Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 489

Количество 353 489

github логотип

GHSA-29hc-rp6w-74v3

около 4 лет назад

The ESXi Host Client in VMware ESXi (6.5 before ESXi650-201712103-SG, 5.5 before ESXi600-201711103-SG and 5.5 before ESXi550-201709102-SG) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker can exploit this vulnerability by injecting Javascript, which might get executed when other users access the Host Client.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-29h8-2658-grhq

около 3 лет назад

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-29h7-gr57-5f8r

около 4 лет назад

A flaw was found in a change made to path normalization in Apache HTTP Server 2.4.49. An attacker could use a path traversal attack to map URLs to files outside the expected document root. If files outside of the document root are not protected by "require all denied" these requests can succeed. Additionally this flaw could leak the source of interpreted files like CGI scripts. This issue is known to be exploited in the wild. This issue only affects Apache 2.4.49 and not earlier versions.

CVSS3: 7.5
EPSS: Критический
github логотип

GHSA-29h7-cpmq-mh8j

около 4 лет назад

A code injection vulnerability exists in Pulse Connect Secure <9.1RB that allows an attacker to crafted a URI to perform an arbitrary code execution via the admin web interface.

CVSS3: 7.2
EPSS: Средний
github логотип

GHSA-29h7-98xg-7fp5

около 4 лет назад

A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command. This vulnerability exists due to insufficient validation of improper classes. This issue affects: Tobesoft XPlatform versions prior to 9.2.2.280.

EPSS: Низкий
github логотип

GHSA-29h6-xjp2-cgj2

около 4 лет назад

A buffer overflow vulnerability in external device function in QNAP QTS version 4.2.6 build 20171026, 4.3.3.0378 build 20171117, 4.3.4.0387 (Beta 2) build 20171116 and earlier could allow remote attackers to execute arbitrary code on NAS devices.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29h6-ggvx-w3vw

около 4 лет назад

An issue was discovered in Couchbase Server before 7.0.4. XDCR lacks role checking when changing internal settings.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-29h6-7mm5-5wf8

больше 3 лет назад

An arbitrary file upload vulnerability in Halo up to v1.6.1 allows attackers to execute arbitrary code via a crafted .md file.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-29h6-3fpg-r7jh

около 4 лет назад

Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain sensitive information via the 'FileManager.editFile()' function in the component 'modules/filemanager/FileManagerController.java'.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-29h5-x7wq-q49w

около 4 лет назад

Cross-site scripting (XSS) vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11 on z/OS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related in part to "URL injection."

EPSS: Низкий
github логотип

GHSA-29h5-px7p-c3gq

2 месяца назад

A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of the file /admin/productedit.php. The manipulation of the argument productName leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

CVSS3: 2.4
EPSS: Низкий
github логотип

GHSA-29h5-9g4g-x624

2 месяца назад

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix memory leaks in rxkad_verify_response() Fix rxkad_verify_response() to free the ticket and the server key under all circumstances by initialising the ticket pointer to NULL and then making all paths through the function after the first allocation has been done go through a single common epilogue that just releases everything - where all the releases skip on a NULL pointer.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-29h4-r29x-hchv

2 месяца назад

amazon-redshift-python-driver vulnerable to Remote Code Execution via eval() Injection

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29h4-m8qc-28hv

больше 4 лет назад

Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_edit.php.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-29h4-jchc-9446

около 4 лет назад

WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-09-16-1 and APPLE-SA-2015-09-16-3.

EPSS: Низкий
github логотип

GHSA-29h4-7v22-wvxg

почти 3 года назад

Cross site scripting vulnerability in web portal in Snow Software License Manager from version 9.0.0 up to and including 9.30.1 on Windows allows an authenticated user with high privileges to trigger cross site scripting attack via the web browser

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-29h3-fj72-mp7v

2 месяца назад

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-29h3-7qgp-vff3

около 4 лет назад

A vulnerability in lack of validation of user-supplied parameters pass to XML-RPC calls on SonicWall Global Management System (GMS) virtual appliance's, allow remote user to execute arbitrary code. This vulnerability affected GMS version 8.1 and earlier.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-29h2-5h98-8vhx

около 1 года назад

Bluebird devices contain a pre-loaded barcode scanner application. This application exposes an unsecured broadcast receiver "kr.co.bluebird.android.bbsettings.BootReceiver". A local attacker can call the receiver to overwrite file containing ".json" keyword with default barcode config file. It is possible to overwrite file in any location due to lack of protection against path traversal in name of the file. This issue affects all versions before 1.3.3.

EPSS: Низкий
github логотип

GHSA-29gx-jmhj-rrx9

около 4 лет назад

Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.1 and 12.1.0.2 allows remote attackers to affect integrity via unknown vectors related to Resource Manager.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-29hc-rp6w-74v3

The ESXi Host Client in VMware ESXi (6.5 before ESXi650-201712103-SG, 5.5 before ESXi600-201711103-SG and 5.5 before ESXi550-201709102-SG) contains a vulnerability that may allow for stored cross-site scripting (XSS). An attacker can exploit this vulnerability by injecting Javascript, which might get executed when other users access the Host Client.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-29h8-2658-grhq

In telephony service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

CVSS3: 5.5
0%
Низкий
около 3 лет назад
github логотип
GHSA-29h7-gr57-5f8r

A flaw was found in a change made to path normalization in Apache HTTP Server 2.4.49. An attacker could use a path traversal attack to map URLs to files outside the expected document root. If files outside of the document root are not protected by "require all denied" these requests can succeed. Additionally this flaw could leak the source of interpreted files like CGI scripts. This issue is known to be exploited in the wild. This issue only affects Apache 2.4.49 and not earlier versions.

CVSS3: 7.5
100%
Критический
около 4 лет назад
github логотип
GHSA-29h7-cpmq-mh8j

A code injection vulnerability exists in Pulse Connect Secure <9.1RB that allows an attacker to crafted a URI to perform an arbitrary code execution via the admin web interface.

CVSS3: 7.2
32%
Средний
около 4 лет назад
github логотип
GHSA-29h7-98xg-7fp5

A vulnerability of XPlatform could allow an unauthenticated attacker to execute arbitrary command. This vulnerability exists due to insufficient validation of improper classes. This issue affects: Tobesoft XPlatform versions prior to 9.2.2.280.

1%
Низкий
около 4 лет назад
github логотип
GHSA-29h6-xjp2-cgj2

A buffer overflow vulnerability in external device function in QNAP QTS version 4.2.6 build 20171026, 4.3.3.0378 build 20171117, 4.3.4.0387 (Beta 2) build 20171116 and earlier could allow remote attackers to execute arbitrary code on NAS devices.

CVSS3: 9.8
3%
Низкий
около 4 лет назад
github логотип
GHSA-29h6-ggvx-w3vw

An issue was discovered in Couchbase Server before 7.0.4. XDCR lacks role checking when changing internal settings.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-29h6-7mm5-5wf8

An arbitrary file upload vulnerability in Halo up to v1.6.1 allows attackers to execute arbitrary code via a crafted .md file.

CVSS3: 4.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-29h6-3fpg-r7jh

Improper Access Control in Jfinal CMS v4.7.1 and earlier allows remote attackers to obtain sensitive information via the 'FileManager.editFile()' function in the component 'modules/filemanager/FileManagerController.java'.

CVSS3: 6.5
4%
Низкий
около 4 лет назад
github логотип
GHSA-29h5-x7wq-q49w

Cross-site scripting (XSS) vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11 on z/OS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related in part to "URL injection."

2%
Низкий
около 4 лет назад
github логотип
GHSA-29h5-px7p-c3gq

A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of the file /admin/productedit.php. The manipulation of the argument productName leads to cross site scripting. It is possible to initiate the attack remotely. The exploit is publicly available and might be used.

CVSS3: 2.4
0%
Низкий
2 месяца назад
github логотип
GHSA-29h5-9g4g-x624

In the Linux kernel, the following vulnerability has been resolved: rxrpc: Fix memory leaks in rxkad_verify_response() Fix rxkad_verify_response() to free the ticket and the server key under all circumstances by initialising the ticket pointer to NULL and then making all paths through the function after the first allocation has been done go through a single common epilogue that just releases everything - where all the releases skip on a NULL pointer.

CVSS3: 5.5
0%
Низкий
2 месяца назад
github логотип
GHSA-29h4-r29x-hchv

amazon-redshift-python-driver vulnerable to Remote Code Execution via eval() Injection

CVSS3: 9.8
1%
Низкий
2 месяца назад
github логотип
GHSA-29h4-m8qc-28hv

Attendance and Payroll System v1.0 was discovered to contain a SQL injection vulnerability via the component \admin\cashadvance_edit.php.

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-29h4-jchc-9446

WebKit, as used in Apple iOS before 9 and iTunes before 12.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2015-09-16-1 and APPLE-SA-2015-09-16-3.

3%
Низкий
около 4 лет назад
github логотип
GHSA-29h4-7v22-wvxg

Cross site scripting vulnerability in web portal in Snow Software License Manager from version 9.0.0 up to and including 9.30.1 on Windows allows an authenticated user with high privileges to trigger cross site scripting attack via the web browser

CVSS3: 4.8
0%
Низкий
почти 3 года назад
github логотип
GHSA-29h3-fj72-mp7v

An low privileged remote attacker can exploit an unauthenticated SQL Injection vulnerability in the saveObjectFromData function due to improper neutralization of special elements in a SQL SELECT command. This can result in a total loss of confidentiality.

CVSS3: 6.5
0%
Низкий
2 месяца назад
github логотип
GHSA-29h3-7qgp-vff3

A vulnerability in lack of validation of user-supplied parameters pass to XML-RPC calls on SonicWall Global Management System (GMS) virtual appliance's, allow remote user to execute arbitrary code. This vulnerability affected GMS version 8.1 and earlier.

CVSS3: 9.8
5%
Низкий
около 4 лет назад
github логотип
GHSA-29h2-5h98-8vhx

Bluebird devices contain a pre-loaded barcode scanner application. This application exposes an unsecured broadcast receiver "kr.co.bluebird.android.bbsettings.BootReceiver". A local attacker can call the receiver to overwrite file containing ".json" keyword with default barcode config file. It is possible to overwrite file in any location due to lack of protection against path traversal in name of the file. This issue affects all versions before 1.3.3.

0%
Низкий
около 1 года назад
github логотип
GHSA-29gx-jmhj-rrx9

Unspecified vulnerability in the Enterprise Manager Base Platform component in Oracle Enterprise Manager Grid Control EM Base Platform 10.2.0.5 and 11.1.0.1; EM DB Control 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3; and EM Plugin for DB 12.1.0.1 and 12.1.0.2 allows remote attackers to affect integrity via unknown vectors related to Resource Manager.

1%
Низкий
около 4 лет назад

Уязвимостей на страницу