Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 290

Количество 353 290

github логотип

GHSA-2cm6-668w-rvw2

около 2 месяцев назад

Incorrect access control in the web management interface of T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 allows unauthorized attackers to enable the Telnet service via sending a crafted request to a vulnerable CGI component.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2cm6-65p3-5c5j

около 4 лет назад

An issue was discovered in OPAC EasyWeb Five 5.7. There is SQL injection via the w2001/index.php?scelta=campi biblio parameter.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2cm5-x5xw-8ggq

около 4 лет назад

IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2cm5-f78c-h2c8

около 4 лет назад

Missing permission checks in Jenkins Distributed Fork Plugin

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2cm4-w9vc-vwpc

около 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4-pl3 allow remote attackers to inject arbitrary web script or HTML via certain arguments to (1) left.php, (2) queryframe.php, or (3) server_databases.php.

EPSS: Низкий
github логотип

GHSA-2cm4-jmfv-qqw5

около 4 лет назад

Directory traversal vulnerability in CGI RESCUE KanniBBS2000 (aka KanniBBS2000i, MiniBBS2000, and MiniBBS2000i) before 1.03 allows remote attackers to read arbitrary files via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-2cm4-gp34-f42x

больше 3 лет назад

In gpu drm, there is a possible stack overflow due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363501; Issue ID: ALPS07363501.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-2cm3-jjvm-h45g

больше 2 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in MyThemeShop WP Shortcode by MyThemeShop plugin <= 1.4.16 versions.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2cm3-h7wr-fg9v

около 4 лет назад

This command injection vulnerability in File Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.

EPSS: Низкий
github логотип

GHSA-2cm3-5rf2-6c3w

около 4 лет назад

The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash) via crafted packets containing particular autokey operations. NOTE: This vulnerability exists due to an incomplete fix for CVE-2014-9750.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2cm2-m3w5-gp2f

3 месяца назад

vm2 has access to `VM2_INTERNAL_STATE_DO_NOT_USE_OR_PROGRAM_WILL_FAIL`

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-2cm2-g7rj-23f2

около 3 лет назад

An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a code execution attack by manipulating the database.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2cm2-8q39-h9qp

около 2 лет назад

In onCreate of multiple files, there is a possible way to trick the user into granting health permissions due to tapjacking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-2cjx-jpg9-5gqm

почти 2 года назад

The KB Support – WordPress Help Desk and Knowledge Base plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on several functions in all versions up to, and including, 1.6.6. This makes it possible for authenticated attackers, with Subscriber-level access and above, to perform multiple administrative actions, such as replying to arbitrary tickets, updating the status of any post, deleting any post, adding notes to tickets, flagging or unflagging tickets, and adding or removing ticket participants.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-2cjx-f7xp-2h42

около 4 лет назад

Cross-site scripting (XSS) vulnerability in the data-export feature in the Ricksoft WBS Gantt-Chart add-on 7.8.1 and earlier for JIRA allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-7267.

EPSS: Низкий
github логотип

GHSA-2cjv-x29w-r6rm

почти 2 года назад

A vulnerability, which was classified as problematic, was found in SourceCodester Record Management System 1.0. This affects an unknown part of the file sort1_user.php. The manipulation of the argument position leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-2cjv-6wg9-f4f3

10 месяцев назад

Strapi Password Hashing is Missing Maximum Password Length Validation

EPSS: Низкий
github логотип

GHSA-2cjr-xv2m-jcc3

8 дней назад

The GoDAM – Organize WordPress Media Library & File Manager with Unlimited Folders for Images, Videos & more plugin for WordPress is vulnerable to arbitrary file uploads in versions up to, and including, 1.12.2. This is due to insufficient file type validation in the save_video_file() function hooked into WPForms' public wpforms_process_before_filter, which trusts the attacker-supplied multipart Content-Type header, preserves the original filename via wp_unique_filename(), and moves the raw upload with $wp_filesystem->move() into a web-served directory — bypassing wp_handle_upload()'s MIME/extension allowlist. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2cjr-qx2h-9vmq

больше 1 года назад

Hasleo Backup Suite Free v4.9.4 and before is vulnerable to Insecure Permissions via the File recovery function.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-2cjr-5v3h-v2w4

3 месяца назад

Evolver has Prototype Pollution via `Object.assign()` in its mailbox store operations

CVSS3: 5.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2cm6-668w-rvw2

Incorrect access control in the web management interface of T3 Technology CPE models T625Pro v1.0.07, T6825G v1.0.03, and T7281 v1.0.03 allows unauthorized attackers to enable the Telnet service via sending a crafted request to a vulnerable CGI component.

CVSS3: 9.8
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-2cm6-65p3-5c5j

An issue was discovered in OPAC EasyWeb Five 5.7. There is SQL injection via the w2001/index.php?scelta=campi biblio parameter.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
github логотип
GHSA-2cm5-x5xw-8ggq

IBM Sterling B2B Integrator Standard Edition could allow a remote attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially-crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-2cm5-f78c-h2c8

Missing permission checks in Jenkins Distributed Fork Plugin

CVSS3: 8.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-2cm4-w9vc-vwpc

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.6.4-pl3 allow remote attackers to inject arbitrary web script or HTML via certain arguments to (1) left.php, (2) queryframe.php, or (3) server_databases.php.

6%
Низкий
около 4 лет назад
github логотип
GHSA-2cm4-jmfv-qqw5

Directory traversal vulnerability in CGI RESCUE KanniBBS2000 (aka KanniBBS2000i, MiniBBS2000, and MiniBBS2000i) before 1.03 allows remote attackers to read arbitrary files via unspecified vectors.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2cm4-gp34-f42x

In gpu drm, there is a possible stack overflow due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07363501; Issue ID: ALPS07363501.

CVSS3: 6.7
0%
Низкий
больше 3 лет назад
github логотип
GHSA-2cm3-jjvm-h45g

Cross-Site Request Forgery (CSRF) vulnerability in MyThemeShop WP Shortcode by MyThemeShop plugin <= 1.4.16 versions.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-2cm3-h7wr-fg9v

This command injection vulnerability in File Station allows attackers to execute commands on the affected device. To fix the vulnerability, QNAP recommend updating QTS to their latest versions.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2cm3-5rf2-6c3w

The crypto_xmit function in ntpd in NTP 4.2.x before 4.2.8p4, and 4.3.x before 4.3.77 allows remote attackers to cause a denial of service (crash) via crafted packets containing particular autokey operations. NOTE: This vulnerability exists due to an incomplete fix for CVE-2014-9750.

CVSS3: 7.5
7%
Низкий
около 4 лет назад
github логотип
GHSA-2cm2-m3w5-gp2f

vm2 has access to `VM2_INTERNAL_STATE_DO_NOT_USE_OR_PROGRAM_WILL_FAIL`

CVSS3: 5.3
3 месяца назад
github логотип
GHSA-2cm2-g7rj-23f2

An issue found in BestWeather v.7.3.1 for Android allows unauthorized apps to cause a code execution attack by manipulating the database.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
github логотип
GHSA-2cm2-8q39-h9qp

In onCreate of multiple files, there is a possible way to trick the user into granting health permissions due to tapjacking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-2cjx-jpg9-5gqm

The KB Support – WordPress Help Desk and Knowledge Base plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on several functions in all versions up to, and including, 1.6.6. This makes it possible for authenticated attackers, with Subscriber-level access and above, to perform multiple administrative actions, such as replying to arbitrary tickets, updating the status of any post, deleting any post, adding notes to tickets, flagging or unflagging tickets, and adding or removing ticket participants.

CVSS3: 8.1
0%
Низкий
почти 2 года назад
github логотип
GHSA-2cjx-f7xp-2h42

Cross-site scripting (XSS) vulnerability in the data-export feature in the Ricksoft WBS Gantt-Chart add-on 7.8.1 and earlier for JIRA allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2014-7267.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2cjv-x29w-r6rm

A vulnerability, which was classified as problematic, was found in SourceCodester Record Management System 1.0. This affects an unknown part of the file sort1_user.php. The manipulation of the argument position leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 3.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-2cjv-6wg9-f4f3

Strapi Password Hashing is Missing Maximum Password Length Validation

0%
Низкий
10 месяцев назад
github логотип
GHSA-2cjr-xv2m-jcc3

The GoDAM – Organize WordPress Media Library & File Manager with Unlimited Folders for Images, Videos & more plugin for WordPress is vulnerable to arbitrary file uploads in versions up to, and including, 1.12.2. This is due to insufficient file type validation in the save_video_file() function hooked into WPForms' public wpforms_process_before_filter, which trusts the attacker-supplied multipart Content-Type header, preserves the original filename via wp_unique_filename(), and moves the raw upload with $wp_filesystem->move() into a web-served directory — bypassing wp_handle_upload()'s MIME/extension allowlist. This makes it possible for unauthenticated attackers to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVSS3: 9.8
1%
Низкий
8 дней назад
github логотип
GHSA-2cjr-qx2h-9vmq

Hasleo Backup Suite Free v4.9.4 and before is vulnerable to Insecure Permissions via the File recovery function.

CVSS3: 4.7
0%
Низкий
больше 1 года назад
github логотип
GHSA-2cjr-5v3h-v2w4

Evolver has Prototype Pollution via `Object.assign()` in its mailbox store operations

CVSS3: 5.2
0%
Низкий
3 месяца назад

Уязвимостей на страницу