Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 453

Количество 375 453

github логотип

GHSA-36xr-4x2f-cfj9

больше 2 лет назад

Deserialization of Untrusted Data in Apache Camel SQL

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-36xq-7w8w-xp68

больше 4 лет назад

Magento affected by a blind SSRF vulnerability in the bundled dotmailer extension

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-36xp-mvwg-23pf

больше 4 лет назад

IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 allows remote authenticated users to read or modify arbitrary reports by leveraging an incorrect grant of access. IBM X-Force ID: 111783.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-36xp-gf7g-mgvq

больше 4 лет назад

XSS in Telligent Community 5.6.583.20496 via a flash file and related to the allowScriptAccess parameter.

EPSS: Низкий
github логотип

GHSA-36xm-wx7c-g2hq

больше 4 лет назад

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u161 and 8u152; Java SE Embedded: 8u152; JRockit: R28.3.17. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded, JRockit accessible data as well as unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or ...

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-36xm-w97x-vmwh

больше 4 лет назад

In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC) Versions 4.X and 5.X, CARESCAPE Central Station (CSCS) Versions 1.X, B450 Version 2.X, B650 Version 1.X, B650 Version 2.X, B850 Version 1.X, B850 Version 2.X, a vulnerability in the software update mechanism allows an authenticated attacker to upload arbitrary files on the system through a crafted update package.

EPSS: Низкий
github логотип

GHSA-36xm-f9vf-c2w5

больше 4 лет назад

Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD command.

EPSS: Средний
github логотип

GHSA-36xm-ch76-gv9j

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SaurabhSharma WP Post Modules for Elementor allows Reflected XSS. This issue affects WP Post Modules for Elementor: from n/a through 2.5.0.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-36xm-4j44-qpm8

больше 4 лет назад

On Insteon Hub 2245-222 devices with firmware version 1012, specially crafted replies received from the PubNub service can cause buffer overflows on a global section overwriting arbitrary data. An attacker should impersonate PubNub and answer an HTTPS GET request to trigger this vulnerability. A strcpy overflows the buffer insteon_pubnub.channel_ak, which has a size of 16 bytes. An attacker can send an arbitrarily long "ak" parameter in order to exploit this vulnerability.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-36xm-35qq-795w

около 3 лет назад

Inventory exposes reference to non-Sync data to an arbitrary thread

EPSS: Низкий
github логотип

GHSA-36xj-qg9x-f33m

больше 4 лет назад

The IPv6 routing header parser in tcpdump before 4.9.2 has a buffer over-read in print-rt6.c:rt6_print().

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-36xj-gx8g-m5fr

почти 2 года назад

The goTenna Pro series allows unauthenticated attackers to remotely update the local public keys used for P2P and Group messages.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-36xj-gcr2-cgrf

больше 2 лет назад

Buffer Overflow vulnerability in the nomath() function in Mathtex v.1.05 and before allows a remote attacker to cause a denial of service via a crafted string in the application URL.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-36xh-w73j-574g

больше 4 лет назад

A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from this vulnerability is to system availability.

EPSS: Низкий
github логотип

GHSA-36xh-8g5r-c7cj

больше 4 лет назад

The recursor in PowerDNS before 3.0.1 allows remote attackers to cause a denial of service (application crash) via malformed EDNS0 packets.

EPSS: Низкий
github логотип

GHSA-36xh-276f-w5j9

около 2 лет назад

The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-36xg-989x-49mx

больше 4 лет назад

Unquoted Windows search path vulnerability in iTunesHelper.exe in iTunes 4.7.1.30 and iTunes 5 for Windows might allow local users to gain privileges via a malicious C:\program.exe file.

EPSS: Низкий
github логотип

GHSA-36xg-7wfq-m2jj

больше 1 года назад

A vulnerability classified as problematic has been found in enilu web-flash 1.0. This affects the function fileService.upload of the file src/main/java/cn/enilu/flash/api/controller/FileController/upload of the component File Upload. The manipulation of the argument File leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-36xg-4chx-xvwp

около 1 месяца назад

In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the readdir entry size 64-bit in fill_from_part() fill_from_part() computes the size of a directory entry in size_t but stores it in a __u32. An entry length near U32_MAX wraps it to a small value, bypasses the bounds check, and is then used to index the entry, reading far past the directory part -- an out-of-bounds read that oopses the kernel. Compute the size as a u64 so it cannot truncate; the bounds check then rejects the entry. The trailer is supplied by the userspace client.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-36xf-6g36-vrxc

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in mod.php in the datenbank module for phpBB allows remote attackers to inject arbitrary web script or HTML via the id parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-36xr-4x2f-cfj9

Deserialization of Untrusted Data in Apache Camel SQL

CVSS3: 7.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-36xq-7w8w-xp68

Magento affected by a blind SSRF vulnerability in the bundled dotmailer extension

CVSS3: 8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-36xp-mvwg-23pf

IBM TRIRIGA Application Platform 3.3 before 3.3.2.6, 3.4 before 3.4.2.3, and 3.5 before 3.5.0.1 allows remote authenticated users to read or modify arbitrary reports by leveraging an incorrect grant of access. IBM X-Force ID: 111783.

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
github логотип
GHSA-36xp-gf7g-mgvq

XSS in Telligent Community 5.6.583.20496 via a flash file and related to the allowScriptAccess parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-36xm-wx7c-g2hq

Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Security). Supported versions that are affected are Java SE: 6u181, 7u161 and 8u152; Java SE Embedded: 8u152; JRockit: R28.3.17. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols to compromise Java SE, Java SE Embedded, JRockit. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Java SE, Java SE Embedded, JRockit accessible data as well as unauthorized access to critical data or complete access to all Java SE, Java SE Embedded, JRockit accessible data. Note: Applies to client and server deployment of Java. This vulnerability can be exploited through sandboxed Java Web Start applications and sandboxed Java applets. It can also be exploited by supplying data to APIs in the specified Component without using sandboxed Java Web Start applications or ...

CVSS3: 7.4
4%
Низкий
больше 4 лет назад
github логотип
GHSA-36xm-w97x-vmwh

In ApexPro Telemetry Server Versions 4.2 and prior, CARESCAPE Telemetry Server v4.2 & prior, Clinical Information Center (CIC) Versions 4.X and 5.X, CARESCAPE Central Station (CSCS) Versions 1.X, B450 Version 2.X, B650 Version 1.X, B650 Version 2.X, B850 Version 1.X, B850 Version 2.X, a vulnerability in the software update mechanism allows an authenticated attacker to upload arbitrary files on the system through a crafted update package.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-36xm-f9vf-c2w5

Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD command.

32%
Средний
больше 4 лет назад
github логотип
GHSA-36xm-ch76-gv9j

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in SaurabhSharma WP Post Modules for Elementor allows Reflected XSS. This issue affects WP Post Modules for Elementor: from n/a through 2.5.0.

CVSS3: 7.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-36xm-4j44-qpm8

On Insteon Hub 2245-222 devices with firmware version 1012, specially crafted replies received from the PubNub service can cause buffer overflows on a global section overwriting arbitrary data. An attacker should impersonate PubNub and answer an HTTPS GET request to trigger this vulnerability. A strcpy overflows the buffer insteon_pubnub.channel_ak, which has a size of 16 bytes. An attacker can send an arbitrarily long "ak" parameter in order to exploit this vulnerability.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-36xm-35qq-795w

Inventory exposes reference to non-Sync data to an arbitrary thread

около 3 лет назад
github логотип
GHSA-36xj-qg9x-f33m

The IPv6 routing header parser in tcpdump before 4.9.2 has a buffer over-read in print-rt6.c:rt6_print().

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-36xj-gx8g-m5fr

The goTenna Pro series allows unauthenticated attackers to remotely update the local public keys used for P2P and Group messages.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-36xj-gcr2-cgrf

Buffer Overflow vulnerability in the nomath() function in Mathtex v.1.05 and before allows a remote attacker to cause a denial of service via a crafted string in the application URL.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-36xh-w73j-574g

A flaw was found in samba. Spaces used in a string around a domain name (DN), while supposed to be ignored, can cause invalid DN strings with spaces to instead write a zero-byte into out-of-bounds memory, resulting in a crash. The highest threat from this vulnerability is to system availability.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-36xh-8g5r-c7cj

The recursor in PowerDNS before 3.0.1 allows remote attackers to cause a denial of service (application crash) via malformed EDNS0 packets.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-36xh-276f-w5j9

The Accordion Image Menu WordPress plugin through 3.1.3 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack.

CVSS3: 5.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-36xg-989x-49mx

Unquoted Windows search path vulnerability in iTunesHelper.exe in iTunes 4.7.1.30 and iTunes 5 for Windows might allow local users to gain privileges via a malicious C:\program.exe file.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-36xg-7wfq-m2jj

A vulnerability classified as problematic has been found in enilu web-flash 1.0. This affects the function fileService.upload of the file src/main/java/cn/enilu/flash/api/controller/FileController/upload of the component File Upload. The manipulation of the argument File leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 3.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-36xg-4chx-xvwp

In the Linux kernel, the following vulnerability has been resolved: orangefs: keep the readdir entry size 64-bit in fill_from_part() fill_from_part() computes the size of a directory entry in size_t but stores it in a __u32. An entry length near U32_MAX wraps it to a small value, bypasses the bounds check, and is then used to index the entry, reading far past the directory part -- an out-of-bounds read that oopses the kernel. Compute the size as a u64 so it cannot truncate; the bounds check then rejects the entry. The trailer is supplied by the userspace client.

CVSS3: 9.8
1%
Низкий
около 1 месяца назад
github логотип
GHSA-36xf-6g36-vrxc

Cross-site scripting (XSS) vulnerability in mod.php in the datenbank module for phpBB allows remote attackers to inject arbitrary web script or HTML via the id parameter.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу