Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 269

Количество 353 269

github логотип

GHSA-2574-fqfw-fxcc

около 4 лет назад

Cross-site scripting (XSS) vulnerability in the DocumentLoader::maybeCreateArchive function in core/loader/DocumentLoader.cpp in Blink, as used in Google Chrome before 35.0.1916.114, allows remote attackers to inject arbitrary web script or HTML via crafted MHTML content, aka "Universal XSS (UXSS)."

EPSS: Низкий
github логотип

GHSA-2574-cw53-m29g

около 3 лет назад

PublicCMS <=V4.0.202302 is vulnerable to Insecure Permissions.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2573-wq7r-2x2r

около 4 лет назад

Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2573-rpmq-pq99

больше 4 лет назад

A null pointer dereference was addressed with improved validation. This issue is fixed in macOS High Sierra 10.13, iCloud for Windows 7.0, watchOS 4, iOS 11, iTunes 12.7 for Windows. Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution.

EPSS: Низкий
github логотип

GHSA-2572-4xw7-mcfc

больше 2 лет назад

An issue was discovered in ksmbd in the Linux kernel before 6.6.10. smb2_get_data_area_len in fs/smb/server/smb2misc.c can cause an smb_strndup_from_utf16 out-of-bounds access because the relationship between Name data and CreateContexts data is mishandled.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-256w-3jc2-hh38

около 4 лет назад

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied data may cause a stack-based buffer overflow, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

EPSS: Низкий
github логотип

GHSA-256v-mmj4-qqjc

около 1 месяца назад

Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScaler

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-256v-c957-m9f7

около 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in msg.php in FoeCMS allow remote attackers to inject arbitrary web script or HTML via the (1) e or (2) r parameter.

EPSS: Низкий
github логотип

GHSA-256q-r8jw-w2f7

около 4 лет назад

PHP remote file inclusion vulnerability in include/prodler.class.php in ProdLer 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sPath parameter.

EPSS: Низкий
github логотип

GHSA-256q-hx8w-xcqx

больше 1 года назад

Silverstripe Framework user enumeration via timing attack on login and password reset forms

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-256q-5j64-52vj

около 4 лет назад

The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, might allow remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. NOTE: this may be related to a compiler bug.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-256p-jvfp-85c5

около 4 лет назад

The User Profile & Membership plugin before 2.0.7 for WordPress has no mitigations implemented against cross site request forgery attacks. This is a structural finding throughout the entire plugin.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-256m-wxxh-gf6h

около 4 лет назад

wp-includes/functions.php in WordPress before 4.9.1 does not require the unfiltered_html capability for upload of .js files, which might allow remote attackers to conduct XSS attacks via a crafted file.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-256m-rvq9-56mx

около 4 лет назад

Arm guests can cause Dom0 DoS via PV devices When mapping pages of guests on Arm, dom0 is using an rbtree to keep track of the foreign mappings. Updating of that rbtree is not always done completely with the related lock held, resulting in a small race window, which can be used by unprivileged guests via PV devices to cause inconsistencies of the rbtree. These inconsistencies can lead to Denial of Service (DoS) of dom0, e.g. by causing crashes or the inability to perform further mappings of other guests' memory pages.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-256m-r39j-gmcw

5 месяцев назад

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Allmart allmart-core allows Blind SQL Injection.This issue affects Allmart: from n/a through <= 1.1.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-256m-p2gv-r882

около 4 лет назад

The built-in web service for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower does not require users to have strong passwords.

EPSS: Низкий
github логотип

GHSA-256m-jmr2-59pc

больше 1 года назад

The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'idx_frame' shortcode in all versions up to, and including, 3.14.27 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-256m-j5qw-38f4

почти 3 года назад

Netmaker IDOR Allows User to Update Other User's Password

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-256j-wvrf-pcv2

больше 3 лет назад

Password recovery vulnerability in SICK SIM1012 Partnumber 1098146 with firmware version < 2.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. The recommended solution is to update the firmware to a version >= 2.2.0 as soon as possible. (available in SICK Support Portal)

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-256j-g634-v955

около 1 года назад

A vulnerability was found in projectworlds Online Lawyer Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /save_lawyer_edit_profile.php. The manipulation leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Multiple parameters might be affected.

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2574-fqfw-fxcc

Cross-site scripting (XSS) vulnerability in the DocumentLoader::maybeCreateArchive function in core/loader/DocumentLoader.cpp in Blink, as used in Google Chrome before 35.0.1916.114, allows remote attackers to inject arbitrary web script or HTML via crafted MHTML content, aka "Universal XSS (UXSS)."

2%
Низкий
около 4 лет назад
github логотип
GHSA-2574-cw53-m29g

PublicCMS <=V4.0.202302 is vulnerable to Insecure Permissions.

CVSS3: 9.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-2573-wq7r-2x2r

Heap buffer overflow in TabStrip in Google Chrome prior to 89.0.4389.72 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS3: 8.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-2573-rpmq-pq99

A null pointer dereference was addressed with improved validation. This issue is fixed in macOS High Sierra 10.13, iCloud for Windows 7.0, watchOS 4, iOS 11, iTunes 12.7 for Windows. Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2572-4xw7-mcfc

An issue was discovered in ksmbd in the Linux kernel before 6.6.10. smb2_get_data_area_len in fs/smb/server/smb2misc.c can cause an smb_strndup_from_utf16 out-of-bounds access because the relationship between Name data and CreateContexts data is mishandled.

CVSS3: 7.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-256w-3jc2-hh38

Advantech WebAccess HMI Designer, Versions 2.1.9.31 and prior. Processing specially crafted project files lacking proper validation of user supplied data may cause a stack-based buffer overflow, which may allow remote code execution, disclosure/modification of information, or cause the application to crash.

4%
Низкий
около 4 лет назад
github логотип
GHSA-256v-mmj4-qqjc

Denial of service via malformed HTTP/2 requests in NetScaler ADC and NetScaler Gateway if HTTP/2 is enabled in HTTP Profile and associated with the virtual server (of type LB, CS, VPN) or the service configured on NetScaler

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-256v-c957-m9f7

Multiple cross-site scripting (XSS) vulnerabilities in msg.php in FoeCMS allow remote attackers to inject arbitrary web script or HTML via the (1) e or (2) r parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-256q-r8jw-w2f7

PHP remote file inclusion vulnerability in include/prodler.class.php in ProdLer 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the sPath parameter.

2%
Низкий
около 4 лет назад
github логотип
GHSA-256q-hx8w-xcqx

Silverstripe Framework user enumeration via timing attack on login and password reset forms

CVSS3: 5.3
больше 1 года назад
github логотип
GHSA-256q-5j64-52vj

The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, might allow remote attackers to cause a denial of service (buffer overflow and application crash) or possibly have unspecified other impact via a crafted binary file, as demonstrated by mishandling of this file during "objdump -D" execution. NOTE: this may be related to a compiler bug.

CVSS3: 7.8
8%
Низкий
около 4 лет назад
github логотип
GHSA-256p-jvfp-85c5

The User Profile & Membership plugin before 2.0.7 for WordPress has no mitigations implemented against cross site request forgery attacks. This is a structural finding throughout the entire plugin.

CVSS3: 8.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-256m-wxxh-gf6h

wp-includes/functions.php in WordPress before 4.9.1 does not require the unfiltered_html capability for upload of .js files, which might allow remote attackers to conduct XSS attacks via a crafted file.

CVSS3: 5.4
4%
Низкий
около 4 лет назад
github логотип
GHSA-256m-rvq9-56mx

Arm guests can cause Dom0 DoS via PV devices When mapping pages of guests on Arm, dom0 is using an rbtree to keep track of the foreign mappings. Updating of that rbtree is not always done completely with the related lock held, resulting in a small race window, which can be used by unprivileged guests via PV devices to cause inconsistencies of the rbtree. These inconsistencies can lead to Denial of Service (DoS) of dom0, e.g. by causing crashes or the inability to perform further mappings of other guests' memory pages.

CVSS3: 4.7
0%
Низкий
около 4 лет назад
github логотип
GHSA-256m-r39j-gmcw

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TeconceTheme Allmart allmart-core allows Blind SQL Injection.This issue affects Allmart: from n/a through <= 1.1.

CVSS3: 9.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-256m-p2gv-r882

The built-in web service for MOXA NPort IAW5000A-I/O firmware version 2.1 or lower does not require users to have strong passwords.

1%
Низкий
около 4 лет назад
github логотип
GHSA-256m-jmr2-59pc

The Flexmls® IDX Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'idx_frame' shortcode in all versions up to, and including, 3.14.27 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-256m-j5qw-38f4

Netmaker IDOR Allows User to Update Other User's Password

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-256j-wvrf-pcv2

Password recovery vulnerability in SICK SIM1012 Partnumber 1098146 with firmware version < 2.2.0 allows an unprivileged remote attacker to gain access to the userlevel defined as RecoverableUserLevel by invocating the password recovery mechanism method. The recommended solution is to update the firmware to a version >= 2.2.0 as soon as possible. (available in SICK Support Portal)

CVSS3: 7.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-256j-g634-v955

A vulnerability was found in projectworlds Online Lawyer Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /save_lawyer_edit_profile.php. The manipulation leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Multiple parameters might be affected.

CVSS3: 7.3
0%
Низкий
около 1 года назад

Уязвимостей на страницу