Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 355 704

Количество 355 704

github логотип

GHSA-xpvv-4m5x-c33r

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: drm_lease.c: copy user-array safely Currently, there is no overflow-check with memdup_user(). Use the new function memdup_array_user() instead of memdup_user() for duplicating the user-space array safely.

EPSS: Низкий
github логотип

GHSA-xpvv-3chg-jjx5

около 4 лет назад

Unspecified vulnerability in Oracle PeopleSoft Enterprise 8.8 Bundle #13, 8.9 Bundle #7, 9.0 Bundle #7, and 9.1 Bundle #4 allows remote authenticated users to affect integrity via unknown vectors related to Application Portal.

EPSS: Низкий
github логотип

GHSA-xpvq-w32j-6px4

около 1 года назад

A vulnerability classified as problematic has been found in Open Asset Import Library Assimp 5.4.3. This affects the function MDLImporter::ParseSkinLump_3DGS_MDL7 of the file assimp/code/AssetLib/MDL/MDLMaterialLoader.cpp. The manipulation leads to out-of-bounds read. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-xpvq-rpfc-g9rw

около 4 лет назад

The Enterprise Message Service Server (tibemsd), Enterprise Message Service Central Administration (tibemsca), Enterprise Message Service JSON configuration generator (tibemsconf2json), and Enterprise Message Service C API components of TIBCO Software Inc.'s TIBCO Enterprise Message Service, TIBCO Enterprise Message Service - Community Edition, and TIBCO Enterprise Message Service - Developer Edition contain a vulnerability that theoretically allows a low privileged attacker with local access on the Windows operating system to insert malicious software. The affected component can be abused to execute the malicious software inserted by the attacker with the elevated privileges of the component. This vulnerability results from the affected component searching for run-time artifacts outside of the installation hierarchy. Affected releases are TIBCO Software Inc.'s TIBCO Enterprise Message Service: versions 8.5.1 and below, TIBCO Enterprise Message Service - Community Edition: versions ...

EPSS: Низкий
github логотип

GHSA-xpvq-q3qp-wcjj

2 месяца назад

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'order' parameter in all versions up to, and including, 11.1.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with admin-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. If the secret key is exposed, this can be exploited by lower-privileged users.

CVSS3: 4.9
EPSS: Низкий
github логотип

GHSA-xpvq-3p7m-m5gw

около 4 лет назад

Misys FusionCapital Opics Plus does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to obtain sensitive information via a crafted certificate.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xpvp-wh4v-ppc2

около 4 лет назад

A server side request forgery (SSRF) vulnerability in /ApiAdminDomainSettings.php of MipCMS 5.0.1 allows attackers to access sensitive information.

EPSS: Низкий
github логотип

GHSA-xpvp-h73c-m9rq

почти 4 года назад

Jenkins vulnerable to stored cross site scripting in the I:helpIcon component

CVSS3: 8
EPSS: Низкий
github логотип

GHSA-xpvm-c56v-vvch

больше 4 лет назад

Multiple integer signedness errors in libgadu, as used in ekg before 1.6rc2 and other packages, may allow remote attackers to cause a denial of service or execute arbitrary code.

EPSS: Низкий
github логотип

GHSA-xpvm-9wx5-vjpw

около 2 лет назад

netplan leaks the private key of wireguard to local users. A security fix will be released soon.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xpvj-w7p2-65fm

больше 4 лет назад

Unspecified vulnerability in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allows remote attackers to access unspecified files via a modified warp parameter.

EPSS: Низкий
github логотип

GHSA-xpvj-vm4g-wmjm

почти 3 года назад

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Nicola Modugno Smart Cookie Kit plugin <= 2.3.1 versions.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xpvh-pm8h-2p8g

больше 2 лет назад

IBM Db2 10.1, 10.5, and 11.1 could allow a remote user to execute arbitrary code caused by installing like named jar files across multiple databases. A user could exploit this by installing a malicious jar file that overwrites the existing like named jar file in another database. IBM X-Force ID: 249205.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xpvh-gv3p-w5qx

около 2 месяцев назад

Webmin allows unauthenticated attackers to read the contents of any file ending in .conf within module directories, due to a bypassable regex pattern.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xpvg-vmj8-f29g

больше 3 лет назад

Weak access control in NexusPHP before 1.7.33 allows a remote authenticated user to edit any post in the forum (this is caused by a lack of checks performed by the /forums.php?action=post page).

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xpvg-6vx6-vc72

около 4 лет назад

In cPanel before 57.9999.54, /scripts/maildir_converter exposed a TTY to an unprivileged process (SEC-115).

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xpvf-6qcc-9jqc

5 месяцев назад

Mattermost fails to validate team-specific upload_file permissions

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xpvc-gvmh-mpmj

больше 4 лет назад

Unspecified vulnerability in the GUI in Symantec Altiris Notification Server Agent 6.x before 6.0 SP3 R8 allows local users to gain privileges via unknown attack vectors.

EPSS: Низкий
github логотип

GHSA-xpv9-p7vg-qhrc

около 2 месяцев назад

OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_status allows a same-issuer SingleResponse whose serial is a prefix of the target serial to be reported as the revocation status of a different certificate. The lookup compared serial-number bytes without first requiring the two serial numbers to be of equal length, so a SingleResponse for one certificate (same issuer) whose serial is a prefix of the target's serial would match, returning the wrong certificate's status. The fix requires the serial lengths to be equal before comparing the serial bytes.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xpv9-9vrq-v7c4

6 месяцев назад

SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on confidentiality and does not affect integrity and availability.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xpvv-4m5x-c33r

In the Linux kernel, the following vulnerability has been resolved: drm_lease.c: copy user-array safely Currently, there is no overflow-check with memdup_user(). Use the new function memdup_array_user() instead of memdup_user() for duplicating the user-space array safely.

около 2 лет назад
github логотип
GHSA-xpvv-3chg-jjx5

Unspecified vulnerability in Oracle PeopleSoft Enterprise 8.8 Bundle #13, 8.9 Bundle #7, 9.0 Bundle #7, and 9.1 Bundle #4 allows remote authenticated users to affect integrity via unknown vectors related to Application Portal.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xpvq-w32j-6px4

A vulnerability classified as problematic has been found in Open Asset Import Library Assimp 5.4.3. This affects the function MDLImporter::ParseSkinLump_3DGS_MDL7 of the file assimp/code/AssetLib/MDL/MDLMaterialLoader.cpp. The manipulation leads to out-of-bounds read. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The project decided to collect all Fuzzer bugs in a main-issue to address them in the future.

CVSS3: 3.3
0%
Низкий
около 1 года назад
github логотип
GHSA-xpvq-rpfc-g9rw

The Enterprise Message Service Server (tibemsd), Enterprise Message Service Central Administration (tibemsca), Enterprise Message Service JSON configuration generator (tibemsconf2json), and Enterprise Message Service C API components of TIBCO Software Inc.'s TIBCO Enterprise Message Service, TIBCO Enterprise Message Service - Community Edition, and TIBCO Enterprise Message Service - Developer Edition contain a vulnerability that theoretically allows a low privileged attacker with local access on the Windows operating system to insert malicious software. The affected component can be abused to execute the malicious software inserted by the attacker with the elevated privileges of the component. This vulnerability results from the affected component searching for run-time artifacts outside of the installation hierarchy. Affected releases are TIBCO Software Inc.'s TIBCO Enterprise Message Service: versions 8.5.1 and below, TIBCO Enterprise Message Service - Community Edition: versions ...

0%
Низкий
около 4 лет назад
github логотип
GHSA-xpvq-q3qp-wcjj

The Quiz and Survey Master (QSM) – Easy Quiz and Survey Maker plugin for WordPress is vulnerable to time-based blind SQL Injection via the 'order' parameter in all versions up to, and including, 11.1.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with admin-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. If the secret key is exposed, this can be exploited by lower-privileged users.

CVSS3: 4.9
0%
Низкий
2 месяца назад
github логотип
GHSA-xpvq-3p7m-m5gw

Misys FusionCapital Opics Plus does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to obtain sensitive information via a crafted certificate.

CVSS3: 5.9
1%
Низкий
около 4 лет назад
github логотип
GHSA-xpvp-wh4v-ppc2

A server side request forgery (SSRF) vulnerability in /ApiAdminDomainSettings.php of MipCMS 5.0.1 allows attackers to access sensitive information.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xpvp-h73c-m9rq

Jenkins vulnerable to stored cross site scripting in the I:helpIcon component

CVSS3: 8
1%
Низкий
почти 4 года назад
github логотип
GHSA-xpvm-c56v-vvch

Multiple integer signedness errors in libgadu, as used in ekg before 1.6rc2 and other packages, may allow remote attackers to cause a denial of service or execute arbitrary code.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-xpvm-9wx5-vjpw

netplan leaks the private key of wireguard to local users. A security fix will be released soon.

CVSS3: 6.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xpvj-w7p2-65fm

Unspecified vulnerability in modules.php in APT-webshop-system 4.0 PRO, 3.0 BASIC, and 3.0 LIGHT allows remote attackers to access unspecified files via a modified warp parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xpvj-vm4g-wmjm

Auth. (contributor+) Stored Cross-Site Scripting (XSS) vulnerability in Nicola Modugno Smart Cookie Kit plugin <= 2.3.1 versions.

CVSS3: 6.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-xpvh-pm8h-2p8g

IBM Db2 10.1, 10.5, and 11.1 could allow a remote user to execute arbitrary code caused by installing like named jar files across multiple databases. A user could exploit this by installing a malicious jar file that overwrites the existing like named jar file in another database. IBM X-Force ID: 249205.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xpvh-gv3p-w5qx

Webmin allows unauthenticated attackers to read the contents of any file ending in .conf within module directories, due to a bypassable regex pattern.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xpvg-vmj8-f29g

Weak access control in NexusPHP before 1.7.33 allows a remote authenticated user to edit any post in the forum (this is caused by a lack of checks performed by the /forums.php?action=post page).

CVSS3: 4.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xpvg-6vx6-vc72

In cPanel before 57.9999.54, /scripts/maildir_converter exposed a TTY to an unprivileged process (SEC-115).

CVSS3: 8.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xpvf-6qcc-9jqc

Mattermost fails to validate team-specific upload_file permissions

CVSS3: 4.3
0%
Низкий
5 месяцев назад
github логотип
GHSA-xpvc-gvmh-mpmj

Unspecified vulnerability in the GUI in Symantec Altiris Notification Server Agent 6.x before 6.0 SP3 R8 allows local users to gain privileges via unknown attack vectors.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xpv9-p7vg-qhrc

OCSP CertID serial-number length-confusion in wolfSSL_OCSP_resp_find_status allows a same-issuer SingleResponse whose serial is a prefix of the target serial to be reported as the revocation status of a different certificate. The lookup compared serial-number bytes without first requiring the two serial numbers to be of equal length, so a SingleResponse for one certificate (same issuer) whose serial is a prefix of the target's serial would match, returning the wrong certificate's status. The fix requires the serial lengths to be equal before comparing the serial bytes.

CVSS3: 5.3
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xpv9-9vrq-v7c4

SAP Commerce Cloud exposes multiple API endpoints to unauthenticated users, allowing them to submit requests to these open endpoints to retrieve sensitive information that is not intended to be publicly accessible via the front-end. This vulnerability has a low impact on confidentiality and does not affect integrity and availability.

CVSS3: 5.3
0%
Низкий
6 месяцев назад

Уязвимостей на страницу