Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 841

Количество 370 841

github логотип

GHSA-24pq-f9c8-764p

больше 4 лет назад

ganglia-web (aka Ganglia Web Frontend) through 3.7.5 allows XSS via the header.php cs parameter.

EPSS: Низкий
github логотип

GHSA-24pq-9mvp-239w

больше 4 лет назад

Untrusted pointer dereference in some Intel(R) Graphics Drivers before versions 15.33.51.5146, 15.45.32.5145, 15.36.39.5144 and 15.40.46.5143 may allow an authenticated user to potentially denial of service via local access.

EPSS: Низкий
github логотип

GHSA-24pp-m59v-92j8

около 1 месяца назад

An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Google mcp-toolbox versions 0.16.1 through 1.4.0 allows an authenticated attacker to bypass allowedDatasets validation checks. The toolbox relies on the BigQuery dry-run API to enforce dataset restrictions, but due to a fail-open logic flaw, it bypasses validation when the API returns an empty array for specialized constructs. This allows the attacker to extract structural DDL schemas for explicitly excluded datasets via INFORMATION_SCHEMA, and access downstream federated row data via EXTERNAL_QUERY connections.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-24pp-jv4q-cp8j

9 месяцев назад

Privilege escalation in the DOM: Notifications component. This vulnerability affects Firefox < 146, Firefox ESR < 115.31, and Firefox ESR < 140.6.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-24pm-f3f4-m533

больше 4 лет назад

Authorized users of the openbuildservice before 2.9.4 could delete packages by using a malicious request against projects having the OBS:InitializeDevelPackage attribute, a similar issue to CVE-2018-7689.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-24pm-ccpf-9wgw

больше 4 лет назад

SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.

EPSS: Низкий
github логотип

GHSA-24pm-8839-wg8f

12 дней назад

@hulumi/policies versions before 1.3.2 fail to properly validate set-qualified AWS IAM condition operators in GitHub OIDC trust policies. Attackers can use ForAnyValue:StringLike operators to hide wildcard GitHub Actions OIDC subject conditions from security guardrails.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-24pj-f32f-p9j2

почти 2 года назад

This CVE has been rejected.

EPSS: Низкий
github логотип

GHSA-24pj-cp9v-g5jc

3 месяца назад

Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks of this vulnerability can result in takeover of Oracle WebCenter Sites. CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-24pj-648p-4mq2

больше 4 лет назад

The searchterms-tagging-2 plugin through 1.535 for WordPress has XSS via the wp-admin/options-general.php count parameter.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-24ph-4hqc-88jw

12 месяцев назад

Ashlar-Vellum Cobalt LI File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of LI files. The issue results from the lack of proper validation of user-supplied data, which can result in a read before the start of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-25354.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24pg-vqrw-x656

почти 2 года назад

Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-24pg-vq4j-g2g2

около 4 лет назад

D-Link Go-RT-AC750 GORTAC750_revA_v101b03 & GO-RT-AC750_revB_FWv200b02 is vulnerable to Buffer Overflow via authenticationcgi_main.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-24pg-mpvf-gg4c

больше 4 лет назад

Cross Site Scripting (XSS) in the contact page of Group Office CRM 6.4.196 by uploading a crafted svg file.

EPSS: Низкий
github логотип

GHSA-24pg-m258-76qq

больше 4 лет назад

Apache 1.3.20 on Windows servers allows remote attackers to bypass the default index page and list directory contents via a URL with a large number of / (slash) characters.

EPSS: Низкий
github логотип

GHSA-24pg-74pv-r836

18 дней назад

A SQL injection vulnerability in the tags manager in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users with users_mod privileges to execute arbitrary SQL commands via the tagid or type parameter in a crafted POST request to tools.php?action=manage_tags.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-24pf-jwjh-vhjw

больше 4 лет назад

Serialized-object interfaces in VMware vRealize Orchestrator 6.x, vCenter Orchestrator 5.x, vRealize Operations 6.x, vCenter Operations 5.x, and vCenter Application Discovery Manager (vADM) 7.x allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-24pf-h82m-5vvv

больше 4 лет назад

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A stack out-of-bounds write in onigenc_unicode_get_case_fold_codes_by_str() occurs during regular expression compilation. Code point 0xFFFFFFFF is not properly handled in unicode_unfold_key(). A malformed regular expression could result in 4 bytes being written off the end of a stack buffer of expand_case_fold_string() during the call to onigenc_unicode_get_case_fold_codes_by_str(), a typical stack buffer overflow.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-24pf-7g6m-7wcx

больше 4 лет назад

Insufficient policy enforcement in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.

EPSS: Низкий
github логотип

GHSA-24pc-pxxr-h3mc

больше 4 лет назад

SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla

CVSS3: 7.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-24pq-f9c8-764p

ganglia-web (aka Ganglia Web Frontend) through 3.7.5 allows XSS via the header.php cs parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-24pq-9mvp-239w

Untrusted pointer dereference in some Intel(R) Graphics Drivers before versions 15.33.51.5146, 15.45.32.5145, 15.36.39.5144 and 15.40.46.5143 may allow an authenticated user to potentially denial of service via local access.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-24pp-m59v-92j8

An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Google mcp-toolbox versions 0.16.1 through 1.4.0 allows an authenticated attacker to bypass allowedDatasets validation checks. The toolbox relies on the BigQuery dry-run API to enforce dataset restrictions, but due to a fail-open logic flaw, it bypasses validation when the API returns an empty array for specialized constructs. This allows the attacker to extract structural DDL schemas for explicitly excluded datasets via INFORMATION_SCHEMA, and access downstream federated row data via EXTERNAL_QUERY connections.

