Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 382 251

Количество 382 251

github логотип

GHSA-23r9-h96j-wj63

3 месяца назад

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-23r9-9w5h-7769

около 2 месяцев назад

A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an authenticated, local attacker to perform a blind SQL injection attack against an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to read the contents of the internal database of an affected device. To exploit this vulnerability, the attacker must have valid user credentials on the affected device.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-23r9-76mg-5gpp

21 день назад

In the Linux kernel, the following vulnerability has been resolved: net/rds: use wq_has_sleeper() in rds_cong_map_updated() rds_cong_map_updated() runs after a peer's congestion map has been rewritten (by rds_tcp_cong_recv() and rds_ib_cong_recv(), or the clear-all in the loopback and IB send-completion paths). It bumps rds_cong_generation and then checks waitqueue_active() on map->m_waitq and on rds_poll_waitq to decide whether anyone needs waking. atomic_inc() carries no ordering and waitqueue_active() is a plain load, so nothing orders the map and generation stores before the wait queue reads. The waiters do the mirror image: rds_cong_wait() adds itself to m_waitq and then tests the port bit, and rds_poll() registers on rds_poll_waitq and then reads the generation. That is the store-buffering pattern described above waitqueue_active() in include/linux/wait.h - the updater can observe an empty wait queue while the waiter still observes the port as congested, and no wake-up i...

EPSS: Низкий
github логотип

GHSA-23r8-w57x-g4v7

8 дней назад

Shop manager Content Injection in Astra WordPress Theme <= 4.13.12 versions.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-23r8-p7qp-rwcq

больше 4 лет назад

A Server-Side Request Forgery (SSRF) vulnerability exists in MicroStrategy Web SDK 11.1 and earlier, allows remote unauthenticated attackers to conduct a server-side request forgery (SSRF) attack via the srcURL parameter to the shortURL task.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-23r8-fhxm-33gj

больше 4 лет назад

A vulnerability in the IPv6 traffic processing of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an unexpected restart of the netstack process on an affected device. The vulnerability is due to improper validation of IPv6 traffic sent through an affected device. An attacker could exploit this vulnerability by sending a malformed IPv6 packet through an affected device. A successful exploit could allow the attacker to cause a denial of service (DoS) condition while the netstack process restarts. A sustained attack could lead to a reboot of the device.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-23r7-hf6g-qqqg

больше 4 лет назад

CSRF vulnerability in Jenkins SOASTA CloudTest Plugin

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-23r7-45cv-87cf

больше 4 лет назад

create_account.php in osCommerce 2.2 RC 2a allows remote attackers to obtain sensitive information via an invalid dob parameter, which reveals the installation path in an error message.

EPSS: Низкий
github логотип

GHSA-23r7-3wvp-5358

почти 3 года назад

An open redirect through HTML injection in user messages in Asp.Net Zero before 12.3.0 allows remote attackers to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' in the WebSocket messages.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-23r6-cf24-3fg6

больше 4 лет назад

In btif, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06271186; Issue ID: ALPS06271186.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-23r5-px4g-3cgx

больше 4 лет назад

The RentPress WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the selections parameter found in the ~/src/rentPress/AjaxRequests.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 6.6.4.

EPSS: Низкий
github логотип

GHSA-23r5-m2mx-p7h2

больше 4 лет назад

Netenberg Fantastico De Luxe 2.8 uses database file names that contain the associated usernames, which allows local users to determine valid usernames and conduct brute force attacks by reading the file names from /var/lib/mysql, which is assigned world-readable permissions by cPanel 9.3.0 R5.

EPSS: Низкий
github логотип

GHSA-23r5-4wc9-f64r

больше 4 лет назад

nxapplet.jar in No Machine NX Web Companion 3.x and earlier does not properly verify the authenticity of updates, which allows user-assisted remote attackers to execute arbitrary code via a crafted (1) SiteUrl or (2) RedirectUrl parameter that points to a Trojan Horse client.zip update file.

EPSS: Низкий
github логотип

GHSA-23r4-x5xc-qw4f

больше 2 лет назад

Cross Site Scripting (XSS) vulnerability in in the S/MIME certificate upload functionality of the User Profile pages in savignano S/Notify before 4.0.0 for Confluence allows attackers to manipulate user data via specially crafted certificate.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-23r4-ccc9-65c9

4 месяца назад

Insufficient policy enforcement in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-23r4-6g3h-fpfp

больше 4 лет назад

In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-23r4-5mxp-c7g5

около 5 лет назад

parse-server new anonymous user session acts as if it's created with password

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-23r3-wg3q-c3xm

больше 2 лет назад

A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setting.php. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264740. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 4.7
EPSS: Низкий
github логотип

GHSA-23r3-hw65-m2x7

больше 1 года назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in icegram Icegram allows Stored XSS. This issue affects Icegram: from n/a through 3.1.31.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-23r3-843h-8x2j

больше 4 лет назад

PHP remote file inclusion vulnerability in js/wptable-button.php in the wp-Table 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parameter.

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-23r9-h96j-wj63

Use of uninitialized resource in Windows SMB allows an authorized attacker to disclose information locally.

CVSS3: 5.5
0%
Низкий
3 месяца назад
github логотип
GHSA-23r9-9w5h-7769

A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an authenticated, local attacker to perform a blind SQL injection attack against an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted request to the web-based management interface. A successful exploit could allow the attacker to read the contents of the internal database&nbsp;of an affected device. To exploit this vulnerability, the attacker must have valid user credentials on the affected device.

