Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 356

Количество 375 356

github логотип

GHSA-3683-hgvx-mjx6

около 2 лет назад

A vulnerability that allows an attacker to access the NTLM hash of the Veeam Reporter Service service account. This attack requires user interaction and data collected from Veeam Backup & Replication.

CVSS3: 9
EPSS: Низкий
github логотип

GHSA-3683-8rfr-7vwg

больше 4 лет назад

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a heap overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

EPSS: Средний
github логотип

GHSA-3683-8g82-pvmc

больше 4 лет назад

The Netmaster CBW700N cable modem with software 81.447.392110.729.024 has an SNMP community of public, which allows remote attackers to obtain sensitive credential, key, and SSID information via an SNMP request.

EPSS: Средний
github логотип

GHSA-3683-4687-ggx7

около 1 месяца назад

Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Payments. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Payments accessible data as well as unauthorized access to critical data or complete access to all Oracle Payments accessible data. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-3683-2c96-6v5c

больше 4 лет назад

Due to the Asset Explorer agent not validating HTTPS certificates, an attacker on the network can statically configure their IP address to match the Asset Explorer's Server IP address. This will allow an attacker to send a NEWSCAN request to a listening agent on the network as well as receive the agent's HTTP request verifying its authtoken. In AEAgent.cpp, the agent responding back over HTTP is vulnerable to a Heap Overflow if the POST payload response is too large. The POST payload response is converted to Unicode using vswprintf. This is written to a buffer only 0x2000 bytes big. If POST payload is larger, then heap overflow will occur.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-367x-r4ff-gpg6

больше 4 лет назад

Untrusted search path vulnerability in Douroshisetu Kihon Data Sakusei System Ver1.0.2 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-367x-pccg-fc8h

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in the W3 Total Cache plugin before 0.9.4.1 for WordPress, when debug mode is enabled, allows remote attackers to inject arbitrary web script or HTML via the "Cache key" in the HTML-Comments, as demonstrated by the PATH_INFO to the default URI.

EPSS: Низкий
github логотип

GHSA-367x-h255-cj4w

больше 4 лет назад

The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24157888.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-367w-87rf-wcf4

больше 4 лет назад

Linksys EtherFast Cable/DSL BEFSR11, BEFSR41 and BEFSRU31 with the firmware 1.42.7 upgrade installed opens TCP port 5678 for remote administration even when the "Block WAN" and "Remote Admin" options are disabled, which allows remote attackers to gain access.

EPSS: Низкий
github логотип

GHSA-367v-x7f9-9fgg

больше 4 лет назад

Falcon web server 2.0.0.1021 and earlier allows remote attackers to bypass access restrictions for protected files via a URL whose directory portion ends in a . (dot).

EPSS: Низкий
github логотип

GHSA-367v-pv48-64fx

больше 4 лет назад

In amcs_cdev_unlocked_ioctl of audiometrics.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-206128522References: N/A

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-367v-cj33-9229

больше 4 лет назад

The Cobham EXPLORER 710, firmware version 1.07, does not validate its firmware image. Development scripts left in the firmware can be used to upload a custom firmware image that the device runs. This could allow an unauthenticated, local attacker to upload their own firmware that could be used to intercept or modify traffic, spoof or intercept GPS traffic, exfiltrate private data, hide a backdoor, or cause a denial-of-service.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-367v-6g5w-8w9w

больше 4 лет назад

Multiple PHP remote file inclusion vulnerabilities in PHP-Generics 1.0 beta allow remote attackers to execute arbitrary PHP code via a URL in the _APP_RELATIVE_PATH parameter to (1) include.php, (2) dbcommon/include.php, and (3) exception/include.php.

EPSS: Низкий
github логотип

GHSA-367v-5ppj-2hrx

около 1 года назад

Jenkins HTML Publisher Plugin vulnerability displays controller file system information in its logs

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-367v-52gr-ccrc

больше 4 лет назад

Multiple format string vulnerabilities in emil 2.1.0 and earlier may allow remote attackers to execute arbitrary code by triggering certain error messages.

EPSS: Низкий
github логотип

GHSA-367q-qqwh-pw9w

больше 4 лет назад

The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-367q-prcf-2r3g

больше 4 лет назад

In Bftpd before 4.7, there is a memory leak in the file rename function.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-367q-j23v-q67j

больше 4 лет назад

Netopia ISDN Router 650-ST before 4.3.5 allows remote attackers to read system logs without authentication by directly connecting to the login screen and typing certain control characters.

EPSS: Низкий
github логотип

GHSA-367q-hhvx-9x63

10 месяцев назад

A reflected cross-site scripted (XSS) vulnerability in OpenCode Systems USSD Gateway OC Release: 5 allows attackers to execute arbitrary JavaScript in the context of a user's browser via injecting a crafted payload.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-367q-63cf-925j

больше 3 лет назад

An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2 before 14.2.7930, and 14.3 before 14.3.8025. There is potentially dangerous file upload through the SharePoint connector.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-3683-hgvx-mjx6

A vulnerability that allows an attacker to access the NTLM hash of the Veeam Reporter Service service account. This attack requires user interaction and data collected from Veeam Backup & Replication.

CVSS3: 9
1%
Низкий
около 2 лет назад
github логотип
GHSA-3683-8rfr-7vwg

Acrobat Reader DC version 21.007.20099 (and earlier), 20.004.30017 (and earlier) and 17.011.30204 (and earlier) are affected by a heap overflow vulnerability due to insecure handling of a crafted file, potentially resulting in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

29%
Средний
больше 4 лет назад
github логотип
GHSA-3683-8g82-pvmc

The Netmaster CBW700N cable modem with software 81.447.392110.729.024 has an SNMP community of public, which allows remote attackers to obtain sensitive credential, key, and SSID information via an SNMP request.

17%
Средний
больше 4 лет назад
github логотип
GHSA-3683-4687-ggx7

Vulnerability in the Oracle Payments product of Oracle E-Business Suite (component: File Transmission). Supported versions that are affected are 12.2.3-12.2.15. Difficult to exploit vulnerability allows unauthenticated attacker with network access via HTTPS to compromise Oracle Payments. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle Payments accessible data as well as unauthorized access to critical data or complete access to all Oracle Payments accessible data. CVSS 3.1 Base Score 7.4 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N).

CVSS3: 7.4
0%
Низкий
около 1 месяца назад
github логотип
GHSA-3683-2c96-6v5c

Due to the Asset Explorer agent not validating HTTPS certificates, an attacker on the network can statically configure their IP address to match the Asset Explorer's Server IP address. This will allow an attacker to send a NEWSCAN request to a listening agent on the network as well as receive the agent's HTTP request verifying its authtoken. In AEAgent.cpp, the agent responding back over HTTP is vulnerable to a Heap Overflow if the POST payload response is too large. The POST payload response is converted to Unicode using vswprintf. This is written to a buffer only 0x2000 bytes big. If POST payload is larger, then heap overflow will occur.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-367x-r4ff-gpg6

Untrusted search path vulnerability in Douroshisetu Kihon Data Sakusei System Ver1.0.2 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-367x-pccg-fc8h

Cross-site scripting (XSS) vulnerability in the W3 Total Cache plugin before 0.9.4.1 for WordPress, when debug mode is enabled, allows remote attackers to inject arbitrary web script or HTML via the "Cache key" in the HTML-Comments, as demonstrated by the PATH_INFO to the default URI.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-367x-h255-cj4w

The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24157888.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-367w-87rf-wcf4

Linksys EtherFast Cable/DSL BEFSR11, BEFSR41 and BEFSRU31 with the firmware 1.42.7 upgrade installed opens TCP port 5678 for remote administration even when the "Block WAN" and "Remote Admin" options are disabled, which allows remote attackers to gain access.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-367v-x7f9-9fgg

Falcon web server 2.0.0.1021 and earlier allows remote attackers to bypass access restrictions for protected files via a URL whose directory portion ends in a . (dot).

2%
Низкий
больше 4 лет назад
github логотип
GHSA-367v-pv48-64fx

In amcs_cdev_unlocked_ioctl of audiometrics.c, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-206128522References: N/A

CVSS3: 6.7
0%
Низкий
больше 4 лет назад
github логотип
GHSA-367v-cj33-9229

The Cobham EXPLORER 710, firmware version 1.07, does not validate its firmware image. Development scripts left in the firmware can be used to upload a custom firmware image that the device runs. This could allow an unauthenticated, local attacker to upload their own firmware that could be used to intercept or modify traffic, spoof or intercept GPS traffic, exfiltrate private data, hide a backdoor, or cause a denial-of-service.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-367v-6g5w-8w9w

Multiple PHP remote file inclusion vulnerabilities in PHP-Generics 1.0 beta allow remote attackers to execute arbitrary PHP code via a URL in the _APP_RELATIVE_PATH parameter to (1) include.php, (2) dbcommon/include.php, and (3) exception/include.php.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-367v-5ppj-2hrx

Jenkins HTML Publisher Plugin vulnerability displays controller file system information in its logs

CVSS3: 4.3
0%
Низкий
около 1 года назад
github логотип
GHSA-367v-52gr-ccrc

Multiple format string vulnerabilities in emil 2.1.0 and earlier may allow remote attackers to execute arbitrary code by triggering certain error messages.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-367q-qqwh-pw9w

The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-367q-prcf-2r3g

In Bftpd before 4.7, there is a memory leak in the file rename function.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-367q-j23v-q67j

Netopia ISDN Router 650-ST before 4.3.5 allows remote attackers to read system logs without authentication by directly connecting to the login screen and typing certain control characters.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-367q-hhvx-9x63

A reflected cross-site scripted (XSS) vulnerability in OpenCode Systems USSD Gateway OC Release: 5 allows attackers to execute arbitrary JavaScript in the context of a user's browser via injecting a crafted payload.

CVSS3: 6.1
0%
Низкий
10 месяцев назад
github логотип
GHSA-367q-63cf-925j

An issue was discovered in Progress Sitefinity 13.3 before 13.3.7647, 14.0 before 14.0.7736, 14.1 before 14.1.7826, 14.2 before 14.2.7930, and 14.3 before 14.3.8025. There is potentially dangerous file upload through the SharePoint connector.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу