Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 346 449

Количество 346 449

github логотип

GHSA-xxw9-xw46-84pv

больше 4 лет назад

chat.ghp in Easy Chat Server 1.2 allows remote attackers to add a large number of fake users, then eventually cause a denial of service (server crash).

EPSS: Низкий
github логотип

GHSA-xxw9-f9g5-745j

2 месяца назад

Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics214.php that allows authenticated attackers to inject arbitrary JavaScript by passing an unsanitized value through the frm_add_str POST parameter directly into an HTML form hidden input value attribute. Attackers can craft a malicious request containing a JavaScript payload that executes in the victim's browser when the response is rendered.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xxw9-chfj-mp3c

около 2 лет назад

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 16.11.6, starting from 17.0 prior to 17.0.4, and starting from 17.1 prior to 17.1.2 in which a user with `admin_group_member` custom role permission could ban group members.

CVSS3: 2.7
EPSS: Низкий
github логотип

GHSA-xxw9-7gw3-r38p

около 4 лет назад

Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.

EPSS: Низкий
github логотип

GHSA-xxw9-65vg-49r3

около 4 лет назад

A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts Telnet network traffic between a user and the device.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xxw8-ppw6-gv4w

около 4 лет назад

The debug interface of Goldshell ASIC Miners v2.2.1 and below was discovered to be exposed publicly on the web interface, allowing attackers to access passwords and other sensitive information in plaintext.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xxw7-8mmh-37r4

больше 3 лет назад

In BufferBlock of Suballocation.cpp, there is a possible out of bounds write due to memory corruption. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-236098131

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xxw7-44hw-5xgc

больше 3 лет назад

FP.io VPP (Vector Packet Processor) 22.10, 22.06, 22.02, 21.10, 21.06, 21.01, 20.09, 20.05, 20.01, 19.08, and 19.04 Generates a Predictable IV with CBC Mode.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xxw7-22gg-jp7x

около 1 года назад

The WP-Addpub plugin for WordPress is vulnerable to SQL Injection via the 'wp-addpub' shortcode in all versions up to, and including, 1.2.8 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xxw5-vgjv-jc6g

около 1 месяца назад

A vulnerability was detected in liftoff-sr CIPster up to e8e9dba09bf56962807d3504b783ccdb6287f3e4. Affected by this issue is the function BufWriter::append of the component EtherNet IP Message Handler. Performing a manipulation results in out-of-bounds write. Remote exploitation of the attack is possible. The exploit is now public and may be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The patch is named 3a0159ed43125dcd024a1965f0289cb186bae9ff. To fix this issue, it is recommended to deploy a patch.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-xxw5-p895-cp2c

около 4 лет назад

curl and libcurl 7.2x before 7.24.0 do not properly consider special characters during extraction of a pathname from a URL, which allows remote attackers to conduct data-injection attacks via a crafted URL, as demonstrated by a CRLF injection attack on the (1) IMAP, (2) POP3, or (3) SMTP protocol.

EPSS: Средний
github логотип

GHSA-xxw5-m53x-j38c

5 месяцев назад

ImageMagick has heap use-after-free in the MSL encoder

CVSS3: 4
EPSS: Низкий
github логотип

GHSA-xxw5-6rch-9wmx

12 месяцев назад

A null pointer dereference vulnerability exists in the IOMap64.sys driver of ASUS AI Suite 3. The vulnerability can be triggered by a specially crafted input, which may lead to a system crash (BSOD). Refer to the ' Security Update for for AI Suite 3 ' section on the ASUS Security Advisory for more information.

EPSS: Низкий
github логотип

GHSA-xxw5-5p2v-w5j9

около 4 лет назад

V3 Chat allows remote attackers to obtain the installation path via (1) an invalid id parameter to mail/index.php or (2) membername parameter to messenger/online.php, which displays the path in an error page due to an incorrect SQL statement.

EPSS: Низкий
github логотип

GHSA-xxw4-vmw8-xc6f

около 4 лет назад

An issue was discovered in Enigmail before 1.9.9. Regular expressions are exploitable for Denial of Service, because of attempts to match arbitrarily long strings, aka TBE-01-003.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xxw3-m93w-7c72

около 4 лет назад

pHNews Alpha 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for extra/genbackup.php.

EPSS: Низкий
github логотип

GHSA-xxw3-gvmx-3wc8

почти 4 года назад

Windows Fax Service Elevation of Privilege Vulnerability.

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xxw3-cmrq-w3vh

около 4 лет назад

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint. This CVE ID is unique from CVE-2018-8149, CVE-2018-8156, CVE-2018-8168.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xxw3-765m-f37p

около 4 лет назад

SaltStack Salt Improper Authentication vulnerability

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-xxw3-74wh-vcjp

около 4 лет назад

Cross-site scripting (XSS) vulnerability in detail.php in WEBBDOMAIN Multi Languages WebShop Online 1.02 allows remote attackers to inject arbitrary web script or HTML via the name parameter.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xxw9-xw46-84pv

chat.ghp in Easy Chat Server 1.2 allows remote attackers to add a large number of fake users, then eventually cause a denial of service (server crash).

3%
Низкий
больше 4 лет назад
github логотип
GHSA-xxw9-f9g5-745j

Open ISES Tickets before 3.44.2 contains a reflected cross-site scripting vulnerability in ics214.php that allows authenticated attackers to inject arbitrary JavaScript by passing an unsanitized value through the frm_add_str POST parameter directly into an HTML form hidden input value attribute. Attackers can craft a malicious request containing a JavaScript payload that executes in the victim's browser when the response is rendered.

CVSS3: 5.4
0%
Низкий
2 месяца назад
github логотип
GHSA-xxw9-chfj-mp3c

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.5 prior to 16.11.6, starting from 17.0 prior to 17.0.4, and starting from 17.1 prior to 17.1.2 in which a user with `admin_group_member` custom role permission could ban group members.

CVSS3: 2.7
0%
Низкий
около 2 лет назад
github логотип
GHSA-xxw9-7gw3-r38p

Integer overflow in the virtio_net_handle_mac function in hw/net/virtio-net.c in QEMU 2.0 and earlier allows local guest users to execute arbitrary code via a MAC addresses table update request, which triggers a heap-based buffer overflow.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xxw9-65vg-49r3

A CWE-319: Cleartext transmission of sensitive information vulnerability exists in PowerLogic ION7400, ION7650, ION7700/73xx, ION83xx/84xx/85xx/8600, ION8650, ION8800, ION9000 and PM800 (see notification for affected versions), that could cause disclosure of user credentials when a malicious actor intercepts Telnet network traffic between a user and the device.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xxw8-ppw6-gv4w

The debug interface of Goldshell ASIC Miners v2.2.1 and below was discovered to be exposed publicly on the web interface, allowing attackers to access passwords and other sensitive information in plaintext.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xxw7-8mmh-37r4

In BufferBlock of Suballocation.cpp, there is a possible out of bounds write due to memory corruption. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-236098131

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xxw7-44hw-5xgc

FP.io VPP (Vector Packet Processor) 22.10, 22.06, 22.02, 21.10, 21.06, 21.01, 20.09, 20.05, 20.01, 19.08, and 19.04 Generates a Predictable IV with CBC Mode.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xxw7-22gg-jp7x

The WP-Addpub plugin for WordPress is vulnerable to SQL Injection via the 'wp-addpub' shortcode in all versions up to, and including, 1.2.8 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Contributor-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVSS3: 6.5
0%
Низкий
около 1 года назад
github логотип
GHSA-xxw5-vgjv-jc6g

A vulnerability was detected in liftoff-sr CIPster up to e8e9dba09bf56962807d3504b783ccdb6287f3e4. Affected by this issue is the function BufWriter::append of the component EtherNet IP Message Handler. Performing a manipulation results in out-of-bounds write. Remote exploitation of the attack is possible. The exploit is now public and may be used. This product follows a rolling release approach for continuous delivery, so version details for affected or updated releases are not provided. The patch is named 3a0159ed43125dcd024a1965f0289cb186bae9ff. To fix this issue, it is recommended to deploy a patch.

CVSS3: 7.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-xxw5-p895-cp2c

curl and libcurl 7.2x before 7.24.0 do not properly consider special characters during extraction of a pathname from a URL, which allows remote attackers to conduct data-injection attacks via a crafted URL, as demonstrated by a CRLF injection attack on the (1) IMAP, (2) POP3, or (3) SMTP protocol.

17%
Средний
около 4 лет назад
github логотип
GHSA-xxw5-m53x-j38c

ImageMagick has heap use-after-free in the MSL encoder

CVSS3: 4
0%
Низкий
5 месяцев назад
github логотип
GHSA-xxw5-6rch-9wmx

A null pointer dereference vulnerability exists in the IOMap64.sys driver of ASUS AI Suite 3. The vulnerability can be triggered by a specially crafted input, which may lead to a system crash (BSOD). Refer to the ' Security Update for for AI Suite 3 ' section on the ASUS Security Advisory for more information.

0%
Низкий
12 месяцев назад
github логотип
GHSA-xxw5-5p2v-w5j9

V3 Chat allows remote attackers to obtain the installation path via (1) an invalid id parameter to mail/index.php or (2) membername parameter to messenger/online.php, which displays the path in an error page due to an incorrect SQL statement.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xxw4-vmw8-xc6f

An issue was discovered in Enigmail before 1.9.9. Regular expressions are exploitable for Denial of Service, because of attempts to match arbitrarily long strings, aka TBE-01-003.

CVSS3: 7.5
2%
Низкий
около 4 лет назад
github логотип
GHSA-xxw3-m93w-7c72

pHNews Alpha 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for extra/genbackup.php.

3%
Низкий
около 4 лет назад
github логотип
GHSA-xxw3-gvmx-3wc8

Windows Fax Service Elevation of Privilege Vulnerability.

CVSS3: 7.1
1%
Низкий
почти 4 года назад
github логотип
GHSA-xxw3-cmrq-w3vh

An elevation of privilege vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka "Microsoft SharePoint Elevation of Privilege Vulnerability." This affects Microsoft SharePoint. This CVE ID is unique from CVE-2018-8149, CVE-2018-8156, CVE-2018-8168.

CVSS3: 5.4
2%
Низкий
около 4 лет назад
github логотип
GHSA-xxw3-765m-f37p

SaltStack Salt Improper Authentication vulnerability

CVSS3: 9.8
73%
Высокий
около 4 лет назад
github логотип
GHSA-xxw3-74wh-vcjp

Cross-site scripting (XSS) vulnerability in detail.php in WEBBDOMAIN Multi Languages WebShop Online 1.02 allows remote attackers to inject arbitrary web script or HTML via the name parameter.

2%
Низкий
около 4 лет назад

Уязвимостей на страницу