Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 358 234

Количество 358 234

github логотип

GHSA-xj9r-5fj6-ggxg

6 месяцев назад

Missing Authorization vulnerability in MiKa OSM osm allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects OSM: from n/a through <= 6.1.12.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xj9r-4xfh-455m

больше 4 лет назад

Directory traversal vulnerability in bbcode_ref.php in the Giorgio Ciranni Splatt Forum 4.0 RC1 module for PHP-Nuke allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the name parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by bbcode_ref.php.

EPSS: Низкий
github логотип

GHSA-xj9q-xpw7-8898

около 4 лет назад

WebKit in Apple Safari before 6.0 accesses uninitialized memory locations during the rendering of SVG images, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.

EPSS: Низкий
github логотип

GHSA-xj9q-pj74-p2j4

около 4 лет назад

A vulnerability has been identified in PCS neo (Administration Console) (V3.0), TIA Portal (V15, V15.1 and V16). Manipulating certain files in specific folders could allow a local attacker to execute code with SYSTEM privileges. The security vulnerability could be exploited by an attacker with a valid account and limited access rights on the system.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xj9q-fxqr-qm8w

больше 3 лет назад

A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0. Affected is an unknown function of the file items/view.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-228888.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xj9q-5wm7-q8ww

около 2 месяцев назад

Contributor PHP Object Injection in Fusion Builder <= 3.15.4 versions.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xj9p-m2qr-5p2f

больше 4 лет назад

vserver in util-vserver 0.30.209 executes a command as root when the suexec userid parameter is invalid and non-numeric, which might cause local users to inadvertently execute dangerous commands as root.

EPSS: Низкий
github логотип

GHSA-xj9p-2g8h-8rmg

около 4 лет назад

An OS command injection vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables an authenticated administrator with access to the CLI to execute arbitrary OS commands to escalate privileges. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.20-h1; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14-h3; PAN-OS 9.1 versions earlier than PAN-OS 9.1.11-h2; PAN-OS 10.0 versions earlier than PAN-OS 10.0.8; PAN-OS 10.1 versions earlier than PAN-OS 10.1.3. Prisma Access customers that have Prisma Access 2.1 firewalls are impacted by this issue.

EPSS: Низкий
github логотип

GHSA-xj9j-gjxg-7jvq

9 месяцев назад

REDAXO CMS is vulnerable to RCE attack through its template management component

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xj9j-2r34-w42m

больше 3 лет назад

FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xj9h-82qf-qx5w

больше 1 года назад

The LoginPress | wp-login Custom Login Page Customizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.3.1. This is due to missing or incorrect nonce validation on the 'custom_plugin_set_option' function. This makes it possible for unauthenticated attackers to update arbitrary options on the WordPress site via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site. The 'WPBRIGADE_SDK__DEV_MODE' constant must be set to 'true' to exploit the vulnerability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xj9h-242g-rjqv

около 4 лет назад

An issue was discovered in Pivotal GemFire for PCF 1.6.x versions prior to 1.6.5 and 1.7.x versions prior to 1.7.1. The gfsh (Geode Shell) endpoint, used by operators and application developers to connect to their cluster, is unauthenticated and publicly accessible. Because HTTPS communications are terminated at the gorouter, communications from the gorouter to GemFire clusters are unencrypted. An attacker could run any command available on gfsh and could cause denial of service, lost confidentiality of data, escalate privileges, or eavesdrop on other communications between the gorouter and the cluster.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xj9g-c7f2-r4p5

около 4 лет назад

Unspecified vulnerability in the Oracle iPlanet Web Server (Sun Java System Web Server) component in Oracle Sun Products Suite 6.1 and 7.0 allows remote attackers to affect integrity via unknown vectors related to Web Container.

EPSS: Низкий
github логотип

GHSA-xj9g-c23g-r4pj

почти 2 года назад

Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xj9g-83cq-wf3m

почти 2 года назад

Cleartext Storage of Sensitive Information vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Retrieve Embedded Sensitive Data.This issue affects NACPremium: through 01082024.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xj9f-q8rr-r4g8

около 4 лет назад

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

EPSS: Низкий
github логотип

GHSA-xj9f-6qqc-cpfp

около 4 лет назад

A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ShiftBytes. The highest threat from this vulnerability is to data confidentiality and to the service availability.

CVSS3: 9.1
EPSS: Низкий
github логотип

GHSA-xj9f-2qg8-xcp9

больше 4 лет назад

fs/f2fs/extent_cache.c in the Linux kernel before 4.13 mishandles extent trees, which allows local users to cause a denial of service (BUG) via an application with multiple threads.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xj9c-q7c6-gg58

больше 4 лет назад

root privileges via buffer overflow in eject command on SGI IRIX systems.

EPSS: Низкий
github логотип

GHSA-xj99-h8qh-p35c

около 2 лет назад

oFono AT CMGL Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerability. The specific flaw exists within the parsing of responses from AT+CMGL commands. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-23307.

CVSS3: 3.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xj9r-5fj6-ggxg

Missing Authorization vulnerability in MiKa OSM osm allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects OSM: from n/a through <= 6.1.12.

CVSS3: 4.3
0%
Низкий
6 месяцев назад
github логотип
GHSA-xj9r-4xfh-455m

Directory traversal vulnerability in bbcode_ref.php in the Giorgio Ciranni Splatt Forum 4.0 RC1 module for PHP-Nuke allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the name parameter, as demonstrated by injecting PHP sequences into an Apache HTTP Server log file, which is then included by bbcode_ref.php.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-xj9q-xpw7-8898

WebKit in Apple Safari before 6.0 accesses uninitialized memory locations during the rendering of SVG images, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xj9q-pj74-p2j4

A vulnerability has been identified in PCS neo (Administration Console) (V3.0), TIA Portal (V15, V15.1 and V16). Manipulating certain files in specific folders could allow a local attacker to execute code with SYSTEM privileges. The security vulnerability could be exploited by an attacker with a valid account and limited access rights on the system.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xj9q-fxqr-qm8w

A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0. Affected is an unknown function of the file items/view.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-228888.

CVSS3: 6.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xj9q-5wm7-q8ww

Contributor PHP Object Injection in Fusion Builder <= 3.15.4 versions.

CVSS3: 9.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xj9p-m2qr-5p2f

vserver in util-vserver 0.30.209 executes a command as root when the suexec userid parameter is invalid and non-numeric, which might cause local users to inadvertently execute dangerous commands as root.

0%
Низкий
больше 4 лет назад
github логотип
GHSA-xj9p-2g8h-8rmg

An OS command injection vulnerability in the Palo Alto Networks PAN-OS command line interface (CLI) enables an authenticated administrator with access to the CLI to execute arbitrary OS commands to escalate privileges. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.20-h1; PAN-OS 9.0 versions earlier than PAN-OS 9.0.14-h3; PAN-OS 9.1 versions earlier than PAN-OS 9.1.11-h2; PAN-OS 10.0 versions earlier than PAN-OS 10.0.8; PAN-OS 10.1 versions earlier than PAN-OS 10.1.3. Prisma Access customers that have Prisma Access 2.1 firewalls are impacted by this issue.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xj9j-gjxg-7jvq

REDAXO CMS is vulnerable to RCE attack through its template management component

CVSS3: 7.2
1%
Низкий
9 месяцев назад
github логотип
GHSA-xj9j-2r34-w42m

FrameMaker 2020 Update 4 (and earlier), 2022 (and earlier) are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

CVSS3: 7.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xj9h-82qf-qx5w

The LoginPress | wp-login Custom Login Page Customizer plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 3.3.1. This is due to missing or incorrect nonce validation on the 'custom_plugin_set_option' function. This makes it possible for unauthenticated attackers to update arbitrary options on the WordPress site via a forged request granted they can trick a site administrator into performing an action such as clicking on a link. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site. The 'WPBRIGADE_SDK__DEV_MODE' constant must be set to 'true' to exploit the vulnerability.

CVSS3: 7.5
0%
Низкий
больше 1 года назад
github логотип
GHSA-xj9h-242g-rjqv

An issue was discovered in Pivotal GemFire for PCF 1.6.x versions prior to 1.6.5 and 1.7.x versions prior to 1.7.1. The gfsh (Geode Shell) endpoint, used by operators and application developers to connect to their cluster, is unauthenticated and publicly accessible. Because HTTPS communications are terminated at the gorouter, communications from the gorouter to GemFire clusters are unencrypted. An attacker could run any command available on gfsh and could cause denial of service, lost confidentiality of data, escalate privileges, or eavesdrop on other communications between the gorouter and the cluster.

CVSS3: 9.8
2%
Низкий
около 4 лет назад
github логотип
GHSA-xj9g-c7f2-r4p5

Unspecified vulnerability in the Oracle iPlanet Web Server (Sun Java System Web Server) component in Oracle Sun Products Suite 6.1 and 7.0 allows remote attackers to affect integrity via unknown vectors related to Web Container.

4%
Низкий
около 4 лет назад
github логотип
GHSA-xj9g-c23g-r4pj

Certain models of D-Link wireless routers do not properly validate user input in the telnet service, allowing unauthenticated remote attackers to use hard-coded credentials to log into telnet and inject arbitrary OS commands, which can then be executed on the device.

CVSS3: 8.8
1%
Низкий
почти 2 года назад
github логотип
GHSA-xj9g-83cq-wf3m

Cleartext Storage of Sensitive Information vulnerability in NAC Telecommunication Systems Inc. NACPremium allows Retrieve Embedded Sensitive Data.This issue affects NACPremium: through 01082024.

CVSS3: 7.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-xj9f-q8rr-r4g8

Adobe Acrobat and Reader versions 2019.010.20069 and earlier, 2019.010.20069 and earlier, 2017.011.30113 and earlier version, and 2015.006.30464 and earlier have an out-of-bounds read vulnerability. Successful exploitation could lead to information disclosure.

4%
Низкий
около 4 лет назад
github логотип
GHSA-xj9f-6qqc-cpfp

A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ShiftBytes. The highest threat from this vulnerability is to data confidentiality and to the service availability.

CVSS3: 9.1
2%
Низкий
около 4 лет назад
github логотип
GHSA-xj9f-2qg8-xcp9

fs/f2fs/extent_cache.c in the Linux kernel before 4.13 mishandles extent trees, which allows local users to cause a denial of service (BUG) via an application with multiple threads.

CVSS3: 5.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-xj9c-q7c6-gg58

root privileges via buffer overflow in eject command on SGI IRIX systems.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xj99-h8qh-p35c

oFono AT CMGL Command Uninitialized Variable Information Disclosure Vulnerability. This vulnerability allows local attackers to disclose sensitive information on affected installations of oFono. An attacker must first obtain the ability to execute code on the target modem in order to exploit this vulnerability. The specific flaw exists within the parsing of responses from AT+CMGL commands. The issue results from the lack of proper initialization of memory prior to accessing it. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of root. Was ZDI-CAN-23307.

CVSS3: 3.3
0%
Низкий
около 2 лет назад

Уязвимостей на страницу