Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 376 080

Количество 376 080

github логотип

GHSA-3926-2jvf-fg29

6 месяцев назад

Duplicate Advisory: LiteLLM has a sandbox escape in custom-code guardrail

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3925-hgw5-wrwv

больше 2 лет назад

Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow an attacker to execute malicious Javascript code on the client by injecting that code into the URL.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3925-h58h-pr2m

почти 2 года назад

Memory corruption while handling the PDR in driver for getting the remote heap maps.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-3924-rc4j-fpvm

больше 4 лет назад

acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files.

EPSS: Низкий
github логотип

GHSA-3923-gv2c-8fvh

больше 4 лет назад

SOPlanning 1.45 allows XSS via the Name or Comment to status.php.

EPSS: Низкий
github логотип

GHSA-3923-6jq3-5x25

больше 4 лет назад

The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service (hang and resource consumption) via a local file reference in an (1) image tag or (2) XML stylesheet in an SVG file.

EPSS: Низкий
github логотип

GHSA-3922-j2hh-9qcf

7 месяцев назад

Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-3922-9qpc-xrw2

больше 4 лет назад

Mikrotik RouterOs through stable version 6.48.3 suffers from a memory corruption vulnerability in the /nova/bin/detnet process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).

EPSS: Низкий
github логотип

GHSA-3922-7hw8-xghx

больше 4 лет назад

Buffer overflow in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earlier, TS-WRLC firmware version 1.17 and earlier, TS-PTCAM firmware version 1.18 and earlier, TS-PTCAM/POE firmware version 1.18 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3922-2r6r-r4fv

больше 1 года назад

MCMS allows arbitrary file uploads in the ueditor component

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-38xx-mw72-x795

больше 4 лет назад

Memory leak in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption) via malformed SIP packets on a NAT interface, aka Bug ID CSCts12366.

EPSS: Низкий
github логотип

GHSA-38xx-66hg-2779

больше 4 лет назад

Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers' installations, which allows local users to obtain cleartext data by leveraging console connectivity, aka Bug ID CSCuw85390.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-38xw-jx8m-w5wp

больше 2 лет назад

A vulnerability has been found in Poly CCX 400, CCX 600, Trio 8800 and Trio C60 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Web Interface. The manipulation leads to protection mechanism failure. The attack can be launched remotely. The vendor explains that they do not regard this as a vulnerability as this is a feature that they offer to their customers who have a variety of environmental needs that are met through different firmware builds. To avoid potential roll-back attacks, they remove vulnerable builds from the public servers as a remediation effort. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249259.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-38xv-jq9h-rcmq

больше 4 лет назад

Vulnerability in the Hyperion Analytic Provider Services product of Oracle Hyperion (component: JAPI). Supported versions that are affected are 11.1.2.4 and 12.2.1.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Hyperion Analytic Provider Services. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Hyperion Analytic Provider Services, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Hyperion Analytic Provider Services. CVSS 3.1 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).

EPSS: Низкий
github логотип

GHSA-38xv-hf3p-h7mq

13 дней назад

rclone: source object names can escape the configured root on upload

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-38xv-grg9-f228

больше 4 лет назад

Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy.

EPSS: Низкий
github логотип

GHSA-38xv-6f7m-5xxq

больше 4 лет назад

Mozilla Firefox before 48.0 mishandles changes from 'INPUT type="password"' to 'INPUT type="text"' within a single Session Manager session, which might allow attackers to discover cleartext passwords by reading a session restoration file.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-38xr-x8w4-q9wh

15 дней назад

Use of uninitialized resource in Windows Win32 Kernel Subsystem allows an authorized attacker to disclose information locally.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-38xr-6jm2-v69w

больше 4 лет назад

The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.

EPSS: Низкий
github логотип

GHSA-38xq-8jqq-g368

почти 3 года назад

The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'url' parameter in versions 1.4.0 to 1.4.6.1 (free) and versions 1.4.0 to 1.5.0 (pro) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3926-2jvf-fg29

Duplicate Advisory: LiteLLM has a sandbox escape in custom-code guardrail

CVSS3: 8.8
6 месяцев назад
github логотип
GHSA-3925-hgw5-wrwv

Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow an attacker to execute malicious Javascript code on the client by injecting that code into the URL.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-3925-h58h-pr2m

Memory corruption while handling the PDR in driver for getting the remote heap maps.

CVSS3: 6.7
0%
Низкий
почти 2 года назад
github логотип
GHSA-3924-rc4j-fpvm

acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3923-gv2c-8fvh

SOPlanning 1.45 allows XSS via the Name or Comment to status.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-3923-6jq3-5x25

The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service (hang and resource consumption) via a local file reference in an (1) image tag or (2) XML stylesheet in an SVG file.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-3922-j2hh-9qcf

Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148.

CVSS3: 5.4
0%
Низкий
7 месяцев назад
github логотип
GHSA-3922-9qpc-xrw2

Mikrotik RouterOs through stable version 6.48.3 suffers from a memory corruption vulnerability in the /nova/bin/detnet process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).

2%
Низкий
больше 4 лет назад
github логотип
GHSA-3922-7hw8-xghx

Buffer overflow in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earlier, TS-WRLC firmware version 1.17 and earlier, TS-PTCAM firmware version 1.18 and earlier, TS-PTCAM/POE firmware version 1.18 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-3922-2r6r-r4fv

MCMS allows arbitrary file uploads in the ueditor component

CVSS3: 9.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-38xx-mw72-x795

Memory leak in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption) via malformed SIP packets on a NAT interface, aka Bug ID CSCts12366.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-38xx-66hg-2779

Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers' installations, which allows local users to obtain cleartext data by leveraging console connectivity, aka Bug ID CSCuw85390.

CVSS3: 7.1
0%
Низкий
больше 4 лет назад
github логотип
GHSA-38xw-jx8m-w5wp

A vulnerability has been found in Poly CCX 400, CCX 600, Trio 8800 and Trio C60 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Web Interface. The manipulation leads to protection mechanism failure. The attack can be launched remotely. The vendor explains that they do not regard this as a vulnerability as this is a feature that they offer to their customers who have a variety of environmental needs that are met through different firmware builds. To avoid potential roll-back attacks, they remove vulnerable builds from the public servers as a remediation effort. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249259.

CVSS3: 2.7
1%
Низкий
больше 2 лет назад
github логотип
GHSA-38xv-jq9h-rcmq

Vulnerability in the Hyperion Analytic Provider Services product of Oracle Hyperion (component: JAPI). Supported versions that are affected are 11.1.2.4 and 12.2.1.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Hyperion Analytic Provider Services. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Hyperion Analytic Provider Services, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Hyperion Analytic Provider Services. CVSS 3.1 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).

2%
Низкий
больше 4 лет назад
github логотип
GHSA-38xv-hf3p-h7mq

rclone: source object names can escape the configured root on upload

CVSS3: 5.3
0%
Низкий
13 дней назад
github логотип
GHSA-38xv-grg9-f228

Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-38xv-6f7m-5xxq

Mozilla Firefox before 48.0 mishandles changes from 'INPUT type="password"' to 'INPUT type="text"' within a single Session Manager session, which might allow attackers to discover cleartext passwords by reading a session restoration file.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-38xr-x8w4-q9wh

Use of uninitialized resource in Windows Win32 Kernel Subsystem allows an authorized attacker to disclose information locally.

CVSS3: 5.5
0%
Низкий
15 дней назад
github логотип
GHSA-38xr-6jm2-v69w

The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-38xq-8jqq-g368

The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'url' parameter in versions 1.4.0 to 1.4.6.1 (free) and versions 1.4.0 to 1.5.0 (pro) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 9.8
1%
Низкий
почти 3 года назад

Уязвимостей на страницу