Количество 358 234
Количество 358 234
GHSA-xj5c-65cv-3qgc
Vulnerability in the Oracle Hospitality OPERA 5 Property Services component of Oracle Hospitality Applications (subcomponent: OPERA License code configuration). Supported versions that are affected are 5.4.0.x, 5.4.1.x, 5.4.2.x, 5.4.3.x, 5.5.0.x and 5.5.1.x. Easily "exploitable" vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5 Property Services. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality OPERA 5 Property Services accessible data as well as unauthorized update, insert or delete access to some of Oracle Hospitality OPERA 5 Property Services accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N).
GHSA-xj59-9vch-c6qw
Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability."
GHSA-xj59-9qjv-fr54
SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.
GHSA-xj57-m8w7-83wf
Buffer Overflow vulnerability in libde265 v1.0.12 allows a local attacker to cause a denial of service via the allocation size exceeding the maximum supported size of 0x10000000000.
GHSA-xj57-8qj4-c4m6
Code injection in Apache Commons Configuration
GHSA-xj56-q6pv-vrx6
Sensitive Cookie Without 'HttpOnly' Flag in GitHub repository lirantal/daloradius prior to master.
GHSA-xj56-p8mm-qmxj
LLaMA-Factory allows Code Injection through improper vhead_file safeguards
GHSA-xj56-cgwf-vr6c
In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past the ELF header When the MDT loader is used in remoteproc, the ELF header is sanitized beforehand, but that's not necessary the case for other clients. Validate the size of the firmware buffer to ensure that we don't read past the end as we iterate over the header. e_phentsize and e_shentsize are validated as well, to ensure that the assumptions about step size in the traversal are valid.
GHSA-xj55-jcm5-7pgm
A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_title parameter.
GHSA-xj55-9jj5-7q99
D-Link DIR-859 1.05 and 1.06B01 Beta01 devices allow remote attackers to execute arbitrary OS commands via a urn: to the M-SEARCH method in ssdpcgi() in /htdocs/cgibin, because HTTP_ST is mishandled. The value of the urn: service/device is checked with the strstr function, which allows an attacker to concatenate arbitrary commands separated by shell metacharacters.
GHSA-xj54-92rq-85wc
Missing Authorization vulnerability in Razorpay Razorpay for WooCommerce woo-razorpay allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Razorpay for WooCommerce: from n/a through <= 4.8.2.
GHSA-xj54-8cp7-f54r
The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.
GHSA-xj53-rhqx-x9x6
In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure Direct Object Reference (IDOR) vulnerability
GHSA-xj53-j257-hxvg
OpenRemote read-only asset users can write predicted datapoints
GHSA-xj4x-pg94-f3mf
Cross Site Scripting vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter to include/ajax.search.php.
GHSA-xj4x-m269-rcgc
wac commit 385e1 was discovered to contain a heap overflow.
GHSA-xj4w-r6gr-x5qm
Project Inheritance Plugin showed secret environment variables defined in Mask Passwords Plugin
GHSA-xj4v-gp4q-h6qq
qcubed reflected cross-site scripting (XSS) vulnerability
GHSA-xj4v-3q69-qpxx
GFI HelpDesk before 4.99.9 contains a stored cross-site scripting vulnerability in the language management functionality where the charset POST parameter is passed directly to SWIFT_Language::Create() without HTML sanitization and subsequently rendered unsanitized by View_Language.RenderGrid(). An authenticated administrator can inject arbitrary JavaScript through the charset field when creating or editing a language, and the payload executes in the browser of any administrator viewing the Languages page.
