Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 358 234

Количество 358 234

github логотип

GHSA-xhv3-q4xx-349r

около 2 месяцев назад

stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)

EPSS: Низкий
github логотип

GHSA-xhv3-jg9x-x2jh

около 4 лет назад

A faultinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

EPSS: Низкий
github логотип

GHSA-xhv3-f69c-rq49

11 месяцев назад

Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-xhv3-6p64-vccw

около 4 лет назад

A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate function

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xhv2-m579-hgcc

около 4 лет назад

Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLResponse and RelayState variables, and the Destination parameter of the samlp:Response XML element.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xhv2-gw9c-73rm

около 2 лет назад

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Remove HCI_AMP support Since BT_HS has been remove HCI_AMP controllers no longer has any use so remove it along with the capability of creating AMP controllers. Since we no longer need to differentiate between AMP and Primary controllers, as only HCI_PRIMARY is left, this also remove hdev->dev_type altogether.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhv2-33qj-qmwc

больше 4 лет назад

Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versions, allows remote attackers to execute arbitrary code via a URI for a PDF file with a null terminator (%00) followed by a long string.

EPSS: Низкий
github логотип

GHSA-xhrx-q868-cx2w

около 4 лет назад

The Bilingual Magic Ball (aka com.wBilingualMagicBall) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

EPSS: Низкий
github логотип

GHSA-xhrx-h7vh-5v4q

больше 1 года назад

Missing Authorization vulnerability in Chris Baldelomar Shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through 3.46.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xhrx-9p3c-7wxw

больше 2 лет назад

A vulnerability in the IPv4 Software-Defined Access (SD-Access) fabric edge node feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization and stop all traffic processing, resulting in a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain IPv4 packets. An attacker could exploit this vulnerability by sending certain IPv4 packets to an affected device. A successful exploit could allow the attacker to cause the device to exhaust CPU resources and stop processing traffic, resulting in a DoS condition.

CVSS3: 8.6
EPSS: Низкий
github логотип

GHSA-xhrx-96p4-r9ww

около 4 лет назад

A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse that can cause an out of bounds read operation to occur due to a field within the IOCTL data being used as a length.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhrx-7gxr-xjcp

около 4 лет назад

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

EPSS: Низкий
github логотип

GHSA-xhrw-5qxx-jpwr

3 месяца назад

Microsoft APM CLI's plugin.json component paths escape plugin root and copy arbitrary host files during install

CVSS3: 7.1
EPSS: Низкий
github логотип

GHSA-xhrw-53w4-q6mr

больше 4 лет назад

Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte.

EPSS: Низкий
github логотип

GHSA-xhrw-4447-w35f

почти 2 года назад

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.7, macOS Sequoia 15. Processing a maliciously crafted video file may lead to unexpected app termination.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhrv-87p6-f9gg

9 месяцев назад

A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'email' in '/backend/api/users/searchUserByEmail.php'.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhrv-757w-cxjj

больше 4 лет назад

Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xhrr-v9w4-p3m4

больше 4 лет назад

SQL injection vulnerability in default.asp in EfesTECH Video 5.0 allows remote attackers to execute arbitrary SQL commands via the catID parameter.

EPSS: Низкий
github логотип

GHSA-xhrr-gm23-q6w4

больше 3 лет назад

Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the sub_45DC58 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xhrr-676x-hmpc

больше 2 лет назад

Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

CVSS3: 5.4
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xhv3-q4xx-349r

stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)

около 2 месяцев назад
github логотип
GHSA-xhv3-jg9x-x2jh

A faultinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).

7%
Низкий
около 4 лет назад
github логотип
GHSA-xhv3-f69c-rq49

Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.

CVSS3: 8.2
0%
Низкий
11 месяцев назад
github логотип
GHSA-xhv3-6p64-vccw

A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate function

CVSS3: 7.2
2%
Низкий
около 4 лет назад
github логотип
GHSA-xhv2-m579-hgcc

Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLResponse and RelayState variables, and the Destination parameter of the samlp:Response XML element.

CVSS3: 6.1
1%
Низкий
около 4 лет назад
github логотип
GHSA-xhv2-gw9c-73rm

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Remove HCI_AMP support Since BT_HS has been remove HCI_AMP controllers no longer has any use so remove it along with the capability of creating AMP controllers. Since we no longer need to differentiate between AMP and Primary controllers, as only HCI_PRIMARY is left, this also remove hdev->dev_type altogether.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xhv2-33qj-qmwc

Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versions, allows remote attackers to execute arbitrary code via a URI for a PDF file with a null terminator (%00) followed by a long string.

7%
Низкий
больше 4 лет назад
github логотип
GHSA-xhrx-q868-cx2w

The Bilingual Magic Ball (aka com.wBilingualMagicBall) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

0%
Низкий
около 4 лет назад
github логотип
GHSA-xhrx-h7vh-5v4q

Missing Authorization vulnerability in Chris Baldelomar Shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through 3.46.

CVSS3: 4.3
1%
Низкий
больше 1 года назад
github логотип
GHSA-xhrx-9p3c-7wxw

A vulnerability in the IPv4 Software-Defined Access (SD-Access) fabric edge node feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization and stop all traffic processing, resulting in a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain IPv4 packets. An attacker could exploit this vulnerability by sending certain IPv4 packets to an affected device. A successful exploit could allow the attacker to cause the device to exhaust CPU resources and stop processing traffic, resulting in a DoS condition.

CVSS3: 8.6
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xhrx-96p4-r9ww

A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse that can cause an out of bounds read operation to occur due to a field within the IOCTL data being used as a length.

CVSS3: 5.5
0%
Низкий
около 4 лет назад
github логотип
GHSA-xhrx-7gxr-xjcp

The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.

2%
Низкий
около 4 лет назад
github логотип
GHSA-xhrw-5qxx-jpwr

Microsoft APM CLI's plugin.json component paths escape plugin root and copy arbitrary host files during install

CVSS3: 7.1
0%
Низкий
3 месяца назад
github логотип
GHSA-xhrw-53w4-q6mr

Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xhrw-4447-w35f

The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.7, macOS Sequoia 15. Processing a maliciously crafted video file may lead to unexpected app termination.

CVSS3: 5.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-xhrv-87p6-f9gg

A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'email' in '/backend/api/users/searchUserByEmail.php'.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
github логотип
GHSA-xhrv-757w-cxjj

Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request.

CVSS3: 5.4
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xhrr-v9w4-p3m4

SQL injection vulnerability in default.asp in EfesTECH Video 5.0 allows remote attackers to execute arbitrary SQL commands via the catID parameter.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xhrr-gm23-q6w4

Tenda AC10 US_AC10V4.0si_V16.03.10.13_cn was discovered to contain a stack overflow via the sub_45DC58 function. This vulnerability allows attackers to cause a Denial of Service (DoS) or execute arbitrary code via a crafted payload.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xhrr-676x-hmpc

Adobe Experience Manager versions 6.5.18 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject malicious scripts into vulnerable form fields. Malicious JavaScript may be executed in a victim’s browser when they browse to the page containing the vulnerable field.

CVSS3: 5.4
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу