Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 357 575

Количество 357 575

github логотип

GHSA-xm75-jp9m-47jj

больше 1 года назад

Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xm75-gvqm-4ffq

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in admin/usercheck.php in fuzzylime (cms) before 3.03 allows remote attackers to inject arbitrary web script or HTML via the user parameter to the login form.

EPSS: Низкий
github логотип

GHSA-xm75-4wc4-6pj3

больше 4 лет назад

Format string vulnerability in the (1) Con_message and (2) conPrintf functions in con_main.c in Doomsday engine 1.8.6 allows remote attackers to execute arbitrary code via format string specifiers in an argument to the JOIN command, and possibly other command arguments.

EPSS: Средний
github логотип

GHSA-xm74-xg8p-3q48

почти 3 года назад

Windows Virtual Trusted Platform Module Denial of Service Vulnerability

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xm74-w48w-c549

больше 2 лет назад

Permission management vulnerability in the module for disabling Sound Booster. Successful exploitation of this vulnerability may cause features to perform abnormally.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xm74-phc9-jvhx

около 4 лет назад

A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0), SCALANCE S612 (All versions >= V3.0), SCALANCE S623 (All versions >= V3.0), SCALANCE S627-2M (All versions >= V3.0). The integrated configuration web server of the affected devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into accessing a malicious link. User interaction is required for a successful exploitation. The user must be logged into the web interface in order for the exploitation to succeed. At the stage of publishing this security advisory no public exploitation is known. The vendor has confirmed the vulnerability and provides mitigations to resolve it.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xm73-9p8r-6f5v

около 4 лет назад

A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to execute predetermined shell commands on other hosts. More Information: CSCuz03353. Known Affected Releases: 2.6.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xm72-wm3m-qgm7

около 4 лет назад

Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.

EPSS: Низкий
github логотип

GHSA-xm72-r4c7-v3v9

больше 4 лет назад

A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8204.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xm72-j57q-p3m6

17 дней назад

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to generic SQL Injection via the 'alldata[truebooker_user]' parameter in all versions up to, and including, 1.2.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. The check_ajax_referer() nonce guard does not constitute an authentication or authorization barrier because the nonce is exposed to unauthenticated visitors on TrueBooker front-end booking pages; exploitation additionally requires that the required booking fields (category, service, person, date, and time slot) be present in the alldata POST parameter so that execution reaches the vulnerable SQL query branch.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xm72-c99x-fm79

больше 4 лет назад

The documentation for AJ-Fork 167 implies that users should set permissions for users.db.php to 777, which allows local users to execute arbitrary PHP code and gain privileges as the administrator.

EPSS: Низкий
github логотип

GHSA-xm6x-8fqh-w3x3

около 4 лет назад

org.jboss.as.jaxrs.deployment.JaxrsIntegrationProcessor in Red Hat JBoss Enterprise Application Platform (JEAP) before 6.2.4 enables entity expansion, which allows remote attackers to read arbitrary files via unspecified vectors, related to an XML External Entity (XXE) issue.

EPSS: Низкий
github логотип

GHSA-xm6w-hhcm-7v7g

больше 4 лет назад

gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently allows physically proximate attackers to bypass screen locking and access an unattended workstation by pressing the Enter key many times.

EPSS: Низкий
github логотип

GHSA-xm6v-vxpj-38gq

около 2 месяцев назад

Contributor Cross Site Scripting (XSS) in StatCounter <= 2.1.1 versions.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xm6v-h562-fh85

почти 2 года назад

Missing Authorization vulnerability in WishList Products WishList Member X allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WishList Member X: from n/a through 3.26.6

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-xm6v-3wmv-c56v

около 1 года назад

The Glossary by WPPedia – Best Glossary plugin for WordPress plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3.0 via deserialization of untrusted input from the 'posttypes' parameter. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable software, which means this vulnerability has no impact unless another plugin or theme containing a POP chain is installed on the site. If a POP chain is present via an additional plugin or theme installed on the target system, it may allow the attacker to perform actions like delete arbitrary files, retrieve sensitive data, or execute code depending on the POP chain present.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xm6r-fw82-jmcw

6 месяцев назад

An AXIS Camera Station Pro feature can be exploited in a way that allows a non-admin user to view information they are not permitted to.

CVSS3: 4.6
EPSS: Низкий
github логотип

GHSA-xm6r-7vj6-hr5j

около 3 лет назад

A vulnerability classified as critical has been found in SourceCodester Free Hospital Management System for Small Practices 1.0. Affected is an unknown function of the file /vm/doctor/doctors.php?action=view. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-236214 is the identifier assigned to this vulnerability.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xm6r-6fx6-x6r8

около 4 лет назад

A clickjacking vulnerability was found in Limesurvey before 3.17.14.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xm6r-4466-mr74

почти 8 лет назад

OrientDB vulnerable to Improper Privilage Management leading to arbitrary command injection

CVSS3: 9.8
EPSS: Высокий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xm75-jp9m-47jj

Memory corruption while invoking IOCTL calls from user space to issue factory test command inside WLAN driver.

CVSS3: 7.8
0%
Низкий
больше 1 года назад
github логотип
GHSA-xm75-gvqm-4ffq

Cross-site scripting (XSS) vulnerability in admin/usercheck.php in fuzzylime (cms) before 3.03 allows remote attackers to inject arbitrary web script or HTML via the user parameter to the login form.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xm75-4wc4-6pj3

Format string vulnerability in the (1) Con_message and (2) conPrintf functions in con_main.c in Doomsday engine 1.8.6 allows remote attackers to execute arbitrary code via format string specifiers in an argument to the JOIN command, and possibly other command arguments.

13%
Средний
больше 4 лет назад
github логотип
GHSA-xm74-xg8p-3q48

Windows Virtual Trusted Platform Module Denial of Service Vulnerability

CVSS3: 6.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-xm74-w48w-c549

Permission management vulnerability in the module for disabling Sound Booster. Successful exploitation of this vulnerability may cause features to perform abnormally.

CVSS3: 5.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xm74-phc9-jvhx

A vulnerability has been identified in SCALANCE S602 (All versions >= V3.0), SCALANCE S612 (All versions >= V3.0), SCALANCE S623 (All versions >= V3.0), SCALANCE S627-2M (All versions >= V3.0). The integrated configuration web server of the affected devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into accessing a malicious link. User interaction is required for a successful exploitation. The user must be logged into the web interface in order for the exploitation to succeed. At the stage of publishing this security advisory no public exploitation is known. The vendor has confirmed the vulnerability and provides mitigations to resolve it.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-xm73-9p8r-6f5v

A vulnerability in Cisco WebEx Meetings Server could allow an authenticated, remote attacker to execute predetermined shell commands on other hosts. More Information: CSCuz03353. Known Affected Releases: 2.6.

CVSS3: 7.2
2%
Низкий
около 4 лет назад
github логотип
GHSA-xm72-wm3m-qgm7

Improper neutralization of special elements used in an OS command in Druva inSync Windows Client 6.5.0 allows a local, unauthenticated attacker to execute arbitrary operating system commands with SYSTEM privileges.

9%
Низкий
около 4 лет назад
github логотип
GHSA-xm72-r4c7-v3v9

A security feature bypass vulnerability exists in Device Guard that could allow an attacker to inject malicious code into a Windows PowerShell session, aka "Device Guard Code Integrity Policy Security Feature Bypass Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers. This CVE ID is unique from CVE-2018-8204.

CVSS3: 5.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xm72-j57q-p3m6

The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to generic SQL Injection via the 'alldata[truebooker_user]' parameter in all versions up to, and including, 1.2.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database. The check_ajax_referer() nonce guard does not constitute an authentication or authorization barrier because the nonce is exposed to unauthenticated visitors on TrueBooker front-end booking pages; exploitation additionally requires that the required booking fields (category, service, person, date, and time slot) be present in the alldata POST parameter so that execution reaches the vulnerable SQL query branch.

CVSS3: 7.5
0%
Низкий
17 дней назад
github логотип
GHSA-xm72-c99x-fm79

The documentation for AJ-Fork 167 implies that users should set permissions for users.db.php to 777, which allows local users to execute arbitrary PHP code and gain privileges as the administrator.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xm6x-8fqh-w3x3

org.jboss.as.jaxrs.deployment.JaxrsIntegrationProcessor in Red Hat JBoss Enterprise Application Platform (JEAP) before 6.2.4 enables entity expansion, which allows remote attackers to read arbitrary files via unspecified vectors, related to an XML External Entity (XXE) issue.

3%
Низкий
около 4 лет назад
github логотип
GHSA-xm6w-hhcm-7v7g

gdk/gdkwindow.c in GTK+ before 2.18.5, as used in gnome-screensaver before 2.28.1, performs implicit paints on windows of type GDK_WINDOW_FOREIGN, which triggers an X error in certain circumstances and consequently allows physically proximate attackers to bypass screen locking and access an unattended workstation by pressing the Enter key many times.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xm6v-vxpj-38gq

Contributor Cross Site Scripting (XSS) in StatCounter <= 2.1.1 versions.

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xm6v-h562-fh85

Missing Authorization vulnerability in WishList Products WishList Member X allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects WishList Member X: from n/a through 3.26.6

CVSS3: 8.2
0%
Низкий
почти 2 года назад
github логотип
GHSA-xm6v-3wmv-c56v

The Glossary by WPPedia – Best Glossary plugin for WordPress plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 1.3.0 via deserialization of untrusted input from the 'posttypes' parameter. This makes it possible for authenticated attackers, with Administrator-level access and above, to inject a PHP Object. No known POP chain is present in the vulnerable software, which means this vulnerability has no impact unless another plugin or theme containing a POP chain is installed on the site. If a POP chain is present via an additional plugin or theme installed on the target system, it may allow the attacker to perform actions like delete arbitrary files, retrieve sensitive data, or execute code depending on the POP chain present.

CVSS3: 7.2
1%
Низкий
около 1 года назад
github логотип
GHSA-xm6r-fw82-jmcw

An AXIS Camera Station Pro feature can be exploited in a way that allows a non-admin user to view information they are not permitted to.

CVSS3: 4.6
0%
Низкий
6 месяцев назад
github логотип
GHSA-xm6r-7vj6-hr5j

A vulnerability classified as critical has been found in SourceCodester Free Hospital Management System for Small Practices 1.0. Affected is an unknown function of the file /vm/doctor/doctors.php?action=view. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-236214 is the identifier assigned to this vulnerability.

CVSS3: 6.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-xm6r-6fx6-x6r8

A clickjacking vulnerability was found in Limesurvey before 3.17.14.

CVSS3: 4.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-xm6r-4466-mr74

OrientDB vulnerable to Improper Privilage Management leading to arbitrary command injection

CVSS3: 9.8
73%
Высокий
почти 8 лет назад

Уязвимостей на страницу