Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 357 575

Количество 357 575

github логотип

GHSA-xmgr-jff3-fcfv

около 2 лет назад

TYPO3 Security Misconfiguration in User Session Handling

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xmgr-9pqc-h5vw

5 месяцев назад

act: Unrestricted set-env and add-path command processing enables environment injection

EPSS: Низкий
github логотип

GHSA-xmgr-93hm-xhpj

больше 4 лет назад

Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors.

EPSS: Низкий
github логотип

GHSA-xmgq-gq24-73mw

больше 4 лет назад

Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.

EPSS: Низкий
github логотип

GHSA-xmgq-3783-qgm4

9 месяцев назад

Vulnerability in X25519 constant-time cryptographic implementations due to timing side channels introduced by compiler optimizations and CPU architecture limitations, specifically with the Xtensa-based ESP32 chips. If targeting Xtensa it is recommended to use the low memory implementations of X25519, which is now turned on as the default for Xtensa.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmgp-m2m3-m8g4

около 4 лет назад

An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.

EPSS: Низкий
github логотип

GHSA-xmgp-gw66-397h

около 4 лет назад

Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware protection via crafted fields in HTTP headers, aka Bug ID CSCux22726.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmgp-65vp-rxq2

4 месяца назад

Joomla iProperty Real Estate 4.1.1 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by manipulating the filter_keyword parameter. Attackers can craft URLs containing JavaScript payloads in the filter_keyword GET parameter of the all-properties-with-map endpoint to execute arbitrary code in victim browsers and steal session tokens or credentials.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xmgm-2h3h-mxf9

больше 4 лет назад

Microsoft Internet Explorer 7.0 Beta3 and earlier allows remote attackers to cause a denial of service (crash) via a "text/html" HTML Content-type header sent in response to an XMLHttpRequest (AJAX).

EPSS: Средний
github логотип

GHSA-xmgj-jp3c-9mp3

больше 4 лет назад

PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the password for an admin user who is currently or previously logged in, provided the device has not been restarted.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xmgj-5fh3-xjmm

больше 4 лет назад

Path traversal when MessageBus::Diagnostics is enabled

CVSS3: 4.2
EPSS: Низкий
github логотип

GHSA-xmgh-vg99-hcxh

больше 4 лет назад

The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a packet containing only a CVS_LOGIN signature.

EPSS: Низкий
github логотип

GHSA-xmgh-fm48-p9j2

больше 1 года назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Shoaib Rehmat ZIJ KART allows PHP Local File Inclusion.This issue affects ZIJ KART: from n/a through 1.1.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xmgh-66hw-7378

больше 4 лет назад

search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack.

EPSS: Низкий
github логотип

GHSA-xmgg-fx9p-prq6

почти 4 года назад

NodeBB account takeover via SSO plugins

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xmgg-9fr8-3f5f

больше 4 лет назад

In ion driver, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06171689; Issue ID: ALPS06171689.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xmgg-82f8-jrc5

больше 4 лет назад

Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS. An attacker can communicate with an unprotected XPC service and directly execute arbitrary OS commands as root or load a potentially malicious kernel extension because com.smr.liquidvpn.OVPNHelper uses the system function to execute the "openvpncmd" parameter as a shell command.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xmgg-6wgj-628j

больше 1 года назад

OpenEMR 7.0.2 is vulnerable to SQL Injection via \openemr\library\classes\Pharmacy.class.php, \controllers\C_Pharmacy.class.php and \openemr\controller.php.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xmgf-j324-j5xq

больше 1 года назад

In the Linux kernel, the following vulnerability has been resolved: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all() There's issue as follows: BUG: KASAN: use-after-free in ext4_xattr_inode_dec_ref_all+0x6ff/0x790 Read of size 4 at addr ffff88807b003000 by task syz-executor.0/15172 CPU: 3 PID: 15172 Comm: syz-executor.0 Call Trace: __dump_stack lib/dump_stack.c:82 [inline] dump_stack+0xbe/0xfd lib/dump_stack.c:123 print_address_description.constprop.0+0x1e/0x280 mm/kasan/report.c:400 __kasan_report.cold+0x6c/0x84 mm/kasan/report.c:560 kasan_report+0x3a/0x50 mm/kasan/report.c:585 ext4_xattr_inode_dec_ref_all+0x6ff/0x790 fs/ext4/xattr.c:1137 ext4_xattr_delete_inode+0x4c7/0xda0 fs/ext4/xattr.c:2896 ext4_evict_inode+0xb3b/0x1670 fs/ext4/inode.c:323 evict+0x39f/0x880 fs/inode.c:622 iput_final fs/inode.c:1746 [inline] iput fs/inode.c:1772 [inline] iput+0x525/0x6c0 fs/inode.c:1758 ext4_orphan_cleanup fs/ext4/super.c:3298 [inline] ext4_fill_super+0x8c57/0xba40 ...

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xmgf-hq76-4vx2

4 месяца назад

rust-opennssl has an Out-of-bounds read in PEM password callback when returning an oversized length

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xmgr-jff3-fcfv

TYPO3 Security Misconfiguration in User Session Handling

CVSS3: 6.5
около 2 лет назад
github логотип
GHSA-xmgr-9pqc-h5vw

act: Unrestricted set-env and add-path command processing enables environment injection

1%
Низкий
5 месяцев назад
github логотип
GHSA-xmgr-93hm-xhpj

Unspecified "absolute path vulnerabilities" in the diagela command (diagela.sh) in IBM AIX 5.2 and 5.3 have unknown impact and attack vectors.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgq-gq24-73mw

Buffer overflow in cmctl program in Oracle 8.1.5 Connection Manager Control allows local users to gain privileges via a long command line argument.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgq-3783-qgm4

Vulnerability in X25519 constant-time cryptographic implementations due to timing side channels introduced by compiler optimizations and CPU architecture limitations, specifically with the Xtensa-based ESP32 chips. If targeting Xtensa it is recommended to use the low memory implementations of X25519, which is now turned on as the default for Xtensa.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-xmgp-m2m3-m8g4

An elevation of privilege vulnerability exists when the Windows State Repository Service improperly handles objects in memory, aka 'Windows State Repository Service Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1124, CVE-2020-1131, CVE-2020-1134, CVE-2020-1144, CVE-2020-1184, CVE-2020-1185, CVE-2020-1186, CVE-2020-1187, CVE-2020-1189, CVE-2020-1190, CVE-2020-1191.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xmgp-gw66-397h

Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with FirePOWER Services 5.4.0 through 6.0.0.1 allow remote attackers to bypass malware protection via crafted fields in HTTP headers, aka Bug ID CSCux22726.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xmgp-65vp-rxq2

Joomla iProperty Real Estate 4.1.1 contains a reflected cross-site scripting vulnerability that allows attackers to inject malicious scripts by manipulating the filter_keyword parameter. Attackers can craft URLs containing JavaScript payloads in the filter_keyword GET parameter of the all-properties-with-map endpoint to execute arbitrary code in victim browsers and steal session tokens or credentials.

CVSS3: 6.1
0%
Низкий
4 месяца назад
github логотип
GHSA-xmgm-2h3h-mxf9

Microsoft Internet Explorer 7.0 Beta3 and earlier allows remote attackers to cause a denial of service (crash) via a "text/html" HTML Content-type header sent in response to an XMLHttpRequest (AJAX).

14%
Средний
больше 4 лет назад
github логотип
GHSA-xmgj-jp3c-9mp3

PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the password for an admin user who is currently or previously logged in, provided the device has not been restarted.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgj-5fh3-xjmm

Path traversal when MessageBus::Diagnostics is enabled

CVSS3: 4.2
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgh-vg99-hcxh

The dissector_cvs function in dissectors/ec_cvs.c in Ettercap 0.8.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a packet containing only a CVS_LOGIN signature.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgh-fm48-p9j2

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Shoaib Rehmat ZIJ KART allows PHP Local File Inclusion.This issue affects ZIJ KART: from n/a through 1.1.

CVSS3: 8.1
1%
Низкий
больше 1 года назад
github логотип
GHSA-xmgh-66hw-7378

search.cgi in the SolutionScripts Home Free package allows remote attackers to view directories via a .. (dot dot) attack.

6%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgg-fx9p-prq6

NodeBB account takeover via SSO plugins

CVSS3: 7.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xmgg-9fr8-3f5f

In ion driver, there is a possible information disclosure due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS06171689; Issue ID: ALPS06171689.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgg-82f8-jrc5

Multiple local privilege escalation vulnerabilities have been identified in the LiquidVPN client through 1.37 for macOS. An attacker can communicate with an unprotected XPC service and directly execute arbitrary OS commands as root or load a potentially malicious kernel extension because com.smr.liquidvpn.OVPNHelper uses the system function to execute the "openvpncmd" parameter as a shell command.

CVSS3: 7.8
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xmgg-6wgj-628j

OpenEMR 7.0.2 is vulnerable to SQL Injection via \openemr\library\classes\Pharmacy.class.php, \controllers\C_Pharmacy.class.php and \openemr\controller.php.

CVSS3: 9.8
6%
Низкий
больше 1 года назад
github логотип
GHSA-xmgf-j324-j5xq

In the Linux kernel, the following vulnerability has been resolved: ext4: fix out-of-bound read in ext4_xattr_inode_dec_ref_all() There's issue as follows: BUG: KASAN: use-after-free in ext4_xattr_inode_dec_ref_all+0x6ff/0x790 Read of size 4 at addr ffff88807b003000 by task syz-executor.0/15172 CPU: 3 PID: 15172 Comm: syz-executor.0 Call Trace: __dump_stack lib/dump_stack.c:82 [inline] dump_stack+0xbe/0xfd lib/dump_stack.c:123 print_address_description.constprop.0+0x1e/0x280 mm/kasan/report.c:400 __kasan_report.cold+0x6c/0x84 mm/kasan/report.c:560 kasan_report+0x3a/0x50 mm/kasan/report.c:585 ext4_xattr_inode_dec_ref_all+0x6ff/0x790 fs/ext4/xattr.c:1137 ext4_xattr_delete_inode+0x4c7/0xda0 fs/ext4/xattr.c:2896 ext4_evict_inode+0xb3b/0x1670 fs/ext4/inode.c:323 evict+0x39f/0x880 fs/inode.c:622 iput_final fs/inode.c:1746 [inline] iput fs/inode.c:1772 [inline] iput+0x525/0x6c0 fs/inode.c:1758 ext4_orphan_cleanup fs/ext4/super.c:3298 [inline] ext4_fill_super+0x8c57/0xba40 ...

CVSS3: 7.1
0%
Низкий
больше 1 года назад
github логотип
GHSA-xmgf-hq76-4vx2

rust-opennssl has an Out-of-bounds read in PEM password callback when returning an oversized length

0%
Низкий
4 месяца назад

Уязвимостей на страницу