Количество 375 268
Количество 375 268
GHSA-25jm-cqq3-vxrf
The HT Contact Form WordPress plugin before 2.9.3 does not perform any authorization check on the endpoint that returns a saved form draft, allowing unauthenticated users to read the personal data (name, email, phone, address) stored in form drafts.
GHSA-25jm-89cm-8q44
The Logo Carousel WordPress plugin before 3.4.2 allows users with a role as low as Contributor to duplicate and view arbitrary private posts made by other users via the Carousel Duplication feature
GHSA-25jj-2ph2-cmvq
The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. As for the affected products/models/versions, see the reference URL.
GHSA-25jh-wfqw-8v39
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Tourmaster allows Reflected XSS. This issue affects Tourmaster: from n/a through n/a.
GHSA-25jh-rpgw-34vr
An issue was discovered in Concrete CMS through 8.5.5. Fetching the update json scheme over HTTP leads to remote code execution.
GHSA-25jh-5h5r-h33m
Plone Sandbox Bypass
GHSA-25jf-qr89-v245
Argo CD Helm Chart before 10.0.0 fails to install network policies by default, allowing any pod on a cluster to access repo-server and other Argo APIs. Attackers can exploit this unrestricted network access through combined attacks to achieve cluster compromise and remote code execution.
GHSA-25jf-f5vr-7hr7
Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect integrity and availability, related to ZFS.
GHSA-25jc-w8gj-g4wg
IBM PowerVM Hypervisor FW950.00 through FW950.71, FW1010.00 through FW1010.40, FW1020.00 through FW1020.20, and FW1030.00 through FW1030.11 could allow an attacker to obtain sensitive information if they gain service access to the HMC. IBM X-Force ID: 247592.
GHSA-25jc-28wg-jh86
Multiple directory traversal vulnerabilities in Unreal Commander 0.92 build 565 and 573 allow user-assisted remote attackers to create or overwrite arbitrary files via a .. (dot dot) in a filename within a (1) ZIP or (2) RAR archive.
GHSA-25j9-j567-gc6p
sysstat through 12.2.0 has a double free in check_file_actlst in sa_common.c.
GHSA-25j9-9wxp-hpp7
Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUG_LOGIN) is enabled, allows remote attackers to execute arbitrary code.
GHSA-25j8-p372-9f6w
Stack-based buffer overflow in Xfig 3.2.4 and 3.2.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a FIG image with a crafted color definition.
GHSA-25j8-2c25-x36q
Boa 0.94.14rc21 is vulnerable to SQL Injection via username.
GHSA-25j6-j45c-6mcv
D-Link DAP-1325 SetAPLanSettings SubnetMask Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of XML data provided to the HNAP1 SOAP endpoint. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-18831.
GHSA-25j6-496g-x28f
NanoMQ 0.16.5 is vulnerable to heap-use-after-free in the nano_ctx_send function of nmq_mqtt.c.
GHSA-25j5-m2vp-7jwc
An issue was discovered on G-Net Dashcam BB GONX devices. One can Remotely Dump Video Footage and the Live Video Stream. It exposes API endpoints on ports 9091 and 9092 that allow remote access to recorded and live video feeds. An attacker who connects to the dashcam's network can retrieve all stored recordings and convert them from JDR format to MP4. Additionally, port 9092's RTSP stream can be accessed remotely, allowing real-time video feeds to be extracted without the owner's knowledge.
GHSA-25j5-9j9v-cp8m
Race condition in the Radeon DRI driver for Linux kernel 2.6.8.1 allows local users with DRI privileges to execute arbitrary code as root.
GHSA-25j4-vg62-44m4
The default configuration of Persistent Accelerite Radia Client Automation (formerly HP Client Automation) 7.9 through 9.1 before 2015-02-19 enables a remote Notify capability without the Extended Notify Security features, which might allow remote attackers to bypass intended access restrictions via unspecified vectors.
GHSA-25j4-vfxf-h9xv
SQL injection vulnerability in the AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to execute arbitrary SQL commands via "File Transfer Web Service".
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-25jm-cqq3-vxrf The HT Contact Form WordPress plugin before 2.9.3 does not perform any authorization check on the endpoint that returns a saved form draft, allowing unauthenticated users to read the personal data (name, email, phone, address) stored in form drafts. | CVSS3: 7.5 | 0% Низкий | около 1 месяца назад | |
GHSA-25jm-89cm-8q44 The Logo Carousel WordPress plugin before 3.4.2 allows users with a role as low as Contributor to duplicate and view arbitrary private posts made by other users via the Carousel Duplication feature | CVSS3: 8.1 | 1% Низкий | больше 4 лет назад | |
GHSA-25jj-2ph2-cmvq The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. As for the affected products/models/versions, see the reference URL. | CVSS3: 7.4 | 0% Низкий | больше 2 лет назад | |
GHSA-25jh-wfqw-8v39 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in NotFound Tourmaster allows Reflected XSS. This issue affects Tourmaster: from n/a through n/a. | CVSS3: 7.1 | 0% Низкий | больше 1 года назад | |
GHSA-25jh-rpgw-34vr An issue was discovered in Concrete CMS through 8.5.5. Fetching the update json scheme over HTTP leads to remote code execution. | 2% Низкий | больше 4 лет назад | ||
GHSA-25jh-5h5r-h33m Plone Sandbox Bypass | CVSS3: 9.9 | 2% Низкий | больше 4 лет назад | |
GHSA-25jf-qr89-v245 Argo CD Helm Chart before 10.0.0 fails to install network policies by default, allowing any pod on a cluster to access repo-server and other Argo APIs. Attackers can exploit this unrestricted network access through combined attacks to achieve cluster compromise and remote code execution. | CVSS3: 7.6 | 0% Низкий | 2 месяца назад | |
GHSA-25jf-f5vr-7hr7 Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows local users to affect integrity and availability, related to ZFS. | 0% Низкий | больше 4 лет назад | ||
GHSA-25jc-w8gj-g4wg IBM PowerVM Hypervisor FW950.00 through FW950.71, FW1010.00 through FW1010.40, FW1020.00 through FW1020.20, and FW1030.00 through FW1030.11 could allow an attacker to obtain sensitive information if they gain service access to the HMC. IBM X-Force ID: 247592. | CVSS3: 5.9 | 1% Низкий | больше 3 лет назад | |
GHSA-25jc-28wg-jh86 Multiple directory traversal vulnerabilities in Unreal Commander 0.92 build 565 and 573 allow user-assisted remote attackers to create or overwrite arbitrary files via a .. (dot dot) in a filename within a (1) ZIP or (2) RAR archive. | 2% Низкий | больше 4 лет назад | ||
GHSA-25j9-j567-gc6p sysstat through 12.2.0 has a double free in check_file_actlst in sa_common.c. | CVSS3: 9.8 | 3% Низкий | больше 4 лет назад | |
GHSA-25j9-9wxp-hpp7 Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUG_LOGIN) is enabled, allows remote attackers to execute arbitrary code. | 11% Средний | больше 4 лет назад | ||
GHSA-25j8-p372-9f6w Stack-based buffer overflow in Xfig 3.2.4 and 3.2.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a FIG image with a crafted color definition. | 6% Низкий | больше 4 лет назад | ||
GHSA-25j8-2c25-x36q Boa 0.94.14rc21 is vulnerable to SQL Injection via username. | CVSS3: 9.8 | 1% Низкий | почти 4 года назад | |
GHSA-25j6-j45c-6mcv D-Link DAP-1325 SetAPLanSettings SubnetMask Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of D-Link DAP-1325 routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of XML data provided to the HNAP1 SOAP endpoint. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a fixed-length stack-based buffer. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-18831. | CVSS3: 8.8 | 1% Низкий | больше 2 лет назад | |
GHSA-25j6-496g-x28f NanoMQ 0.16.5 is vulnerable to heap-use-after-free in the nano_ctx_send function of nmq_mqtt.c. | CVSS3: 7.5 | 1% Низкий | больше 3 лет назад | |
GHSA-25j5-m2vp-7jwc An issue was discovered on G-Net Dashcam BB GONX devices. One can Remotely Dump Video Footage and the Live Video Stream. It exposes API endpoints on ports 9091 and 9092 that allow remote access to recorded and live video feeds. An attacker who connects to the dashcam's network can retrieve all stored recordings and convert them from JDR format to MP4. Additionally, port 9092's RTSP stream can be accessed remotely, allowing real-time video feeds to be extracted without the owner's knowledge. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
GHSA-25j5-9j9v-cp8m Race condition in the Radeon DRI driver for Linux kernel 2.6.8.1 allows local users with DRI privileges to execute arbitrary code as root. | 0% Низкий | больше 4 лет назад | ||
GHSA-25j4-vg62-44m4 The default configuration of Persistent Accelerite Radia Client Automation (formerly HP Client Automation) 7.9 through 9.1 before 2015-02-19 enables a remote Notify capability without the Extended Notify Security features, which might allow remote attackers to bypass intended access restrictions via unspecified vectors. | 2% Низкий | больше 4 лет назад | ||
GHSA-25j4-vfxf-h9xv SQL injection vulnerability in the AssetView for MacOS Ver.9.2.0 and earlier versions allows remote attackers to execute arbitrary SQL commands via "File Transfer Web Service". | CVSS3: 6.3 | 1% Низкий | больше 4 лет назад |
Уязвимостей на страницу