Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 375 268

Количество 375 268

github логотип

GHSA-35rw-8ffm-c585

больше 4 лет назад

Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorization and modify the configuration of an affected system, gain access to sensitive information, and view information that they are not authorized to access. For more information about these vulnerabilities, see the Details section of this advisory.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-35rv-2jpx-mq5h

около 1 года назад

A vulnerability was identified in Surbowl dormitory-management-php up to 9f1d9d1f528cabffc66fda3652c56ff327fda317. Affected is an unknown function of the file /admin/violation_add.php?id=2. Such manipulation of the argument ID leads to sql injection. The attack may be performed from a remote location. The exploit is publicly available and might be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-35rr-w5p6-529c

больше 4 лет назад

Buffer overflow in the Windows logon process (winlogon) in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, and XP SP1, when a member of a domain, allows remote attackers to execute arbitrary code.

EPSS: Средний
github логотип

GHSA-35rr-mpm9-g6jw

больше 4 лет назад

Blind SQL injection in the login form in ServiceTonic Helpdesk software < 9.0.35937 allows attacker to exfiltrate information via specially crafted HQL-compatible time-based SQL queries.

EPSS: Низкий
github логотип

GHSA-35rp-m2pf-5xvg

больше 4 лет назад

AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.

EPSS: Низкий
github логотип

GHSA-35rm-h9jc-25g2

больше 4 лет назад

tog-Pegasus has a package hash collision DoS vulnerability

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-35rm-gh88-rf95

больше 4 лет назад

Cross-site scripting vulnerability in Splunk Enterprise 6.3.x prior to 6.3.5 and Splunk Light 6.3.x prior to 6.3.5 allows attacker with administrator rights to inject arbitrary web script or HTML via unspecified vectors.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-35rm-7j9c-2f7m

2 месяца назад

async-tar PAX extension-header desync enables tar entry/content smuggling

EPSS: Низкий
github логотип

GHSA-35rm-77cm-584v

больше 4 лет назад

An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code execution. The Samsung ID is SVE-2020-17435 (August 2020).

EPSS: Низкий
github логотип

GHSA-35rj-j8qg-5vgh

больше 4 лет назад

daemon.c in cman (redhat-cluster-suite) before 20070622 does not clear a buffer for reading requests, which might allow local users to obtain sensitive information from previous requests.

EPSS: Низкий
github логотип

GHSA-35rj-4m65-59q8

больше 3 лет назад

In getTrampolineIntent of SettingsActivity.java, there is a possible launch of arbitrary activity due to an Intent mismatch in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12L Android-13Android ID: A-246300272

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-35rh-9jh6-cw7p

больше 4 лет назад

The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process and can allow an unprivileged local attacker to load a malicious library, resulting in arbitrary code executing as root.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-35rh-6mjx-86f8

больше 4 лет назад

VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain multiple out-of-bounds read vulnerabilities in JPEG2000 parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Denial of Service on the Windows OS that runs Workstation. In the case of a Horizon View Client, this may allow a View desktop to execute code or perform a Denial of Service on the Windows OS that runs the Horizon View Client. Exploitation is only possible if virtual printing has been enabled. This feature is not enabled by default on Workstation but it is enabled by default on Horizon View.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-35rg-pjrx-fc55

больше 4 лет назад

Directory traversal vulnerability in geohttpserver in Geovision Digital Video Surveillance System 8.2 allows remote attackers to read arbitrary files via a .. (dot dot) in a GET request.

EPSS: Низкий
github логотип

GHSA-35rg-466w-77h3

больше 5 лет назад

Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, Plone

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-35rf-xg9j-vr62

больше 4 лет назад

Microsoft Office 2013 Gold, SP1, RT, and RT SP1 allows remote attackers to obtain sensitive token information via a web site that sends a crafted response during opening of an Office document, aka "Token Reuse Vulnerability."

EPSS: Средний
github логотип

GHSA-35rf-v5xv-3376

больше 4 лет назад

Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that Snort does not know about, as demonstrated by an nmap protocol scan.

EPSS: Низкий
github логотип

GHSA-35rf-v2jv-gfg7

почти 5 лет назад

Privilege escalation to cluster admin on multi-tenant environments

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-35rf-7vhx-9phr

около 4 лет назад

Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-35rf-2xxr-prvf

больше 1 года назад

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Bowo System Dashboard allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects System Dashboard: from n/a through 2.8.18.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-35rw-8ffm-c585

Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorization and modify the configuration of an affected system, gain access to sensitive information, and view information that they are not authorized to access. For more information about these vulnerabilities, see the Details section of this advisory.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-35rv-2jpx-mq5h

A vulnerability was identified in Surbowl dormitory-management-php up to 9f1d9d1f528cabffc66fda3652c56ff327fda317. Affected is an unknown function of the file /admin/violation_add.php?id=2. Such manipulation of the argument ID leads to sql injection. The attack may be performed from a remote location. The exploit is publicly available and might be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. This vulnerability only affects products that are no longer supported by the maintainer.

CVSS3: 7.3
0%
Низкий
около 1 года назад
github логотип
GHSA-35rr-w5p6-529c

Buffer overflow in the Windows logon process (winlogon) in Microsoft Windows NT 4.0 SP6a, 2000 SP2 through SP4, and XP SP1, when a member of a domain, allows remote attackers to execute arbitrary code.

33%
Средний
больше 4 лет назад
github логотип
GHSA-35rr-mpm9-g6jw

Blind SQL injection in the login form in ServiceTonic Helpdesk software < 9.0.35937 allows attacker to exfiltrate information via specially crafted HQL-compatible time-based SQL queries.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rp-m2pf-5xvg

AlstraSoft Video Share Enterprise allows remote attackers to obtain sensitive information (the full path) via (1) a ' (quote) character in the category parameter to view_video.php, or (2) an XSS sequence in the UID parameter to (a) uprofile.php, (b) channel_detail.php, (c) uvideos.php, (d) groups_home.php, or (e) ufriends.php.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rm-h9jc-25g2

tog-Pegasus has a package hash collision DoS vulnerability

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-35rm-gh88-rf95

Cross-site scripting vulnerability in Splunk Enterprise 6.3.x prior to 6.3.5 and Splunk Light 6.3.x prior to 6.3.5 allows attacker with administrator rights to inject arbitrary web script or HTML via unspecified vectors.

CVSS3: 4.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rm-7j9c-2f7m

async-tar PAX extension-header desync enables tar entry/content smuggling

0%
Низкий
2 месяца назад
github логотип
GHSA-35rm-77cm-584v

An issue was discovered on Samsung mobile devices with Q(10.0) (exynos9830 chipsets) software. RKP allows arbitrary code execution. The Samsung ID is SVE-2020-17435 (August 2020).

1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rj-j8qg-5vgh

daemon.c in cman (redhat-cluster-suite) before 20070622 does not clear a buffer for reading requests, which might allow local users to obtain sensitive information from previous requests.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rj-4m65-59q8

In getTrampolineIntent of SettingsActivity.java, there is a possible launch of arbitrary activity due to an Intent mismatch in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12L Android-13Android ID: A-246300272

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-35rh-9jh6-cw7p

The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process and can allow an unprivileged local attacker to load a malicious library, resulting in arbitrary code executing as root.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rh-6mjx-86f8

VMware Workstation (12.x prior to 12.5.3) and Horizon View Client (4.x prior to 4.4.0) contain multiple out-of-bounds read vulnerabilities in JPEG2000 parser in the TPView.dll. On Workstation, this may allow a guest to execute code or perform a Denial of Service on the Windows OS that runs Workstation. In the case of a Horizon View Client, this may allow a View desktop to execute code or perform a Denial of Service on the Windows OS that runs the Horizon View Client. Exploitation is only possible if virtual printing has been enabled. This feature is not enabled by default on Workstation but it is enabled by default on Horizon View.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-35rg-pjrx-fc55

Directory traversal vulnerability in geohttpserver in Geovision Digital Video Surveillance System 8.2 allows remote attackers to read arbitrary files via a .. (dot dot) in a GET request.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-35rg-466w-77h3

Cross-site scripting in Products.CMFCore, Products.PluggableAuthService, Plone

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
github логотип
GHSA-35rf-xg9j-vr62

Microsoft Office 2013 Gold, SP1, RT, and RT SP1 allows remote attackers to obtain sensitive token information via a web site that sends a crafted response during opening of an Office document, aka "Token Reuse Vulnerability."

10%
Средний
больше 4 лет назад
github логотип
GHSA-35rf-v5xv-3376

Snort 1.6, when running in straight ASCII packet logging mode or IDS mode with straight decoded ASCII packet logging selected, allows remote attackers to cause a denial of service (crash) by sending non-IP protocols that Snort does not know about, as demonstrated by an nmap protocol scan.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-35rf-v2jv-gfg7

Privilege escalation to cluster admin on multi-tenant environments

CVSS3: 8.8
2%
Низкий
почти 5 лет назад
github логотип
GHSA-35rf-7vhx-9phr

Redis v7.0 was discovered to contain a memory leak via the component streamGetEdgeID.

CVSS3: 7.5
3%
Низкий
около 4 лет назад
github логотип
GHSA-35rf-2xxr-prvf

Exposure of Sensitive System Information to an Unauthorized Control Sphere vulnerability in Bowo System Dashboard allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects System Dashboard: from n/a through 2.8.18.

CVSS3: 4.3
0%
Низкий
больше 1 года назад

Уязвимостей на страницу