Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 290

Количество 353 290

github логотип

GHSA-22wm-6r58-545p

около 4 лет назад

In the Microchip MiWi v6.5 software stack, there is a possibility of frame counters being being validated / updated prior to message authentication.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-22wm-233j-cq8q

больше 4 лет назад

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed file can lead to an out-of-bounds read and type confusion, which could lead to code execution. An attacker can provide malicious input to trigger any of these vulnerabilities. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_facet() fh->boundary_entry_objects SLoop_of.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-22wj-vpf8-3m9x

около 4 лет назад

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.9, 5.0.x through 5.0.28, and 4.0.x through 4.0.30. An attacker who is logged into OTRS as an agent may escalate their privileges by accessing a specially crafted URL.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-22wj-vp2m-rxhc

больше 1 года назад

DevExpress before 23.1.3 allows arbitrary TypeConverter conversion.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-22wj-vf5f-wrvj

больше 3 лет назад

Password exposure in H2 Database

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-22wj-5rv2-cqf6

больше 3 лет назад

An issue was discovered in Telindus Apsal 3.14.2022.235 b. Unauthorized actions that could modify the application behaviour may not be blocked.

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-22wj-58v7-9wh8

около 4 лет назад

Revive Adserver before 3.2.5 and 4.0.0 suffers from Reflected XSS. The Revive Adserver web installer scripts were vulnerable to a reflected XSS attack via the dbHost, dbUser, and possibly other parameters. It has to be noted that the window for such attack vectors to be possible is extremely narrow and it is very unlikely that such an attack could be actually effective.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-22wh-wq8h-xvf8

около 4 лет назад

An information disclosure vulnerability exists in the WiFi Smart Mesh functionality of D-LINK DIR-3040 1.13B03. A specially-crafted network request can lead to command execution. An attacker can connect to the MQTT service to trigger this vulnerability.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-22wg-vcp5-frcc

11 месяцев назад

A vulnerability was determined in Swatadru Exam-Seating-Arrangement up to 97335ccebf95468d92525f4255a2241d2b0b002f. Affected is an unknown function of the file /student.php of the component Student Login. Executing manipulation of the argument email can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-22wf-v4rq-wv6g

около 4 лет назад

Google Mini 4.4.102.M.36 and earlier allows remote attackers to obtain sensitive information via a direct request for /search with an invalid client parameter, which reveals the path in an error message.

EPSS: Низкий
github логотип

GHSA-22wf-j8j6-f67g

около 4 лет назад

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.58, D7800 before 1.0.1.40, R7500v2 before 1.0.3.34, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.3.16, RAX120 before 1.0.0.74, RBK20 before 2.3.0.22, RBR20 before 2.3.0.22, RBS20 before 2.3.0.22, RBK50 before 2.3.0.22, RBR50 before 2.3.0.22, RBS50 before 2.3.0.22, RBK40 before 2.3.0.22, RBS40 before 2.3.0.22, SRK60 before 2.2.0.64, SRR60 before 2.2.0.64, SRS60 before 2.2.0.64, WNDR3700v4 before 1.0.2.102, WNDR4300 before 1.0.2.104, WNDR4300v2 before 1.0.0.56, WNDR4500v3 before 1.0.0.56, and WNR2000v5 before 1.0.0.66.

EPSS: Низкий
github логотип

GHSA-22wf-h889-r7q7

больше 1 года назад

Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest access or an unprivileged account to gain additional administrative permissions in the application.This issue affects OXARI ServiceDesk in versions before 2.0.324.0.

EPSS: Низкий
github логотип

GHSA-22wf-fg96-jprv

больше 2 лет назад

In TOTOLINK X6000R_Firmware V9.4.0cu.852_B20230719, the shttpd file sub_417338 function obtains fields from the front-end, connects them through the snprintf function, and passes them to the CsteSystem function, resulting in a command execution vulnerability.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-22wc-c9wj-6q2v

больше 5 лет назад

VVE-2021-0001: Memory corruption using function calls within arrays

EPSS: Низкий
github логотип

GHSA-22wc-8hcq-634h

8 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: ext4: fix deadlock due to mbcache entry corruption When manipulating xattr blocks, we can deadlock infinitely looping inside ext4_xattr_block_set() where we constantly keep finding xattr block for reuse in mbcache but we are unable to reuse it because its reference count is too big. This happens because cache entry for the xattr block is marked as reusable (e_reusable set) although its reference count is too big. When this inconsistency happens, this inconsistent state is kept indefinitely and so ext4_xattr_block_set() keeps retrying indefinitely. The inconsistent state is caused by non-atomic update of e_reusable bit. e_reusable is part of a bitfield and e_reusable update can race with update of e_referenced bit in the same bitfield resulting in loss of one of the updates. Fix the problem by using atomic bitops instead. This bug has been around for many years, but it became *much* easier to hit after commit 65f...

EPSS: Низкий
github логотип

GHSA-22wc-7wmm-v4cc

около 4 лет назад

Liferay Portal and Liferay DXP does not properly check user permission

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-22w9-x8p2-69rp

около 4 лет назад

SQL injection vulnerability in admin.php in CloudNine Interactive Links Manager 2006-06-12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the nick parameter.

EPSS: Низкий
github логотип

GHSA-22w9-j288-8p9w

около 4 лет назад

OpenStack Nova Router metadata queries are not restricted by tenant

EPSS: Низкий
github логотип

GHSA-22w9-2h5w-c9pv

почти 4 года назад

The Duplicate Page and Post Plugin WordPress plugin through 2.7 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-22w8-qmw3-m9gr

около 4 лет назад

The if_clone_list function in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read potentially sensitive, uninitialized stack memory via unspecified vectors.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-22wm-6r58-545p

In the Microchip MiWi v6.5 software stack, there is a possibility of frame counters being being validated / updated prior to message authentication.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-22wm-233j-cq8q

Multiple code execution vulnerabilities exists in the Nef polygon-parsing functionality of CGAL libcgal CGAL-5.1.1. A specially crafted malformed file can lead to an out-of-bounds read and type confusion, which could lead to code execution. An attacker can provide malicious input to trigger any of these vulnerabilities. An oob read vulnerability exists in Nef_S2/SNC_io_parser.h SNC_io_parser<EW>::read_facet() fh->boundary_entry_objects SLoop_of.

CVSS3: 8.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-22wj-vpf8-3m9x

An issue was discovered in Open Ticket Request System (OTRS) 6.0.x through 6.0.9, 5.0.x through 5.0.28, and 4.0.x through 4.0.30. An attacker who is logged into OTRS as an agent may escalate their privileges by accessing a specially crafted URL.

CVSS3: 8.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-22wj-vp2m-rxhc

DevExpress before 23.1.3 allows arbitrary TypeConverter conversion.

CVSS3: 3.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-22wj-vf5f-wrvj

Password exposure in H2 Database

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-22wj-5rv2-cqf6

An issue was discovered in Telindus Apsal 3.14.2022.235 b. Unauthorized actions that could modify the application behaviour may not be blocked.

CVSS3: 8.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-22wj-58v7-9wh8

Revive Adserver before 3.2.5 and 4.0.0 suffers from Reflected XSS. The Revive Adserver web installer scripts were vulnerable to a reflected XSS attack via the dbHost, dbUser, and possibly other parameters. It has to be noted that the window for such attack vectors to be possible is extremely narrow and it is very unlikely that such an attack could be actually effective.

CVSS3: 5.4
2%
Низкий
около 4 лет назад
github логотип
GHSA-22wh-wq8h-xvf8

An information disclosure vulnerability exists in the WiFi Smart Mesh functionality of D-LINK DIR-3040 1.13B03. A specially-crafted network request can lead to command execution. An attacker can connect to the MQTT service to trigger this vulnerability.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-22wg-vcp5-frcc

A vulnerability was determined in Swatadru Exam-Seating-Arrangement up to 97335ccebf95468d92525f4255a2241d2b0b002f. Affected is an unknown function of the file /student.php of the component Student Login. Executing manipulation of the argument email can lead to sql injection. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 7.3
0%
Низкий
11 месяцев назад
github логотип
GHSA-22wf-v4rq-wv6g

Google Mini 4.4.102.M.36 and earlier allows remote attackers to obtain sensitive information via a direct request for /search with an invalid client parameter, which reveals the path in an error message.

4%
Низкий
около 4 лет назад
github логотип
GHSA-22wf-j8j6-f67g

Certain NETGEAR devices are affected by a stack-based buffer overflow by an authenticated user. This affects D6100 before 1.0.0.58, D7800 before 1.0.1.40, R7500v2 before 1.0.3.34, R7800 before 1.0.2.52, R8900 before 1.0.4.2, R9000 before 1.0.3.16, RAX120 before 1.0.0.74, RBK20 before 2.3.0.22, RBR20 before 2.3.0.22, RBS20 before 2.3.0.22, RBK50 before 2.3.0.22, RBR50 before 2.3.0.22, RBS50 before 2.3.0.22, RBK40 before 2.3.0.22, RBS40 before 2.3.0.22, SRK60 before 2.2.0.64, SRR60 before 2.2.0.64, SRS60 before 2.2.0.64, WNDR3700v4 before 1.0.2.102, WNDR4300 before 1.0.2.104, WNDR4300v2 before 1.0.0.56, WNDR4500v3 before 1.0.0.56, and WNR2000v5 before 1.0.0.66.

1%
Низкий
около 4 лет назад
github логотип
GHSA-22wf-h889-r7q7

Improper permission control vulnerability in the OXARI ServiceDesk application could allow an attacker using a guest access or an unprivileged account to gain additional administrative permissions in the application.This issue affects OXARI ServiceDesk in versions before 2.0.324.0.

0%
Низкий
больше 1 года назад
github логотип
GHSA-22wf-fg96-jprv

In TOTOLINK X6000R_Firmware V9.4.0cu.852_B20230719, the shttpd file sub_417338 function obtains fields from the front-end, connects them through the snprintf function, and passes them to the CsteSystem function, resulting in a command execution vulnerability.

CVSS3: 9.8
2%
Низкий
больше 2 лет назад
github логотип
GHSA-22wc-c9wj-6q2v

VVE-2021-0001: Memory corruption using function calls within arrays

больше 5 лет назад
github логотип
GHSA-22wc-8hcq-634h

In the Linux kernel, the following vulnerability has been resolved: ext4: fix deadlock due to mbcache entry corruption When manipulating xattr blocks, we can deadlock infinitely looping inside ext4_xattr_block_set() where we constantly keep finding xattr block for reuse in mbcache but we are unable to reuse it because its reference count is too big. This happens because cache entry for the xattr block is marked as reusable (e_reusable set) although its reference count is too big. When this inconsistency happens, this inconsistent state is kept indefinitely and so ext4_xattr_block_set() keeps retrying indefinitely. The inconsistent state is caused by non-atomic update of e_reusable bit. e_reusable is part of a bitfield and e_reusable update can race with update of e_referenced bit in the same bitfield resulting in loss of one of the updates. Fix the problem by using atomic bitops instead. This bug has been around for many years, but it became *much* easier to hit after commit 65f...

0%
Низкий
8 месяцев назад
github логотип
GHSA-22wc-7wmm-v4cc

Liferay Portal and Liferay DXP does not properly check user permission

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-22w9-x8p2-69rp

SQL injection vulnerability in admin.php in CloudNine Interactive Links Manager 2006-06-12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the nick parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-22w9-j288-8p9w

OpenStack Nova Router metadata queries are not restricted by tenant

2%
Низкий
около 4 лет назад
github логотип
GHSA-22w9-2h5w-c9pv

The Duplicate Page and Post Plugin WordPress plugin through 2.7 does not sanitise and escape its settings, allowing high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVSS3: 4.8
1%
Низкий
почти 4 года назад
github логотип
GHSA-22w8-qmw3-m9gr

The if_clone_list function in NetBSD-current before 20061027, NetBSD 3.0 and 3.0.1 before 20061027, and NetBSD 2.x before 20061119 allows local users to read potentially sensitive, uninitialized stack memory via unspecified vectors.

0%
Низкий
около 4 лет назад

Уязвимостей на страницу