CVSS3: 7.7
0%
Низкий
около 1 месяца назад
github логотип
GHSA-24pp-jv4q-cp8j

Privilege escalation in the DOM: Notifications component. This vulnerability affects Firefox < 146, Firefox ESR < 115.31, and Firefox ESR < 140.6.

CVSS3: 8.8
0%
Низкий
9 месяцев назад
github логотип
GHSA-24pm-f3f4-m533

Authorized users of the openbuildservice before 2.9.4 could delete packages by using a malicious request against projects having the OBS:InitializeDevelPackage attribute, a similar issue to CVE-2018-7689.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-24pm-ccpf-9wgw

SICK Package Analytics software up to and including version V04.0.0 are vulnerable due to incorrect default permissions settings. An unauthorized attacker could read sensitive data from the system by querying for known files using the REST API directly.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-24pm-8839-wg8f

@hulumi/policies versions before 1.3.2 fail to properly validate set-qualified AWS IAM condition operators in GitHub OIDC trust policies. Attackers can use ForAnyValue:StringLike operators to hide wildcard GitHub Actions OIDC subject conditions from security guardrails.

CVSS3: 9.8
0%
Низкий
12 дней назад
github логотип
GHSA-24pj-f32f-p9j2

This CVE has been rejected.

почти 2 года назад
github логотип
GHSA-24pj-cp9v-g5jc

Vulnerability in the Oracle WebCenter Sites product of Oracle Fusion Middleware (component: WebCenter Sites). Supported versions that are affected are 12.2.1.4.0 and 14.1.2.0.0. Difficult to exploit vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks of this vulnerability can result in takeover of Oracle WebCenter Sites. CVSS 3.1 Base Score 7.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H).

CVSS3: 7.5
0%
Низкий
3 месяца назад
github логотип
GHSA-24pj-648p-4mq2

The searchterms-tagging-2 plugin through 1.535 for WordPress has XSS via the wp-admin/options-general.php count parameter.

CVSS3: 6.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-24ph-4hqc-88jw

Ashlar-Vellum Cobalt LI File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Ashlar-Vellum Cobalt. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of LI files. The issue results from the lack of proper validation of user-supplied data, which can result in a read before the start of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-25354.

CVSS3: 7.8
0%
Низкий
12 месяцев назад
github логотип
GHSA-24pg-vqrw-x656

Azure Stack Hyperconverged Infrastructure (HCI) Elevation of Privilege Vulnerability

CVSS3: 8.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-24pg-vq4j-g2g2

D-Link Go-RT-AC750 GORTAC750_revA_v101b03 & GO-RT-AC750_revB_FWv200b02 is vulnerable to Buffer Overflow via authenticationcgi_main.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-24pg-mpvf-gg4c

Cross Site Scripting (XSS) in the contact page of Group Office CRM 6.4.196 by uploading a crafted svg file.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-24pg-m258-76qq

Apache 1.3.20 on Windows servers allows remote attackers to bypass the default index page and list directory contents via a URL with a large number of / (slash) characters.

7%
Низкий
больше 4 лет назад
github логотип
GHSA-24pg-74pv-r836

A SQL injection vulnerability in the tags manager in GazellePW (GazellePosterWall) commit 86c4bedf727691b5a97af42a4864869d18446449 allows remote authenticated users with users_mod privileges to execute arbitrary SQL commands via the tagid or type parameter in a crafted POST request to tools.php?action=manage_tags.

CVSS3: 5.4
0%
Низкий
18 дней назад
github логотип
GHSA-24pf-jwjh-vhjw

Serialized-object interfaces in VMware vRealize Orchestrator 6.x, vCenter Orchestrator 5.x, vRealize Operations 6.x, vCenter Operations 5.x, and vCenter Application Discovery Manager (vADM) 7.x allow remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library.

CVSS3: 7.3
5%
Низкий
больше 4 лет назад
github логотип
GHSA-24pf-h82m-5vvv

An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7.1.5. A stack out-of-bounds write in onigenc_unicode_get_case_fold_codes_by_str() occurs during regular expression compilation. Code point 0xFFFFFFFF is not properly handled in unicode_unfold_key(). A malformed regular expression could result in 4 bytes being written off the end of a stack buffer of expand_case_fold_string() during the call to onigenc_unicode_get_case_fold_codes_by_str(), a typical stack buffer overflow.

CVSS3: 9.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-24pf-7g6m-7wcx

Insufficient policy enforcement in Blink in Google Chrome prior to 77.0.3865.75 allowed a remote attacker to bypass content security policy via a crafted HTML page.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-24pc-pxxr-h3mc

SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla

CVSS3: 7.2
2%
Низкий
больше 4 лет назад

Уязвимостей на страницу