Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 453

Количество 375 453

github логотип

GHSA-36x3-gg5m-4wjp

7 месяцев назад

BlackMoon FTP Server 3.1.2.1731 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted binary path in the service configuration to insert malicious code that would execute with LocalSystem account permissions during service startup.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-36x3-32q8-65fc

9 месяцев назад

EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export lab files. This interface lacks effective input validation and filtering when processing file path parameters submitted by users.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-36x2-5xhq-cc55

больше 4 лет назад

Katy Whitton BlogIt! stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request for database/Blog.mdb. NOTE: some of these details are obtained from third party information.

EPSS: Низкий
github логотип

GHSA-36x2-2rm5-fgp4

около 1 года назад

An issue was discovered in the changePassword method in file /usr/share/php/openmediavault/system/user.inc in OpenMediaVault 7.4.17 allowing local authenticated attackers to escalate privileges to root.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-36wx-6wfq-226v

4 месяца назад

A Reports application infrastructure vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) due to insecure input validation. This issue uniquely affects version 17.4.0; earlier software releases are not exposed.

CVSS3: 6
EPSS: Низкий
github логотип

GHSA-36wx-38c5-qgh9

больше 4 лет назад

MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18 allows unauthorized remote attackers to obtain sensitive information via the "/xml/menu/getObjectEditor.xml" URL, using a "?oid=systemSetup&id=_0" or "?oid=systemUsers&id=_0" GET request.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-36ww-x63p-687w

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header, which is not properly handled when the administrator views site statistics.

EPSS: Низкий
github логотип

GHSA-36ww-gq8g-5w4j

больше 4 лет назад

Multiple SQL injection vulnerabilities in Jetbox CMS 2.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) orderby parameter to admin/cms/images.php and the (2) nav_id parameter in an editrecord action to admin/cms/nav.php.

EPSS: Низкий
github логотип

GHSA-36ww-7vxr-9ggq

больше 4 лет назад

This affects the package s-cart/core before 4.4. The search functionality of the admin dashboard in core/src/Admin/Controllers/AdminOrderController.phpindex is vulnerable to XSS.

EPSS: Низкий
github логотип

GHSA-36wv-xxqg-vvqx

больше 4 лет назад

The ELF file parser in eSafe 7.0.17.0, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified padding field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.

EPSS: Высокий
github логотип

GHSA-36wv-v2qp-v4g4

около 1 года назад

Apache CXF is vulnerable to DoS attacks as entire files are read into memory and logged

CVSS3: 5.6
EPSS: Низкий
github логотип

GHSA-36wv-rwmv-5hf6

больше 4 лет назад

The Edit Comments WordPress plugin through 0.3 does not sanitise, validate or escape the jal_edit_comments GET parameter before using it in a SQL statement, leading to a SQL injection issue

EPSS: Низкий
github логотип

GHSA-36wv-jqc8-m47v

3 месяца назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in iova.Mihai SliceWP allows Stored XSS. This issue affects SliceWP: from n/a through 1.2.6.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-36wv-fgw4-jx4j

больше 4 лет назад

The mintToken function of a smart contract implementation for ResidualShare, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-36wv-6w83-xmqr

почти 2 года назад

Memory corruption while maintaining memory maps of HLOS memory.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-36wr-w868-hx2g

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: ksmbd: discard write access to the directory open may_open() does not allow a directory to be opened with the write access. However, some writing flags set by client result in adding write access on server, making ksmbd incompatible with FUSE file system. Simply, let's discard the write access when opening a directory. list_add corruption. next is NULL. ------------[ cut here ]------------ kernel BUG at lib/list_debug.c:26! pc : __list_add_valid+0x88/0xbc lr : __list_add_valid+0x88/0xbc Call trace: __list_add_valid+0x88/0xbc fuse_finish_open+0x11c/0x170 fuse_open_common+0x284/0x5e8 fuse_dir_open+0x14/0x24 do_dentry_open+0x2a4/0x4e0 dentry_open+0x50/0x80 smb2_open+0xbe4/0x15a4 handle_ksmbd_work+0x478/0x5ec process_one_work+0x1b4/0x448 worker_thread+0x25c/0x430 kthread+0x104/0x1d4 ret_from_fork+0x10/0x20

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-36wq-hmr3-cfc5

5 месяцев назад

A vulnerability was determined in D-Link DGS-3420 1.50.018. This issue affects some unknown processing of the component System Information Settings Page. This manipulation of the argument System Name causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.

CVSS3: 4.5
EPSS: Низкий
github логотип

GHSA-36wp-r9w6-8qw8

больше 1 года назад

Exposure of sensitive information to an unauthorized actor in Windows Hello allows an authorized attacker to disclose information locally.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-36wp-g3gj-7v3h

больше 4 лет назад

IBM Engineering Requirements Quality Assistant On-Premises could allow an authenticated user to obtain sensitive information due to improper input validation. IBM X-Force ID: 186282.

EPSS: Низкий
github логотип

GHSA-36wp-8fj8-g4xg

больше 4 лет назад

NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to databases/Users.mdb.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-36x3-gg5m-4wjp

BlackMoon FTP Server 3.1.2.1731 contains an unquoted service path vulnerability that allows local users to potentially execute code with elevated system privileges. Attackers can exploit the unquoted binary path in the service configuration to insert malicious code that would execute with LocalSystem account permissions during service startup.

CVSS3: 7.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-36x3-32q8-65fc

EVE-NG 6.4.0-13-PRO is vulnerable to Directory Traversal. The /api/export interface allows authenticated users to export lab files. This interface lacks effective input validation and filtering when processing file path parameters submitted by users.

CVSS3: 7.6
1%
Низкий
9 месяцев назад
github логотип
GHSA-36x2-5xhq-cc55

Katy Whitton BlogIt! stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request for database/Blog.mdb. NOTE: some of these details are obtained from third party information.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-36x2-2rm5-fgp4

An issue was discovered in the changePassword method in file /usr/share/php/openmediavault/system/user.inc in OpenMediaVault 7.4.17 allowing local authenticated attackers to escalate privileges to root.

CVSS3: 7.8
0%
Низкий
около 1 года назад
github логотип
GHSA-36wx-6wfq-226v

A Reports application infrastructure vulnerability exists in Arista Edge Threat Management - Arista Next Generation Firewall (NGFW) due to insecure input validation. This issue uniquely affects version 17.4.0; earlier software releases are not exposed.

CVSS3: 6
0%
Низкий
4 месяца назад
github логотип
GHSA-36wx-38c5-qgh9

MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18 allows unauthorized remote attackers to obtain sensitive information via the "/xml/menu/getObjectEditor.xml" URL, using a "?oid=systemSetup&id=_0" or "?oid=systemUsers&id=_0" GET request.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-36ww-x63p-687w

Cross-site scripting (XSS) vulnerability in Joomla BSQ Sitestats 1.8.0 and 2.2.1 allows remote attackers to inject arbitrary web script or HTML via the HTTP Referer header, which is not properly handled when the administrator views site statistics.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-36ww-gq8g-5w4j

Multiple SQL injection vulnerabilities in Jetbox CMS 2.1 allow remote authenticated users to execute arbitrary SQL commands via the (1) orderby parameter to admin/cms/images.php and the (2) nav_id parameter in an editrecord action to admin/cms/nav.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-36ww-7vxr-9ggq

This affects the package s-cart/core before 4.4. The search functionality of the admin dashboard in core/src/Admin/Controllers/AdminOrderController.phpindex is vulnerable to XSS.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-36wv-xxqg-vvqx

The ELF file parser in eSafe 7.0.17.0, Rising Antivirus 22.83.00.03, Fortinet Antivirus 4.2.254.0, and Panda Antivirus 10.0.2.7 allows remote attackers to bypass malware detection via an ELF file with a modified padding field. NOTE: this may later be SPLIT into multiple CVEs if additional information is published showing that the error occurred independently in different ELF parser implementations.

90%
Высокий
больше 4 лет назад
github логотип
GHSA-36wv-v2qp-v4g4

Apache CXF is vulnerable to DoS attacks as entire files are read into memory and logged

CVSS3: 5.6
1%
Низкий
около 1 года назад
github логотип
GHSA-36wv-rwmv-5hf6

The Edit Comments WordPress plugin through 0.3 does not sanitise, validate or escape the jal_edit_comments GET parameter before using it in a SQL statement, leading to a SQL injection issue

2%
Низкий
больше 4 лет назад
github логотип
GHSA-36wv-jqc8-m47v

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in iova.Mihai SliceWP allows Stored XSS. This issue affects SliceWP: from n/a through 1.2.6.

CVSS3: 7.1
0%
Низкий
3 месяца назад
github логотип
GHSA-36wv-fgw4-jx4j

The mintToken function of a smart contract implementation for ResidualShare, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-36wv-6w83-xmqr

Memory corruption while maintaining memory maps of HLOS memory.

CVSS3: 7.8
1%
Низкий
почти 2 года назад
github логотип
GHSA-36wr-w868-hx2g

In the Linux kernel, the following vulnerability has been resolved: ksmbd: discard write access to the directory open may_open() does not allow a directory to be opened with the write access. However, some writing flags set by client result in adding write access on server, making ksmbd incompatible with FUSE file system. Simply, let's discard the write access when opening a directory. list_add corruption. next is NULL. ------------[ cut here ]------------ kernel BUG at lib/list_debug.c:26! pc : __list_add_valid+0x88/0xbc lr : __list_add_valid+0x88/0xbc Call trace: __list_add_valid+0x88/0xbc fuse_finish_open+0x11c/0x170 fuse_open_common+0x284/0x5e8 fuse_dir_open+0x14/0x24 do_dentry_open+0x2a4/0x4e0 dentry_open+0x50/0x80 smb2_open+0xbe4/0x15a4 handle_ksmbd_work+0x478/0x5ec process_one_work+0x1b4/0x448 worker_thread+0x25c/0x430 kthread+0x104/0x1d4 ret_from_fork+0x10/0x20

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-36wq-hmr3-cfc5

A vulnerability was determined in D-Link DGS-3420 1.50.018. This issue affects some unknown processing of the component System Information Settings Page. This manipulation of the argument System Name causes cross site scripting. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized.

CVSS3: 4.5
1%
Низкий
5 месяцев назад
github логотип
GHSA-36wp-r9w6-8qw8

Exposure of sensitive information to an unauthorized actor in Windows Hello allows an authorized attacker to disclose information locally.

CVSS3: 4.4
1%
Низкий
больше 1 года назад
github логотип
GHSA-36wp-g3gj-7v3h

IBM Engineering Requirements Quality Assistant On-Premises could allow an authenticated user to obtain sensitive information due to improper input validation. IBM X-Force ID: 186282.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-36wp-8fj8-g4xg

NEXTWEB (i)Site stores databases under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information via a direct request to databases/Users.mdb.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу