Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 269

Количество 353 269

github логотип

GHSA-2334-4qc6-g6xv

около 4 лет назад

BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP5 and earlier, do not encrypt multicast traffic, which might allow remote attackers to read sensitive cluster synchronization messages by sniffing the multicast traffic.

EPSS: Низкий
github логотип

GHSA-2333-38mw-8777

16 дней назад

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2332-v8xq-hpvx

около 3 лет назад

In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘map’ search processing language (SPL) command lets a search [bypass SPL safeguards for risky commands](https://docs.splunk.com/Documentation/Splunk/latest/Security/SPLsafeguards). The vulnerability requires a higher privileged user to initiate a request within their browser and only affects instances with Splunk Web enabled.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2332-q5x7-f8c3

около 4 лет назад

This issue was addressed with improved checks. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted image may lead to arbitrary code execution.

EPSS: Низкий
github логотип

GHSA-2332-q5fp-53mf

12 дней назад

In the Linux kernel, the following vulnerability has been resolved: irqchip/imgpdc: Fix resource leak, add missing chained handler cleanup on remove The driver allocates domain generic chips using irq_alloc_domain_generic_chips() during probe and sets up chained handlers using irq_set_chained_handler_and_data(). However, on driver removal, the generic chips are not freed and the chained handlers are not removed. The generic chips remain on the global gc_list and may later be accessed by generic interrupt chip suspend, resume, or shutdown callbacks after the driver has been removed, potentially resulting in a use-after-free and kernel crash. The chained handlers that were installed in probe for peripheral and syswake interrupts are also left dangling, which can lead to spurious interrupts accessing freed memory. Fix these issues by: - Setting IRQ_DOMAIN_FLAG_DESTROY_GC flag in domain->flags, so the core code automatically removes generic chips when irq_domain_remove() ...

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2332-hcww-wjmr

около 4 лет назад

The _dbus_validate_signature_with_reason function (dbus-marshal-validate.c) in D-Bus (aka DBus) before 1.2.14 uses incorrect logic to validate a basic type, which allows remote attackers to spoof a signature via a crafted key. NOTE: this is due to an incorrect fix for CVE-2008-3834.

EPSS: Низкий
github логотип

GHSA-232x-fx5w-m6mj

больше 1 года назад

Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cohesive Networks VNS3. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web service, which listens on TCP port 8000 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24176.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-232w-p9jf-7fx8

около 4 лет назад

SQL injection vulnerability in the Shape5 Bridge of Hope template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to index.php.

EPSS: Низкий
github логотип

GHSA-232w-9qhw-4pxx

около 4 лет назад

A vulnerability, which was classified as problematic, has been found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832. This issue affects some unknown processing. The manipulation leads to backdoor. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-232w-33h3-9wp7

около 4 лет назад

The search-everything plugin before 8.1.6 for WordPress has SQL injection related to empty search strings, a different vulnerability than CVE-2014-2316.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-232v-xqxf-3rrg

больше 3 лет назад

In compose of Vibrator.cpp, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-228523213

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-232v-j27c-5pp6

7 месяцев назад

REC in MCPJam inspector due to HTTP Endpoint exposes

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-232r-9jvp-5ffj

около 4 лет назад

European Commission eIDAS-Node Integration Package before 2.3.1 has Missing Certificate Validation because a certain ExplicitKeyTrustEvaluator return value is not checked. NOTE: only 2.1 is confirmed to be affected.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-232r-6v76-wgpq

около 4 лет назад

Cross-site scripting (XSS) vulnerability in the Canon PrintMe EFI webinterface allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the /wt3/mydocs.php URI.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-232r-66cg-79px

около 8 лет назад

Paramiko not properly checking authentication before processing other requests

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-232r-27pv-pm68

около 4 лет назад

Unrestricted file upload vulnerability in the "My productions" component for main/auth/profile.php (aka the "My profile" page) in Dokeos 1.8.4 allows remote authenticated users to upload and execute arbitrary PHP files via a filename with a double extension, which can then be accessed through a URI under main/upload/users/.

EPSS: Низкий
github логотип

GHSA-232q-w9mq-2c55

больше 3 лет назад

The GS Insever Portfolio WordPress plugin before 1.4.5 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-232q-v7rp-6ff8

почти 2 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Forcepoint Email Security (Real Time Monitor modules) allows Reflected XSS.This issue affects Email Security: before 8.5.5 HF003.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-232p-vwff-86mp

больше 3 лет назад

Docker Swarm encrypted overlay network may be unauthenticated

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-232p-m442-j9m4

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: smc: Handle missing SCM device Commit ca61d6836e6f ("firmware: qcom: scm: fix a NULL-pointer dereference") makes it explicit that qcom_scm_get_tzmem_pool() can return NULL, therefore its users should handle this.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2334-4qc6-g6xv

BEA WebLogic Server and WebLogic Express 8.1 SP4 and earlier, and 7.0 SP5 and earlier, do not encrypt multicast traffic, which might allow remote attackers to read sensitive cluster synchronization messages by sniffing the multicast traffic.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2333-38mw-8777

Protection mechanism failure in Windows Event Logging Service allows an authorized attacker to disclose information over a network.

CVSS3: 6.5
1%
Низкий
16 дней назад
github логотип
GHSA-2332-v8xq-hpvx

In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘map’ search processing language (SPL) command lets a search [bypass SPL safeguards for risky commands](https://docs.splunk.com/Documentation/Splunk/latest/Security/SPLsafeguards). The vulnerability requires a higher privileged user to initiate a request within their browser and only affects instances with Splunk Web enabled.

CVSS3: 8.8
1%
Низкий
около 3 лет назад
github логотип
GHSA-2332-q5x7-f8c3

This issue was addressed with improved checks. This issue is fixed in tvOS 14.6, iOS 14.6 and iPadOS 14.6, Security Update 2021-003 Catalina, macOS Big Sur 11.4, watchOS 7.5. Processing a maliciously crafted image may lead to arbitrary code execution.

1%
Низкий
около 4 лет назад
github логотип
GHSA-2332-q5fp-53mf

In the Linux kernel, the following vulnerability has been resolved: irqchip/imgpdc: Fix resource leak, add missing chained handler cleanup on remove The driver allocates domain generic chips using irq_alloc_domain_generic_chips() during probe and sets up chained handlers using irq_set_chained_handler_and_data(). However, on driver removal, the generic chips are not freed and the chained handlers are not removed. The generic chips remain on the global gc_list and may later be accessed by generic interrupt chip suspend, resume, or shutdown callbacks after the driver has been removed, potentially resulting in a use-after-free and kernel crash. The chained handlers that were installed in probe for peripheral and syswake interrupts are also left dangling, which can lead to spurious interrupts accessing freed memory. Fix these issues by: - Setting IRQ_DOMAIN_FLAG_DESTROY_GC flag in domain->flags, so the core code automatically removes generic chips when irq_domain_remove() ...

CVSS3: 5.5
0%
Низкий
12 дней назад
github логотип
GHSA-2332-hcww-wjmr

The _dbus_validate_signature_with_reason function (dbus-marshal-validate.c) in D-Bus (aka DBus) before 1.2.14 uses incorrect logic to validate a basic type, which allows remote attackers to spoof a signature via a crafted key. NOTE: this is due to an incorrect fix for CVE-2008-3834.

1%
Низкий
около 4 лет назад
github логотип
GHSA-232x-fx5w-m6mj

Cohesive Networks VNS3 Command Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Cohesive Networks VNS3. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web service, which listens on TCP port 8000 by default. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-24176.

CVSS3: 9.8
2%
Низкий
больше 1 года назад
github логотип
GHSA-232w-p9jf-7fx8

SQL injection vulnerability in the Shape5 Bridge of Hope template for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in an article action to index.php.

1%
Низкий
около 4 лет назад
github логотип
GHSA-232w-9qhw-4pxx

A vulnerability, which was classified as problematic, has been found in JUNG Smart Visu Server 1.0.804/1.0.830/1.0.832. This issue affects some unknown processing. The manipulation leads to backdoor. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 1.0.900 is able to address this issue. It is recommended to upgrade the affected component.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-232w-33h3-9wp7

The search-everything plugin before 8.1.6 for WordPress has SQL injection related to empty search strings, a different vulnerability than CVE-2014-2316.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-232v-xqxf-3rrg

In compose of Vibrator.cpp, there is a possible arbitrary code execution due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-228523213

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-232v-j27c-5pp6

REC in MCPJam inspector due to HTTP Endpoint exposes

CVSS3: 9.8
45%
Средний
7 месяцев назад
github логотип
GHSA-232r-9jvp-5ffj

European Commission eIDAS-Node Integration Package before 2.3.1 has Missing Certificate Validation because a certain ExplicitKeyTrustEvaluator return value is not checked. NOTE: only 2.1 is confirmed to be affected.

CVSS3: 9.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-232r-6v76-wgpq

Cross-site scripting (XSS) vulnerability in the Canon PrintMe EFI webinterface allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the /wt3/mydocs.php URI.

CVSS3: 6.1
2%
Низкий
около 4 лет назад
github логотип
GHSA-232r-66cg-79px

Paramiko not properly checking authentication before processing other requests

CVSS3: 9.8
27%
Средний
около 8 лет назад
github логотип
GHSA-232r-27pv-pm68

Unrestricted file upload vulnerability in the "My productions" component for main/auth/profile.php (aka the "My profile" page) in Dokeos 1.8.4 allows remote authenticated users to upload and execute arbitrary PHP files via a filename with a double extension, which can then be accessed through a URI under main/upload/users/.

2%
Низкий
около 4 лет назад
github логотип
GHSA-232q-w9mq-2c55

The GS Insever Portfolio WordPress plugin before 1.4.5 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

CVSS3: 5.4
1%
Низкий
больше 3 лет назад
github логотип
GHSA-232q-v7rp-6ff8

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Forcepoint Email Security (Real Time Monitor modules) allows Reflected XSS.This issue affects Email Security: before 8.5.5 HF003.

CVSS3: 8.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-232p-vwff-86mp

Docker Swarm encrypted overlay network may be unauthenticated

CVSS3: 7.5
3%
Низкий
больше 3 лет назад
github логотип
GHSA-232p-m442-j9m4

In the Linux kernel, the following vulnerability has been resolved: firmware: qcom: scm: smc: Handle missing SCM device Commit ca61d6836e6f ("firmware: qcom: scm: fix a NULL-pointer dereference") makes it explicit that qcom_scm_get_tzmem_pool() can return NULL, therefore its users should handle this.

CVSS3: 5.5
0%
Низкий
больше 1 года назад

Уязвимостей на страницу