Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 628

Количество 355 628

github логотип

GHSA-xqc3-f6fp-p8x7

больше 4 лет назад

PEEL, possibly 3.x and earlier, has (1) a default info@peel.fr account with password admin, and (2) a default contact@peel.fr account with password cinema, which allows remote attackers to gain administrative access.

EPSS: Низкий
github логотип

GHSA-xqc3-7rmw-qh94

около 2 месяцев назад

Subscriber Cross Site Scripting (XSS) in Shipment Tracker for Woocommerce <= 1.5.3.2 versions.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xqc2-xvq9-7x34

больше 1 года назад

A flaw was found in gnuplot. The GetAnnotateString() function may lead to a segmentation fault and cause a system crash.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-xqc2-qqq8-xfj5

около 4 лет назад

An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (with active profiling) to obtain sensitive information about other guests, cause a denial of service, or possibly gain privileges. For guests for which "active" profiling was enabled by the administrator, the xenoprof code uses the standard Xen shared ring structure. Unfortunately, this code did not treat the guest as a potential adversary: it trusts the guest not to modify buffer size information or modify head / tail pointers in unexpected ways. This can crash the host (DoS). Privilege escalation cannot be ruled out.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xqc2-q3vp-2m56

около 4 лет назад

The fix for the Linux kernel in Ubuntu 18.04 LTS for CVE-2019-14615 ("The Linux kernel did not properly clear data structures on context switches for certain Intel graphics processors.") was discovered to be incomplete, meaning that in versions of the kernel before 4.15.0-91.92, an attacker could use this vulnerability to expose sensitive information.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xq9x-h495-fv93

около 4 лет назад

A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

EPSS: Низкий
github логотип

GHSA-xq9x-f43x-2c77

около 4 лет назад

Buffer overflow in entity_cache in ELinks before 0.11.4rc0 allows remote attackers to cause a denial of service (crash) via a crafted link.

EPSS: Низкий
github логотип

GHSA-xq9w-j69v-6chc

больше 4 лет назад

Path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager Project's Tiny File Manager 2.4.1 allows remote attackers with valid user accounts to upload malicious PHP files to the webroot and achieve code execution on the target server.

CVSS3: 8.8
EPSS: Высокий
github логотип

GHSA-xq9w-9p59-f6rx

около 4 лет назад

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnview+0x0000000000370074."

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xq9v-7phc-vqjq

больше 2 лет назад

The Popup box WordPress plugin before 3.8.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-xq9r-6v4r-3g8m

около 4 лет назад

Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-38652.

CVSS3: 7.6
EPSS: Низкий
github логотип

GHSA-xq9r-2r42-w9c6

больше 2 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in naa986 Easy Video Player allows Stored XSS.This issue affects Easy Video Player: from n/a through 1.2.2.10.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xq9q-5j9m-x6xx

почти 2 года назад

FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/delete/10.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xq9p-hq98-j4x4

около 2 лет назад

Mattermost Mobile Apps versions <=2.16.0 fail to protect against abuse of a globally shared MathJax state which allows an attacker to change the contents of a LateX post, by creating another post with specific macro definitions.

CVSS3: 2.6
EPSS: Низкий
github логотип

GHSA-xq9p-h64g-x8mc

больше 1 года назад

Weak default folder permissions

CVSS3: 6.6
EPSS: Низкий
github логотип

GHSA-xq9p-gxg6-f7q6

около 1 месяца назад

When a libcurl-based application performs transfers via `SCP://` or `SFTP://` and utilizes the `CURLOPT_SSH_KEYFUNCTION` callback, it may silently accept an untrusted server. This vulnerability occurs when a server presents a host key type that does not match the specific key type already recorded for that host in the `known_hosts` file. Instead of rejecting the mismatch, the callback mechanism fails to properly enforce the restriction, allowing the connection to succeed without warning and risking a potential man-in-the-middle attack.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-xq9m-vv28-7f24

больше 1 года назад

The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.6.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. When DirectoryPress Frontend is installed, this can be exploited by unauthenticated users.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xq9m-hmp9-fw87

3 месяца назад

wger: CSV/TSV formula injection in gym member export (first_name/last_name)

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-xq9m-fh33-jh35

около 4 лет назад

Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

EPSS: Низкий
github логотип

GHSA-xq9m-9whg-jv3m

почти 3 года назад

The issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xqc3-f6fp-p8x7

PEEL, possibly 3.x and earlier, has (1) a default info@peel.fr account with password admin, and (2) a default contact@peel.fr account with password cinema, which allows remote attackers to gain administrative access.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xqc3-7rmw-qh94

Subscriber Cross Site Scripting (XSS) in Shipment Tracker for Woocommerce <= 1.5.3.2 versions.

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xqc2-xvq9-7x34

A flaw was found in gnuplot. The GetAnnotateString() function may lead to a segmentation fault and cause a system crash.

CVSS3: 6.2
0%
Низкий
больше 1 года назад
github логотип
GHSA-xqc2-qqq8-xfj5

An issue was discovered in xenoprof in Xen through 4.13.x, allowing guest OS users (with active profiling) to obtain sensitive information about other guests, cause a denial of service, or possibly gain privileges. For guests for which "active" profiling was enabled by the administrator, the xenoprof code uses the standard Xen shared ring structure. Unfortunately, this code did not treat the guest as a potential adversary: it trusts the guest not to modify buffer size information or modify head / tail pointers in unexpected ways. This can crash the host (DoS). Privilege escalation cannot be ruled out.

CVSS3: 8.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-xqc2-q3vp-2m56

The fix for the Linux kernel in Ubuntu 18.04 LTS for CVE-2019-14615 ("The Linux kernel did not properly clear data structures on context switches for certain Intel graphics processors.") was discovered to be incomplete, meaning that in versions of the kernel before 4.15.0-91.92, an attacker could use this vulnerability to expose sensitive information.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-xq9x-h495-fv93

A vulnerability in the web-based management interface of Cisco Prime Infrastructure (PI) and Cisco Evolved Programmable Network Manager (EPNM) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xq9x-f43x-2c77

Buffer overflow in entity_cache in ELinks before 0.11.4rc0 allows remote attackers to cause a denial of service (crash) via a crafted link.

3%
Низкий
около 4 лет назад
github логотип
GHSA-xq9w-j69v-6chc

Path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager Project's Tiny File Manager 2.4.1 allows remote attackers with valid user accounts to upload malicious PHP files to the webroot and achieve code execution on the target server.

CVSS3: 8.8
70%
Высокий
больше 4 лет назад
github логотип
GHSA-xq9w-9p59-f6rx

XnView Classic for Windows Version 2.43 allows attackers to execute arbitrary code or cause a denial of service via a crafted .dwg file, related to an "Illegal Instruction Violation starting at xnview+0x0000000000370074."

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xq9v-7phc-vqjq

The Popup box WordPress plugin before 3.8.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVSS3: 4.8
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xq9r-6v4r-3g8m

Microsoft SharePoint Server Spoofing Vulnerability This CVE ID is unique from CVE-2021-38652.

CVSS3: 7.6
1%
Низкий
около 4 лет назад
github логотип
GHSA-xq9r-2r42-w9c6

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in naa986 Easy Video Player allows Stored XSS.This issue affects Easy Video Player: from n/a through 1.2.2.10.

CVSS3: 6.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xq9q-5j9m-x6xx

FrogCMS v0.9.5 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability via /admin/?/page/delete/10.

CVSS3: 8.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-xq9p-hq98-j4x4

Mattermost Mobile Apps versions <=2.16.0 fail to protect against abuse of a globally shared MathJax state which allows an attacker to change the contents of a LateX post, by creating another post with specific macro definitions.

CVSS3: 2.6
0%
Низкий
около 2 лет назад
github логотип
GHSA-xq9p-h64g-x8mc

Weak default folder permissions

CVSS3: 6.6
0%
Низкий
больше 1 года назад
github логотип
GHSA-xq9p-gxg6-f7q6

When a libcurl-based application performs transfers via `SCP://` or `SFTP://` and utilizes the `CURLOPT_SSH_KEYFUNCTION` callback, it may silently accept an untrusted server. This vulnerability occurs when a server presents a host key type that does not match the specific key type already recorded for that host in the `known_hosts` file. Instead of rejecting the mismatch, the callback mechanism fails to properly enforce the restriction, allowing the connection to succeed without warning and risking a potential man-in-the-middle attack.

CVSS3: 7.4
0%
Низкий
около 1 месяца назад
github логотип
GHSA-xq9m-vv28-7f24

The DirectoryPress – Business Directory And Classified Ad Listing plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 3.6.16 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with author-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses the SVG file. When DirectoryPress Frontend is installed, this can be exploited by unauthenticated users.

CVSS3: 5.4
0%
Низкий
больше 1 года назад
github логотип
GHSA-xq9m-hmp9-fw87

wger: CSV/TSV formula injection in gym member export (first_name/last_name)

CVSS3: 7.4
3 месяца назад
github логотип
GHSA-xq9m-fh33-jh35

Use after free in Blink in Google Chrome prior to 77.0.3865.90 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xq9m-9whg-jv3m

The issue was addressed with improved checks. This issue is fixed in tvOS 17, Safari 17, watchOS 10, iOS 17 and iPadOS 17, macOS Sonoma 14. Processing web content may lead to arbitrary code execution.

CVSS3: 8.8
4%
Низкий
почти 3 года назад

Уязвимостей на страницу