GHSA-xj4r-whfg-77cr
F5 SSL Intercept iApp 1.5.0 - 1.5.7 and SSL Orchestrator 2.0 is vulnerable to a Server-Side Request Forgery (SSRF) attack when deployed using the Dynamic Domain Bypass (DDB) feature feature plus SNAT Auto Map option for egress traffic.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-xj5c-65cv-3qgc Vulnerability in the Oracle Hospitality OPERA 5 Property Services component of Oracle Hospitality Applications (subcomponent: OPERA License code configuration). Supported versions that are affected are 5.4.0.x, 5.4.1.x, 5.4.2.x, 5.4.3.x, 5.5.0.x and 5.5.1.x. Easily "exploitable" vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Hospitality OPERA 5 Property Services. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Hospitality OPERA 5 Property Services accessible data as well as unauthorized update, insert or delete access to some of Oracle Hospitality OPERA 5 Property Services accessible data. CVSS 3.0 Base Score 7.1 (Confidentiality and Integrity impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N). | CVSS3: 7.1 | 1% Низкий | больше 4 лет назад | |
GHSA-xj59-9vch-c6qw Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute arbitrary code via drag and drop events, aka the "Drag-and-Drop Vulnerability." | 60% Средний | больше 4 лет назад | ||
GHSA-xj59-9qjv-fr54 SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation. | CVSS3: 5.9 | 1% Низкий | больше 4 лет назад | |
GHSA-xj57-m8w7-83wf Buffer Overflow vulnerability in libde265 v1.0.12 allows a local attacker to cause a denial of service via the allocation size exceeding the maximum supported size of 0x10000000000. | CVSS3: 3.3 | 0% Низкий | больше 2 лет назад | |
GHSA-xj57-8qj4-c4m6 Code injection in Apache Commons Configuration | CVSS3: 9.8 | 43% Средний | около 4 лет назад | |
GHSA-xj56-q6pv-vrx6 Sensitive Cookie Without 'HttpOnly' Flag in GitHub repository lirantal/daloradius prior to master. | CVSS3: 5.3 | 1% Низкий | больше 3 лет назад | |
GHSA-xj56-p8mm-qmxj LLaMA-Factory allows Code Injection through improper vhead_file safeguards | CVSS3: 8.3 | 1% Низкий | около 1 года назад | |
GHSA-xj56-cgwf-vr6c In the Linux kernel, the following vulnerability has been resolved: soc: qcom: mdt_loader: Ensure we don't read past the ELF header When the MDT loader is used in remoteproc, the ELF header is sanitized beforehand, but that's not necessary the case for other clients. Validate the size of the firmware buffer to ensure that we don't read past the end as we iterate over the header. e_phentsize and e_shentsize are validated as well, to ensure that the assumptions about step size in the traversal are valid. | CVSS3: 5.5 | 0% Низкий | 11 месяцев назад | |
GHSA-xj55-jcm5-7pgm A stored cross-site scripting (XSS) issue in Envira Gallery Lite before 1.8.3.3 allows remote attackers to inject arbitrary JavaScript/HTML code via a POST /wp-admin/post.php request with the post_title parameter. | 1% Низкий | около 4 лет назад | ||
GHSA-xj55-9jj5-7q99 D-Link DIR-859 1.05 and 1.06B01 Beta01 devices allow remote attackers to execute arbitrary OS commands via a urn: to the M-SEARCH method in ssdpcgi() in /htdocs/cgibin, because HTTP_ST is mishandled. The value of the urn: service/device is checked with the strstr function, which allows an attacker to concatenate arbitrary commands separated by shell metacharacters. | 75% Высокий | около 4 лет назад | ||
GHSA-xj54-92rq-85wc Missing Authorization vulnerability in Razorpay Razorpay for WooCommerce woo-razorpay allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Razorpay for WooCommerce: from n/a through <= 4.8.2. | CVSS3: 5.3 | 0% Низкий | 4 месяца назад | |
GHSA-xj54-8cp7-f54r The Brizy – Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Custom Attributes for blocks in all versions up to, and including, 2.4.43 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers with contributor-level and above permissions to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. | CVSS3: 6.4 | 0% Низкий | около 2 лет назад | |
GHSA-xj53-rhqx-x9x6 In affected versions of Octopus Server it is possible to reveal information about teams via the API due to an Insecure Direct Object Reference (IDOR) vulnerability | CVSS3: 6.5 | 1% Низкий | почти 4 года назад | |
GHSA-xj53-j257-hxvg OpenRemote read-only asset users can write predicted datapoints | CVSS3: 4.3 | около 1 месяца назад | ||
GHSA-xj4x-pg94-f3mf Cross Site Scripting vulnerability in Enhancesoft osTicket before v1.12.6 via the queue-name parameter to include/ajax.search.php. | 1% Низкий | около 4 лет назад | ||
GHSA-xj4x-m269-rcgc wac commit 385e1 was discovered to contain a heap overflow. | CVSS3: 6.2 | 0% Низкий | почти 2 года назад | |
GHSA-xj4w-r6gr-x5qm Project Inheritance Plugin showed secret environment variables defined in Mask Passwords Plugin | CVSS3: 6.5 | 1% Низкий | около 4 лет назад | |
GHSA-xj4v-gp4q-h6qq qcubed reflected cross-site scripting (XSS) vulnerability | CVSS3: 6.1 | 6% Низкий | около 4 лет назад | |
GHSA-xj4v-3q69-qpxx GFI HelpDesk before 4.99.9 contains a stored cross-site scripting vulnerability in the language management functionality where the charset POST parameter is passed directly to SWIFT_Language::Create() without HTML sanitization and subsequently rendered unsanitized by View_Language.RenderGrid(). An authenticated administrator can inject arbitrary JavaScript through the charset field when creating or editing a language, and the payload executes in the browser of any administrator viewing the Languages page. | CVSS3: 4.8 | 0% Низкий | 4 месяца назад | |
GHSA-xj4r-whfg-77cr F5 SSL Intercept iApp 1.5.0 - 1.5.7 and SSL Orchestrator 2.0 is vulnerable to a Server-Side Request Forgery (SSRF) attack when deployed using the Dynamic Domain Bypass (DDB) feature feature plus SNAT Auto Map option for egress traffic. | CVSS3: 7.4 | 1% Низкий | около 4 лет назад |
Уязвимостей на страницу