Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 373 892

Количество 373 892

github логотип

GHSA-xx8r-3wgj-j632

почти 2 года назад

A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write Panorama administrator to push a specially crafted configuration to a PAN-OS node. This enables impersonation of a legitimate PAN-OS administrator who can perform restricted actions on the PAN-OS node after the execution of JavaScript in the legitimate PAN-OS administrator's browser.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-xx8q-m9qm-7fm9

10 месяцев назад

NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the antivirus process to crash.This issue affects Antivirus: 16.0.0; Anitvirus: 3.0.3.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xx8q-8jxm-3v8c

больше 3 лет назад

The WPZOOM Portfolio WordPress plugin before 1.2.2 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attack.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xx8f-qf9f-5fgw

больше 5 лет назад

Remote code execution in zendframework and laminas-http

CVSS3: 9.8
EPSS: Высокий
github логотип

GHSA-xx8c-x7pm-mwj6

больше 4 лет назад

Incorrect default permissions for the Intel(R) RXT for Chromebook application, all versions, may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xx8c-v55p-48rc

около 4 лет назад

Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xx8c-rpq7-pg6p

больше 4 лет назад

A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.

EPSS: Низкий
github логотип

GHSA-xx8c-m748-xr4j

больше 4 лет назад

Access Restriction Bypass in kubernetes

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-xx89-xmcq-2q77

больше 4 лет назад

IBM WebSphere Partner Gateway (WPG) 6.1.0 before 6.1.0.1 and 6.1.1 before 6.1.1.1 allows remote authenticated users to obtain sensitive information via vectors related to the "schema DB2 instance id" and the bcgarchive (aka the archiver script).

EPSS: Низкий
github логотип

GHSA-xx89-v728-cjjc

больше 4 лет назад

The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows allows attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via an NTFS junction attack.

EPSS: Низкий
github логотип

GHSA-xx89-f47v-hmxp

17 дней назад

The BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Heading 'id' Attribute in Post Content in all versions up to, and including, 4.8.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The exploit survives wp_kses_post because entity-encoded quotes in a heading id attribute are treated as a single legitimate attribute value at save time; the dangerous payload only materialises after process_content_for_toc() calls html_entity_decode() on the stored content and the broken id is extracted by a lazy regex before being echoed unescaped into the Table of Contents output.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-xx88-v4cq-w4wj

10 дней назад

Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-xx88-rwrm-3468

больше 4 лет назад

Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via a crafted URI in a SIP header, aka Bug ID CSCuy43258.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xx88-38jg-963j

больше 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_default_path_quality We need to protect the reader reading sysctl_netrom_default_path_quality because the value can be changed concurrently.

EPSS: Низкий
github логотип

GHSA-xx87-pm67-fw3r

около 1 года назад

Missing Authorization vulnerability in Equalize Digital Accessibility Checker by Equalize Digital allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Accessibility Checker by Equalize Digital: from n/a through 1.31.0.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xx87-pj66-pfx7

8 месяцев назад

Stored Cross-Site Scripting (XSS) vulnerability type in Apidog in the version 2.7.15, where SVG image uploads are not properly sanitized. This allows attackers to embed malicious scripts in SVG files by sending a POST request to '/api/v1/user-avatar', which are then stored on the server and executed in the context of any user accessing the compromised resource.

EPSS: Низкий
github логотип

GHSA-xx87-hj55-x8cc

больше 4 лет назад

Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifiers.

EPSS: Низкий
github логотип

GHSA-xx87-33v7-6x23

4 месяца назад

In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, the remote image blocking feature can be bypassed via a crafted CSS var() value in an e-mail message, which may lead to information disclosure or access-control bypass.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xx86-qq8v-6h29

почти 3 года назад

Adobe Photoshop versions 24.7.1 (and earlier) and 25.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xx83-gq5v-8prv

больше 4 лет назад

An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1308.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xx8r-3wgj-j632

A cross-site scripting (XSS) vulnerability in Palo Alto Networks PAN-OS software enables an authenticated read-write Panorama administrator to push a specially crafted configuration to a PAN-OS node. This enables impersonation of a legitimate PAN-OS administrator who can perform restricted actions on the PAN-OS node after the execution of JavaScript in the legitimate PAN-OS administrator's browser.

CVSS3: 4.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-xx8q-m9qm-7fm9

NULL Pointer Dereference vulnerability in Avast Antivirus on MacOS, Avast Anitvirus on Linux when scanning a malformed Windows PE file causes the antivirus process to crash.This issue affects Antivirus: 16.0.0; Anitvirus: 3.0.3.

CVSS3: 7.5
0%
Низкий
10 месяцев назад
github логотип
GHSA-xx8q-8jxm-3v8c

The WPZOOM Portfolio WordPress plugin before 1.2.2 does not validate and escape one of its shortcode attributes, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attack.

CVSS3: 5.4
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xx8f-qf9f-5fgw

Remote code execution in zendframework and laminas-http

CVSS3: 9.8
75%
Высокий
больше 5 лет назад
github логотип
GHSA-xx8c-x7pm-mwj6

Incorrect default permissions for the Intel(R) RXT for Chromebook application, all versions, may allow an authenticated user to potentially enable information disclosure via local access.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-xx8c-v55p-48rc

Controls limiting uploads to certain file extensions may be bypassed. This could allow an attacker to intercept the initial file upload page response and modify the associated code. This modified code can be forwarded and used by a script loaded later in the sequence, allowing for arbitrary file upload into a location where PHP scripts may be executed.

CVSS3: 7.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xx8c-rpq7-pg6p

A flaw was found in jasper before 2.0.25. An out of bounds read issue was found in jp2_decode function whic may lead to disclosure of information or program crash.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xx8c-m748-xr4j

Access Restriction Bypass in kubernetes

CVSS3: 7.7
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xx89-xmcq-2q77

IBM WebSphere Partner Gateway (WPG) 6.1.0 before 6.1.0.1 and 6.1.1 before 6.1.1.1 allows remote authenticated users to obtain sensitive information via vectors related to the "schema DB2 instance id" and the bcgarchive (aka the archiver script).

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xx89-v728-cjjc

The NtSetInformationFile system call hook feature in Adobe Reader and Acrobat 10.x before 10.1.12 and 11.x before 11.0.09 on Windows allows attackers to bypass a sandbox protection mechanism, and consequently execute native code in a privileged context, via an NTFS junction attack.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-xx89-f47v-hmxp

The BetterDocs – AI Documentation, Knowledge Base, Docs, Wikis, FAQ with Chatbot plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Heading 'id' Attribute in Post Content in all versions up to, and including, 4.8.1 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The exploit survives wp_kses_post because entity-encoded quotes in a heading id attribute are treated as a single legitimate attribute value at save time; the dangerous payload only materialises after process_content_for_toc() calls html_entity_decode() on the stored content and the broken id is extracted by a lazy regex before being echoed unescaped into the Table of Contents output.

CVSS3: 6.4
0%
Низкий
17 дней назад
github логотип
GHSA-xx88-v4cq-w4wj

Double free in Windows Credential Guard allows an authorized attacker to elevate privileges locally.

CVSS3: 8.2
0%
Низкий
10 дней назад
github логотип
GHSA-xx88-rwrm-3468

Cisco TelePresence Video Communications Server (VCS) X8.x before X8.7.2 allows remote attackers to cause a denial of service (service disruption) via a crafted URI in a SIP header, aka Bug ID CSCuy43258.

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xx88-38jg-963j

In the Linux kernel, the following vulnerability has been resolved: netrom: Fix a data-race around sysctl_netrom_default_path_quality We need to protect the reader reading sysctl_netrom_default_path_quality because the value can be changed concurrently.

больше 2 лет назад
github логотип
GHSA-xx87-pm67-fw3r

Missing Authorization vulnerability in Equalize Digital Accessibility Checker by Equalize Digital allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Accessibility Checker by Equalize Digital: from n/a through 1.31.0.

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-xx87-pj66-pfx7

Stored Cross-Site Scripting (XSS) vulnerability type in Apidog in the version 2.7.15, where SVG image uploads are not properly sanitized. This allows attackers to embed malicious scripts in SVG files by sending a POST request to '/api/v1/user-avatar', which are then stored on the server and executed in the context of any user accessing the compromised resource.

0%
Низкий
8 месяцев назад
github логотип
GHSA-xx87-hj55-x8cc

Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifiers.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xx87-33v7-6x23

In Roundcube Webmail 1.6.x before 1.6.16 and 1.7.x before 1.7.1, the remote image blocking feature can be bypassed via a crafted CSS var() value in an e-mail message, which may lead to information disclosure or access-control bypass.

CVSS3: 6.5
0%
Низкий
4 месяца назад
github логотип
GHSA-xx86-qq8v-6h29

Adobe Photoshop versions 24.7.1 (and earlier) and 25.0 (and earlier) are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 5.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-xx83-gq5v-8prv

An elevation of privilege vulnerability exists when DirectX improperly handles objects in memory, aka 'DirectX Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-1308.

CVSS3: 7.8
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу