Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 914

Количество 370 914

github логотип

GHSA-25cp-h63r-m268

больше 4 лет назад

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Catalina 10.15.5. A file may be incorrectly rendered to execute JavaScript.

EPSS: Низкий
github логотип

GHSA-25cp-2qqr-6v8p

около 1 года назад

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a guest could get global GPU metrics which may be influenced by work in other VMs. A successful exploit of this vulnerability might lead to information disclosure.

CVSS3: 2.5
EPSS: Низкий
github логотип

GHSA-25cm-2563-466g

около 2 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring When an sk_msg scatterlist ring wraps (sg.end < sg.start), tls_push_record() chains the tail portion of the ring to the head using sg_chain(). An extra entry in the sg array is reserved for this: struct sk_msg_sg { [...] /* The extra two elements: * 1) used for chaining the front and sections when the list becomes * partitioned (e.g. end < start). The crypto APIs require the * chaining; * 2) to chain tailer SG entries after the message. */ struct scatterlist data[MAX_MSG_FRAGS + 2]; The current code uses MAX_SKB_FRAGS + 1 as the ring size: sg_chain(&msg_pl->sg.data[msg_pl->sg.start], MAX_SKB_FRAGS - msg_pl->sg.start + 1, msg_pl->sg.data); This places the chain pointer at sg_chain(data[start], (MAX_SKB_FRAGS - msg_star...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-25cj-rp9w-xg3v

больше 4 лет назад

Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017.011.30140 and earlier, 2017.011.30138 and earlier, 2015.006.30495 and earlier, and 2015.006.30493 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

EPSS: Низкий
github логотип

GHSA-25ch-mg7x-f73w

больше 4 лет назад

Cross-site request forgery (CSRF) vulnerability in Motorola Solutions MOSCAD IP Gateway allows remote attackers to hijack the authentication of administrators for requests that modify a password.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-25cg-jjh4-7wh5

больше 4 лет назад

Directory Traversal in upload.cgi in ASUSTOR ADM version 3.1.1 allows attackers to upload files to arbitrary locations by modifying the "path" URL parameter. NOTE: the "filename" POST parameter is covered by CVE-2018-11345.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-25cf-wq2p-gqxf

больше 1 года назад

A stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

CVSS3: 8.7
EPSS: Низкий
github логотип

GHSA-25cf-hcwq-2gc7

больше 4 лет назад

An Authenticated Remote Code Exection (RCE) vulnerability exists in Xerte through 3.9 in website_code/php/import/fileupload.php by uploading a maliciously crafted PHP file though the project interface disguised as a language file to bypasses the upload filters. Attackers can manipulate the files destination by abusing path traversal in the 'mediapath' variable.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-25cc-wj23-95cr

больше 4 лет назад

Magic eDeveloper Enterprise Edition 8.30-5 and earlier allows local users to overwrite arbitrary files and possibly execute code via a symlink attack on temporary files created by the (1) mkuserproc, (2) mgrnt, and (3) mgdatasrvr.sc scripts.

EPSS: Низкий
github логотип

GHSA-25c9-3ffh-rvqx

больше 1 года назад

The Spexo Addons for Elementor – Free Elementor Addons, Widgets and Templates plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the tmpcoder_theme_install_func() function in all versions up to, and including, 1.0.14. This makes it possible for authenticated attackers, with Subscriber-level access and above, to install a theme.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-25c8-qcqq-xpqw

около 3 лет назад

Auth. WordPress Options Change (siteurl, users_can_register, default_role, admin_email and new_admin_email) vulnerability in Biplob Adhikari's Accordions – Multiple Accordions or FAQs Builder plugin (versions <= 2.0.3 on WordPress.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-25c8-p9xf-2v4m

почти 2 года назад

An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote attackers to cause a Denial of Service through specially crafted packets.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-25c8-p796-jg6r

около 3 лет назад

Microsoft Security Advisory CVE-2023-33170: .NET Security Feature Bypass Vulnerability

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-25c8-jwjc-6mjh

7 месяцев назад

Axigen Mail Server before 10.5.57 and 10.6.x before 10.6.26 contains a Cross-Site Request Forgery (CSRF) vulnerability in the WebAdmin interface through improper handling of the _s (breadcrumb) parameter. The application accepts state-changing requests via the GET method and automatically processes base64-encoded commands queued in the _s parameter immediately after administrator authentication. Attackers can craft malicious URLs that, when clicked by administrators, execute arbitrary administrative actions upon login without further user interaction, including creating rogue administrator accounts or modifying critical server configurations.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-25c8-fq6j-8vvf

9 месяцев назад

Memory corruption while processing MFC channel configuration during music playback.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-25c8-fmh2-q3pg

больше 4 лет назад

IBM WebSphere Message Broker 6.1.x before 6.1.0.2 writes a database connection password to the Event Log and System Log during exception handling for a JDBC error, which allows local users to obtain sensitive information by reading these logs.

EPSS: Низкий
github логотип

GHSA-25c8-fc6x-9x37

5 месяцев назад

Insecure deserialization of untrusted input in StellarGroup HPX 1.11.0 under certain conditions may allow attackers to execute arbitrary code or other unspecified impacts.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-25c7-67gf-gc43

больше 4 лет назад

A URL redirection to untrusted site vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1. This vulnerability could be exploited remotely to allow URL redirection to untrusted site.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-25c7-5442-g7pq

больше 4 лет назад

Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.1.10111, does not properly restrict access to memory associated with unmanaged objects, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, (3) a crafted .NET Framework application, or (4) a crafted Silverlight application, aka ".NET Framework Unmanaged Objects Vulnerability."

CVSS3: 7.8
EPSS: Средний
github логотип

GHSA-25c7-47pw-x5cf

больше 1 года назад

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-25cp-h63r-m268

A validation issue was addressed with improved input sanitization. This issue is fixed in macOS Catalina 10.15.5. A file may be incorrectly rendered to execute JavaScript.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-25cp-2qqr-6v8p

NVIDIA vGPU software contains a vulnerability in the Virtual GPU Manager, where a guest could get global GPU metrics which may be influenced by work in other VMs. A successful exploit of this vulnerability might lead to information disclosure.

CVSS3: 2.5
0%
Низкий
около 1 года назад
github логотип
GHSA-25cm-2563-466g

In the Linux kernel, the following vulnerability has been resolved: net: tls: fix off-by-one in sg_chain entry count for wrapped sk_msg ring When an sk_msg scatterlist ring wraps (sg.end < sg.start), tls_push_record() chains the tail portion of the ring to the head using sg_chain(). An extra entry in the sg array is reserved for this: struct sk_msg_sg { [...] /* The extra two elements: * 1) used for chaining the front and sections when the list becomes * partitioned (e.g. end < start). The crypto APIs require the * chaining; * 2) to chain tailer SG entries after the message. */ struct scatterlist data[MAX_MSG_FRAGS + 2]; The current code uses MAX_SKB_FRAGS + 1 as the ring size: sg_chain(&msg_pl->sg.data[msg_pl->sg.start], MAX_SKB_FRAGS - msg_pl->sg.start + 1, msg_pl->sg.data); This places the chain pointer at sg_chain(data[start], (MAX_SKB_FRAGS - msg_star...

CVSS3: 9.8
1%
Низкий
около 2 месяцев назад
github логотип
GHSA-25cj-rp9w-xg3v

Adobe Acrobat and Reader versions 2019.010.20100 and earlier, 2019.010.20099 and earlier, 2017.011.30140 and earlier, 2017.011.30138 and earlier, 2015.006.30495 and earlier, and 2015.006.30493 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-25ch-mg7x-f73w

Cross-site request forgery (CSRF) vulnerability in Motorola Solutions MOSCAD IP Gateway allows remote attackers to hijack the authentication of administrators for requests that modify a password.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-25cg-jjh4-7wh5

Directory Traversal in upload.cgi in ASUSTOR ADM version 3.1.1 allows attackers to upload files to arbitrary locations by modifying the "path" URL parameter. NOTE: the "filename" POST parameter is covered by CVE-2018-11345.

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-25cf-wq2p-gqxf

A stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

CVSS3: 8.7
0%
Низкий
больше 1 года назад
github логотип
GHSA-25cf-hcwq-2gc7

An Authenticated Remote Code Exection (RCE) vulnerability exists in Xerte through 3.9 in website_code/php/import/fileupload.php by uploading a maliciously crafted PHP file though the project interface disguised as a language file to bypasses the upload filters. Attackers can manipulate the files destination by abusing path traversal in the 'mediapath' variable.

CVSS3: 8.8
13%
Средний
больше 4 лет назад
github логотип
GHSA-25cc-wj23-95cr

Magic eDeveloper Enterprise Edition 8.30-5 and earlier allows local users to overwrite arbitrary files and possibly execute code via a symlink attack on temporary files created by the (1) mkuserproc, (2) mgrnt, and (3) mgdatasrvr.sc scripts.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-25c9-3ffh-rvqx

The Spexo Addons for Elementor – Free Elementor Addons, Widgets and Templates plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the tmpcoder_theme_install_func() function in all versions up to, and including, 1.0.14. This makes it possible for authenticated attackers, with Subscriber-level access and above, to install a theme.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-25c8-qcqq-xpqw

Auth. WordPress Options Change (siteurl, users_can_register, default_role, admin_email and new_admin_email) vulnerability in Biplob Adhikari's Accordions – Multiple Accordions or FAQs Builder plugin (versions <= 2.0.3 on WordPress.

CVSS3: 7.2
1%
Низкий
около 3 лет назад
github логотип
GHSA-25c8-p9xf-2v4m

An issue in the server_handle_regular function of the test_coap_server.c file within the FreeCoAP project allows remote attackers to cause a Denial of Service through specially crafted packets.

CVSS3: 8.2
1%
Низкий
почти 2 года назад
github логотип
GHSA-25c8-p796-jg6r

Microsoft Security Advisory CVE-2023-33170: .NET Security Feature Bypass Vulnerability

CVSS3: 8.1
2%
Низкий
около 3 лет назад
github логотип
GHSA-25c8-jwjc-6mjh

Axigen Mail Server before 10.5.57 and 10.6.x before 10.6.26 contains a Cross-Site Request Forgery (CSRF) vulnerability in the WebAdmin interface through improper handling of the _s (breadcrumb) parameter. The application accepts state-changing requests via the GET method and automatically processes base64-encoded commands queued in the _s parameter immediately after administrator authentication. Attackers can craft malicious URLs that, when clicked by administrators, execute arbitrary administrative actions upon login without further user interaction, including creating rogue administrator accounts or modifying critical server configurations.

CVSS3: 8.8
0%
Низкий
7 месяцев назад
github логотип
GHSA-25c8-fq6j-8vvf

Memory corruption while processing MFC channel configuration during music playback.

CVSS3: 7.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-25c8-fmh2-q3pg

IBM WebSphere Message Broker 6.1.x before 6.1.0.2 writes a database connection password to the Event Log and System Log during exception handling for a JDBC error, which allows local users to obtain sensitive information by reading these logs.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-25c8-fc6x-9x37

Insecure deserialization of untrusted input in StellarGroup HPX 1.11.0 under certain conditions may allow attackers to execute arbitrary code or other unspecified impacts.

CVSS3: 9.8
0%
Низкий
5 месяцев назад
github логотип
GHSA-25c7-67gf-gc43

A URL redirection to untrusted site vulnerability in HP ArcSight ESM and HP ArcSight ESM Express, in any 6.x version prior to 6.9.1c Patch 4 or 6.11.0 Patch 1. This vulnerability could be exploited remotely to allow URL redirection to untrusted site.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-25c7-5442-g7pq

Microsoft .NET Framework 2.0 SP2, 3.5.1, and 4, and Silverlight 4 before 4.1.10111, does not properly restrict access to memory associated with unmanaged objects, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, (3) a crafted .NET Framework application, or (4) a crafted Silverlight application, aka ".NET Framework Unmanaged Objects Vulnerability."

CVSS3: 7.8
28%
Средний
больше 4 лет назад
github логотип
GHSA-25c7-47pw-x5cf

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused

больше 1 года назад

Уязвимостей на страницу