Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 370 841

Количество 370 841

github логотип

GHSA-24m9-4jgr-2wjp

больше 4 лет назад

Unspecified vulnerability in the Siebel CRM component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Security.

EPSS: Низкий
github логотип

GHSA-24m8-vx7p-q7mf

больше 1 года назад

The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scripting attacks

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-24m8-vm8v-rrfv

больше 4 лет назад

A stack overflow in pupnp 1.16.1 can cause the denial of service through the Parser_parseDocument() function. ixmlNode_free() will release a child node recursively, which will consume stack space and lead to a crash.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-24m8-r3wq-c97x

больше 2 лет назад

A Local File Inclusion (LFI) vulnerability exists in the parisneo/lollms-webui application, specifically within the `/personalities` route. An attacker can exploit this vulnerability by crafting a URL that includes directory traversal sequences (`../../`) followed by the desired system file path, URL encoded. Successful exploitation allows the attacker to read any file on the filesystem accessible by the web server. This issue arises due to improper control of filename for include/require statement in the application.

CVSS3: 9.3
EPSS: Средний
github логотип

GHSA-24m8-gx8h-m878

больше 1 года назад

The Text Prompter – Unlimited chatgpt text prompts for openai tasks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'text_prompter' shortcode in all versions up to, and including, 1.0.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-24m8-cwfr-mcww

больше 4 лет назад

Insufficient policy enforcement in full screen in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to spoof security UI via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-24m7-qjg5-vgqc

больше 4 лет назад

The Bulk Modifications functionality in Nagios XI versions prior to 5.8.5 is vulnerable to SQL injection. Exploitation requires the malicious actor to be authenticated to the vulnerable system, but once authenticated they would be able to execute arbitrary sql queries.

EPSS: Средний
github логотип

GHSA-24m7-q6q4-w3hx

больше 4 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

EPSS: Низкий
github логотип

GHSA-24m7-fg2x-3vfx

больше 4 лет назад

Off-by-one error in ImageMagick before 6.6.0-4 allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM profile.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-24m6-qmjg-grqr

больше 4 лет назад

The SVN revision view (lib/vclib/svn/svn_repos.py) in ViewVC before 1.1.15 does not properly handle log messages when a readable path is copied from an unreadable path, which allows remote attackers to obtain sensitive information, related to a "log msg leak."

EPSS: Низкий
github логотип

GHSA-24m5-r6hv-ccgp

почти 3 года назад

Specific Cilium configurations vulnerable to DoS via Kubernetes annotations

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-24m5-fqmm-mrmv

почти 3 года назад

A vulnerability, which was classified as critical, has been found in The Hackers Diet Plugin up to 0.9.6b on WordPress. This issue affects some unknown processing of the file ajax_blurb.php of the component HTTP POST Request Handler. The manipulation of the argument user leads to sql injection. The attack may be initiated remotely. Upgrading to version 0.9.7b is able to address this issue. The patch is named 7dd8acf7cd8442609840037121074425d363b694. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-243803.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-24m4-jmrh-xh5r

больше 1 года назад

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-24m4-fmx6-c2q6

больше 4 лет назад

tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0.1 and other products, has an integer overflow that potentially causes a heap-based buffer overflow via a crafted RGBA image, related to a "Negative-size-param" condition.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-24m4-9q2q-2374

почти 3 года назад

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yakir Sitbon, Ariel Klikstein Linker plugin <= 1.2.1 versions.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-24m4-6q78-mqxw

больше 4 лет назад

AppleGraphicsPowerManagement in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-24m3-w8g9-jwpq

больше 6 лет назад

Information disclosure of source code in SimpleSAMLphp

CVSS3: 3
EPSS: Низкий
github логотип

GHSA-24m3-rcq7-76r2

около 3 лет назад

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-24m2-vhhc-392c

больше 4 лет назад

Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space.

EPSS: Низкий
github логотип

GHSA-24m2-rchh-h2mx

3 месяца назад

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Reject empty multisync extension to prevent infinite loop v3d_get_extensions() walks a userspace-provided singly-linked list of ioctl extensions without any bound on the chain length. A local user can craft a self-referential extension (ext->next == &ext) with zero in_sync_count and out_sync_count, which bypasses the existing duplicate- extension guard: if (se->in_sync_count || se->out_sync_count) return -EINVAL; The guard never fires because v3d_get_multisync_post_deps() returns immediately when count is zero, leaving both fields at zero on every iteration. The result is an infinite loop in kernel context, blocking the calling thread and pegging a CPU core indefinitely. Fix this by rejecting a multisync extension where both in_sync_count and out_sync_count are zero in v3d_get_multisync_submit_deps(). An empty multisync carries no synchronization information and serves no useful purpose...

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-24m9-4jgr-2wjp

Unspecified vulnerability in the Siebel CRM component in Oracle Siebel CRM 8.1.1 and 8.2.2 allows remote authenticated users to affect confidentiality via unknown vectors related to Security.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-24m8-vx7p-q7mf

The Icegram Engage WordPress plugin before 3.1.32 does not sanitise and escape some of its Campaign settings, which could allow authors and above to perform Stored Cross-Site Scripting attacks

CVSS3: 6.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-24m8-vm8v-rrfv

A stack overflow in pupnp 1.16.1 can cause the denial of service through the Parser_parseDocument() function. ixmlNode_free() will release a child node recursively, which will consume stack space and lead to a crash.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-24m8-r3wq-c97x

A Local File Inclusion (LFI) vulnerability exists in the parisneo/lollms-webui application, specifically within the `/personalities` route. An attacker can exploit this vulnerability by crafting a URL that includes directory traversal sequences (`../../`) followed by the desired system file path, URL encoded. Successful exploitation allows the attacker to read any file on the filesystem accessible by the web server. This issue arises due to improper control of filename for include/require statement in the application.

CVSS3: 9.3
33%
Средний
больше 2 лет назад
github логотип
GHSA-24m8-gx8h-m878

The Text Prompter – Unlimited chatgpt text prompts for openai tasks plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'text_prompter' shortcode in all versions up to, and including, 1.0.7 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-24m8-cwfr-mcww

Insufficient policy enforcement in full screen in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to spoof security UI via a crafted HTML page.

CVSS3: 4.3
2%
Низкий
больше 4 лет назад
github логотип
GHSA-24m7-qjg5-vgqc

The Bulk Modifications functionality in Nagios XI versions prior to 5.8.5 is vulnerable to SQL injection. Exploitation requires the malicious actor to be authenticated to the vulnerable system, but once authenticated they would be able to execute arbitrary sql queries.

10%
Средний
больше 4 лет назад
github логотип
GHSA-24m7-q6q4-w3hx

Multiple cross-site scripting (XSS) vulnerabilities in Cgi/confirm.py in GNU Mailman 2.1.14 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) full name or (2) username field in a confirmation message.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-24m7-fg2x-3vfx

Off-by-one error in ImageMagick before 6.6.0-4 allows remote attackers to cause a denial of service (application crash) via a crafted 8BIM profile.

CVSS3: 5.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-24m6-qmjg-grqr

The SVN revision view (lib/vclib/svn/svn_repos.py) in ViewVC before 1.1.15 does not properly handle log messages when a readable path is copied from an unreadable path, which allows remote attackers to obtain sensitive information, related to a "log msg leak."

2%
Низкий
больше 4 лет назад
github логотип
GHSA-24m5-r6hv-ccgp

Specific Cilium configurations vulnerable to DoS via Kubernetes annotations

CVSS3: 3.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-24m5-fqmm-mrmv

A vulnerability, which was classified as critical, has been found in The Hackers Diet Plugin up to 0.9.6b on WordPress. This issue affects some unknown processing of the file ajax_blurb.php of the component HTTP POST Request Handler. The manipulation of the argument user leads to sql injection. The attack may be initiated remotely. Upgrading to version 0.9.7b is able to address this issue. The patch is named 7dd8acf7cd8442609840037121074425d363b694. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-243803.

CVSS3: 6.3
1%
Низкий
почти 3 года назад
github логотип
GHSA-24m4-jmrh-xh5r

Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

CVSS3: 6.5
1%
Низкий
больше 1 года назад
github логотип
GHSA-24m4-fmx6-c2q6

tif_getimage.c in LibTIFF through 4.0.10, as used in GDAL through 3.0.1 and other products, has an integer overflow that potentially causes a heap-based buffer overflow via a crafted RGBA image, related to a "Negative-size-param" condition.

CVSS3: 8.8
3%
Низкий
больше 4 лет назад
github логотип
GHSA-24m4-9q2q-2374

Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Yakir Sitbon, Ariel Klikstein Linker plugin <= 1.2.1 versions.

CVSS3: 5.4
0%
Низкий
почти 3 года назад
github логотип
GHSA-24m4-6q78-mqxw

AppleGraphicsPowerManagement in Apple OS X before 10.11.5 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-24m3-w8g9-jwpq

Information disclosure of source code in SimpleSAMLphp

CVSS3: 3
1%
Низкий
больше 6 лет назад
github логотип
GHSA-24m3-rcq7-76r2

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command injection vulnerability. This vulnerability stems from inadequate input validation in the certificate management function, which could potentially allow malicious users to execute remote code on affected devices.

CVSS3: 7.2
1%
Низкий
около 3 лет назад
github логотип
GHSA-24m2-vhhc-392c

Buffer overflow vulnerability in fcovatti libiec_iccp_mod v1.5, allows attackers to cause a denail of service when trying to calloc an unexpectiedly large space.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-24m2-rchh-h2mx

In the Linux kernel, the following vulnerability has been resolved: drm/v3d: Reject empty multisync extension to prevent infinite loop v3d_get_extensions() walks a userspace-provided singly-linked list of ioctl extensions without any bound on the chain length. A local user can craft a self-referential extension (ext->next == &ext) with zero in_sync_count and out_sync_count, which bypasses the existing duplicate- extension guard: if (se->in_sync_count || se->out_sync_count) return -EINVAL; The guard never fires because v3d_get_multisync_post_deps() returns immediately when count is zero, leaving both fields at zero on every iteration. The result is an infinite loop in kernel context, blocking the calling thread and pegging a CPU core indefinitely. Fix this by rejecting a multisync extension where both in_sync_count and out_sync_count are zero in v3d_get_multisync_submit_deps(). An empty multisync carries no synchronization information and serves no useful purpose...

CVSS3: 5.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу