Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 489

Количество 353 489

github логотип

GHSA-2ggv-mm3c-gqxm

почти 4 года назад

72crm 9.0 has an Arbitrary file upload vulnerability.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2ggv-947x-gfhx

больше 4 лет назад

Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2, when the mailbox.dat file does not exist, allows remote authenticated users to determine if a file exists via the folder parameter to attachment.html.

EPSS: Низкий
github логотип

GHSA-2ggr-q5x3-fm96

около 4 лет назад

A vulnerability in the implementation of a CLI command in Cisco Aironet Access Points (AP) could allow an authenticated, local attacker to overwrite files in the flash memory of the device. This vulnerability is due to insufficient input validation for a specific command. An attacker could exploit this vulnerability by issuing a command with crafted arguments. A successful exploit could allow the attacker to overwrite or create files with data that is already present in other files that are hosted on the affected device.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-2ggq-vfcp-gwhj

почти 6 лет назад

Cross-Site Scripting in @hapi/boom

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2ggq-hfx2-5mqh

почти 2 года назад

A vulnerability was found in wuzhicms 4.1.0. It has been classified as critical. Affected is the function add/edit of the file www/coreframe/app/content/admin/block.php. The manipulation leads to code injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Initially two separate issues were created by the researcher for the different function calls. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2ggq-fwmx-v8g8

около 4 лет назад

An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35400457. References: QC-CR#1086140.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-2ggp-cmvm-f62f

почти 3 года назад

ScanCode.io command injection in docker image fetch process

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-2ggm-9493-rh4g

5 дней назад

An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-2ggm-7p9c-qvxr

около 4 лет назад

Opera before 10.60 allows remote attackers to bypass the popup blocker via a javascript: URL and a "fake click."

EPSS: Низкий
github логотип

GHSA-2ggj-xvxm-ww8m

12 месяцев назад

NVIDIA NeMo library for all platforms contains a vulnerability in the model loading component, where an attacker could cause code injection by loading .nemo files with maliciously crafted metadata. A successful exploit of this vulnerability may lead to remote code execution and data tampering.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2ggj-4x7h-qccf

около 1 месяца назад

Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-2ggh-w397-2xg6

около 2 лет назад

Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Input Validation vulnerability that could lead to a security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and affect the integrity of the page. Exploitation of this issue requires user interaction.

CVSS3: 4.1
EPSS: Низкий
github логотип

GHSA-2ggh-r3h4-fjpw

около 4 лет назад

There is a denial of service vulnerability in some versions of CloudEngine 5800, CloudEngine 6800, CloudEngine 7800 and CloudEngine 12800. The affected product cannot deal with some messages because of module design weakness . Attackers can exploit this vulnerability by sending a large amount of specific messages to cause denial of service. This can compromise normal service.

EPSS: Низкий
github логотип

GHSA-2ggh-pp2g-4gr9

больше 1 года назад

The AI Content Pipelines plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-2ggh-mqg8-7mvr

больше 4 лет назад

Out-of-bounds Read error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 46dc8fcd.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2ggh-fcw2-8mvr

около 4 лет назад

Heap out-of-bound read in CreateHtmlSubtitle in VideoLAN VLC 2.2.x due to missing check of string termination allows attackers to read data beyond allocated memory and potentially crash the process (causing a denial of service) via a crafted subtitles file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2ggh-34r5-2jc7

около 4 лет назад

The opj_dwt_decode_1* functions in dwt.c in OpenJPEG, as used in PDFium in Google Chrome before 47.0.2526.73, allow remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG 2000 data that is mishandled during a discrete wavelet transform.

EPSS: Низкий
github логотип

GHSA-2ggg-rwwg-7wg9

больше 3 лет назад

The Woo Bulk Price Update WordPress plugin, in versions < 2.2.2, is affected by a reflected cross-site scripting vulnerability in the 'page' parameter to the techno_get_products action, which can only be triggered by an authenticated user.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2ggg-8w3g-3x2x

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix sleeping in atomic context for PREEMPT_RT Commit bab1c299f3945ffe79 ("LoongArch: Fix sleeping in atomic context in setup_tlb_handler()") changes the gfp flag from GFP_KERNEL to GFP_ATOMIC for alloc_pages_node(). However, for PREEMPT_RT kernels we can still get a "sleeping in atomic context" error: [ 0.372259] BUG: sleeping function called from invalid context at kernel/locking/spinlock_rt.c:48 [ 0.372266] in_atomic(): 1, irqs_disabled(): 1, non_block: 0, pid: 0, name: swapper/1 [ 0.372268] preempt_count: 1, expected: 0 [ 0.372270] RCU nest depth: 1, expected: 1 [ 0.372272] 3 locks held by swapper/1/0: [ 0.372274] #0: 900000000c9f5e60 (&pcp->lock){+.+.}-{3:3}, at: get_page_from_freelist+0x524/0x1c60 [ 0.372294] #1: 90000000087013b8 (rcu_read_lock){....}-{1:3}, at: rt_spin_trylock+0x50/0x140 [ 0.372305] #2: 900000047fffd388 (&zone->lock){+.+.}-{3:3}, at: __rmqueue_pcplist+0...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2ggg-6j2g-7jfc

больше 3 лет назад

Crash in the EAP dissector in Wireshark 4.0.0 to 4.0.2 allows denial of service via packet injection or crafted capture file

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2ggv-mm3c-gqxm

72crm 9.0 has an Arbitrary file upload vulnerability.

CVSS3: 9.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-2ggv-947x-gfhx

Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2, when the mailbox.dat file does not exist, allows remote authenticated users to determine if a file exists via the folder parameter to attachment.html.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2ggr-q5x3-fm96

A vulnerability in the implementation of a CLI command in Cisco Aironet Access Points (AP) could allow an authenticated, local attacker to overwrite files in the flash memory of the device. This vulnerability is due to insufficient input validation for a specific command. An attacker could exploit this vulnerability by issuing a command with crafted arguments. A successful exploit could allow the attacker to overwrite or create files with data that is already present in other files that are hosted on the affected device.

CVSS3: 4.4
0%
Низкий
около 4 лет назад
github логотип
GHSA-2ggq-vfcp-gwhj

Cross-Site Scripting in @hapi/boom

CVSS3: 6.5
почти 6 лет назад
github логотип
GHSA-2ggq-hfx2-5mqh

A vulnerability was found in wuzhicms 4.1.0. It has been classified as critical. Affected is the function add/edit of the file www/coreframe/app/content/admin/block.php. The manipulation leads to code injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Initially two separate issues were created by the researcher for the different function calls. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.3
1%
Низкий
почти 2 года назад
github логотип
GHSA-2ggq-fwmx-v8g8

An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35400457. References: QC-CR#1086140.

CVSS3: 7
2%
Низкий
около 4 лет назад
github логотип
GHSA-2ggp-cmvm-f62f

ScanCode.io command injection in docker image fetch process

CVSS3: 6.8
2%
Низкий
почти 3 года назад
github логотип
GHSA-2ggm-9493-rh4g

An endpoint in HCL Connections is vulnerable to information disclosure. In certain scenarios this might lead to disclosing sensitive information to unauthorized users.

CVSS3: 3.5
0%
Низкий
5 дней назад
github логотип
GHSA-2ggm-7p9c-qvxr

Opera before 10.60 allows remote attackers to bypass the popup blocker via a javascript: URL and a "fake click."

2%
Низкий
около 4 лет назад
github логотип
GHSA-2ggj-xvxm-ww8m

NVIDIA NeMo library for all platforms contains a vulnerability in the model loading component, where an attacker could cause code injection by loading .nemo files with maliciously crafted metadata. A successful exploit of this vulnerability may lead to remote code execution and data tampering.

CVSS3: 7.8
1%
Низкий
12 месяцев назад
github логотип
GHSA-2ggj-4x7h-qccf

Inappropriate implementation in Passwords in Google Chrome prior to 149.0.7827.155 allowed a remote attacker who convinced a user to engage in specific UI gestures to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)

CVSS3: 3.1
0%
Низкий
около 1 месяца назад
github логотип
GHSA-2ggh-w397-2xg6

Adobe Experience Manager versions 6.5.20 and earlier are affected by an Improper Input Validation vulnerability that could lead to a security feature bypass. A low-privileged attacker could leverage this vulnerability to bypass security measures and affect the integrity of the page. Exploitation of this issue requires user interaction.

CVSS3: 4.1
0%
Низкий
около 2 лет назад
github логотип
GHSA-2ggh-r3h4-fjpw

There is a denial of service vulnerability in some versions of CloudEngine 5800, CloudEngine 6800, CloudEngine 7800 and CloudEngine 12800. The affected product cannot deal with some messages because of module design weakness . Attackers can exploit this vulnerability by sending a large amount of specific messages to cause denial of service. This can compromise normal service.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2ggh-pp2g-4gr9

The AI Content Pipelines plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.6 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-2ggh-mqg8-7mvr

Out-of-bounds Read error in tiffcrop in libtiff 4.3.0 allows attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 46dc8fcd.

CVSS3: 5.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-2ggh-fcw2-8mvr

Heap out-of-bound read in CreateHtmlSubtitle in VideoLAN VLC 2.2.x due to missing check of string termination allows attackers to read data beyond allocated memory and potentially crash the process (causing a denial of service) via a crafted subtitles file.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-2ggh-34r5-2jc7

The opj_dwt_decode_1* functions in dwt.c in OpenJPEG, as used in PDFium in Google Chrome before 47.0.2526.73, allow remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG 2000 data that is mishandled during a discrete wavelet transform.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2ggg-rwwg-7wg9

The Woo Bulk Price Update WordPress plugin, in versions < 2.2.2, is affected by a reflected cross-site scripting vulnerability in the 'page' parameter to the techno_get_products action, which can only be triggered by an authenticated user.

CVSS3: 5.4
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2ggg-8w3g-3x2x

In the Linux kernel, the following vulnerability has been resolved: LoongArch: Fix sleeping in atomic context for PREEMPT_RT Commit bab1c299f3945ffe79 ("LoongArch: Fix sleeping in atomic context in setup_tlb_handler()") changes the gfp flag from GFP_KERNEL to GFP_ATOMIC for alloc_pages_node(). However, for PREEMPT_RT kernels we can still get a "sleeping in atomic context" error: [ 0.372259] BUG: sleeping function called from invalid context at kernel/locking/spinlock_rt.c:48 [ 0.372266] in_atomic(): 1, irqs_disabled(): 1, non_block: 0, pid: 0, name: swapper/1 [ 0.372268] preempt_count: 1, expected: 0 [ 0.372270] RCU nest depth: 1, expected: 1 [ 0.372272] 3 locks held by swapper/1/0: [ 0.372274] #0: 900000000c9f5e60 (&pcp->lock){+.+.}-{3:3}, at: get_page_from_freelist+0x524/0x1c60 [ 0.372294] #1: 90000000087013b8 (rcu_read_lock){....}-{1:3}, at: rt_spin_trylock+0x50/0x140 [ 0.372305] #2: 900000047fffd388 (&zone->lock){+.+.}-{3:3}, at: __rmqueue_pcplist+0...

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-2ggg-6j2g-7jfc

Crash in the EAP dissector in Wireshark 4.0.0 to 4.0.2 allows denial of service via packet injection or crafted capture file

CVSS3: 6.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу