Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 269

Количество 353 269

github логотип

GHSA-2887-f3v6-6rjf

3 месяца назад

Alkacon OpenCms is vulnerable to XSS via updateModelGroups.jsp

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2886-x646-53fj

больше 4 лет назад

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS 15.3.1, Safari 15.3 (v. 16612.4.9.1.8 and 15612.4.9.1.8). Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-2886-fxgx-g9vm

около 4 лет назад

An issue was discovered in Noise-Java through 2020-08-27. AESGCMFallbackCipherState.encryptWithAd() allows out-of-bounds access.

EPSS: Низкий
github логотип

GHSA-2886-9536-rhhj

9 месяцев назад

Certain HP LaserJet Pro printers may be vulnerable to information disclosure leading to credential exposure by altering the scan/send destination address and/or modifying the LDAP Server.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-2885-vc9p-8279

больше 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in Event Espresso Event Espresso 4 Decaf allows Cross Site Request Forgery.This issue affects Event Espresso 4 Decaf: from n/a through 5.0.28.decaf.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2885-rcqv-3jp6

около 1 месяца назад

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths In dc_dmub_srv_log_diagnostic_data() and dc_dmub_srv_enable_dpia_trace(). Both functions check: if (!dc_dmub_srv || !dc_dmub_srv->dmub) and then call DC_LOG_ERROR() inside that block. DC_LOG_ERROR() uses dc_dmub_srv->ctx internally. So if dc_dmub_srv is NULL, the logging itself can dereference a NULL pointer and cause a crash. Fix this by splitting the checks. First check if dc_dmub_srv is NULL and return immediately. Then check dc_dmub_srv->dmub and log the error only when dc_dmub_srv is valid. Fixes the below: ../display/dc/dc_dmub_srv.c:962 dc_dmub_srv_log_diagnostic_data() error: we previously assumed 'dc_dmub_srv' could be null (see line 961) ../display/dc/dc_dmub_srv.c:1167 dc_dmub_srv_enable_dpia_trace() error: we previously assumed 'dc_dmub_srv' could be null (see line 1166)

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2885-hmxc-wwgx

около 4 лет назад

Unspecified vulnerability in SAP Crystal Reports Server 2008 on Windows XP allows attackers to cause a denial of service (infinite loop) via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.3 through 8.11. NOTE: as of 20090917, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

EPSS: Низкий
github логотип

GHSA-2885-grqh-2673

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has to be inited to all-ones, but it must restrict it to the size of the first field, not the total field size. After each round in the map search step, the result and the fill map are swapped, so if we have a set where f->bsize of the first element is smaller than m->bsize_max, those one-bits are leaked into future rounds result map. This makes pipapo find an incorrect matching results for sets where first field size is not the largest. Followup patch adds a test case to nft_concat_range.sh selftest script. Thanks to Stefano Brivio for pointing out that we need to zero out the remainder explicitly, only correcting memset() argument isn't enough.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2884-h97f-466v

больше 2 лет назад

SysAid before 23.2.15 allows Indirect Object Reference (IDOR) attacks to read ticket data via a modified sid parameter to EmailHtmlSourceIframe.jsp or a modified srID parameter to ShowMessage.jsp.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2884-65gj-953q

около 3 лет назад

Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_class.php?id=.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-2884-62f5-6m65

больше 1 года назад

In a specific scenario a LDAP user can abuse the authentication process in OpenText Privileged Access Manager that allows authentication bypass. This issue affects Privileged Access Manager version 23.3(4.4); 24.3(4.5)

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-2883-wwh7-x57v

около 2 месяцев назад

Apache Airflow: Incomplete redaction allowlist exposes secrets in Connection `extra`  to read-permitted users

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2883-9xj8-6c3x

около 4 лет назад

An issue was discovered in Eventum 3.5.0. /htdocs/post_note.php has XSS via the garlic_prefix parameter.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-2883-8qjj-chw7

около 4 лет назад

The Yik Yak (aka com.yik.yak) application 2.0.002 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-2882-xfpf-chqj

11 месяцев назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aelora iframe Wrapper allows DOM-Based XSS. This issue affects iframe Wrapper: from n/a through 0.1.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-287x-hf3r-74ch

12 месяцев назад

Student Attendance Management System v1 was discovered to contain a cross-site scripting (XSS) vulnerability via the sessionName parameter at createSessionTerm.php.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-287x-c836-c4c9

около 4 лет назад

The default Flash cross-domain policy (crossdomain.xml) in Ubiquiti Networks UniFi Video (formerly AirVision aka AirVision Controller) before 3.0.1 does not restrict access to the application, which allows remote attackers to bypass the Same Origin Policy via a crafted SWF file.

EPSS: Низкий
github логотип

GHSA-287x-9rff-qvcg

около 1 года назад

Rust Web Push is vulnerable to a DoS attack via a large integer in a Content-Length header

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-287x-6r2h-f9mw

11 месяцев назад

UnoPim vulnerable to CSRF on Product edit feature and creation of other types

EPSS: Низкий
github логотип

GHSA-287x-67g2-7wf2

около 4 лет назад

Unspecified vulnerability in the NetFront Life Browser (com.access_company.android.nflifebrowser.lite) application 2.2.0 and 2.3.0 for Android has unknown impact and attack vectors.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2887-f3v6-6rjf

Alkacon OpenCms is vulnerable to XSS via updateModelGroups.jsp

CVSS3: 6.1
0%
Низкий
3 месяца назад
github логотип
GHSA-2886-x646-53fj

A use after free issue was addressed with improved memory management. This issue is fixed in macOS Monterey 12.2.1, iOS 15.3.1 and iPadOS 15.3.1, Safari 15.3 (v. 16612.4.9.1.8 and 15612.4.9.1.8). Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited..

CVSS3: 8.8
16%
Средний
больше 4 лет назад
github логотип
GHSA-2886-fxgx-g9vm

An issue was discovered in Noise-Java through 2020-08-27. AESGCMFallbackCipherState.encryptWithAd() allows out-of-bounds access.

3%
Низкий
около 4 лет назад
github логотип
GHSA-2886-9536-rhhj

Certain HP LaserJet Pro printers may be vulnerable to information disclosure leading to credential exposure by altering the scan/send destination address and/or modifying the LDAP Server.

CVSS3: 4.9
0%
Низкий
9 месяцев назад
github логотип
GHSA-2885-vc9p-8279

Cross-Site Request Forgery (CSRF) vulnerability in Event Espresso Event Espresso 4 Decaf allows Cross Site Request Forgery.This issue affects Event Espresso 4 Decaf: from n/a through 5.0.28.decaf.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-2885-rcqv-3jp6

In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Avoid NULL dereference in dc_dmub_srv error paths In dc_dmub_srv_log_diagnostic_data() and dc_dmub_srv_enable_dpia_trace(). Both functions check: if (!dc_dmub_srv || !dc_dmub_srv->dmub) and then call DC_LOG_ERROR() inside that block. DC_LOG_ERROR() uses dc_dmub_srv->ctx internally. So if dc_dmub_srv is NULL, the logging itself can dereference a NULL pointer and cause a crash. Fix this by splitting the checks. First check if dc_dmub_srv is NULL and return immediately. Then check dc_dmub_srv->dmub and log the error only when dc_dmub_srv is valid. Fixes the below: ../display/dc/dc_dmub_srv.c:962 dc_dmub_srv_log_diagnostic_data() error: we previously assumed 'dc_dmub_srv' could be null (see line 961) ../display/dc/dc_dmub_srv.c:1167 dc_dmub_srv_enable_dpia_trace() error: we previously assumed 'dc_dmub_srv' could be null (see line 1166)

CVSS3: 5.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-2885-hmxc-wwgx

Unspecified vulnerability in SAP Crystal Reports Server 2008 on Windows XP allows attackers to cause a denial of service (infinite loop) via unknown vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.3 through 8.11. NOTE: as of 20090917, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

2%
Низкий
около 4 лет назад
github логотип
GHSA-2885-grqh-2673

In the Linux kernel, the following vulnerability has been resolved: netfilter: nf_set_pipapo: fix initial map fill The initial buffer has to be inited to all-ones, but it must restrict it to the size of the first field, not the total field size. After each round in the map search step, the result and the fill map are swapped, so if we have a set where f->bsize of the first element is smaller than m->bsize_max, those one-bits are leaked into future rounds result map. This makes pipapo find an incorrect matching results for sets where first field size is not the largest. Followup patch adds a test case to nft_concat_range.sh selftest script. Thanks to Stefano Brivio for pointing out that we need to zero out the remainder explicitly, only correcting memset() argument isn't enough.

CVSS3: 5.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-2884-h97f-466v

SysAid before 23.2.15 allows Indirect Object Reference (IDOR) attacks to read ticket data via a modified sid parameter to EmailHtmlSourceIframe.jsp or a modified srID parameter to ShowMessage.jsp.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-2884-65gj-953q

Sourcecodester Faculty Evaluation System v1.0 is vulnerable to SQL Injection via /eval/admin/manage_class.php?id=.

CVSS3: 7.2
1%
Низкий
около 3 лет назад
github логотип
GHSA-2884-62f5-6m65

In a specific scenario a LDAP user can abuse the authentication process in OpenText Privileged Access Manager that allows authentication bypass. This issue affects Privileged Access Manager version 23.3(4.4); 24.3(4.5)

CVSS3: 8
0%
Низкий
больше 1 года назад
github логотип
GHSA-2883-wwh7-x57v

Apache Airflow: Incomplete redaction allowlist exposes secrets in Connection `extra`  to read-permitted users

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-2883-9xj8-6c3x

An issue was discovered in Eventum 3.5.0. /htdocs/post_note.php has XSS via the garlic_prefix parameter.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-2883-8qjj-chw7

The Yik Yak (aka com.yik.yak) application 2.0.002 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
около 4 лет назад
github логотип
GHSA-2882-xfpf-chqj

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Aelora iframe Wrapper allows DOM-Based XSS. This issue affects iframe Wrapper: from n/a through 0.1.1.

CVSS3: 6.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-287x-hf3r-74ch

Student Attendance Management System v1 was discovered to contain a cross-site scripting (XSS) vulnerability via the sessionName parameter at createSessionTerm.php.

CVSS3: 6.1
0%
Низкий
12 месяцев назад
github логотип
GHSA-287x-c836-c4c9

The default Flash cross-domain policy (crossdomain.xml) in Ubiquiti Networks UniFi Video (formerly AirVision aka AirVision Controller) before 3.0.1 does not restrict access to the application, which allows remote attackers to bypass the Same Origin Policy via a crafted SWF file.

2%
Низкий
около 4 лет назад
github логотип
GHSA-287x-9rff-qvcg

Rust Web Push is vulnerable to a DoS attack via a large integer in a Content-Length header

CVSS3: 4
0%
Низкий
около 1 года назад
github логотип
GHSA-287x-6r2h-f9mw

UnoPim vulnerable to CSRF on Product edit feature and creation of other types

0%
Низкий
11 месяцев назад
github логотип
GHSA-287x-67g2-7wf2

Unspecified vulnerability in the NetFront Life Browser (com.access_company.android.nflifebrowser.lite) application 2.2.0 and 2.3.0 for Android has unknown impact and attack vectors.

2%
Низкий
около 4 лет назад

Уязвимостей на страницу