Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 325 176

Количество 325 176

github логотип

GHSA-xq9w-j69v-6chc

около 4 лет назад

Path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager Project's Tiny File Manager 2.4.1 allows remote attackers with valid user accounts to upload malicious PHP files to the webroot and achieve code execution on the target server.

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-xq9w-9p59-f6rx

почти 4 года назад

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnview+0x0000000000370074."

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xq9v-7phc-vqjq

больше 2 лет назад

The Popup box WordPress plugin before 3.8.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-xq9r-6v4r-3g8m

почти 4 года назад

Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-38652.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-xq9r-2r42-w9c6

около 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in naa986 Easy Video Player allows Stored XSS.This issue affects Easy Video Player: from n/a through 1.2.2.10.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xq9q-5j9m-x6xx

больше 1 года назад

FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/delete/10.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xq9p-hq98-j4x4

больше 1 года назад

Mattermost Mobile Apps versions <=2.16.0 fail to protect against abuse of a globally shared MathJax state which allows an attacker to change the contents of a LateX post, by creating another post with specific macro definitions.

CVSS3: 2.6
EPSS: Низкий
github логотип

GHSA-xq9p-h64g-x8mc

около 1 года назад

Weak default folder permissions

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-xq9m-vv28-7f24

больше 1 года назад

The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.6.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. When DirectoryPress Frontend is installed, this can be exploited by unauthenticated users.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xq9m-fh33-jh35

почти 4 года назад

Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

EPSS: Низкий
github логотип

GHSA-xq9m-9whg-jv3m

больше 2 лет назад

The issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xq9m-84rg-77f9

почти 4 года назад

Apt 0.8.16~exp5ubuntu13.x before 0.8.16~exp5ubuntu13.6, 0.8.16~exp12ubuntu10.x before 0.8.16~exp12ubuntu10.7, and 0.9.7.5ubuntu5.x before 0.9.7.5ubuntu5.2, as used in Ubuntu, uses world-readable permissions for /var/log/apt/term.log, which allows local users to obtain sensitive shell information by reading the log file.

EPSS: Низкий
github логотип

GHSA-xq9j-rj57-v855

почти 4 года назад

Research Artisan Lite before 1.18 does not ensure that a user has authenticated, which allows remote attackers to perform unspecified actions via unknown vectors.

EPSS: Низкий
github логотип

GHSA-xq9j-g4hv-hg56

больше 3 лет назад

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35762, CVE-2022-35763, CVE-2022-35765, CVE-2022-35792.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xq9j-995w-vvw2

около 4 лет назад

A flaw was found in OpenEXR's Multipart input file functionality. A crafted multi-part input file with no actual parts can trigger a NULL pointer dereference. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xq9h-8fc9-wr6w

почти 4 года назад

TUTOS 1.3 does not restrict access to php/admin/cmd.php, which allows remote attackers to execute arbitrary shell commands via the cmd parameter in a direct request.

EPSS: Низкий
github логотип

GHSA-xq9g-w4mx-cv7w

29 дней назад

Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xq9g-p9vj-39jw

почти 4 года назад

HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xq9g-9hx4-3c38

почти 4 года назад

A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This affects Microsoft SQL Server.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-xq9g-8773-5hrq

почти 2 года назад

D-Link DIR-2640 HNAP LoginPassword Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-2640 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web management interface, which listens on TCP port 80 by default. A specially crafted login request can cause authentication to succeed without providing proper credentials. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-19549.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xq9w-j69v-6chc

Path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager Project's Tiny File Manager 2.4.1 allows remote attackers with valid user accounts to upload malicious PHP files to the webroot and achieve code execution on the target server.

CVSS3: 8.8
72%
Высокий
около 4 лет назад
github логотип
GHSA-xq9w-9p59-f6rx

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnview+0x0000000000370074."

CVSS3: 7.8
0%
Низкий
почти 4 года назад
github логотип
GHSA-xq9v-7phc-vqjq

The Popup box WordPress plugin before 3.8.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVSS3: 4.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xq9r-6v4r-3g8m

Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-38652.

CVSS3: 7.6
1%
Низкий
почти 4 года назад
github логотип
GHSA-xq9r-2r42-w9c6

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in naa986 Easy Video Player allows Stored XSS.This issue affects Easy Video Player: from n/a through 1.2.2.10.

CVSS3: 6.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xq9q-5j9m-x6xx

FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/delete/10.

CVSS3: 8.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-xq9p-hq98-j4x4

Mattermost Mobile Apps versions <=2.16.0 fail to protect against abuse of a globally shared MathJax state which allows an attacker to change the contents of a LateX post, by creating another post with specific macro definitions.

CVSS3: 2.6
0%
Низкий
больше 1 года назад
github логотип
GHSA-xq9p-h64g-x8mc

Weak default folder permissions

CVSS3: 6.6
0%
Низкий
около 1 года назад
github логотип
GHSA-xq9m-vv28-7f24

The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.6.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. When DirectoryPress Frontend is installed, this can be exploited by unauthenticated users.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-xq9m-fh33-jh35

Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xq9m-9whg-jv3m

The issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xq9m-84rg-77f9

Apt 0.8.16~exp5ubuntu13.x before 0.8.16~exp5ubuntu13.6, 0.8.16~exp12ubuntu10.x before 0.8.16~exp12ubuntu10.7, and 0.9.7.5ubuntu5.x before 0.9.7.5ubuntu5.2, as used in Ubuntu, uses world-readable permissions for /var/log/apt/term.log, which allows local users to obtain sensitive shell information by reading the log file.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xq9j-rj57-v855

Research Artisan Lite before 1.18 does not ensure that a user has authenticated, which allows remote attackers to perform unspecified actions via unknown vectors.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xq9j-g4hv-hg56

Storage Spaces Direct Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-35762, CVE-2022-35763, CVE-2022-35765, CVE-2022-35792.

CVSS3: 7.8
3%
Низкий
больше 3 лет назад
github логотип
GHSA-xq9j-995w-vvw2

A flaw was found in OpenEXR's Multipart input file functionality. A crafted multi-part input file with no actual parts can trigger a NULL pointer dereference. The highest threat from this vulnerability is to system availability.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xq9h-8fc9-wr6w

TUTOS 1.3 does not restrict access to php/admin/cmd.php, which allows remote attackers to execute arbitrary shell commands via the cmd parameter in a direct request.

6%
Низкий
почти 4 года назад
github логотип
GHSA-xq9g-w4mx-cv7w

Substance3D - Stager versions 3.1.7 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
29 дней назад
github логотип
GHSA-xq9g-p9vj-39jw

HPE System Management Homepage before 7.5.4 allows remote authenticated users to obtain sensitive information or modify data via unspecified vectors.

CVSS3: 8.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-xq9g-9hx4-3c38

A buffer overflow vulnerability exists in the Microsoft SQL Server that could allow remote code execution on an affected system, aka "Microsoft SQL Server Remote Code Execution Vulnerability." This affects Microsoft SQL Server.

CVSS3: 9.8
23%
Средний
почти 4 года назад
github логотип
GHSA-xq9g-8773-5hrq

D-Link DIR-2640 HNAP LoginPassword Authentication Bypass Vulnerability. This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of D-Link DIR-2640 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the web management interface, which listens on TCP port 80 by default. A specially crafted login request can cause authentication to succeed without providing proper credentials. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-19549.

CVSS3: 6.5
0%
Низкий
почти 2 года назад

Уязвимостей на страницу