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-23r9-76mg-5gpp

In the Linux kernel, the following vulnerability has been resolved: net/rds: use wq_has_sleeper() in rds_cong_map_updated() rds_cong_map_updated() runs after a peer's congestion map has been rewritten (by rds_tcp_cong_recv() and rds_ib_cong_recv(), or the clear-all in the loopback and IB send-completion paths). It bumps rds_cong_generation and then checks waitqueue_active() on map->m_waitq and on rds_poll_waitq to decide whether anyone needs waking. atomic_inc() carries no ordering and waitqueue_active() is a plain load, so nothing orders the map and generation stores before the wait queue reads. The waiters do the mirror image: rds_cong_wait() adds itself to m_waitq and then tests the port bit, and rds_poll() registers on rds_poll_waitq and then reads the generation. That is the store-buffering pattern described above waitqueue_active() in include/linux/wait.h - the updater can observe an empty wait queue while the waiter still observes the port as congested, and no wake-up i...

0%
Низкий
21 день назад
github логотип
GHSA-23r8-w57x-g4v7

Shop manager Content Injection in Astra WordPress Theme <= 4.13.12 versions.

CVSS3: 2.7
0%
Низкий
8 дней назад
github логотип
GHSA-23r8-p7qp-rwcq

A Server-Side Request Forgery (SSRF) vulnerability exists in MicroStrategy Web SDK 11.1 and earlier, allows remote unauthenticated attackers to conduct a server-side request forgery (SSRF) attack via the srcURL parameter to the shortURL task.

CVSS3: 8.1
2%
Низкий
больше 4 лет назад
github логотип
GHSA-23r8-fhxm-33gj

A vulnerability in the IPv6 traffic processing of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an unexpected restart of the netstack process on an affected device. The vulnerability is due to improper validation of IPv6 traffic sent through an affected device. An attacker could exploit this vulnerability by sending a malformed IPv6 packet through an affected device. A successful exploit could allow the attacker to cause a denial of service (DoS) condition while the netstack process restarts. A sustained attack could lead to a reboot of the device.

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-23r7-hf6g-qqqg

CSRF vulnerability in Jenkins SOASTA CloudTest Plugin

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-23r7-45cv-87cf

create_account.php in osCommerce 2.2 RC 2a allows remote attackers to obtain sensitive information via an invalid dob parameter, which reveals the installation path in an error message.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-23r7-3wvp-5358

An open redirect through HTML injection in user messages in Asp.Net Zero before 12.3.0 allows remote attackers to redirect targeted victims to any URL via the '<meta http-equiv="refresh"' in the WebSocket messages.

CVSS3: 6.1
0%
Низкий
почти 3 года назад
github логотип
GHSA-23r6-cf24-3fg6

In btif, there is a possible memory corruption due to incorrect error handling. This could lead to local escalation of privilege with System execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS06271186; Issue ID: ALPS06271186.

CVSS3: 6.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-23r5-px4g-3cgx

The RentPress WordPress plugin is vulnerable to Reflected Cross-Site Scripting via the selections parameter found in the ~/src/rentPress/AjaxRequests.php file which allows attackers to inject arbitrary web scripts, in versions up to and including 6.6.4.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-23r5-m2mx-p7h2

Netenberg Fantastico De Luxe 2.8 uses database file names that contain the associated usernames, which allows local users to determine valid usernames and conduct brute force attacks by reading the file names from /var/lib/mysql, which is assigned world-readable permissions by cPanel 9.3.0 R5.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-23r5-4wc9-f64r

nxapplet.jar in No Machine NX Web Companion 3.x and earlier does not properly verify the authenticity of updates, which allows user-assisted remote attackers to execute arbitrary code via a crafted (1) SiteUrl or (2) RedirectUrl parameter that points to a Trojan Horse client.zip update file.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-23r4-x5xc-qw4f

Cross Site Scripting (XSS) vulnerability in in the S/MIME certificate upload functionality of the User Profile pages in savignano S/Notify before 4.0.0 for Confluence allows attackers to manipulate user data via specially crafted certificate.

CVSS3: 6.1
0%
Низкий
больше 2 лет назад
github логотип
GHSA-23r4-ccc9-65c9

Insufficient policy enforcement in WebView in Google Chrome on Android prior to 149.0.7827.53 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 4.3
0%
Низкий
4 месяца назад
github логотип
GHSA-23r4-6g3h-fpfp

In Advanced SystemCare Ultimate 11.0.1.58, the driver file (Monitor_win10_x64.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input values from IOCtl 0x9c402000.

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-23r4-5mxp-c7g5

parse-server new anonymous user session acts as if it's created with password

CVSS3: 4.8
1%
Низкий
около 5 лет назад
github логотип
GHSA-23r3-wg3q-c3xm

A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setting.php. The manipulation leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-264740. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 4.7
1%
Низкий
больше 2 лет назад
github логотип
GHSA-23r3-hw65-m2x7

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in icegram Icegram allows Stored XSS. This issue affects Icegram: from n/a through 3.1.31.

CVSS3: 6.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-23r3-843h-8x2j

PHP remote file inclusion vulnerability in js/wptable-button.php in the wp-Table 1.43 and earlier plugin for WordPress, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the wpPATH parameter.

45%
Средний
больше 4 лет назад

Уязвимостей на страницу