Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 489

Количество 353 489

github логотип

GHSA-2g9h-3ggp-8xg3

около 4 лет назад

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

EPSS: Низкий
github логотип

GHSA-2g9h-383c-v34c

около 3 лет назад

Windows Media Remote Code Execution Vulnerability

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2g9g-vv6r-x6cj

больше 1 года назад

Missing Authorization vulnerability in fifu.App Featured Image from URL allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Featured Image from URL: from n/a through 4.8.1.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2g9g-cq6x-p79q

больше 2 лет назад

An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the card's name in the device memory.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2g9g-66pp-8rq7

больше 2 лет назад

An issue was discovered in OpenDDS commit b1c534032bb62ad4ae32609778de6b8d6c823a66, allows a local attacker to cause a denial of service and obtain sensitive information via the max_samples parameter within the DataReaderQoS component.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2g9f-v599-7rv2

10 месяцев назад

Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA/SaaS deployments) store a large number of sensitive credentials (database passwords, MySQL root password, SaaS keys, Portainer admin password, etc.) in cleartext files that are world-readable. Any local user - or any process that can read the host filesystem - can retrieve all of these secrets in plain text, leading to credential theft and full compromise of the appliance. The vendor does not consider this to be a security vulnerability as this product "follows a shared responsibility model, where administrators are expected to configure persistent storage encryption."

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2g9c-vf8h-prxx

18 дней назад

Decidim: Push subscriptions can be abused for server-side requests

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-2g9c-cwfp-hvmr

около 4 лет назад

Heap-based buffer overflow in the gfxTextRun::ShrinkToLigatureBoundaries function in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.1, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.1, and SeaMonkey before 2.15 allows remote attackers to execute arbitrary code via a crafted document.

EPSS: Низкий
github логотип

GHSA-2g99-pch7-3284

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: bcache: revert replacing IS_ERR_OR_NULL with IS_ERR again Commit 028ddcac477b ("bcache: Remove unnecessary NULL point check in node allocations") leads a NULL pointer deference in cache_set_flush(). 1721 if (!IS_ERR_OR_NULL(c->root)) 1722 list_add(&c->root->list, &c->btree_cache); >From the above code in cache_set_flush(), if previous registration code fails before allocating c->root, it is possible c->root is NULL as what it is initialized. __bch_btree_node_alloc() never returns NULL but c->root is possible to be NULL at above line 1721. This patch replaces IS_ERR() by IS_ERR_OR_NULL() to fix this.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2g99-g8qj-f679

около 3 лет назад

A valid, authenticated LXCA user with elevated privileges may be able to delete folders in the LXCA filesystem through a specifically crafted web API call due to insufficient input validation.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2g99-c67p-56hm

около 4 лет назад

XML Signature/Encryption Not Validated in Apache CXF

EPSS: Низкий
github логотип

GHSA-2g99-86hw-gx4m

больше 2 лет назад

In TOTOLINK X6000R V9.4.0cu.852_B20230719, the shttpd file, sub_4119A0 function obtains fields from the front-end through Uci_ Set_ The Str function when passed to the CsteSystem function creates a command execution vulnerability.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2g98-g66w-rvrw

около 4 лет назад

An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack of a trailing ']' character in an IPv6 address.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2g98-f9jv-w8c5

около 2 лет назад

robrichards/xmlseclibs XPath injection

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2g98-7fch-w3c5

около 4 лет назад

HPE RESTful Interface Tool 1.40 allows local users to obtain sensitive information via unspecified vectors.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2g98-3278-2w66

больше 4 лет назад

ELOG before 2.5.7 allows remote attackers to bypass authentication and download a configuration file that contains a sensitive write password via a modified URL.

EPSS: Низкий
github логотип

GHSA-2g97-qvhf-wqw3

около 4 лет назад

VMware Horizon Server (7.x prior to 7.10.3 or 7.13.0) contains a Cross Site Scripting (XSS) vulnerability. Successful exploitation of this issue may allow an attacker to inject malicious script which will be executed.

EPSS: Низкий
github логотип

GHSA-2g97-q8g6-fm75

7 месяцев назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-2g95-q4q6-2mjq

около 1 года назад

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to bypass the authorization mechanisms for specific administrative functions. This vulnerability is due to insufficient authorization enforcement mechanisms for users created by SAML SSO integration with an external identity provider. An attacker could exploit this vulnerability by submitting a series of specific commands to an affected device. A successful exploit could allow the attacker to modify a limited number of system settings, including some that would result in a system restart. In single-node Cisco ISE deployments, devices that are not authenticated to the network will not be able to authenticate until the Cisco ISE system comes back online. 

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-2g95-fmgh-m88h

около 4 лет назад

Vulnerability in the Oracle iSupport component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2 and 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS v3.0 Base Score 8.2 (Confidentiality and Integrity impacts).

CVSS3: 8.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2g9h-3ggp-8xg3

twiddle.sh in JBoss AS 5.0 and EAP 5.0 and earlier accepts credentials as command-line arguments, which allows local users to read the credentials by listing the process and its arguments.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2g9h-383c-v34c

Windows Media Remote Code Execution Vulnerability

CVSS3: 7.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-2g9g-vv6r-x6cj

Missing Authorization vulnerability in fifu.App Featured Image from URL allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Featured Image from URL: from n/a through 4.8.1.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2g9g-cq6x-p79q

An issue in Tormach xsTECH CNC Router, PathPilot Controller v2.9.6 allows attackers to cause a Denial of Service (DoS) by disrupting the communication between the PathPilot controller and the CNC router via overwriting the card's name in the device memory.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2g9g-66pp-8rq7

An issue was discovered in OpenDDS commit b1c534032bb62ad4ae32609778de6b8d6c823a66, allows a local attacker to cause a denial of service and obtain sensitive information via the max_samples parameter within the DataReaderQoS component.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2g9f-v599-7rv2

Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA/SaaS deployments) store a large number of sensitive credentials (database passwords, MySQL root password, SaaS keys, Portainer admin password, etc.) in cleartext files that are world-readable. Any local user - or any process that can read the host filesystem - can retrieve all of these secrets in plain text, leading to credential theft and full compromise of the appliance. The vendor does not consider this to be a security vulnerability as this product "follows a shared responsibility model, where administrators are expected to configure persistent storage encryption."

CVSS3: 5.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-2g9c-vf8h-prxx

Decidim: Push subscriptions can be abused for server-side requests

CVSS3: 6.4
18 дней назад
github логотип
GHSA-2g9c-cwfp-hvmr

Heap-based buffer overflow in the gfxTextRun::ShrinkToLigatureBoundaries function in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.1, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.1, and SeaMonkey before 2.15 allows remote attackers to execute arbitrary code via a crafted document.

5%
Низкий
около 4 лет назад
github логотип
GHSA-2g99-pch7-3284

In the Linux kernel, the following vulnerability has been resolved: bcache: revert replacing IS_ERR_OR_NULL with IS_ERR again Commit 028ddcac477b ("bcache: Remove unnecessary NULL point check in node allocations") leads a NULL pointer deference in cache_set_flush(). 1721 if (!IS_ERR_OR_NULL(c->root)) 1722 list_add(&c->root->list, &c->btree_cache); >From the above code in cache_set_flush(), if previous registration code fails before allocating c->root, it is possible c->root is NULL as what it is initialized. __bch_btree_node_alloc() never returns NULL but c->root is possible to be NULL at above line 1721. This patch replaces IS_ERR() by IS_ERR_OR_NULL() to fix this.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-2g99-g8qj-f679

A valid, authenticated LXCA user with elevated privileges may be able to delete folders in the LXCA filesystem through a specifically crafted web API call due to insufficient input validation.

CVSS3: 6.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-2g99-c67p-56hm

XML Signature/Encryption Not Validated in Apache CXF

4%
Низкий
около 4 лет назад
github логотип
GHSA-2g99-86hw-gx4m

In TOTOLINK X6000R V9.4.0cu.852_B20230719, the shttpd file, sub_4119A0 function obtains fields from the front-end through Uci_ Set_ The Str function when passed to the CsteSystem function creates a command execution vulnerability.

CVSS3: 9.8
2%
Низкий
больше 2 лет назад
github логотип
GHSA-2g98-g66w-rvrw

An issue was discovered in Embedthis GoAhead before 4.0.1 and Appweb before 7.0.2. An HTTP POST request with a specially crafted "Host" header field may cause a NULL pointer dereference and thus cause a denial of service, as demonstrated by the lack of a trailing ']' character in an IPv6 address.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-2g98-f9jv-w8c5

robrichards/xmlseclibs XPath injection

CVSS3: 7.5
около 2 лет назад
github логотип
GHSA-2g98-7fch-w3c5

HPE RESTful Interface Tool 1.40 allows local users to obtain sensitive information via unspecified vectors.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-2g98-3278-2w66

ELOG before 2.5.7 allows remote attackers to bypass authentication and download a configuration file that contains a sensitive write password via a modified URL.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2g97-qvhf-wqw3

VMware Horizon Server (7.x prior to 7.10.3 or 7.13.0) contains a Cross Site Scripting (XSS) vulnerability. Successful exploitation of this issue may allow an attacker to inject malicious script which will be executed.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2g97-q8g6-fm75

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

7 месяцев назад
github логотип
GHSA-2g95-q4q6-2mjq

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to bypass the authorization mechanisms for specific administrative functions. This vulnerability is due to insufficient authorization enforcement mechanisms for users created by SAML SSO integration with an external identity provider. An attacker could exploit this vulnerability by submitting a series of specific commands to an affected device. A successful exploit could allow the attacker to modify a limited number of system settings, including some that would result in a system restart. In single-node Cisco ISE deployments, devices that are not authenticated to the network will not be able to authenticate until the Cisco ISE system comes back online. 

CVSS3: 6.4
0%
Низкий
около 1 года назад
github логотип
GHSA-2g95-fmgh-m88h

Vulnerability in the Oracle iSupport component of Oracle E-Business Suite (subcomponent: User Interface). Supported versions that are affected are 12.1.1, 12.1.2 and 12.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle iSupport. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle iSupport, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle iSupport accessible data as well as unauthorized update, insert or delete access to some of Oracle iSupport accessible data. CVSS v3.0 Base Score 8.2 (Confidentiality and Integrity impacts).

CVSS3: 8.2
2%
Низкий
около 4 лет назад

Уязвимостей на страницу