Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 290

Количество 353 290

github логотип

GHSA-29f5-5fq5-r4fr

около 3 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in chronoengine.Com Chronoforms plugin <= 7.0.9 versions.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-29f5-2fjm-2836

6 месяцев назад

The The Events Calendar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'start_migration', 'cancel_migration', and 'revert_migration' functions in all versions up to, and including, 6.15.13. This makes it possible for authenticated attackers, with subscriber level access and above, to start, cancel, or revert the Custom Tables V1 database migration, including dropping the custom database tables entirely via the revert action.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-29f3-9vvg-m7v7

около 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Horde Kronolith Calendar Application H4 before 3.0.17, as used in Horde Groupware Webmail Edition before 4.0.8, allow remote attackers to inject arbitrary web script or HTML via the (1) tasks view or (2) search view.

EPSS: Низкий
github логотип

GHSA-29f3-39f3-vwg9

около 4 лет назад

Untrusted search path vulnerability in the Data Access Objects (DAO) library (dao360.dll) in Microsoft Windows XP Professional SP3, Windows Server 2003 R2 Enterprise Edition SP3, Windows Vista Business SP1, and Windows 7 Professional allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse msjet49.dll that is located in the same folder as a file that is processed by dao360.dll. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

EPSS: Средний
github логотип

GHSA-29f2-r2fr-hjv6

около 1 месяца назад

A security flaw has been discovered in GitBucket up to 4.46.1. This affects the function Git.cloneRepository.setURI of the file src/main/scala/gitbucket/core/service/RepositoryCreationService.scala. Performing a manipulation of the argument url results in server-side request forgery. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks. The patch is named 487a9b980f56aa73b6a044b1e86a92eed5043215. To fix this issue, it is recommended to deploy a patch.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-29f2-q62m-qxwc

больше 2 лет назад

An issue discovered in kodbox through 1.43 allows attackers to arbitrarily add Administrator accounts via crafted GET request.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29f2-7m5v-qfqv

больше 2 лет назад

In asn1_ec_pkey_parse_p384 of asn1_common.c, there is a possible OOB Read due to a missing null check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-29f2-5rg5-fpqh

почти 4 года назад

There is a code injection vulnerability in Esri Portal for ArcGIS versions 10.8.1 and below that may allow a remote, unauthenticated attacker to pass strings which could potentially cause arbitrary code execution in a victims browser.

CVSS3: 9.6
EPSS: Низкий
github логотип

GHSA-29cx-mrrh-g7pc

больше 3 лет назад

This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 6.3.2.3490. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the EnterpriseServer service. The issue results from the lack of proper locking when performing operations during authentication. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-15528.

CVSS3: 8.1
EPSS: Высокий
github логотип

GHSA-29cv-f9xj-9653

около 4 лет назад

The GeoIP functionality in ISC BIND 9.10.0 through 9.10.1 allows remote attackers to cause a denial of service (assertion failure and named exit) via vectors related to (1) the lack of GeoIP databases for both IPv4 and IPv6, or (2) IPv6 support with certain options.

EPSS: Низкий
github логотип

GHSA-29cr-mj24-pqgh

почти 3 года назад

COMFAST CF-XR11 V2.7.2 has a command injection vulnerability detected at function sub_4143F0. Attackers can send POST request messages to /usr/bin/webmgnt and inject commands into parameter timestr.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29cr-f47w-93jr

около 3 лет назад

Heap-based buffer over-read in function png_convert_4 in file pngex.cc in AdvanceMAME through 2.1.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-29cq-5w36-x7w3

около 1 года назад

Livewire is vulnerable to remote command execution during component property update hydration

CVSS3: 9.8
EPSS: Критический
github логотип

GHSA-29cm-m432-745j

больше 1 года назад

SQL Server Native Client Remote Code Execution Vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-29cj-vw65-6494

около 4 лет назад

Uncaught exception in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-29cj-cxw4-v4j2

11 месяцев назад

YesWiki Cross Site Scripting vulnerability

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-29ch-m3px-xxxc

больше 3 лет назад

ARC (aka ARC2) through 2011-12-01 allows reflected XSS via the end_point.php query parameter in an output=htmltab action.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-29ch-f7xh-hrh2

около 4 лет назад

The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.11 performs a capability check in an incorrect namespace, which allows local users to gain privileges via PID spoofing.

EPSS: Низкий
github логотип

GHSA-29ch-3cxc-63fh

больше 4 лет назад

The WP Extra File Types WordPress plugin before 0.5.1 does not have CSRF check when saving its settings, nor sanitise and escape some of them, which could allow attackers to make a logged in admin change them and perform Cross-Site Scripting attacks

EPSS: Низкий
github логотип

GHSA-29ch-39m4-vcw5

около 4 лет назад

In Open Ticket Request System (OTRS) through 3.3.20, 4 through 4.0.26, 5 through 5.0.24, and 6 through 6.0.1, an attacker who is logged in as a customer can use the ticket search form to disclose internal article information of their customer tickets.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-29f5-5fq5-r4fr

Cross-Site Request Forgery (CSRF) vulnerability in chronoengine.Com Chronoforms plugin <= 7.0.9 versions.

CVSS3: 4.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-29f5-2fjm-2836

The The Events Calendar plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the 'start_migration', 'cancel_migration', and 'revert_migration' functions in all versions up to, and including, 6.15.13. This makes it possible for authenticated attackers, with subscriber level access and above, to start, cancel, or revert the Custom Tables V1 database migration, including dropping the custom database tables entirely via the revert action.

CVSS3: 5.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-29f3-9vvg-m7v7

Multiple cross-site scripting (XSS) vulnerabilities in Horde Kronolith Calendar Application H4 before 3.0.17, as used in Horde Groupware Webmail Edition before 4.0.8, allow remote attackers to inject arbitrary web script or HTML via the (1) tasks view or (2) search view.

2%
Низкий
около 4 лет назад
github логотип
GHSA-29f3-39f3-vwg9

Untrusted search path vulnerability in the Data Access Objects (DAO) library (dao360.dll) in Microsoft Windows XP Professional SP3, Windows Server 2003 R2 Enterprise Edition SP3, Windows Vista Business SP1, and Windows 7 Professional allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse msjet49.dll that is located in the same folder as a file that is processed by dao360.dll. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

25%
Средний
около 4 лет назад
github логотип
GHSA-29f2-r2fr-hjv6

A security flaw has been discovered in GitBucket up to 4.46.1. This affects the function Git.cloneRepository.setURI of the file src/main/scala/gitbucket/core/service/RepositoryCreationService.scala. Performing a manipulation of the argument url results in server-side request forgery. The attack is possible to be carried out remotely. The exploit has been released to the public and may be used for attacks. The patch is named 487a9b980f56aa73b6a044b1e86a92eed5043215. To fix this issue, it is recommended to deploy a patch.

CVSS3: 6.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-29f2-q62m-qxwc

An issue discovered in kodbox through 1.43 allows attackers to arbitrarily add Administrator accounts via crafted GET request.

CVSS3: 9.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-29f2-7m5v-qfqv

In asn1_ec_pkey_parse_p384 of asn1_common.c, there is a possible OOB Read due to a missing null check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 5.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-29f2-5rg5-fpqh

There is a code injection vulnerability in Esri Portal for ArcGIS versions 10.8.1 and below that may allow a remote, unauthenticated attacker to pass strings which could potentially cause arbitrary code execution in a victims browser.

CVSS3: 9.6
1%
Низкий
почти 4 года назад
github логотип
GHSA-29cx-mrrh-g7pc

This vulnerability allows remote attackers to bypass authentication on affected installations of Ivanti Avalanche 6.3.2.3490. Although authentication is required to exploit this vulnerability, the existing authentication mechanism can be bypassed. The specific flaw exists within the EnterpriseServer service. The issue results from the lack of proper locking when performing operations during authentication. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-15528.

CVSS3: 8.1
83%
Высокий
больше 3 лет назад
github логотип
GHSA-29cv-f9xj-9653

The GeoIP functionality in ISC BIND 9.10.0 through 9.10.1 allows remote attackers to cause a denial of service (assertion failure and named exit) via vectors related to (1) the lack of GeoIP databases for both IPv4 and IPv6, or (2) IPv6 support with certain options.

9%
Низкий
около 4 лет назад
github логотип
GHSA-29cr-mj24-pqgh

COMFAST CF-XR11 V2.7.2 has a command injection vulnerability detected at function sub_4143F0. Attackers can send POST request messages to /usr/bin/webmgnt and inject commands into parameter timestr.

CVSS3: 9.8
2%
Низкий
почти 3 года назад
github логотип
GHSA-29cr-f47w-93jr

Heap-based buffer over-read in function png_convert_4 in file pngex.cc in AdvanceMAME through 2.1.

CVSS3: 7.1
0%
Низкий
около 3 лет назад
github логотип
GHSA-29cq-5w36-x7w3

Livewire is vulnerable to remote command execution during component property update hydration

CVSS3: 9.8
95%
Критический
около 1 года назад
github логотип
GHSA-29cm-m432-745j

SQL Server Native Client Remote Code Execution Vulnerability

CVSS3: 8.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-29cj-vw65-6494

Uncaught exception in the BIOS firmware for some Intel(R) Processors may allow a privileged user to potentially enable aescalation of privilege via local access.

CVSS3: 7.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-29cj-cxw4-v4j2

YesWiki Cross Site Scripting vulnerability

CVSS3: 6.1
0%
Низкий
11 месяцев назад
github логотип
GHSA-29ch-m3px-xxxc

ARC (aka ARC2) through 2011-12-01 allows reflected XSS via the end_point.php query parameter in an output=htmltab action.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-29ch-f7xh-hrh2

The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.11 performs a capability check in an incorrect namespace, which allows local users to gain privileges via PID spoofing.

0%
Низкий
около 4 лет назад
github логотип
GHSA-29ch-3cxc-63fh

The WP Extra File Types WordPress plugin before 0.5.1 does not have CSRF check when saving its settings, nor sanitise and escape some of them, which could allow attackers to make a logged in admin change them and perform Cross-Site Scripting attacks

1%
Низкий
больше 4 лет назад
github логотип
GHSA-29ch-39m4-vcw5

In Open Ticket Request System (OTRS) through 3.3.20, 4 through 4.0.26, 5 through 5.0.24, and 6 through 6.0.1, an attacker who is logged in as a customer can use the ticket search form to disclose internal article information of their customer tickets.

CVSS3: 6.5
1%
Низкий
около 4 лет назад

Уязвимостей на страницу