Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 727

Количество 375 727

github логотип

GHSA-3m9g-2gcx-74c7

около 3 лет назад

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in 3com – Asesor de Cookies para normativa española plugin <= 3.4.3 versions.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-3m9f-mrx3-g4mq

6 месяцев назад

In its design for automatic terminal command execution, SakaDev offers two options: Execute safe commands and execute all commands. The description for the former states that commands determined by the model to be safe will be automatically executed, whereas if the model judges a command to be potentially destructive, it still requires user approval. However, this design is highly susceptible to prompt injection attacks. An attacker can employ a generic template to wrap any malicious command and mislead the model into misclassifying it as a 'safe' command, thereby bypassing the user approval requirement and resulting in arbitrary command execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-3m9f-698w-3mf8

больше 4 лет назад

The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by a performance.now "Time to Tick" approach even with the https://bugzilla.mozilla.org/show_bug.cgi?id=1167489#c9 protection mechanism in place, which makes it easier for remote attackers to conduct AnC attacks via crafted JavaScript code.

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-3m9c-j7xc-gc2c

7 месяцев назад

A vulnerability has been found in Tenda AC8 16.03.34.06. This affects the function webCgiGetUploadFile of the file /cgi-bin/UploadCfg of the component Httpd Service. The manipulation of the argument boundary leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3m9c-j5h2-5ch4

5 месяцев назад

A vulnerability was detected in TRENDnet TEW-821DAP up to 1.12B01. The affected element is the function tools_diagnostic. The manipulation results in os command injection. The exploit is now public and may be used. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3m9c-63xg-96rx

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in payper/payper.php in the Pay Per Media Player plugin 1.24 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) fcolor, (2) links, (3) stitle, (4) height, (5) width, (6) host, (7) bcolor, (8) msg, (9) id, or (10) size parameter.

EPSS: Низкий
github логотип

GHSA-3m99-vrqx-m6h7

больше 4 лет назад

HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.

EPSS: Средний
github логотип

GHSA-3m99-jh3v-v6mf

больше 4 лет назад

Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5274, CVE-2012-5275, CVE-2012-5276, and CVE-2012-5277.

EPSS: Средний
github логотип

GHSA-3m99-h3hp-w9j7

больше 4 лет назад

Moodle remote code execution via quiz questions

EPSS: Низкий
github логотип

GHSA-3m99-4q9x-vq6p

больше 4 лет назад

IBM QRadar SIEM 7.2 and 7.3 fails to adequately filter user-controlled input data for syntax that has control-plane implications which could allow an attacker to modify displayed content. IBM X-Force ID: 147811.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-3m98-vjp3-3fhm

больше 4 лет назад

get_first_owned_object in dwg.c in GNU LibreDWG 0.5.1036 allows remote attackers to cause a denial of service (SEGV).

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3m98-m7jj-v78v

почти 2 года назад

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. Running a mount command may unexpectedly execute arbitrary code.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-3m98-cmhq-pc7h

8 месяцев назад

thejshen Globitek CMS 1.4 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'id' GET parameter. Attackers can exploit boolean-based, time-based, and UNION-based SQL injection techniques to potentially extract or modify database information.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-3m96-w3xc-w9j4

больше 4 лет назад

The internal_dump function in Mathopd before 1.5p5, and 1.6x before 1.6b6 BETA, when Mathopd is running with the -n option, allows local users to overwrite arbitrary files via a symlink attack on dump files that are triggered by a SIGWINCH signal.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-3m95-wfxh-25xv

больше 1 года назад

Missing Authorization vulnerability in Blocksera Cryptocurrency Widgets Pack allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Cryptocurrency Widgets Pack: from n/a through 2.0.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3m95-7rcm-xpxr

больше 4 лет назад

Multiple SQL injection vulnerabilities in the BibTex Publications (si_bibtex) extension 0.2.3 for TYPO3 allow remote attackers to execute arbitrary SQL commands via vectors related to the (1) search or (2) list functionality.

EPSS: Низкий
github логотип

GHSA-3m93-m4q6-mc6v

больше 6 лет назад

Inclusion of Sensitive Information in Log Files and Improper Output Neutralization for Logs in Ansible

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-3m93-8pm8-gqxj

больше 4 лет назад

The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.7.1.6 does not properly escape user data before using it in a SQL statement in the wp-json/pie/v1/login REST API endpoint, leading to an SQL injection.

EPSS: Низкий
github логотип

GHSA-3m93-68mf-mv6r

больше 4 лет назад

An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "Kernel" component. A race condition allows attackers to execute arbitrary code in a privileged context via a crafted app.

CVSS3: 7
EPSS: Средний
github логотип

GHSA-3m8x-jjr4-6gqq

больше 4 лет назад

SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the Emails module by a Regular user.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3m9g-2gcx-74c7

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in 3com – Asesor de Cookies para normativa española plugin <= 3.4.3 versions.

CVSS3: 4.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-3m9f-mrx3-g4mq

In its design for automatic terminal command execution, SakaDev offers two options: Execute safe commands and execute all commands. The description for the former states that commands determined by the model to be safe will be automatically executed, whereas if the model judges a command to be potentially destructive, it still requires user approval. However, this design is highly susceptible to prompt injection attacks. An attacker can employ a generic template to wrap any malicious command and mislead the model into misclassifying it as a 'safe' command, thereby bypassing the user approval requirement and resulting in arbitrary command execution.

CVSS3: 9.8
1%
Низкий
6 месяцев назад
github логотип
GHSA-3m9f-698w-3mf8

The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by a performance.now "Time to Tick" approach even with the https://bugzilla.mozilla.org/show_bug.cgi?id=1167489#c9 protection mechanism in place, which makes it easier for remote attackers to conduct AnC attacks via crafted JavaScript code.

CVSS3: 3.7
2%
Низкий
больше 4 лет назад
github логотип
GHSA-3m9c-j7xc-gc2c

A vulnerability has been found in Tenda AC8 16.03.34.06. This affects the function webCgiGetUploadFile of the file /cgi-bin/UploadCfg of the component Httpd Service. The manipulation of the argument boundary leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 8.8
1%
Низкий
7 месяцев назад
github логотип
GHSA-3m9c-j5h2-5ch4

A vulnerability was detected in TRENDnet TEW-821DAP up to 1.12B01. The affected element is the function tools_diagnostic. The manipulation results in os command injection. The exploit is now public and may be used. The vendor explains: "That firmware version will only work on our hardware version v1.xR. We have already EOL that product 8 years ago and are no longer selling". This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 5.5
5%
Низкий
5 месяцев назад
github логотип
GHSA-3m9c-63xg-96rx

Multiple cross-site scripting (XSS) vulnerabilities in payper/payper.php in the Pay Per Media Player plugin 1.24 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) fcolor, (2) links, (3) stitle, (4) height, (5) width, (6) host, (7) bcolor, (8) msg, (9) id, or (10) size parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3m99-vrqx-m6h7

HTTP server for Cisco IOS 11.3 to 12.2 allows attackers to bypass authentication and execute arbitrary commands, when local authorization is being used, by specifying a high access level in the URL.

68%
Средний
больше 4 лет назад
github логотип
GHSA-3m99-jh3v-v6mf

Buffer overflow in Adobe Flash Player before 10.3.183.43 and 11.x before 11.5.502.110 on Windows and Mac OS X, before 10.3.183.43 and 11.x before 11.2.202.251 on Linux, before 11.1.111.24 on Android 2.x and 3.x, and before 11.1.115.27 on Android 4.x; Adobe AIR before 3.5.0.600; and Adobe AIR SDK before 3.5.0.600 allows attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2012-5274, CVE-2012-5275, CVE-2012-5276, and CVE-2012-5277.

11%
Средний
больше 4 лет назад
github логотип
GHSA-3m99-h3hp-w9j7

Moodle remote code execution via quiz questions

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3m99-4q9x-vq6p

IBM QRadar SIEM 7.2 and 7.3 fails to adequately filter user-controlled input data for syntax that has control-plane implications which could allow an attacker to modify displayed content. IBM X-Force ID: 147811.

CVSS3: 5.3
2%
Низкий
больше 4 лет назад
github логотип
GHSA-3m98-vjp3-3fhm

get_first_owned_object in dwg.c in GNU LibreDWG 0.5.1036 allows remote attackers to cause a denial of service (SEGV).

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m98-m7jj-v78v

A path handling issue was addressed with improved validation. This issue is fixed in macOS Sequoia 15.2, macOS Ventura 13.7.2, macOS Sonoma 14.7.2. Running a mount command may unexpectedly execute arbitrary code.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-3m98-cmhq-pc7h

thejshen Globitek CMS 1.4 contains a SQL injection vulnerability that allows attackers to manipulate database queries through the 'id' GET parameter. Attackers can exploit boolean-based, time-based, and UNION-based SQL injection techniques to potentially extract or modify database information.

CVSS3: 7.1
0%
Низкий
8 месяцев назад
github логотип
GHSA-3m96-w3xc-w9j4

The internal_dump function in Mathopd before 1.5p5, and 1.6x before 1.6b6 BETA, when Mathopd is running with the -n option, allows local users to overwrite arbitrary files via a symlink attack on dump files that are triggered by a SIGWINCH signal.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-3m95-wfxh-25xv

Missing Authorization vulnerability in Blocksera Cryptocurrency Widgets Pack allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Cryptocurrency Widgets Pack: from n/a through 2.0.1.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-3m95-7rcm-xpxr

Multiple SQL injection vulnerabilities in the BibTex Publications (si_bibtex) extension 0.2.3 for TYPO3 allow remote attackers to execute arbitrary SQL commands via vectors related to the (1) search or (2) list functionality.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3m93-m4q6-mc6v

Inclusion of Sensitive Information in Log Files and Improper Output Neutralization for Logs in Ansible

CVSS3: 6.5
2%
Низкий
больше 6 лет назад
github логотип
GHSA-3m93-8pm8-gqxj

The Registration Forms – User profile, Content Restriction, Spam Protection, Payment Gateways, Invitation Codes WordPress plugin before 3.7.1.6 does not properly escape user data before using it in a SQL statement in the wp-json/pie/v1/login REST API endpoint, leading to an SQL injection.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-3m93-68mf-mv6r

An issue was discovered in certain Apple products. iOS before 10.3 is affected. macOS before 10.12.4 is affected. tvOS before 10.2 is affected. watchOS before 3.2 is affected. The issue involves the "Kernel" component. A race condition allows attackers to execute arbitrary code in a privileged context via a crafted app.

CVSS3: 7
11%
Средний
больше 4 лет назад
github логотип
GHSA-3m8x-jjr4-6gqq

SugarCRM before 8.0.4 and 9.x before 9.0.2 allows PHP code injection in the Emails module by a Regular user.

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу