Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 558

Количество 355 558

github логотип

GHSA-xqw4-p5gv-vxf6

больше 3 лет назад

H C Mingham-Smith Ltd - Tardis 2000 Privilege escalation.Version 1.6 is vulnerable to privilege escalation which may allow a malicious actor to gain system privileges.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xqw4-hgfp-f28v

больше 4 лет назад

Multiple memory leaks in XNU 1228.3.13 and earlier on Apple Mac OS X 10.5.6 and earlier allow local users to cause a denial of service (kernel memory consumption) via a crafted (1) SYS_add_profil or (2) SYS___mac_getfsstat system call.

EPSS: Низкий
github логотип

GHSA-xqw2-xw3g-cpj5

больше 3 лет назад

Tenda AC5 V15.03.06.28 is vulnerable to Buffer Overflow via the initWebs function.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xqw2-jp6f-x74j

5 месяцев назад

Insufficient validation of untrusted input in Navigation in Google Chrome prior to 146.0.7680.153 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xqw2-8hr2-gw5r

больше 1 года назад

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    7.2.48.12 and all prior versions ECS All prior versions to 7.2.60.1 (inclusive)

CVSS3: 8.4
EPSS: Низкий
github логотип

GHSA-xqw2-5rg4-323p

около 4 лет назад

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges.

EPSS: Низкий
github логотип

GHSA-xqvx-2258-gfp2

больше 2 лет назад

Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-xqvw-x6gg-wh6x

около 3 лет назад

Incorrect access control in Videogo v6.8.1 allows attackers to bind shared devices after the connection has been ended.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xqvw-p594-3pxq

около 4 лет назад

An untrusted search path vulnerability in IBM i Access for Windows versions 7.1 and earlier on Windows can allow arbitrary code execution via a Trojan horse DLL in the current working directory, related to use of the LoadLibrary function. IBM X-Force ID: 152079.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xqvw-jp2q-crr2

около 4 лет назад

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

CVSS3: 5.5
EPSS: Средний
github логотип

GHSA-xqvw-7hh9-jm8v

около 2 лет назад

Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially exploit this vulnerability through preloading malicious DLL or symbolic link exploitation, leading to arbitrary code execution and escalation of privilege

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xqvw-6qp4-5g2p

9 месяцев назад

The WP Duplicate Page plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.7. This is due to the plugin not properly verifying that a user is authorized to perform an action in the 'saveSettings' function. This makes it possible for authenticated attackers, with Contributor-level access and above, to modify plugin settings that control role capabilities, and subsequently exploit the misconfigured capabilities to duplicate and view password-protected posts containing sensitive information.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xqvv-gw6g-p8gh

больше 4 лет назад

PHP remote file inclusion vulnerability in strload.php in Dayana Networks phpOnline (aka PHP-Online) 2.1 allows remote attackers to execute arbitrary PHP code via a URL in the LangFile parameter.

EPSS: Низкий
github логотип

GHSA-xqvv-5qpx-cjj8

около 4 лет назад

VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-xqvr-25w4-fgw8

около 4 лет назад

Agent A is able to save a draft (i.e. for customer reply). Then Agent B can open the draft, change the text completely and send it in the name of Agent A. For the customer it will not be visible that the message was sent by another agent. This issue affects: ((OTRS)) Community Edition 6.0.x version 6.0.24 and prior versions. OTRS 7.0.x version 7.0.13 and prior versions.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xqvp-j58f-pjf5

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: Do not register event handler until srpt device is fully setup Upon rare occasions, KASAN reports a use-after-free Write in srpt_refresh_port(). This seems to be because an event handler is registered before the srpt device is fully setup and a race condition upon error may leave a partially setup event handler in place. Instead, only register the event handler after srpt device initialization is complete.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-xqvm-prp8-cc3x

10 дней назад

Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-xqvm-m8v9-8w9h

10 месяцев назад

A vulnerability in danny-avila/librechat version 0.7.9 allows for HTML injection via the Accept-Language header. When a logged-in user sends an HTTP GET request with a crafted Accept-Language header, arbitrary HTML can be injected into the <html lang=""> tag of the response. This can lead to potential security risks such as cross-site scripting (XSS) attacks.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-xqvj-6jwp-36gq

больше 4 лет назад

SQL injection vulnerability in philboard_forum.asp in Metyus Forum Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. NOTE: this might be related to CVE-2007-0920 or CVE-2007-3884.

EPSS: Низкий
github логотип

GHSA-xqvj-56p9-pp9r

больше 4 лет назад

Multiple SQL injection vulnerabilities in Symantec Altiris WISE Package Studio before 8.0MR1 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xqw4-p5gv-vxf6

H C Mingham-Smith Ltd - Tardis 2000 Privilege escalation.Version 1.6 is vulnerable to privilege escalation which may allow a malicious actor to gain system privileges.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xqw4-hgfp-f28v

Multiple memory leaks in XNU 1228.3.13 and earlier on Apple Mac OS X 10.5.6 and earlier allow local users to cause a denial of service (kernel memory consumption) via a crafted (1) SYS_add_profil or (2) SYS___mac_getfsstat system call.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xqw2-xw3g-cpj5

Tenda AC5 V15.03.06.28 is vulnerable to Buffer Overflow via the initWebs function.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xqw2-jp6f-x74j

Insufficient validation of untrusted input in Navigation in Google Chrome prior to 146.0.7680.153 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-xqw2-8hr2-gw5r

Improper Input Validation vulnerability of Authenticated User in Progress LoadMaster allows : OS Command Injection. This issue affects:  Product Affected Versions LoadMaster From 7.2.55.0 to 7.2.60.1 (inclusive)    From 7.2.49.0 to 7.2.54.12 (inclusive)    7.2.48.12 and all prior versions ECS All prior versions to 7.2.60.1 (inclusive)

CVSS3: 8.4
1%
Низкий
больше 1 года назад
github логотип
GHSA-xqw2-5rg4-323p

IBM DB2 for Linux, UNIX and Windows (includes DB2 Connect Server) 10.5, 11.1, and 11.5 is vulnerable to a buffer overflow, caused by improper bounds checking which could allow a local attacker to execute arbitrary code on the system with root privileges.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xqvx-2258-gfp2

Improper authorization verification vulnerability in AR Emoji prior to SMR Dec-2023 Release 1 allows attackers to read sandbox data of AR Emoji.

CVSS3: 4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xqvw-x6gg-wh6x

Incorrect access control in Videogo v6.8.1 allows attackers to bind shared devices after the connection has been ended.

CVSS3: 5.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-xqvw-p594-3pxq

An untrusted search path vulnerability in IBM i Access for Windows versions 7.1 and earlier on Windows can allow arbitrary code execution via a Trojan horse DLL in the current working directory, related to use of the LoadLibrary function. IBM X-Force ID: 152079.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xqvw-jp2q-crr2

An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.

CVSS3: 5.5
12%
Средний
около 4 лет назад
github логотип
GHSA-xqvw-7hh9-jm8v

Dell Peripheral Manager, versions prior to 1.7.6, contain an uncontrolled search path element vulnerability. An attacker could potentially exploit this vulnerability through preloading malicious DLL or symbolic link exploitation, leading to arbitrary code execution and escalation of privilege

CVSS3: 7.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-xqvw-6qp4-5g2p

The WP Duplicate Page plugin for WordPress is vulnerable to Missing Authorization in all versions up to, and including, 1.7. This is due to the plugin not properly verifying that a user is authorized to perform an action in the 'saveSettings' function. This makes it possible for authenticated attackers, with Contributor-level access and above, to modify plugin settings that control role capabilities, and subsequently exploit the misconfigured capabilities to duplicate and view password-protected posts containing sensitive information.

CVSS3: 4.3
0%
Низкий
9 месяцев назад
github логотип
GHSA-xqvv-gw6g-p8gh

PHP remote file inclusion vulnerability in strload.php in Dayana Networks phpOnline (aka PHP-Online) 2.1 allows remote attackers to execute arbitrary PHP code via a URL in the LangFile parameter.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xqvv-5qpx-cjj8

VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG), Workstation (15.x before 15.5.7), Fusion (11.x before 11.5.7) contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.

CVSS3: 8.2
0%
Низкий
около 4 лет назад
github логотип
GHSA-xqvr-25w4-fgw8

Agent A is able to save a draft (i.e. for customer reply). Then Agent B can open the draft, change the text completely and send it in the name of Agent A. For the customer it will not be visible that the message was sent by another agent. This issue affects: ((OTRS)) Community Edition 6.0.x version 6.0.24 and prior versions. OTRS 7.0.x version 7.0.13 and prior versions.

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-xqvp-j58f-pjf5

In the Linux kernel, the following vulnerability has been resolved: RDMA/srpt: Do not register event handler until srpt device is fully setup Upon rare occasions, KASAN reports a use-after-free Write in srpt_refresh_port(). This seems to be because an event handler is registered before the srpt device is fully setup and a race condition upon error may leave a partially setup event handler in place. Instead, only register the event handler after srpt device initialization is complete.

CVSS3: 7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xqvm-prp8-cc3x

Type Confusion in Tab in Google Chrome on Android prior to 151.0.7922.72 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 5.8
0%
Низкий
10 дней назад
github логотип
GHSA-xqvm-m8v9-8w9h

A vulnerability in danny-avila/librechat version 0.7.9 allows for HTML injection via the Accept-Language header. When a logged-in user sends an HTTP GET request with a crafted Accept-Language header, arbitrary HTML can be injected into the <html lang=""> tag of the response. This can lead to potential security risks such as cross-site scripting (XSS) attacks.

CVSS3: 4.8
0%
Низкий
10 месяцев назад
github логотип
GHSA-xqvj-6jwp-36gq

SQL injection vulnerability in philboard_forum.asp in Metyus Forum Portal 1.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter. NOTE: this might be related to CVE-2007-0920 or CVE-2007-3884.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xqvj-56p9-pp9r

Multiple SQL injection vulnerabilities in Symantec Altiris WISE Package Studio before 8.0MR1 allow remote attackers to execute arbitrary SQL commands via unspecified vectors.

1%
Низкий
больше 4 лет назад

Уязвимостей на страницу