Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 369 608

Количество 369 608

github логотип

GHSA-2499-8qv4-fpf6

больше 4 лет назад

IOCatalogue in IOKitUser in Apple iOS before 7 allows attackers to cause a denial of service (NULL pointer dereference and device crash) via a crafted application.

EPSS: Низкий
github логотип

GHSA-2498-8v9g-2q83

больше 4 лет назад

The BnGraphicBufferProducer::onTransact function in libs/gui/IGraphicBufferConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 does not initialize a certain output data structure, which allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, by triggering a QUEUE_BUFFER action, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 26338109.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2497-vx3h-24wc

больше 4 лет назад

A SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module before 1.7.8 for Prestashop allows a remote attacker to extract data from the database via the sb_category parameter.

EPSS: Средний
github логотип

GHSA-2497-mh3q-frq7

больше 4 лет назад

Directory traversal vulnerability in GWeb HTTP Server 0.6 allows remote attackers to view arbitrary files via a .. (dot dot) in the URL.

EPSS: Низкий
github логотип

GHSA-2497-m587-h6c8

около 2 лет назад

A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been classified as critical. Affected is an unknown function of the file /simple-online-bidding-system/bidding/admin/ajax.php?action=login. The manipulation of the argument username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-2497-gp99-2m74

8 месяцев назад

Pterodactyl endlessly reprocesses/reuploads activity log data due to SQLite max parameters limit not being considered

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2497-6pwj-pwg7

2 месяца назад

Statamic CMS: Missing authorization on Control Panel fieldtype endpoints allows disclosure of restricted resources

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-2495-6v7r-rmx4

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in iFoto 0.20, and possibly other versions before 0.50, allows remote attackers to inject arbitrary HTML or web script via a base64-encoded file parameter.

EPSS: Низкий
github логотип

GHSA-2495-48wf-cqx2

14 дней назад

In the Linux kernel, the following vulnerability has been resolved: ovpn: defer key slot crypto freeing to workqueue Key slots are released through a kref and the existing release path frees the AEAD transforms from an RCU callback. That is not safe for all crypto implementations: crypto_free_aead can sleep, for example when an async or hardware implementation has teardown work to complete. Use queue_rcu_work for key-slot release. This keeps the RCU grace period needed by lockless key-slot readers, but runs the actual crypto teardown from workqueue context where sleeping is allowed. Once the rcu_work callback runs, pre-existing RCU readers are gone, and the final kref put already proves that no transform user remains, so the worker can release the AEAD transforms and free the slot directly. The previous patch drains ovpn_wq during module exit, so queued key-slot teardown work cannot outlive module text.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2494-q7mq-75f7

больше 4 лет назад

PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.

EPSS: Низкий
github логотип

GHSA-2493-x4rf-23h9

больше 4 лет назад

Mozilla Firefox 20.0a1 and earlier allows remote attackers to cause a denial of service (crash), related to event handling with frames.

EPSS: Низкий
github логотип

GHSA-2493-frc2-g6pr

около 1 года назад

FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote attackers to upload arbitrary files to sensitive system directories. The server accepts empty credentials, defaults user access to the root of the C:\ drive, and imposes no restrictions on file type or destination path. These conditions enable attackers to upload executable payloads and .mof files to locations such as system32 and wbem\mof, where Windows Management Instrumentation (WMI) automatically processes and executes them. This results in remote code execution with SYSTEM-level privileges, without requiring user interaction.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2493-c7mq-cpj4

больше 3 лет назад

The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.9.0. This is due to insufficient verification on the user being supplied during the coupon redemption REST API request through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the user id.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-2493-92j5-5vh6

3 месяца назад

A flaw has been found in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /addpatient.php. This manipulation of the argument admissiontme causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-2493-8gg5-974x

больше 4 лет назад

Windows IKE Extension Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-21843, CVE-2022-21848, CVE-2022-21883, CVE-2022-21889.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-2493-7x32-c5p8

больше 4 лет назад

Improper translation table consolidation logic leads to resource exhaustion and QSEE error in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-2492-xxqf-6h78

почти 3 года назад

Cross Site Request Forgery in SwiftyEdit

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2492-95q9-ghpv

больше 4 лет назад

IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 126859.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-248x-4c3j-hcg7

больше 4 лет назад

Busybox contains a Missing SSL certificate validation vulnerability in The "busybox wget" applet that can result in arbitrary code execution. This attack appear to be exploitable via Simply download any file over HTTPS using "busybox wget https://compromised-domain.com/important-file".

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-248v-wwj6-r5j3

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ehabstar User Role allows Reflected XSS. This issue affects User Role: from n/a through 1.0.

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2499-8qv4-fpf6

IOCatalogue in IOKitUser in Apple iOS before 7 allows attackers to cause a denial of service (NULL pointer dereference and device crash) via a crafted application.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-2498-8v9g-2q83

The BnGraphicBufferProducer::onTransact function in libs/gui/IGraphicBufferConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 does not initialize a certain output data structure, which allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, by triggering a QUEUE_BUFFER action, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 26338109.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-2497-vx3h-24wc

A SQL Injection issue in the list controller of the Prestahome Blog (aka ph_simpleblog) module before 1.7.8 for Prestashop allows a remote attacker to extract data from the database via the sb_category parameter.

15%
Средний
больше 4 лет назад
github логотип
GHSA-2497-mh3q-frq7

Directory traversal vulnerability in GWeb HTTP Server 0.6 allows remote attackers to view arbitrary files via a .. (dot dot) in the URL.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-2497-m587-h6c8

A vulnerability was found in SourceCodester Simple Online Bidding System 1.0. It has been classified as critical. Affected is an unknown function of the file /simple-online-bidding-system/bidding/admin/ajax.php?action=login. The manipulation of the argument username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS3: 7.3
1%
Низкий
около 2 лет назад
github логотип
GHSA-2497-gp99-2m74

Pterodactyl endlessly reprocesses/reuploads activity log data due to SQLite max parameters limit not being considered

CVSS3: 6.5
0%
Низкий
8 месяцев назад
github логотип
GHSA-2497-6pwj-pwg7

Statamic CMS: Missing authorization on Control Panel fieldtype endpoints allows disclosure of restricted resources

CVSS3: 4.3
0%
Низкий
2 месяца назад
github логотип
GHSA-2495-6v7r-rmx4

Cross-site scripting (XSS) vulnerability in iFoto 0.20, and possibly other versions before 0.50, allows remote attackers to inject arbitrary HTML or web script via a base64-encoded file parameter.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-2495-48wf-cqx2

In the Linux kernel, the following vulnerability has been resolved: ovpn: defer key slot crypto freeing to workqueue Key slots are released through a kref and the existing release path frees the AEAD transforms from an RCU callback. That is not safe for all crypto implementations: crypto_free_aead can sleep, for example when an async or hardware implementation has teardown work to complete. Use queue_rcu_work for key-slot release. This keeps the RCU grace period needed by lockless key-slot readers, but runs the actual crypto teardown from workqueue context where sleeping is allowed. Once the rcu_work callback runs, pre-existing RCU readers are gone, and the final kref put already proves that no transform user remains, so the worker can release the AEAD transforms and free the slot directly. The previous patch drains ovpn_wq during module exit, so queued key-slot teardown work cannot outlive module text.

CVSS3: 7.5
0%
Низкий
14 дней назад
github логотип
GHSA-2494-q7mq-75f7

PowerFTP Personal FTP Server 2.03 through 2.10 stores sensitive account information in plaintext in the ftpserver.ini file, which allows attackers with access to the file to gain privileges.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-2493-x4rf-23h9

Mozilla Firefox 20.0a1 and earlier allows remote attackers to cause a denial of service (crash), related to event handling with frames.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-2493-frc2-g6pr

FreeFloat FTP Server contains multiple critical design flaws that allow unauthenticated remote attackers to upload arbitrary files to sensitive system directories. The server accepts empty credentials, defaults user access to the root of the C:\ drive, and imposes no restrictions on file type or destination path. These conditions enable attackers to upload executable payloads and .mof files to locations such as system32 and wbem\mof, where Windows Management Instrumentation (WMI) automatically processes and executes them. This results in remote code execution with SYSTEM-level privileges, without requiring user interaction.

CVSS3: 9.8
2%
Низкий
около 1 года назад
github логотип
GHSA-2493-c7mq-cpj4

The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.9.0. This is due to insufficient verification on the user being supplied during the coupon redemption REST API request through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the user id.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-2493-92j5-5vh6

A flaw has been found in itsourcecode Hospital Management System 1.0. The affected element is an unknown function of the file /addpatient.php. This manipulation of the argument admissiontme causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.

CVSS3: 6.3
0%
Низкий
3 месяца назад
github логотип
GHSA-2493-8gg5-974x

Windows IKE Extension Denial of Service Vulnerability. This CVE ID is unique from CVE-2022-21843, CVE-2022-21848, CVE-2022-21883, CVE-2022-21889.

CVSS3: 7.5
3%
Низкий
больше 4 лет назад
github логотип
GHSA-2493-7x32-c5p8

Improper translation table consolidation logic leads to resource exhaustion and QSEE error in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear in version MDM9206, MDM9607, MDM9650, MSM8996AU, SD 210/SD 212/SD 205, SD 425, SD 430, SD 450, SD 625, SD 650/52, SD 820, SD 820A, SD 835, SD 845, SD 850, SDA660

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-2492-xxqf-6h78

Cross Site Request Forgery in SwiftyEdit

CVSS3: 8.8
0%
Низкий
почти 3 года назад
github логотип
GHSA-2492-95q9-ghpv

IBM Security Identity Governance Virtual Appliance 5.2 through 5.2.3.2 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 126859.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-248x-4c3j-hcg7

Busybox contains a Missing SSL certificate validation vulnerability in The "busybox wget" applet that can result in arbitrary code execution. This attack appear to be exploitable via Simply download any file over HTTPS using "busybox wget https://compromised-domain.com/important-file".

CVSS3: 8.1
2%
Низкий
больше 4 лет назад
github логотип
GHSA-248v-wwj6-r5j3

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in ehabstar User Role allows Reflected XSS. This issue affects User Role: from n/a through 1.0.

CVSS3: 7.1
0%
Низкий
больше 1 года назад

Уязвимостей на страницу