Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 358 234

Количество 358 234

github логотип

GHSA-xj5c-65cv-3qgc

больше 4 лет назад

Vulnerability in the Oracle Hospitality OPERA 5 Property Services component of Oracle Hospitality Applications (subcomponent: OPERA License code configuration). Supported versions that are affected are 5.4.0.x, 5.4.1.x, 5.4.2.x, 5.4.3.x, 5.5.0.x and 5.5.1.x. Easily "exploitable" vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5 Property Services. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality OPERA 5 Property Services accessible data as well as unauthorized update, insert or delete access to some of Oracle Hospitality OPERA 5 Property Services accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xj59-9vch-c6qw

больше 4 лет назад

Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability."

EPSS: Средний
github логотип

GHSA-xj59-9qjv-fr54

больше 4 лет назад

SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-xj57-m8w7-83wf

больше 2 лет назад

Buffer Overflow vulnerability in libde265 v1.0.12 allows a local attacker to cause a denial of service via the allocation size exceeding the maximum supported size of 0x10000000000.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-xj57-8qj4-c4m6

около 4 лет назад

Code injection in Apache Commons Configuration

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-xj56-q6pv-vrx6

больше 3 лет назад

Sensitive Cookie Without 'HttpOnly' Flag in GitHub repository lirantal/daloradius prior to master.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xj56-p8mm-qmxj

около 1 года назад

LLaMA-Factory allows Code Injection through improper vhead_file safeguards

CVSS3: 8.3
EPSS: Низкий
github логотип

GHSA-xj56-cgwf-vr6c

11 месяцев назад

In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past the ELF header When the MDT loader is used in remoteproc, the ELF header is sanitized beforehand, but that's not necessary the case for other clients. Validate the size of the firmware buffer to ensure that we don't read past the end as we iterate over the header. e_phentsize and e_shentsize are validated as well, to ensure that the assumptions about step size in the traversal are valid.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xj55-jcm5-7pgm

около 4 лет назад

A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_title parameter.

EPSS: Низкий
github логотип

GHSA-xj55-9jj5-7q99

около 4 лет назад

D-Link DIR-859 1.05 and 1.06B01 Beta01 devices allow remote attackers to execute arbitrary OS commands via a urn: to the M-SEARCH method in ssdpcgi() in /htdocs/cgibin, because HTTP_ST is mishandled. The value of the urn: service/device is checked with the strstr function, which allows an attacker to concatenate arbitrary commands separated by shell metacharacters.

EPSS: Высокий
github логотип

GHSA-xj54-92rq-85wc

4 месяца назад

Missing Authorization vulnerability in Razorpay Razorpay for WooCommerce woo-razorpay allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Razorpay for WooCommerce: from n/a through <= 4.8.2.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xj54-8cp7-f54r

около 2 лет назад

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
EPSS: Низкий
github логотип

GHSA-xj53-rhqx-x9x6

почти 4 года назад

In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure Direct Object Reference (IDOR) vulnerability

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xj53-j257-hxvg

около 1 месяца назад

OpenRemote read-only asset users can write predicted datapoints

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xj4x-pg94-f3mf

около 4 лет назад

Cross Site Scripting vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter to include/ajax.search.php.

EPSS: Низкий
github логотип

GHSA-xj4x-m269-rcgc

почти 2 года назад

wac commit 385e1 was discovered to contain a heap overflow.

CVSS3: 6.2
EPSS: Низкий
github логотип

GHSA-xj4w-r6gr-x5qm

около 4 лет назад

Project Inheritance Plugin showed secret environment variables defined in Mask Passwords Plugin

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xj4v-gp4q-h6qq

около 4 лет назад

qcubed reflected cross-site scripting (XSS) vulnerability

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xj4v-3q69-qpxx

4 месяца назад

GFI HelpDesk before 4.99.9 contains a stored cross-site scripting vulnerability in the language management functionality where the charset POST parameter is passed directly to SWIFT_Language::Create() without HTML sanitization and subsequently rendered unsanitized by View_Language.RenderGrid(). An authenticated administrator can inject arbitrary JavaScript through the charset field when creating or editing a language, and the payload executes in the browser of any administrator viewing the Languages page.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-xj4r-whfg-77cr

около 4 лет назад

F5 SSL Intercept iApp 1.5.0 - 1.5.7 and SSL Orchestrator 2.0 is vulnerable to a Server-Side Request Forgery (SSRF) attack when deployed using the Dynamic Domain Bypass (DDB) feature feature plus SNAT Auto Map option for egress traffic.

CVSS3: 7.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xj5c-65cv-3qgc

Vulnerability in the Oracle Hospitality OPERA 5 Property Services component of Oracle Hospitality Applications (subcomponent: OPERA License code configuration). Supported versions that are affected are 5.4.0.x, 5.4.1.x, 5.4.2.x, 5.4.3.x, 5.5.0.x and 5.5.1.x. Easily "exploitable" vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5 Property Services. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality OPERA 5 Property Services accessible data as well as unauthorized update, insert or delete access to some of Oracle Hospitality OPERA 5 Property Services accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).

CVSS3: 7.1
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xj59-9vch-c6qw

Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability."

60%
Средний
больше 4 лет назад
github логотип
GHSA-xj59-9qjv-fr54

SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.

CVSS3: 5.9
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xj57-m8w7-83wf

Buffer Overflow vulnerability in libde265 v1.0.12 allows a local attacker to cause a denial of service via the allocation size exceeding the maximum supported size of 0x10000000000.

CVSS3: 3.3
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xj57-8qj4-c4m6

Code injection in Apache Commons Configuration

CVSS3: 9.8
43%
Средний
около 4 лет назад
github логотип
GHSA-xj56-q6pv-vrx6

Sensitive Cookie Without 'HttpOnly' Flag in GitHub repository lirantal/daloradius prior to master.

CVSS3: 5.3
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xj56-p8mm-qmxj

LLaMA-Factory allows Code Injection through improper vhead_file safeguards

CVSS3: 8.3
1%
Низкий
около 1 года назад
github логотип
GHSA-xj56-cgwf-vr6c

In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past the ELF header When the MDT loader is used in remoteproc, the ELF header is sanitized beforehand, but that's not necessary the case for other clients. Validate the size of the firmware buffer to ensure that we don't read past the end as we iterate over the header. e_phentsize and e_shentsize are validated as well, to ensure that the assumptions about step size in the traversal are valid.

CVSS3: 5.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-xj55-jcm5-7pgm

A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_title parameter.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xj55-9jj5-7q99

D-Link DIR-859 1.05 and 1.06B01 Beta01 devices allow remote attackers to execute arbitrary OS commands via a urn: to the M-SEARCH method in ssdpcgi() in /htdocs/cgibin, because HTTP_ST is mishandled. The value of the urn: service/device is checked with the strstr function, which allows an attacker to concatenate arbitrary commands separated by shell metacharacters.

75%
Высокий
около 4 лет назад
github логотип
GHSA-xj54-92rq-85wc

Missing Authorization vulnerability in Razorpay Razorpay for WooCommerce woo-razorpay allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Razorpay for WooCommerce: from n/a through <= 4.8.2.

CVSS3: 5.3
0%
Низкий
4 месяца назад
github логотип
GHSA-xj54-8cp7-f54r

The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVSS3: 6.4
0%
Низкий
около 2 лет назад
github логотип
GHSA-xj53-rhqx-x9x6

In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure Direct Object Reference (IDOR) vulnerability

CVSS3: 6.5
1%
Низкий
почти 4 года назад
github логотип
GHSA-xj53-j257-hxvg

OpenRemote read-only asset users can write predicted datapoints

CVSS3: 4.3
около 1 месяца назад
github логотип
GHSA-xj4x-pg94-f3mf

Cross Site Scripting vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter to include/ajax.search.php.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xj4x-m269-rcgc

wac commit 385e1 was discovered to contain a heap overflow.

CVSS3: 6.2
0%
Низкий
почти 2 года назад
github логотип
GHSA-xj4w-r6gr-x5qm

Project Inheritance Plugin showed secret environment variables defined in Mask Passwords Plugin

CVSS3: 6.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xj4v-gp4q-h6qq

qcubed reflected cross-site scripting (XSS) vulnerability

CVSS3: 6.1
6%
Низкий
около 4 лет назад
github логотип
GHSA-xj4v-3q69-qpxx

GFI HelpDesk before 4.99.9 contains a stored cross-site scripting vulnerability in the language management functionality where the charset POST parameter is passed directly to SWIFT_Language::Create() without HTML sanitization and subsequently rendered unsanitized by View_Language.RenderGrid(). An authenticated administrator can inject arbitrary JavaScript through the charset field when creating or editing a language, and the payload executes in the browser of any administrator viewing the Languages page.

CVSS3: 4.8
0%
Низкий
4 месяца назад
github логотип
GHSA-xj4r-whfg-77cr

F5 SSL Intercept iApp 1.5.0 - 1.5.7 and SSL Orchestrator 2.0 is vulnerable to a Server-Side Request Forgery (SSRF) attack when deployed using the Dynamic Domain Bypass (DDB) feature feature plus SNAT Auto Map option for egress traffic.

CVSS3: 7.4
1%
Низкий
около 4 лет назад

Уязвимостей на страницу