. NOTE: the installation instructions specify deleting the install/ folder.

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу