Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 489

Количество 353 489

github логотип

GHSA-2gh8-prg6-5v63

около 4 лет назад

The proc_oom_score function in fs/proc/base.c in the Linux kernel before 2.6.34-rc4 uses inappropriate data structures during selection of a candidate for the OOM killer, which might allow local users to cause a denial of service via unspecified patterns of task creation.

EPSS: Низкий
github логотип

GHSA-2gh8-gx83-42h9

около 4 лет назад

LemonLDAP::NG -2.0.3 has Incorrect Access Control.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2gh8-gr6x-7q26

около 4 лет назад

SOAPpy vulnerable to XXE attacks

EPSS: Низкий
github логотип

GHSA-2gh7-vr34-cxv5

около 4 лет назад

SQL injection vulnerability in albums.php in Ace Image Hosting Script allows remote authenticated users to execute arbitrary SQL commands via the id parameter in editalbum mode.

EPSS: Низкий
github логотип

GHSA-2gh6-wc3m-g37f

почти 2 года назад

hermes-management is vulnerable to RCE due to Apache commons-jxpath

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2gh6-8p4x-h863

около 4 лет назад

The Authenticated User Page Caching (Authcache) module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict access to cached pages, which allows remote attackers with the same role-combination as the superuser to obtain sensitive information via the cached pages of the superuser.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2gh4-q9qq-fc54

больше 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes HT Mega – Absolute Addons For Elementor allows Reflected XSS.This issue affects HT Mega – Absolute Addons For Elementor: from n/a through 2.3.8.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-2gh3-wm75-4q8m

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_netem: fix out-of-bounds access in packet corruption In netem_enqueue(), the packet corruption logic uses get_random_u32_below(skb_headlen(skb)) to select an index for modifying skb->data. When an AF_PACKET TX_RING sends fully non-linear packets over an IPIP tunnel, skb_headlen(skb) evaluates to 0. Passing 0 to get_random_u32_below() takes the variable-ceil slow path which returns an unconstrained 32-bit random integer. Using this unconstrained value as an offset into skb->data results in an out-of-bounds memory access. Fix this by verifying skb_headlen(skb) is non-zero before attempting to corrupt the linear data area. Fully non-linear packets will silently bypass the corruption logic.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2gh3-rmm4-6rq5

больше 1 года назад

Crash due to uncontrolled recursion in protobuf crate

EPSS: Низкий
github логотип

GHSA-2gh3-7wvm-vg2q

23 дня назад

A vulnerability was determined in CodeAstro Simple Online Leave Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /SimpleOnlineLeave/index.php. Executing a manipulation of the argument email can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-2gh3-6gpq-7rmj

около 2 лет назад

Kofax Power PDF PNG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-21829.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-2gh2-2xq4-xqwf

около 4 лет назад

Linear eMerge E3-Series devices allow Cross-Site Request Forgery (CSRF).

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-2ggx-v668-h3cf

больше 2 лет назад

A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a user of the web-based management interface of an affected device.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-2ggx-jwwc-p8hr

около 4 лет назад

Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /showresource.do resourceid parameter in a getResourceProfiles action.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-2ggw-rq7m-r35x

около 4 лет назад

Adobe Shockwave Player before 11.5.7.609 does not properly process asset entries, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted Shockwave file.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2ggw-q935-g2j9

около 4 лет назад

The iControl API in F5 BIG-IP LTM, APM, ASM, GTM, Link Controller, and PSM 10.0.0 through 10.2.4 and 11.0.0 through 11.5.1, BIG-IP AAM 11.4.0 through 11.5.1, BIG-IP AFM and PEM 11.3.0 through 11.5.1, BIG-IP Analytics 11.0.0 through 11.5.1, BIG-IP Edge Gateway, WebAccelerator, WOM 10.1.0 through 10.2.4 and 11.0.0 through 11.3.0, Enterprise Manager 2.1.0 through 2.3.0 and 3.0.0 through 3.1.1, and BIG-IQ Cloud, Device, and Security 4.0.0 through 4.3.0 allows remote administrators to execute arbitrary commands via shell metacharacters in the hostname element in a SOAP request.

EPSS: Средний
github логотип

GHSA-2ggw-fmhw-m4pr

больше 2 лет назад

A vulnerability, which was classified as critical, was found in SourceCodester PHP Task Management System 1.0. Affected is an unknown function of the file admin-manage-user.php. The manipulation of the argument admin_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-259068.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2ggw-8gmc-r2gq

около 4 лет назад

Liferay Portal XSS vulnerability via movie parameter in the /html/portal/flash.jsp page

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2ggw-79xf-f33h

3 месяца назад

e107 CMS 2.3.0 contains a remote code execution vulnerability that allows authenticated users with theme installation permissions to execute arbitrary commands by uploading malicious theme files. Attackers can upload a crafted theme package through the theme.php endpoint that deploys a web shell to the e107_themes directory, then execute system commands via the payload.php script.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2ggv-vfg5-vf2c

около 4 лет назад

A vulnerability in the conferencing component of Mitel Connect ONSITE, versions R1711-PREM and earlier, and Mitel ST 14.2, release GA28 and earlier, could allow an unauthenticated attacker to copy a malicious script into a newly generated PHP file and then execute the generated file using specially crafted requests. Successful exploit could allow an attacker to execute arbitrary code within the context of the application.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2gh8-prg6-5v63

The proc_oom_score function in fs/proc/base.c in the Linux kernel before 2.6.34-rc4 uses inappropriate data structures during selection of a candidate for the OOM killer, which might allow local users to cause a denial of service via unspecified patterns of task creation.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2gh8-gx83-42h9

LemonLDAP::NG -2.0.3 has Incorrect Access Control.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
github логотип
GHSA-2gh8-gr6x-7q26

SOAPpy vulnerable to XXE attacks

3%
Низкий
около 4 лет назад
github логотип
GHSA-2gh7-vr34-cxv5

SQL injection vulnerability in albums.php in Ace Image Hosting Script allows remote authenticated users to execute arbitrary SQL commands via the id parameter in editalbum mode.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2gh6-wc3m-g37f

hermes-management is vulnerable to RCE due to Apache commons-jxpath

CVSS3: 9.8
почти 2 года назад
github логотип
GHSA-2gh6-8p4x-h863

The Authenticated User Page Caching (Authcache) module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict access to cached pages, which allows remote attackers with the same role-combination as the superuser to obtain sensitive information via the cached pages of the superuser.

CVSS3: 6.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-2gh4-q9qq-fc54

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in HasThemes HT Mega – Absolute Addons For Elementor allows Reflected XSS.This issue affects HT Mega – Absolute Addons For Elementor: from n/a through 2.3.8.

CVSS3: 7.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2gh3-wm75-4q8m

In the Linux kernel, the following vulnerability has been resolved: net/sched: sch_netem: fix out-of-bounds access in packet corruption In netem_enqueue(), the packet corruption logic uses get_random_u32_below(skb_headlen(skb)) to select an index for modifying skb->data. When an AF_PACKET TX_RING sends fully non-linear packets over an IPIP tunnel, skb_headlen(skb) evaluates to 0. Passing 0 to get_random_u32_below() takes the variable-ceil slow path which returns an unconstrained 32-bit random integer. Using this unconstrained value as an offset into skb->data results in an out-of-bounds memory access. Fix this by verifying skb_headlen(skb) is non-zero before attempting to corrupt the linear data area. Fully non-linear packets will silently bypass the corruption logic.

CVSS3: 7.8
0%
Низкий
3 месяца назад
github логотип
GHSA-2gh3-rmm4-6rq5

Crash due to uncontrolled recursion in protobuf crate

0%
Низкий
больше 1 года назад
github логотип
GHSA-2gh3-7wvm-vg2q

A vulnerability was determined in CodeAstro Simple Online Leave Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /SimpleOnlineLeave/index.php. Executing a manipulation of the argument email can lead to sql injection. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized.

CVSS3: 7.3
0%
Низкий
23 дня назад
github логотип
GHSA-2gh3-6gpq-7rmj

Kofax Power PDF PNG File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PNG files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-21829.

CVSS3: 3.3
1%
Низкий
около 2 лет назад
github логотип
GHSA-2gh2-2xq4-xqwf

Linear eMerge E3-Series devices allow Cross-Site Request Forgery (CSRF).

CVSS3: 8.8
16%
Средний
около 4 лет назад
github логотип
GHSA-2ggx-v668-h3cf

A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote attacker to conduct an XSS attack against a user of the web-based management interface of an affected device.

CVSS3: 4.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2ggx-jwwc-p8hr

Zoho ManageEngine Applications Manager 13 before build 13530 allows SQL injection via the /showresource.do resourceid parameter in a getResourceProfiles action.

CVSS3: 9.8
17%
Средний
около 4 лет назад
github логотип
GHSA-2ggw-rq7m-r35x

Adobe Shockwave Player before 11.5.7.609 does not properly process asset entries, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a crafted Shockwave file.

CVSS3: 8.8
5%
Низкий
около 4 лет назад
github логотип
GHSA-2ggw-q935-g2j9

The iControl API in F5 BIG-IP LTM, APM, ASM, GTM, Link Controller, and PSM 10.0.0 through 10.2.4 and 11.0.0 through 11.5.1, BIG-IP AAM 11.4.0 through 11.5.1, BIG-IP AFM and PEM 11.3.0 through 11.5.1, BIG-IP Analytics 11.0.0 through 11.5.1, BIG-IP Edge Gateway, WebAccelerator, WOM 10.1.0 through 10.2.4 and 11.0.0 through 11.3.0, Enterprise Manager 2.1.0 through 2.3.0 and 3.0.0 through 3.1.1, and BIG-IQ Cloud, Device, and Security 4.0.0 through 4.3.0 allows remote administrators to execute arbitrary commands via shell metacharacters in the hostname element in a SOAP request.

39%
Средний
около 4 лет назад
github логотип
GHSA-2ggw-fmhw-m4pr

A vulnerability, which was classified as critical, was found in SourceCodester PHP Task Management System 1.0. Affected is an unknown function of the file admin-manage-user.php. The manipulation of the argument admin_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-259068.

CVSS3: 6.3
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2ggw-8gmc-r2gq

Liferay Portal XSS vulnerability via movie parameter in the /html/portal/flash.jsp page

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-2ggw-79xf-f33h

e107 CMS 2.3.0 contains a remote code execution vulnerability that allows authenticated users with theme installation permissions to execute arbitrary commands by uploading malicious theme files. Attackers can upload a crafted theme package through the theme.php endpoint that deploys a web shell to the e107_themes directory, then execute system commands via the payload.php script.

CVSS3: 8.8
1%
Низкий
3 месяца назад
github логотип
GHSA-2ggv-vfg5-vf2c

A vulnerability in the conferencing component of Mitel Connect ONSITE, versions R1711-PREM and earlier, and Mitel ST 14.2, release GA28 and earlier, could allow an unauthenticated attacker to copy a malicious script into a newly generated PHP file and then execute the generated file using specially crafted requests. Successful exploit could allow an attacker to execute arbitrary code within the context of the application.

CVSS3: 9.8
3%
Низкий
около 4 лет назад

Уязвимостей на страницу