Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-33hm-x4hv-3825

больше 4 лет назад

Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload 'php' file to the website through uploader_paste.php, then overwrite /framework/conf/config.php, which leads to arbitrary code execution.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33hm-cq8r-wc49

7 месяцев назад

Temporary path handling could write outside OpenClaw temp boundary

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33hj-rcmx-86mv

8 месяцев назад

Undertow Servlets Vulnerable to Remote DoS via OutOfMemoryError when Passed Large Parameter Names

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-33hj-r9x4-46jq

больше 4 лет назад

The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-33hj-pw6w-7p8m

больше 4 лет назад

customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33hj-h3v9-w687

около 3 лет назад

Improper path handling in Typora before 1.7.0-dev on Windows and Linux allows a crafted webpage to access local files and exfiltrate them to remote web servers via "typora://app/typemark/". This vulnerability can be exploited if a user opens a malicious markdown file in Typora, or copies text from a malicious webpage and paste it into Typora.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-33hj-8g8g-96xr

больше 2 лет назад

The Formidable Forms – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.7.2. This is due to missing or incorrect nonce validation on the update_settings function. This makes it possible for unauthenticated attackers to change form settings and add malicious JavaScript via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-33hj-36q7-m72x

больше 4 лет назад

A vulnerability in the web management interface of Cisco Secure Email and Web Manager, formerly Cisco Security Management Appliance (SMA), and Cisco Email Security Appliance (ESA) could allow an authenticated, remote attacker to retrieve sensitive information from a Lightweight Directory Access Protocol (LDAP) external authentication server connected to an affected device. This vulnerability is due to a lack of proper input sanitization while querying the external authentication server. An attacker could exploit this vulnerability by sending a crafted query through an external authentication web page. A successful exploit could allow the attacker to gain access to sensitive information, including user credentials from the external authentication server. To exploit this vulnerability, an attacker would need valid operator-level (or higher) credentials.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-33hj-353r-q5fv

больше 4 лет назад

AHheap-based Buffer Overflow vulnerabiity exists in GNU inetutils 2.2 in cmds.c, which caused a denial of service.

EPSS: Низкий
github логотип

GHSA-33hj-29w7-25fv

больше 4 лет назад

arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not prevent executable DMA mappings, which might allow local users to gain privileges via a crafted application, aka Android internal bug 28803642 and Qualcomm internal bug CR642735.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-33hh-733x-w24m

почти 4 года назад

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33hg-cqpj-624f

больше 4 лет назад

Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryption key. This key is shared across all ClickShare Buttons of model R9861500D01.

EPSS: Низкий
github логотип

GHSA-33hg-679x-g4vw

больше 4 лет назад

_s_/sprm/_s_/dyn/Player_setScriptFile in Sahi Pro 8.0.0 allows command execution. It allows one to run ".sah" scripts via Sahi Launcher. Also, one can create a new script with an editor. It is possible to execute commands on the server using the _execute() function.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-33hf-j99j-jxg5

больше 4 лет назад

Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33hf-cc48-qxc6

больше 4 лет назад

Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to conduct XML External Entity (XXE) attacks and obtain the information stored in the product via unspecified vectors. This issue occurs only when using Mozilla Firefox.

EPSS: Низкий
github логотип

GHSA-33hc-wv7x-jxjc

больше 4 лет назад

An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions to take control of other portions of the NFX platform they should not be able to access, and execute commands outside their authorized scope of control. This leads to the attacker being able to take control of the entire system. This issue affects: Juniper Networks Junos OS versions prior to 18.2R1 on NFX Series.

EPSS: Низкий
github логотип

GHSA-33hc-pjj4-hxpq

около 1 месяца назад

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via RDP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-33hc-jm79-92r9

больше 4 лет назад

The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.

EPSS: Низкий
github логотип

GHSA-33hc-fc7h-48c7

около 1 года назад

In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration

CVSS3: 3.7
EPSS: Низкий
github логотип

GHSA-33hc-85x3-8vj6

больше 4 лет назад

SQL injection vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to execute arbitrary SQL statements via the instory parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-33hm-x4hv-3825

Exponent CMS 2.3.9 suffers from a remote code execution vulnerability in /install/index.php. An attacker can upload 'php' file to the website through uploader_paste.php, then overwrite /framework/conf/config.php, which leads to arbitrary code execution.

CVSS3: 9.8
4%
Низкий
больше 4 лет назад
github логотип
GHSA-33hm-cq8r-wc49

Temporary path handling could write outside OpenClaw temp boundary

CVSS3: 6.5
0%
Низкий
7 месяцев назад
github логотип
GHSA-33hj-rcmx-86mv

Undertow Servlets Vulnerable to Remote DoS via OutOfMemoryError when Passed Large Parameter Names

CVSS3: 7.5
0%
Низкий
8 месяцев назад
github логотип
GHSA-33hj-r9x4-46jq

The mp4ff_read_stco function in common/mp4ff/mp4atom.c in Freeware Advanced Audio Decoder 2 (FAAD2) 2.7 allows remote attackers to cause a denial of service (large loop and CPU consumption) via a crafted mp4 file.

CVSS3: 5.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-33hj-pw6w-7p8m

customapp in Cybozu Office 9.9.0 through 10.3.0 allows remote authenticated users to cause a denial of service (excessive database locking) via a crafted CSV file, a different vulnerability than CVE-2016-1153.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-33hj-h3v9-w687

Improper path handling in Typora before 1.7.0-dev on Windows and Linux allows a crafted webpage to access local files and exfiltrate them to remote web servers via "typora://app/typemark/". This vulnerability can be exploited if a user opens a malicious markdown file in Typora, or copies text from a malicious webpage and paste it into Typora.

CVSS3: 6.3
0%
Низкий
около 3 лет назад
github логотип
GHSA-33hj-8g8g-96xr

The Formidable Forms – Contact Form, Survey, Quiz, Payment, Calculator Form & Custom Form Builder plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 6.7.2. This is due to missing or incorrect nonce validation on the update_settings function. This makes it possible for unauthenticated attackers to change form settings and add malicious JavaScript via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-33hj-36q7-m72x

A vulnerability in the web management interface of Cisco Secure Email and Web Manager, formerly Cisco Security Management Appliance (SMA), and Cisco Email Security Appliance (ESA) could allow an authenticated, remote attacker to retrieve sensitive information from a Lightweight Directory Access Protocol (LDAP) external authentication server connected to an affected device. This vulnerability is due to a lack of proper input sanitization while querying the external authentication server. An attacker could exploit this vulnerability by sending a crafted query through an external authentication web page. A successful exploit could allow the attacker to gain access to sensitive information, including user credentials from the external authentication server. To exploit this vulnerability, an attacker would need valid operator-level (or higher) credentials.

CVSS3: 7.7
1%
Низкий
больше 4 лет назад
github логотип
GHSA-33hj-353r-q5fv

AHheap-based Buffer Overflow vulnerabiity exists in GNU inetutils 2.2 in cmds.c, which caused a denial of service.

больше 4 лет назад
github логотип
GHSA-33hj-29w7-25fv

arch/arm/mm/dma-mapping.c in the Linux kernel before 3.13 on ARM platforms, as used in Android before 2016-08-05 on Nexus 5 and 7 (2013) devices, does not prevent executable DMA mappings, which might allow local users to gain privileges via a crafted application, aka Android internal bug 28803642 and Qualcomm internal bug CR642735.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-33hh-733x-w24m

Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.

CVSS3: 6.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-33hg-cqpj-624f

Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryption key. This key is shared across all ClickShare Buttons of model R9861500D01.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-33hg-679x-g4vw

_s_/sprm/_s_/dyn/Player_setScriptFile in Sahi Pro 8.0.0 allows command execution. It allows one to run ".sah" scripts via Sahi Launcher. Also, one can create a new script with an editor. It is possible to execute commands on the server using the _execute() function.

CVSS3: 9.8
14%
Средний
больше 4 лет назад
github логотип
GHSA-33hf-j99j-jxg5

Cryptocat before 2.0.22: Cryptocat.random() Function Array Key has Entropy Weakness

CVSS3: 9.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-33hf-cc48-qxc6

Cybozu Remote Service 3.1.8 to 3.1.9 allows a remote authenticated attacker to conduct XML External Entity (XXE) attacks and obtain the information stored in the product via unspecified vectors. This issue occurs only when using Mozilla Firefox.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-33hc-wv7x-jxjc

An Improper Input Validation weakness allows a malicious local attacker to elevate their permissions to take control of other portions of the NFX platform they should not be able to access, and execute commands outside their authorized scope of control. This leads to the attacker being able to take control of the entire system. This issue affects: Juniper Networks Junos OS versions prior to 18.2R1 on NFX Series.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-33hc-pjj4-hxpq

Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.2.14. Easily exploitable vulnerability allows unauthenticated attacker with network access via RDP to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle VM VirtualBox. CVSS 3.1 Base Score 7.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H).

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
github логотип
GHSA-33hc-jm79-92r9

The getmxrecord function in Fetchmail 6.0.0 and earlier does not properly check the boundary of a particular malformed DNS packet from a malicious DNS server, which allows remote attackers to cause a denial of service (crash) when Fetchmail attempts to read data beyond the expected boundary.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-33hc-fc7h-48c7

In JetBrains TeamCity before 2025.07 a CSRF was possible in external OAuth login integration

CVSS3: 3.7
0%
Низкий
около 1 года назад
github логотип
GHSA-33hc-85x3-8vj6

SQL injection vulnerability in index.php in the Search module for Php-Nuke allows remote attackers to execute arbitrary SQL statements via the instory parameter.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу