Логотип exploitDog
source:"github"
Консоль
Логотип exploitDog

exploitDog

source:"github"

Количество 326 827

Количество 326 827

github логотип

GHSA-xmjj-hrw9-x35m

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: media: venus: fix use after free in vdec_close There appears to be a possible use after free with vdec_close(). The firmware will add buffer release work to the work queue through HFI callbacks as a normal part of decoding. Randomly closing the decoder device from userspace during normal decoding can incur a read after free for inst. Fix it by cancelling the work in vdec_close.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xmjj-3c76-5w84

около 4 лет назад

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in directus

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xmjj-27j3-8w2g

4 месяца назад

Inappropriate implementation in Toolbar in Google Chrome on Android prior to 143.0.7499.110 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xmjh-wjc5-wg4h

почти 4 года назад

Silverstripe CMS XSS Vulnerability

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xmjh-q998-8xf2

почти 4 года назад

Cross Site Scripting (XSS) vulnerability exists in SeaCMS 12.6 via the (1) v_company and (2) v_tvs parameters in /admin_video.php,

EPSS: Низкий
github логотип

GHSA-xmjh-hmw3-hqhr

почти 4 года назад

libcurl versions from 7.34.0 to before 7.64.0 are vulnerable to a heap out-of-bounds read in the code handling the end-of-response for SMTP. If the buffer passed to `smtp_endofresp()` isn't NUL terminated and contains no character ending the parsed number, and `len` is set to 5, then the `strtol()` call reads beyond the allocated buffer. The read contents will not be returned to the caller.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmjh-9cfh-33hw

почти 4 года назад

net/spdy/spdy_write_queue.cc in the SPDY implementation in Google Chrome before 35.0.1916.153 allows remote attackers to cause a denial of service (out-of-bounds read) by leveraging incorrect queue maintenance.

EPSS: Низкий
github логотип

GHSA-xmjg-qqpf-gpff

почти 4 года назад

A FTM Diag command can allow an arbitrary write into modem OS space in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

EPSS: Низкий
github логотип

GHSA-xmjg-qf38-q3fm

почти 4 года назад

magics-config in Magics++ 2.10.0 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

EPSS: Низкий
github логотип

GHSA-xmjf-2rqj-vxj4

почти 4 года назад

A Buffer Overflow was discovered in EvoStream Media Server 1.7.1. A crafted HTTP request with a malicious header will cause a crash. An example attack methodology may include a long message-body in a GET request.

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-xmjc-rpv3-5jh4

около 2 лет назад

Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARForms Form Builder.This issue affects ARForms Form Builder: from n/a through 1.6.1.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xmjc-9xq6-vh8w

больше 4 лет назад

Specially-crafted command line arguments can lead to arbitrary file deletion. The handle_delete function does not attempt to sanitize or otherwise validate the contents of the [file] parameter (passed to the function as argv[1]), allowing an authenticated attacker to supply directory traversal primitives and delete semi-arbitrary files.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xmjc-7969-ffgm

почти 2 года назад

In the Linux kernel, the following vulnerability has been resolved: xsk: recycle buffer in case Rx queue was full Add missing xsk_buff_free() call when __xsk_rcv_zc() failed to produce descriptor to XSK Rx queue.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xmjc-7933-84gq

почти 4 года назад

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. The vulnerability is due to insufficient input validation of some parameters passed to the web-based management interface. An attacker could exploit this vulnerability by convincing a user of the interface to click a specific link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvf72309.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xmjc-5pgp-5pjx

7 дней назад

The WIP Incoming Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.1. This is due to missing or incorrect nonce validation on the save_option() function. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xmj9-xq4j-xh3h

больше 3 лет назад

Improper authentication vulnerability in UDR-JA1604/UDR-JA1608/UDR-JA1616 firmware versions 71x10.1.107112.43A and earlier allows a remote authenticated attacker to execute an arbitrary OS command on the device or alter the device settings.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xmj7-qjjh-43p3

почти 4 года назад

SQL injection vulnerability in the com_lowcosthotels component in the Hotel Booking Reservation System (aka HBS) for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showhoteldetails action to index.php.

EPSS: Низкий
github логотип

GHSA-xmj7-p9qw-8chx

почти 4 года назад

The Application Lifecycle Service (ALS) in HP Helion Cloud Development Platform 1.0, when a virtual machine is derived from the Seed Node image, uses the same security keys across different customers' installations, which allows remote attackers to execute arbitrary code by leveraging these keys for a connection.

EPSS: Средний
github логотип

GHSA-xmj7-4xg3-c7vr

почти 4 года назад

The mintToken function of a smart contract implementation for ohni_2 (OHNI), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmj6-5q7j-j6gg

больше 3 лет назад

A flaw was found in the KVM's AMD nested virtualization (SVM). A malicious L1 guest could purposely fail to intercept the shutdown of a cooperative nested guest (L2), possibly leading to a page fault and kernel panic in the host (L0).

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xmjj-hrw9-x35m

In the Linux kernel, the following vulnerability has been resolved: media: venus: fix use after free in vdec_close There appears to be a possible use after free with vdec_close(). The firmware will add buffer release work to the work queue through HFI callbacks as a normal part of decoding. Randomly closing the decoder device from userspace during normal decoding can incur a read after free for inst. Fix it by cancelling the work in vdec_close.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-xmjj-3c76-5w84

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in directus

CVSS3: 8.8
0%
Низкий
около 4 лет назад
github логотип
GHSA-xmjj-27j3-8w2g

Inappropriate implementation in Toolbar in Google Chrome on Android prior to 143.0.7499.110 allowed a remote attacker to perform domain spoofing via a crafted HTML page. (Chromium security severity: Medium)

CVSS3: 4.3
0%
Низкий
4 месяца назад
github логотип
GHSA-xmjh-wjc5-wg4h

Silverstripe CMS XSS Vulnerability

CVSS3: 6.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmjh-q998-8xf2

Cross Site Scripting (XSS) vulnerability exists in SeaCMS 12.6 via the (1) v_company and (2) v_tvs parameters in /admin_video.php,

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmjh-hmw3-hqhr

libcurl versions from 7.34.0 to before 7.64.0 are vulnerable to a heap out-of-bounds read in the code handling the end-of-response for SMTP. If the buffer passed to `smtp_endofresp()` isn't NUL terminated and contains no character ending the parsed number, and `len` is set to 5, then the `strtol()` call reads beyond the allocated buffer. The read contents will not be returned to the caller.

CVSS3: 7.5
2%
Низкий
почти 4 года назад
github логотип
GHSA-xmjh-9cfh-33hw

net/spdy/spdy_write_queue.cc in the SPDY implementation in Google Chrome before 35.0.1916.153 allows remote attackers to cause a denial of service (out-of-bounds read) by leveraging incorrect queue maintenance.

2%
Низкий
почти 4 года назад
github логотип
GHSA-xmjg-qqpf-gpff

A FTM Diag command can allow an arbitrary write into modem OS space in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmjg-qf38-q3fm

magics-config in Magics++ 2.10.0 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmjf-2rqj-vxj4

A Buffer Overflow was discovered in EvoStream Media Server 1.7.1. A crafted HTTP request with a malicious header will cause a crash. An example attack methodology may include a long message-body in a GET request.

CVSS3: 7.5
40%
Средний
почти 4 года назад
github логотип
GHSA-xmjc-rpv3-5jh4

Cross-Site Request Forgery (CSRF) vulnerability in Repute InfoSystems ARForms Form Builder.This issue affects ARForms Form Builder: from n/a through 1.6.1.

CVSS3: 6.3
0%
Низкий
около 2 лет назад
github логотип
GHSA-xmjc-9xq6-vh8w

Specially-crafted command line arguments can lead to arbitrary file deletion. The handle_delete function does not attempt to sanitize or otherwise validate the contents of the [file] parameter (passed to the function as argv[1]), allowing an authenticated attacker to supply directory traversal primitives and delete semi-arbitrary files.

CVSS3: 6.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xmjc-7969-ffgm

In the Linux kernel, the following vulnerability has been resolved: xsk: recycle buffer in case Rx queue was full Add missing xsk_buff_free() call when __xsk_rcv_zc() failed to produce descriptor to XSK Rx queue.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-xmjc-7933-84gq

A vulnerability in the web-based management interface of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. The vulnerability is due to insufficient input validation of some parameters passed to the web-based management interface. An attacker could exploit this vulnerability by convincing a user of the interface to click a specific link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvf72309.

CVSS3: 6.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmjc-5pgp-5pjx

The WIP Incoming Lite plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.1. This is due to missing or incorrect nonce validation on the save_option() function. This makes it possible for unauthenticated attackers to update settings and inject malicious web scripts via a forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVSS3: 6.1
0%
Низкий
7 дней назад
github логотип
GHSA-xmj9-xq4j-xh3h

Improper authentication vulnerability in UDR-JA1604/UDR-JA1608/UDR-JA1616 firmware versions 71x10.1.107112.43A and earlier allows a remote authenticated attacker to execute an arbitrary OS command on the device or alter the device settings.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xmj7-qjjh-43p3

SQL injection vulnerability in the com_lowcosthotels component in the Hotel Booking Reservation System (aka HBS) for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a showhoteldetails action to index.php.

0%
Низкий
почти 4 года назад
github логотип
GHSA-xmj7-p9qw-8chx

The Application Lifecycle Service (ALS) in HP Helion Cloud Development Platform 1.0, when a virtual machine is derived from the Seed Node image, uses the same security keys across different customers' installations, which allows remote attackers to execute arbitrary code by leveraging these keys for a connection.

29%
Средний
почти 4 года назад
github логотип
GHSA-xmj7-4xg3-c7vr

The mintToken function of a smart contract implementation for ohni_2 (OHNI), an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmj6-5q7j-j6gg

A flaw was found in the KVM's AMD nested virtualization (SVM). A malicious L1 guest could purposely fail to intercept the shutdown of a cooperative nested guest (L2), possibly leading to a page fault and kernel panic in the host (L0).

CVSS3: 5.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу