Логотип exploitDog
source:"msrc"
Консоль
Логотип exploitDog

exploitDog

source:"msrc"

Количество 18 763

Количество 18 763

msrc логотип

CVE-2025-61664

3 месяца назад

Grub2: missing unregister call for normal_exit command may lead to use-after-free

CVSS3: 4.9
EPSS: Низкий
msrc логотип

CVE-2025-61663

3 месяца назад

Grub2: missing unregister call for normal commands may lead to use-after-free

CVSS3: 4.9
EPSS: Низкий
msrc логотип

CVE-2025-61662

3 месяца назад

Grub2: missing unregister call for gettext command may lead to use-after-free

CVSS3: 4.9
EPSS: Низкий
msrc логотип

CVE-2025-61661

3 месяца назад

Grub2: grub2: out-of-bounds write via malicious usb device

CVSS3: 4.8
EPSS: Низкий
msrc логотип

CVE-2025-61594

около 1 месяца назад

URI Credential Leakage Bypass over CVE-2025-27221

EPSS: Низкий
msrc логотип

CVE-2025-6141

5 месяцев назад

GNU ncurses parse_entry.c postprocess_termcap stack-based overflow

EPSS: Низкий
msrc логотип

CVE-2025-6140

6 месяцев назад

spdlog pattern_formatter-inl.h scoped_padder resource consumption

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2025-61107

около 1 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.

EPSS: Низкий
msrc логотип

CVE-2025-61106

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

EPSS: Низкий
msrc логотип

CVE-2025-61105

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

EPSS: Низкий
msrc логотип

CVE-2025-61104

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

EPSS: Низкий
msrc логотип

CVE-2025-61103

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

EPSS: Низкий
msrc логотип

CVE-2025-61102

около 1 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

EPSS: Низкий
msrc логотип

CVE-2025-61101

3 месяца назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

EPSS: Низкий
msrc логотип

CVE-2025-61100

3 месяца назад

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.

EPSS: Низкий
msrc логотип

CVE-2025-61099

3 месяца назад

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.

EPSS: Низкий
msrc логотип

CVE-2025-60876

2 месяца назад

BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).

EPSS: Низкий
msrc логотип

CVE-2025-6075

3 месяца назад

Quadratic complexity in os.path.expandvars() with user-controlled template

EPSS: Низкий
msrc логотип

CVE-2025-60753

3 месяца назад

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).

EPSS: Низкий
msrc логотип

CVE-2025-60728

3 месяца назад

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2025-61664

Grub2: missing unregister call for normal_exit command may lead to use-after-free

CVSS3: 4.9
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61663

Grub2: missing unregister call for normal commands may lead to use-after-free

CVSS3: 4.9
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61662

Grub2: missing unregister call for gettext command may lead to use-after-free

CVSS3: 4.9
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61661

Grub2: grub2: out-of-bounds write via malicious usb device

CVSS3: 4.8
0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61594

URI Credential Leakage Bypass over CVE-2025-27221

0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-6141

GNU ncurses parse_entry.c postprocess_termcap stack-based overflow

0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-6140

spdlog pattern_formatter-inl.h scoped_padder resource consumption

CVSS3: 3.3
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-61107

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.

0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61106

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61105

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61104

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61103

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61102

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2025-61101

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61100

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-61099

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-60876

BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).

0%
Низкий
2 месяца назад
msrc логотип
CVE-2025-6075

Quadratic complexity in os.path.expandvars() with user-controlled template

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-60753

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).

0%
Низкий
3 месяца назад
msrc логотип
CVE-2025-60728

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 4.3
0%
Низкий
3 месяца назад

Уязвимостей на страницу