Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 290

Количество 353 290

github логотип

GHSA-24hh-5wmw-c8j8

больше 1 года назад

Stored cross-site scripting vulnerability exists in PerfreeBlog v4.0.11 in the website name field of the backend system settings interface allows an attacker to insert and execute arbitrary malicious code.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-24hf-c9jr-vvfw

около 1 месяца назад

In the Linux kernel, the following vulnerability has been resolved: soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric lookup tables Fix incorrect ARRAY_SIZE usage in fabric lookup tables which could cause out-of-bounds access during target timeout lookup.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-24hf-8w68-m6w3

около 4 лет назад

SQL injection vulnerability in index.php in the fq (com_fq) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter.

EPSS: Низкий
github логотип

GHSA-24hc-6j9g-g379

около 4 лет назад

Multiple SQL injection vulnerabilities in phplist before 2.10.3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-24h9-xh6m-x5jf

около 4 лет назад

A vulnerability in the SonicWall NSM On-Prem product allows an authenticated attacker to perform OS command injection using a crafted HTTP request. This vulnerability affects NSM On-Prem 2.2.0-R10 and earlier versions.

EPSS: Средний
github логотип

GHSA-24h9-wwcg-r638

около 4 лет назад

Bugzilla 3.3.1 through 3.4.4, 3.5.1, and 3.5.2 does not allow group restrictions to be preserved throughout the process of moving a bug to a different product category, which allows remote attackers to obtain sensitive information via a request for a bug in opportunistic circumstances.

EPSS: Низкий
github логотип

GHSA-24h9-pvx3-c6g5

7 месяцев назад

Hubstaff 1.6.14 contains a DLL search order hijacking vulnerability that allows attackers to replace a missing system32 wow64log.dll with a malicious library. Attackers can generate a custom DLL using Metasploit and place it in the system32 directory to obtain a reverse shell during application startup.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24h9-pprg-mj7w

около 4 лет назад

Zenphoto through 1.5.7 is affected by authenticated arbitrary file upload, leading to remote code execution. The attacker must navigate to the uploader plugin, check the elFinder box, and then drag and drop files into the Files(elFinder) portion of the UI. This can, for example, place a .php file in the server's uploaded/ directory.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-24h8-cpqm-qmf3

около 4 лет назад

Cross-Site Request Forgery in Jenkins Convertigo Mobile Platform Plugin

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-24h8-867p-wf7h

около 4 лет назад

Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .

EPSS: Низкий
github логотип

GHSA-24h7-jwc9-7j8v

больше 1 года назад

A maliciously crafted PDF file, when parsed through Autodesk applications, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24h7-3qfx-598p

6 месяцев назад

docPrint Pro 8.0 contains a local buffer overflow vulnerability in the 'Add URL' input field that allows attackers to execute arbitrary code by overwriting memory. Attackers can craft a malicious payload that triggers a structured exception handler (SEH) overwrite to execute shellcode and gain remote system access.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-24h5-mcw6-8cqw

больше 3 лет назад

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the timeZone parameter in the form_fast_setting_wifi_set function.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-24h5-6vcf-hxw3

около 4 лет назад

Use-after-free vulnerability in the nsNodeUtils::LastRelease function in the table-editing user interface in the editor component in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code by triggering improper garbage collection.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-24h4-qr94-3w33

около 2 лет назад

The MIMO Woocommerce Order Tracking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'mimo_update_provider' function in all versions up to, and including, 1.0.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update shipping provider information, including adding stored cross-site scripting.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-24h4-9r9x-fc93

22 дня назад

BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure

CVSS3: 2.5
EPSS: Низкий
github логотип

GHSA-24h4-22f3-65qc

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath When cifs_sanitize_prepath is called with an empty string or a string containing only delimiters (e.g., "/"), the current logic attempts to check *(cursor2 - 1) before cursor2 has advanced. This results in an out-of-bounds read. This patch adds an early exit check after stripping prepended delimiters. If no path content remains, the function returns NULL. The bug was identified via manual audit and verified using a standalone test case compiled with AddressSanitizer, which triggered a SEGV on affected inputs.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-24h2-xwhf-fr8m

больше 4 лет назад

Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.

EPSS: Средний
github логотип

GHSA-24h2-5vgh-pf37

4 месяца назад

A security vulnerability has been detected in code-projects Simple Laundry System 1.0. This affects an unknown part of the file /userchecklogin.php. Such manipulation of the argument userid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-24gx-p8r7-xrqm

около 4 лет назад

VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-24hh-5wmw-c8j8

Stored cross-site scripting vulnerability exists in PerfreeBlog v4.0.11 in the website name field of the backend system settings interface allows an attacker to insert and execute arbitrary malicious code.

CVSS3: 4.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-24hf-c9jr-vvfw

In the Linux kernel, the following vulnerability has been resolved: soc/tegra: cbb: Fix incorrect ARRAY_SIZE in fabric lookup tables Fix incorrect ARRAY_SIZE usage in fabric lookup tables which could cause out-of-bounds access during target timeout lookup.

CVSS3: 7.1
0%
Низкий
около 1 месяца назад
github логотип
GHSA-24hf-8w68-m6w3

SQL injection vulnerability in index.php in the fq (com_fq) component for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the listid parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-24hc-6j9g-g379

Multiple SQL injection vulnerabilities in phplist before 2.10.3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

1%
Низкий
около 4 лет назад
github логотип
GHSA-24h9-xh6m-x5jf

A vulnerability in the SonicWall NSM On-Prem product allows an authenticated attacker to perform OS command injection using a crafted HTTP request. This vulnerability affects NSM On-Prem 2.2.0-R10 and earlier versions.

12%
Средний
около 4 лет назад
github логотип
GHSA-24h9-wwcg-r638

Bugzilla 3.3.1 through 3.4.4, 3.5.1, and 3.5.2 does not allow group restrictions to be preserved throughout the process of moving a bug to a different product category, which allows remote attackers to obtain sensitive information via a request for a bug in opportunistic circumstances.

2%
Низкий
около 4 лет назад
github логотип
GHSA-24h9-pvx3-c6g5

Hubstaff 1.6.14 contains a DLL search order hijacking vulnerability that allows attackers to replace a missing system32 wow64log.dll with a malicious library. Attackers can generate a custom DLL using Metasploit and place it in the system32 directory to obtain a reverse shell during application startup.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-24h9-pprg-mj7w

Zenphoto through 1.5.7 is affected by authenticated arbitrary file upload, leading to remote code execution. The attacker must navigate to the uploader plugin, check the elFinder box, and then drag and drop files into the Files(elFinder) portion of the UI. This can, for example, place a .php file in the server's uploaded/ directory.

CVSS3: 7.2
5%
Низкий
около 4 лет назад
github логотип
GHSA-24h8-cpqm-qmf3

Cross-Site Request Forgery in Jenkins Convertigo Mobile Platform Plugin

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-24h8-867p-wf7h

Adobe Acrobat and Reader versions , 2019.012.20040 and earlier, 2017.011.30148 and earlier, 2017.011.30148 and earlier, 2015.006.30503 and earlier, and 2015.006.30503 and earlier have an use after free vulnerability. Successful exploitation could lead to arbitrary code execution .

4%
Низкий
около 4 лет назад
github логотип
GHSA-24h7-jwc9-7j8v

A maliciously crafted PDF file, when parsed through Autodesk applications, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-24h7-3qfx-598p

docPrint Pro 8.0 contains a local buffer overflow vulnerability in the 'Add URL' input field that allows attackers to execute arbitrary code by overwriting memory. Attackers can craft a malicious payload that triggers a structured exception handler (SEH) overwrite to execute shellcode and gain remote system access.

CVSS3: 8.4
0%
Низкий
6 месяцев назад
github логотип
GHSA-24h5-mcw6-8cqw

Tenda AC6V1.0 V15.03.05.19 was discovered to contain a buffer overflow via the timeZone parameter in the form_fast_setting_wifi_set function.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-24h5-6vcf-hxw3

Use-after-free vulnerability in the nsNodeUtils::LastRelease function in the table-editing user interface in the editor component in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code by triggering improper garbage collection.

CVSS3: 9.8
10%
Средний
около 4 лет назад
github логотип
GHSA-24h4-qr94-3w33

The MIMO Woocommerce Order Tracking plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'mimo_update_provider' function in all versions up to, and including, 1.0.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update shipping provider information, including adding stored cross-site scripting.

CVSS3: 6.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-24h4-9r9x-fc93

BLF file parser in Wireshark 4.6.0 to 4.6.6 and 4.4.0 to 4.4.16 allows possible information disclosure

CVSS3: 2.5
0%
Низкий
22 дня назад
github логотип
GHSA-24h4-22f3-65qc

In the Linux kernel, the following vulnerability has been resolved: fs/smb/client: fix out-of-bounds read in cifs_sanitize_prepath When cifs_sanitize_prepath is called with an empty string or a string containing only delimiters (e.g., "/"), the current logic attempts to check *(cursor2 - 1) before cursor2 has advanced. This results in an out-of-bounds read. This patch adds an early exit check after stripping prepended delimiters. If no path content remains, the function returns NULL. The bug was identified via manual audit and verified using a standalone test case compiled with AddressSanitizer, which triggered a SEGV on affected inputs.

CVSS3: 8.8
0%
Низкий
3 месяца назад
github логотип
GHSA-24h2-xwhf-fr8m

Buffer overflow in FTP server in Microsoft IIS 3.0 and 4.0 allows local and sometimes remote attackers to cause a denial of service via a long NLST (ls) command.

14%
Средний
больше 4 лет назад
github логотип
GHSA-24h2-5vgh-pf37

A security vulnerability has been detected in code-projects Simple Laundry System 1.0. This affects an unknown part of the file /userchecklogin.php. Such manipulation of the argument userid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 7.3
0%
Низкий
4 месяца назад
github логотип
GHSA-24gx-p8r7-xrqm

VITEC Exterity IPTV products through 2021-04-30 allow privilege escalation to root.

CVSS3: 9.8
2%
Низкий
около 4 лет назад

Уязвимостей на страницу