Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 326 185

Количество 326 185

github логотип

GHSA-xmrw-rqq6-xq6g

больше 2 лет назад

There is an unrestricted upload of file vulnerability in Generex CS141 below 2.06 version. An attacker could upload and/or delete any type of file, without any format restriction and without any authentication, in the "upload" directory.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmrv-pmrh-hhx2

5 дней назад

Denial of Service due to Panic in AWS SDK for Go v2 SDK EventStream Decoder

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xmrv-59fp-82f5

почти 4 года назад

Printer Setup in Apple Mac OS X 10.6 before 10.6.4 does not properly interpret character encoding, which allows remote attackers to cause a denial of service (printing failure) by deploying a printing device that has a Unicode character in its printing-service name.

EPSS: Низкий
github логотип

GHSA-xmrq-q3hv-6f55

почти 4 года назад

In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112661742

EPSS: Низкий
github логотип

GHSA-xmrp-mwjr-xmr4

почти 4 года назад

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via vectors involving the MIRP instruction in a TrueType font.

EPSS: Низкий
github логотип

GHSA-xmrp-cj8j-54gr

почти 4 года назад

A vulnerability was discovered in NetIQ Sentinel Server 8.0 before 8.0.1 that may allow remote denial of service.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmrp-424f-vfpx

больше 1 года назад

SQLx Binary Protocol Misinterpretation caused by Truncating or Overflowing Casts

EPSS: Низкий
github логотип

GHSA-xmrm-qcgv-g7x6

почти 4 года назад

IBM BigFix Inventory v9 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xmrm-h387-3crm

почти 4 года назад

The web server in Wind River VxWorks 5.5 through 6.9 allows remote attackers to cause a denial of service (daemon crash) via a crafted URI.

EPSS: Низкий
github логотип

GHSA-xmrm-f5h6-fxm7

почти 4 года назад

WFTPD Pro Server 3.21 Release 1, with the XeroxDocutech option enabled, allows local users to cause a denial of service (crash) via a (1) MKD or (2) XMKD command that causes an absolute path of 260 characters to be used, which overwrites a cookie with a null character, possibly due to an off-by-one error.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xmrj-wjpx-qx78

почти 4 года назад

A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior that could cause information leak concerning the current RTU configuration including communication parameters dedicated to telemetry, when a specially crafted HTTP request is sent to the web server of the module.

EPSS: Низкий
github логотип

GHSA-xmrj-c495-vfvx

почти 4 года назад

A vulnerability in the fabric infrastructure file system access control of Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to read arbitrary files on an affected system. This vulnerability is due to improper access control. An attacker with Administrator privileges could exploit this vulnerability by executing a specific vulnerable command on an affected device. A successful exploit could allow the attacker to read arbitrary files on the file system of the affected device.

CVSS3: 4.4
EPSS: Низкий
github логотип

GHSA-xmrj-59xp-4fhf

почти 4 года назад

Stack-based buffer overflow in NJStar Chinese and Japanese Word Processor 4.x and 5.x before 5.10 allows user-assisted attackers to execute arbitrary code via font names in NJStar (.njx) documents.

EPSS: Низкий
github логотип

GHSA-xmrj-2g7q-5pcq

около 1 года назад

In the Linux kernel, the following vulnerability has been resolved: ASoC: atmel: Fix error handling in sam9x5_wm8731_driver_probe The device_node pointer is returned by of_parse_phandle() with refcount incremented. We should use of_node_put() on it when done. This function only calls of_node_put() in the regular path. And it will cause refcount leak in error path.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xmrh-pf7v-rvpg

почти 4 года назад

A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause increased CPU utilization on an affected device. The vulnerability is due to excessive processing load for existing WebVPN login operations. An attacker could exploit this vulnerability by sending multiple WebVPN login requests to the device. A successful exploit could allow the attacker to increase CPU load on the device, resulting in a denial of service (DoS) condition.

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-xmrh-m77m-3pg7

8 месяцев назад

An unauthenticated OS command injection vulnerability exists in the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). When configuring the device in Extender mode via its captive portal, the extap2g SSID field is inserted unescaped into a reboot-time shell script. This allows remote attackers within Wi-Fi range to inject arbitrary shell commands that execute as root during device reboot, leading to full system compromise.

EPSS: Низкий
github логотип

GHSA-xmrg-vr4x-m2v3

почти 4 года назад

The Yahoo! Tumblr app before 3.4.1 for iOS sends cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network.

EPSS: Низкий
github логотип

GHSA-xmrg-69jq-mfv5

больше 1 года назад

The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the security requirements of RFC 4211, and might make man-in-the-middle attacks easier. CMP includes password-based MAC as one of the options for message integrity and authentication (the other option is certificate-based). RFC 4211 section 4.4 requires that password-based MAC parameters use a salt with a random value of at least 8 octets. This helps to inhibit dictionary attacks. Because the standalone CMP client originally was developed as test code, the salt was instead hardcoded and only 6 octets long.

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-xmrf-jr44-frcm

почти 4 года назад

Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

EPSS: Средний
github логотип

GHSA-xmrf-g39c-vr5c

почти 3 года назад

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xmrw-rqq6-xq6g

There is an unrestricted upload of file vulnerability in Generex CS141 below 2.06 version. An attacker could upload and/or delete any type of file, without any format restriction and without any authentication, in the "upload" directory.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xmrv-pmrh-hhx2

Denial of Service due to Panic in AWS SDK for Go v2 SDK EventStream Decoder

CVSS3: 5.9
5 дней назад
github логотип
GHSA-xmrv-59fp-82f5

Printer Setup in Apple Mac OS X 10.6 before 10.6.4 does not properly interpret character encoding, which allows remote attackers to cause a denial of service (printing failure) by deploying a printing device that has a Unicode character in its printing-service name.

2%
Низкий
почти 4 года назад
github логотип
GHSA-xmrq-q3hv-6f55

In libAACdec, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112661742

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrp-mwjr-xmr4

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (invalid heap read operation and memory corruption) or possibly execute arbitrary code via vectors involving the MIRP instruction in a TrueType font.

4%
Низкий
почти 4 года назад
github логотип
GHSA-xmrp-cj8j-54gr

A vulnerability was discovered in NetIQ Sentinel Server 8.0 before 8.0.1 that may allow remote denial of service.

CVSS3: 7.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-xmrp-424f-vfpx

SQLx Binary Protocol Misinterpretation caused by Truncating or Overflowing Casts

больше 1 года назад
github логотип
GHSA-xmrm-qcgv-g7x6

IBM BigFix Inventory v9 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques.

CVSS3: 5.9
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrm-h387-3crm

The web server in Wind River VxWorks 5.5 through 6.9 allows remote attackers to cause a denial of service (daemon crash) via a crafted URI.

1%
Низкий
почти 4 года назад
github логотип
GHSA-xmrm-f5h6-fxm7

WFTPD Pro Server 3.21 Release 1, with the XeroxDocutech option enabled, allows local users to cause a denial of service (crash) via a (1) MKD or (2) XMKD command that causes an absolute path of 260 characters to be used, which overwrites a cookie with a null character, possibly due to an off-by-one error.

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrj-wjpx-qx78

A CWE-200: Exposure of Sensitive Information to an Unauthorized Actor vulnerability exists in Modicon X80 BMXNOR0200H RTU SV1.70 IR22 and prior that could cause information leak concerning the current RTU configuration including communication parameters dedicated to telemetry, when a specially crafted HTTP request is sent to the web server of the module.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrj-c495-vfvx

A vulnerability in the fabric infrastructure file system access control of Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to read arbitrary files on an affected system. This vulnerability is due to improper access control. An attacker with Administrator privileges could exploit this vulnerability by executing a specific vulnerable command on an affected device. A successful exploit could allow the attacker to read arbitrary files on the file system of the affected device.

CVSS3: 4.4
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrj-59xp-4fhf

Stack-based buffer overflow in NJStar Chinese and Japanese Word Processor 4.x and 5.x before 5.10 allows user-assisted attackers to execute arbitrary code via font names in NJStar (.njx) documents.

2%
Низкий
почти 4 года назад
github логотип
GHSA-xmrj-2g7q-5pcq

In the Linux kernel, the following vulnerability has been resolved: ASoC: atmel: Fix error handling in sam9x5_wm8731_driver_probe The device_node pointer is returned by of_parse_phandle() with refcount incremented. We should use of_node_put() on it when done. This function only calls of_node_put() in the regular path. And it will cause refcount leak in error path.

CVSS3: 5.5
0%
Низкий
около 1 года назад
github логотип
GHSA-xmrh-pf7v-rvpg

A vulnerability in the WebVPN login process of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause increased CPU utilization on an affected device. The vulnerability is due to excessive processing load for existing WebVPN login operations. An attacker could exploit this vulnerability by sending multiple WebVPN login requests to the device. A successful exploit could allow the attacker to increase CPU load on the device, resulting in a denial of service (DoS) condition.

CVSS3: 8.6
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrh-m77m-3pg7

An unauthenticated OS command injection vulnerability exists in the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). When configuring the device in Extender mode via its captive portal, the extap2g SSID field is inserted unescaped into a reboot-time shell script. This allows remote attackers within Wi-Fi range to inject arbitrary shell commands that execute as root during device reboot, leading to full system compromise.

0%
Низкий
8 месяцев назад
github логотип
GHSA-xmrg-vr4x-m2v3

The Yahoo! Tumblr app before 3.4.1 for iOS sends cleartext credentials, which allows remote attackers to obtain sensitive information by sniffing the network.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmrg-69jq-mfv5

The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the security requirements of RFC 4211, and might make man-in-the-middle attacks easier. CMP includes password-based MAC as one of the options for message integrity and authentication (the other option is certificate-based). RFC 4211 section 4.4 requires that password-based MAC parameters use a salt with a random value of at least 8 octets. This helps to inhibit dictionary attacks. Because the standalone CMP client originally was developed as test code, the salt was instead hardcoded and only 6 octets long.

CVSS3: 3.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-xmrf-jr44-frcm

Adobe Photoshop CC versions 19.1.8 and earlier and 20.0.5 and earlier have a type confusion vulnerability. Successful exploitation could lead to arbitrary code execution.

27%
Средний
почти 4 года назад
github логотип
GHSA-xmrf-g39c-vr5c

In fastDial service, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed.

CVSS3: 5.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу