Количество 376 080
Количество 376 080
GHSA-3926-2jvf-fg29
Duplicate Advisory: LiteLLM has a sandbox escape in custom-code guardrail
GHSA-3925-hgw5-wrwv
Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow an attacker to execute malicious Javascript code on the client by injecting that code into the URL.
GHSA-3925-h58h-pr2m
Memory corruption while handling the PDR in driver for getting the remote heap maps.
GHSA-3924-rc4j-fpvm
acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files.
GHSA-3923-gv2c-8fvh
SOPlanning 1.45 allows XSS via the Name or Comment to status.php.
GHSA-3923-6jq3-5x25
The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service (hang and resource consumption) via a local file reference in an (1) image tag or (2) XML stylesheet in an SVG file.
GHSA-3922-j2hh-9qcf
Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148.
GHSA-3922-9qpc-xrw2
Mikrotik RouterOs through stable version 6.48.3 suffers from a memory corruption vulnerability in the /nova/bin/detnet process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference).
GHSA-3922-7hw8-xghx
Buffer overflow in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earlier, TS-WRLC firmware version 1.17 and earlier, TS-PTCAM firmware version 1.18 and earlier, TS-PTCAM/POE firmware version 1.18 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors.
GHSA-3922-2r6r-r4fv
MCMS allows arbitrary file uploads in the ueditor component
GHSA-38xx-mw72-x795
Memory leak in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption) via malformed SIP packets on a NAT interface, aka Bug ID CSCts12366.
GHSA-38xx-66hg-2779
Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers' installations, which allows local users to obtain cleartext data by leveraging console connectivity, aka Bug ID CSCuw85390.
GHSA-38xw-jx8m-w5wp
A vulnerability has been found in Poly CCX 400, CCX 600, Trio 8800 and Trio C60 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Web Interface. The manipulation leads to protection mechanism failure. The attack can be launched remotely. The vendor explains that they do not regard this as a vulnerability as this is a feature that they offer to their customers who have a variety of environmental needs that are met through different firmware builds. To avoid potential roll-back attacks, they remove vulnerable builds from the public servers as a remediation effort. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249259.
GHSA-38xv-jq9h-rcmq
Vulnerability in the Hyperion Analytic Provider Services product of Oracle Hyperion (component: JAPI). Supported versions that are affected are 11.1.2.4 and 12.2.1.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Hyperion Analytic Provider Services. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Hyperion Analytic Provider Services, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Hyperion Analytic Provider Services. CVSS 3.1 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H).
GHSA-38xv-hf3p-h7mq
rclone: source object names can escape the configured root on upload
GHSA-38xv-grg9-f228
Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy.
GHSA-38xv-6f7m-5xxq
Mozilla Firefox before 48.0 mishandles changes from 'INPUT type="password"' to 'INPUT type="text"' within a single Session Manager session, which might allow attackers to discover cleartext passwords by reading a session restoration file.
GHSA-38xr-x8w4-q9wh
Use of uninitialized resource in Windows Win32 Kernel Subsystem allows an authorized attacker to disclose information locally.
GHSA-38xr-6jm2-v69w
The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site.
GHSA-38xq-8jqq-g368
The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'url' parameter in versions 1.4.0 to 1.4.6.1 (free) and versions 1.4.0 to 1.5.0 (pro) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-3926-2jvf-fg29 Duplicate Advisory: LiteLLM has a sandbox escape in custom-code guardrail | CVSS3: 8.8 | 6 месяцев назад | ||
GHSA-3925-hgw5-wrwv Cross-Site Scripting (XSS) vulnerability in Hyperion Web Server affecting version 2.0.15. This vulnerability could allow an attacker to execute malicious Javascript code on the client by injecting that code into the URL. | CVSS3: 5.4 | 0% Низкий | больше 2 лет назад | |
GHSA-3925-h58h-pr2m Memory corruption while handling the PDR in driver for getting the remote heap maps. | CVSS3: 6.7 | 0% Низкий | почти 2 года назад | |
GHSA-3924-rc4j-fpvm acroread in Adobe Acrobat Reader 4.05 on Linux allows local users to overwrite arbitrary files via a symlink attack on temporary files. | 1% Низкий | больше 4 лет назад | ||
GHSA-3923-gv2c-8fvh SOPlanning 1.45 allows XSS via the Name or Comment to status.php. | 1% Низкий | больше 4 лет назад | ||
GHSA-3923-6jq3-5x25 The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service (hang and resource consumption) via a local file reference in an (1) image tag or (2) XML stylesheet in an SVG file. | 3% Низкий | больше 4 лет назад | ||
GHSA-3922-j2hh-9qcf Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
GHSA-3922-9qpc-xrw2 Mikrotik RouterOs through stable version 6.48.3 suffers from a memory corruption vulnerability in the /nova/bin/detnet process. An authenticated remote attacker can cause a Denial of Service (NULL pointer dereference). | 2% Низкий | больше 4 лет назад | ||
GHSA-3922-7hw8-xghx Buffer overflow in TS-WPTCAM firmware version 1.18 and earlier, TS-WPTCAM2 firmware version 1.00, TS-WLCE firmware version 1.18 and earlier, TS-WLC2 firmware version 1.18 and earlier, TS-WRLC firmware version 1.17 and earlier, TS-PTCAM firmware version 1.18 and earlier, TS-PTCAM/POE firmware version 1.18 and earlier allows remote attackers to execute arbitrary OS commands via unspecified vectors. | CVSS3: 8.8 | 2% Низкий | больше 4 лет назад | |
GHSA-3922-2r6r-r4fv MCMS allows arbitrary file uploads in the ueditor component | CVSS3: 9.8 | 1% Низкий | больше 1 года назад | |
GHSA-38xx-mw72-x795 Memory leak in Cisco IOS 15.1 and 15.2 allows remote attackers to cause a denial of service (memory consumption) via malformed SIP packets on a NAT interface, aka Bug ID CSCts12366. | 3% Низкий | больше 4 лет назад | ||
GHSA-38xx-66hg-2779 Cisco Prime LAN Management Solution (LMS) through 4.2.5 uses the same database decryption key across different customers' installations, which allows local users to obtain cleartext data by leveraging console connectivity, aka Bug ID CSCuw85390. | CVSS3: 7.1 | 0% Низкий | больше 4 лет назад | |
GHSA-38xw-jx8m-w5wp A vulnerability has been found in Poly CCX 400, CCX 600, Trio 8800 and Trio C60 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Web Interface. The manipulation leads to protection mechanism failure. The attack can be launched remotely. The vendor explains that they do not regard this as a vulnerability as this is a feature that they offer to their customers who have a variety of environmental needs that are met through different firmware builds. To avoid potential roll-back attacks, they remove vulnerable builds from the public servers as a remediation effort. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249259. | CVSS3: 2.7 | 1% Низкий | больше 2 лет назад | |
GHSA-38xv-jq9h-rcmq Vulnerability in the Hyperion Analytic Provider Services product of Oracle Hyperion (component: JAPI). Supported versions that are affected are 11.1.2.4 and 12.2.1.4. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Hyperion Analytic Provider Services. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Hyperion Analytic Provider Services, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in takeover of Hyperion Analytic Provider Services. CVSS 3.1 Base Score 9.6 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H). | 2% Низкий | больше 4 лет назад | ||
GHSA-38xv-hf3p-h7mq rclone: source object names can escape the configured root on upload | CVSS3: 5.3 | 0% Низкий | 13 дней назад | |
GHSA-38xv-grg9-f228 Platinum Upnp SDK through 1.2.0 has a directory traversal vulnerability. The attack could remote attack victim by sending http://ip:port/../privacy.avi URL to compromise a victim's privacy. | 2% Низкий | больше 4 лет назад | ||
GHSA-38xv-6f7m-5xxq Mozilla Firefox before 48.0 mishandles changes from 'INPUT type="password"' to 'INPUT type="text"' within a single Session Manager session, which might allow attackers to discover cleartext passwords by reading a session restoration file. | CVSS3: 6.5 | 1% Низкий | больше 4 лет назад | |
GHSA-38xr-x8w4-q9wh Use of uninitialized resource in Windows Win32 Kernel Subsystem allows an authorized attacker to disclose information locally. | CVSS3: 5.5 | 0% Низкий | 15 дней назад | |
GHSA-38xr-6jm2-v69w The navigator.sendBeacon implementation in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 omits the CORS Origin header, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site. | 1% Низкий | больше 4 лет назад | ||
GHSA-38xq-8jqq-g368 The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin for WordPress is vulnerable to SQL Injection via the 'url' parameter in versions 1.4.0 to 1.4.6.1 (free) and versions 1.4.0 to 1.5.0 (pro) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. | CVSS3: 9.8 | 1% Низкий | почти 3 года назад |
Уязвимостей на страницу