Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 361 446

Количество 361 446

github логотип

GHSA-23c2-5fj7-4rv3

больше 4 лет назад

The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.

EPSS: Низкий
github логотип

GHSA-239x-qr9g-j39q

почти 4 года назад

This issue was addressed with improved checks. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watchOS 8.7, tvOS 15.6, macOS Monterey 12.5, Security Update 2022-005 Catalina. A remote user may be able to cause unexpected system termination or corrupt kernel memory.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-239x-hvpx-225m

около 2 месяцев назад

The Advance Nav Menu Manager plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.3. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to duplicate, copy, move, or publish nav_menu_item posts via wp_insert_post(), modifying the site's navigation menus without authorization.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-239x-f9cm-qgpx

8 месяцев назад

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

EPSS: Низкий
github логотип

GHSA-239w-m3h6-ch8v

2 месяца назад

File Browser: Symlink following lets scoped users read, overwrite, and share files outside their filebrowser scope

CVSS3: 6.8
EPSS: Низкий
github логотип

GHSA-239w-f2px-h2wv

больше 1 года назад

An issue has been discovered in GitLab CE/EE affecting all versions from 17.3 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. Improper output encoding could lead to XSS if CSP is not enabled.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-239w-6x3x-fvrr

5 месяцев назад

IBM Aspera Shares 1.9.9 through 1.11.0 does not properly rate limit the frequency that an authenticated user can send emails, which could result in email flooding or a denial of service.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-239w-4f3w-cfcv

около 4 лет назад

Liferay Portal Vulnerable to Cross-Site Scripting (XSS) via Categories Admin Page

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-239v-mcw5-wrfq

больше 4 лет назад

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP11, T27 LD before SP32 CP2, and T28 L10N before SP1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted WRF file, aka Bug ID CSCtz72946.

EPSS: Низкий
github логотип

GHSA-239v-6rvp-q7p2

больше 4 лет назад

viksoe GMail Drive shell extension allows remote attackers to perform virtual filesystem actions via e-mail messages with certain subject lines, as demonstrated by (1) a GMAILFS: [13;a;1] message with a new filename and a file attachment, which injects a new file into the filesystem; (2) a GMAILFS: [13;a;1] message with an existing filename and a file attachment, which overwrites existing file content; and (3) a GMAILFS: [14;a;1] message, which creates a folder.

EPSS: Низкий
github логотип

GHSA-239v-3pc9-55cf

больше 1 года назад

Abacus ERP is versions older than 2024.210.16036, 2023.205.15833, 2022.105.15542 are affected by an authenticated arbitrary file read vulnerability.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-239r-qg7g-cjfp

около 4 лет назад

Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-239r-c744-9rfp

больше 4 лет назад

The CICS listener in IBM TXSeries for Multiplatforms 6.2 GA waits for a forcepurge acknowledgement from the CICS Application Server (CICSAS) after an eci response timeout, which might allow remote authenticated users to cause a denial of service (forcepurge handling delay), or have unspecified other impact, via vectors involving slow or nonexistent acknowledgement.

EPSS: Низкий
github логотип

GHSA-239r-933r-8pjv

больше 4 лет назад

FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via an invalid "number of axes" field in a Printer Font Binary (PFB) file, which triggers a free of arbitrary memory locations, leading to memory corruption.

EPSS: Низкий
github логотип

GHSA-239r-76x2-4c6j

больше 4 лет назад

Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter.

EPSS: Низкий
github логотип

GHSA-239q-57jm-9rwj

около 4 лет назад

BloofoxCMS 0.5.2.1 allows Reflected Cross-Site Scripting (XSS) vulnerability by inserting a XSS payload within the 'fileurl' parameter.

EPSS: Низкий
github логотип

GHSA-239p-q346-3xw9

больше 4 лет назад

Double free vulnerability in the sg_common_write function in drivers/scsi/sg.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (memory corruption and system crash) by detaching a device during an SG_IO ioctl call.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-239p-6rfv-62vf

больше 2 лет назад

Foxit PDF Reader AcroForm Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the processing of AcroForms. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-14975.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-239m-chp6-538f

больше 4 лет назад

An open redirect vulnerability exists in the Access Manager Identity Provider prior to 4.4 SP3.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-239j-w696-2rhc

больше 1 года назад

A vulnerability was found in panhainan DS-Java 1.0. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-23c2-5fj7-4rv3

The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-239x-qr9g-j39q

This issue was addressed with improved checks. This issue is fixed in iOS 15.6 and iPadOS 15.6, macOS Big Sur 11.6.8, watchOS 8.7, tvOS 15.6, macOS Monterey 12.5, Security Update 2022-005 Catalina. A remote user may be able to cause unexpected system termination or corrupt kernel memory.

CVSS3: 9.1
3%
Низкий
почти 4 года назад
github логотип
GHSA-239x-hvpx-225m

The Advance Nav Menu Manager plugin for WordPress is vulnerable to authorization bypass in all versions up to, and including, 1.3. This is due to the plugin not properly verifying that a user is authorized to perform an action. This makes it possible for authenticated attackers, with subscriber-level access and above, to duplicate, copy, move, or publish nav_menu_item posts via wp_insert_post(), modifying the site's navigation menus without authorization.

CVSS3: 4.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-239x-f9cm-qgpx

Rejected reason: This CVE ID was rejected because it was reserved but not used for a vulnerability disclosure.

8 месяцев назад
github логотип
GHSA-239w-m3h6-ch8v

File Browser: Symlink following lets scoped users read, overwrite, and share files outside their filebrowser scope

CVSS3: 6.8
0%
Низкий
2 месяца назад
github логотип
GHSA-239w-f2px-h2wv

An issue has been discovered in GitLab CE/EE affecting all versions from 17.3 before 17.4.6, 17.5 before 17.5.4, and 17.6 before 17.6.2. Improper output encoding could lead to XSS if CSP is not enabled.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-239w-6x3x-fvrr

IBM Aspera Shares 1.9.9 through 1.11.0 does not properly rate limit the frequency that an authenticated user can send emails, which could result in email flooding or a denial of service.

CVSS3: 2.7
0%
Низкий
5 месяцев назад
github логотип
GHSA-239w-4f3w-cfcv

Liferay Portal Vulnerable to Cross-Site Scripting (XSS) via Categories Admin Page

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-239v-mcw5-wrfq

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP11, T27 LD before SP32 CP2, and T28 L10N before SP1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted WRF file, aka Bug ID CSCtz72946.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-239v-6rvp-q7p2

viksoe GMail Drive shell extension allows remote attackers to perform virtual filesystem actions via e-mail messages with certain subject lines, as demonstrated by (1) a GMAILFS: [13;a;1] message with a new filename and a file attachment, which injects a new file into the filesystem; (2) a GMAILFS: [13;a;1] message with an existing filename and a file attachment, which overwrites existing file content; and (3) a GMAILFS: [14;a;1] message, which creates a folder.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-239v-3pc9-55cf

Abacus ERP is versions older than 2024.210.16036, 2023.205.15833, 2022.105.15542 are affected by an authenticated arbitrary file read vulnerability.

CVSS3: 6.5
1%
Низкий
больше 1 года назад
github логотип
GHSA-239r-qg7g-cjfp

Acronis True Image 2019 update 1 through 2021 update 1 on macOS allows local privilege escalation due to an insecure XPC service configuration.

CVSS3: 7.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-239r-c744-9rfp

The CICS listener in IBM TXSeries for Multiplatforms 6.2 GA waits for a forcepurge acknowledgement from the CICS Application Server (CICSAS) after an eci response timeout, which might allow remote authenticated users to cause a denial of service (forcepurge handling delay), or have unspecified other impact, via vectors involving slow or nonexistent acknowledgement.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-239r-933r-8pjv

FreeType2 before 2.3.6 allow context-dependent attackers to execute arbitrary code via an invalid "number of axes" field in a Printer Font Binary (PFB) file, which triggers a free of arbitrary memory locations, leading to memory corruption.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-239r-76x2-4c6j

Directory traversal vulnerability in phpThumb.php in PinkCrow Designs Gallery or maGAZIn 2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the src parameter.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-239q-57jm-9rwj

BloofoxCMS 0.5.2.1 allows Reflected Cross-Site Scripting (XSS) vulnerability by inserting a XSS payload within the 'fileurl' parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-239p-q346-3xw9

Double free vulnerability in the sg_common_write function in drivers/scsi/sg.c in the Linux kernel before 4.4 allows local users to gain privileges or cause a denial of service (memory corruption and system crash) by detaching a device during an SG_IO ioctl call.

CVSS3: 7.3
2%
Низкий
больше 4 лет назад
github логотип
GHSA-239p-6rfv-62vf

Foxit PDF Reader AcroForm Use-After-Free Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit PDF Reader. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the processing of AcroForms. The issue results from the lack of validating the existence of an object prior to performing operations on the object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-14975.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-239m-chp6-538f

An open redirect vulnerability exists in the Access Manager Identity Provider prior to 4.4 SP3.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-239j-w696-2rhc

A vulnerability was found in panhainan DS-Java 1.0. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 4.3
0%
Низкий
больше 1 года назад

Уязвимостей на страницу