Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-33gc-6cw9-w3g4

почти 5 лет назад

Deserialization of Untrusted Data in topthink/framework

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-33g9-x8rg-2pmj

10 месяцев назад

An ACAP configuration file has improper permissions, which could allow command injection and potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-33g8-ghxc-wjh9

больше 4 лет назад

Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices allow remote attackers to cause a denial of service (CPU consumption and SNMP outage) via malformed SNMP packets, aka Bug ID CSCur13393.

EPSS: Низкий
github логотип

GHSA-33g6-495w-v8j2

больше 1 года назад

Snowflake JDBC uses insecure temporary credential cache file permissions

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-33g5-vw3f-w92q

больше 4 лет назад

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.

EPSS: Низкий
github логотип

GHSA-33g5-pmx8-956p

больше 1 года назад

Missing Authorization vulnerability in matthewrubin Local Magic allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Local Magic: from n/a through 2.6.0.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33g5-gx8w-x4p5

больше 4 лет назад

go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c in the Linux kernel before 5.6 does not call snd_card_free for a failure path, which causes a memory leak, aka CID-9453264ef586.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-33g4-8f6m-m4gq

почти 2 года назад

Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24479.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-33g4-646g-qwmm

3 месяца назад

Snipe-IT has Multi-Tenancy Bypass via Bulk Asset Update

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-33g4-2m49-x49h

больше 2 лет назад

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to SQL Injection via shortcode in all versions up to, and including, 3.0.10 (with the exception of 2.7.31.2, 2.8.23.2, 2.9.19.2) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor level access or higher, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-33g3-x95c-mp5m

больше 1 года назад

Rejected reason: withdraw

EPSS: Низкий
github логотип

GHSA-33g3-59w3-q9cj

больше 4 лет назад

Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12.2.1.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to WLS Core Components, a different vulnerability than CVE-2016-3510.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-33g2-mrr9-4jv5

около 1 года назад

A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar up to 2.9. This issue affects some unknown processing of the file /intranet/educar_usuario_lst.php. The manipulation of the argument nm_pessoa/matricula/matricula_interna leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-33g2-gx67-c2h3

4 месяца назад

Apache Airflow Vulnerable to Exposure of Sensitive Information to an Unauthorized Actor

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-33g2-9gvg-pqfw

больше 4 лет назад

Insufficient path checking in the installer for Intel(R) Active System Console before version 8.0 Build 24 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-33g2-5xpr-jrcj

больше 4 лет назад

SolarWinds Serv-U FTP server before 15.2.1 mishandles the CHMOD command.

EPSS: Низкий
github логотип

GHSA-33fw-w4q9-fhpq

около 2 месяцев назад

Improper access control in the automation tests and workflows features in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with only the Reader role to execute automation tests and modify workflow properties via missing server-side authorization checks.

CVSS3: 5
EPSS: Низкий
github логотип

GHSA-33fw-8wrj-c6pw

25 дней назад

Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the mail_mailalert function. The vulnerability is caused by concatenating multiple smtpReceiver email addresses into a fixed-size buffer without checking the remaining buffer size. A remote attacker can trigger this vulnerability via crafted input, causing a denial of service or potentially executing arbitrary commands. Exploitation requires valid administrative credentials for the device's web management interface.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-33fw-34vg-hgjh

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: CDC-NCM: avoid overflow in sanity checking A broken device may give an extreme offset like 0xFFF0 and a reasonable length for a fragment. In the sanity check as formulated now, this will create an integer overflow, defeating the sanity check. Both offset and offset + len need to be checked in such a manner that no overflow can occur. And those quantities should be unsigned.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-33fr-rpxm-q4fp

почти 3 года назад

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gopi Ramasamy Email download link.This issue affects Email download link: from n/a through 3.7.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-33gc-6cw9-w3g4

Deserialization of Untrusted Data in topthink/framework

CVSS3: 9.8
2%
Низкий
почти 5 лет назад
github логотип
GHSA-33g9-x8rg-2pmj

An ACAP configuration file has improper permissions, which could allow command injection and potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a malicious ACAP application.

CVSS3: 6.7
1%
Низкий
10 месяцев назад
github логотип
GHSA-33g8-ghxc-wjh9

Cisco ASR 5500 System Architecture Evolution (SAE) Gateway devices allow remote attackers to cause a denial of service (CPU consumption and SNMP outage) via malformed SNMP packets, aka Bug ID CSCur13393.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-33g6-495w-v8j2

Snowflake JDBC uses insecure temporary credential cache file permissions

CVSS3: 4.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-33g5-vw3f-w92q

SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated PCX file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-33g5-pmx8-956p

Missing Authorization vulnerability in matthewrubin Local Magic allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Local Magic: from n/a through 2.6.0.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-33g5-gx8w-x4p5

go7007_snd_init in drivers/media/usb/go7007/snd-go7007.c in the Linux kernel before 5.6 does not call snd_card_free for a failure path, which causes a memory leak, aka CID-9453264ef586.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-33g4-8f6m-m4gq

Tungsten Automation Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Tungsten Automation Power PDF. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of PDF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-24479.

CVSS3: 3.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-33g4-646g-qwmm

Snipe-IT has Multi-Tenancy Bypass via Bulk Asset Update

CVSS3: 6.3
0%
Низкий
3 месяца назад
github логотип
GHSA-33g4-2m49-x49h

The Pods – Custom Content Types and Fields plugin for WordPress is vulnerable to SQL Injection via shortcode in all versions up to, and including, 3.0.10 (with the exception of 2.7.31.2, 2.8.23.2, 2.9.19.2) due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with contributor level access or higher, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-33g3-x95c-mp5m

Rejected reason: withdraw

больше 1 года назад
github логотип
GHSA-33g3-59w3-q9cj

Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6.0, 12.1.3.0, and 12.2.1.0 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to WLS Core Components, a different vulnerability than CVE-2016-3510.

CVSS3: 9.8
20%
Средний
больше 4 лет назад
github логотип
GHSA-33g2-mrr9-4jv5

A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar up to 2.9. This issue affects some unknown processing of the file /intranet/educar_usuario_lst.php. The manipulation of the argument nm_pessoa/matricula/matricula_interna leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 3.5
0%
Низкий
около 1 года назад
github логотип
GHSA-33g2-gx67-c2h3

Apache Airflow Vulnerable to Exposure of Sensitive Information to an Unauthorized Actor

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-33g2-9gvg-pqfw

Insufficient path checking in the installer for Intel(R) Active System Console before version 8.0 Build 24 may allow an authenticated user to potentially enable escalation of privilege via local access.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-33g2-5xpr-jrcj

SolarWinds Serv-U FTP server before 15.2.1 mishandles the CHMOD command.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-33fw-w4q9-fhpq

Improper access control in the automation tests and workflows features in Devolutions PowerShell Universal 2026.2.2 and earlier allows an authenticated user with only the Reader role to execute automation tests and modify workflow properties via missing server-side authorization checks.

CVSS3: 5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-33fw-8wrj-c6pw

Multiple DrayTek VigorSwitch models contain a buffer overflow vulnerability in the mail_mailalert function. The vulnerability is caused by concatenating multiple smtpReceiver email addresses into a fixed-size buffer without checking the remaining buffer size. A remote attacker can trigger this vulnerability via crafted input, causing a denial of service or potentially executing arbitrary commands. Exploitation requires valid administrative credentials for the device's web management interface.

CVSS3: 7.2
0%
Низкий
25 дней назад
github логотип
GHSA-33fw-34vg-hgjh

In the Linux kernel, the following vulnerability has been resolved: CDC-NCM: avoid overflow in sanity checking A broken device may give an extreme offset like 0xFFF0 and a reasonable length for a fragment. In the sanity check as formulated now, this will create an integer overflow, defeating the sanity check. Both offset and offset + len need to be checked in such a manner that no overflow can occur. And those quantities should be unsigned.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-33fr-rpxm-q4fp

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Gopi Ramasamy Email download link.This issue affects Email download link: from n/a through 3.7.

CVSS3: 5.3
1%
Низкий
почти 3 года назад

Уязвимостей на страницу