Количество 359 154
Количество 359 154
GHSA-xhv3-vpp2-g34f
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Syed Balkhi Floating Social Bar allows Stored XSS. This issue affects Floating Social Bar: from n/a through 1.1.7.
GHSA-xhv3-q5hx-88ww
Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size.
GHSA-xhv3-q4xx-349r
stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA)
GHSA-xhv3-jg9x-x2jh
A faultinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07).
GHSA-xhv3-f69c-rq49
Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set.
GHSA-xhv3-6p64-vccw
A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate function
GHSA-xhv2-m579-hgcc
Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLResponse and RelayState variables, and the Destination parameter of the samlp:Response XML element.
GHSA-xhv2-gw9c-73rm
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Remove HCI_AMP support Since BT_HS has been remove HCI_AMP controllers no longer has any use so remove it along with the capability of creating AMP controllers. Since we no longer need to differentiate between AMP and Primary controllers, as only HCI_PRIMARY is left, this also remove hdev->dev_type altogether.
GHSA-xhv2-33qj-qmwc
Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versions, allows remote attackers to execute arbitrary code via a URI for a PDF file with a null terminator (%00) followed by a long string.
GHSA-xhrx-q868-cx2w
The Bilingual Magic Ball (aka com.wBilingualMagicBall) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
GHSA-xhrx-h7vh-5v4q
Missing Authorization vulnerability in Chris Baldelomar Shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through 3.46.
GHSA-xhrx-9p3c-7wxw
A vulnerability in the IPv4 Software-Defined Access (SD-Access) fabric edge node feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization and stop all traffic processing, resulting in a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain IPv4 packets. An attacker could exploit this vulnerability by sending certain IPv4 packets to an affected device. A successful exploit could allow the attacker to cause the device to exhaust CPU resources and stop processing traffic, resulting in a DoS condition.
GHSA-xhrx-96p4-r9ww
A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse that can cause an out of bounds read operation to occur due to a field within the IOCTL data being used as a length.
GHSA-xhrx-7gxr-xjcp
The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730.
GHSA-xhrw-5qxx-jpwr
Microsoft APM CLI's plugin.json component paths escape plugin root and copy arbitrary host files during install
GHSA-xhrw-53w4-q6mr
Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte.
GHSA-xhrw-4447-w35f
The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.7, macOS Sequoia 15. Processing a maliciously crafted video file may lead to unexpected app termination.
GHSA-xhrv-87p6-f9gg
A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'email' in '/backend/api/users/searchUserByEmail.php'.
GHSA-xhrv-757w-cxjj
Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request.
GHSA-xhrr-v9w4-p3m4
SQL injection vulnerability in default.asp in EfesTECH Video 5.0 allows remote attackers to execute arbitrary SQL commands via the catID parameter.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-xhv3-vpp2-g34f Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Syed Balkhi Floating Social Bar allows Stored XSS. This issue affects Floating Social Bar: from n/a through 1.1.7. | CVSS3: 5.9 | 0% Низкий | больше 1 года назад | |
GHSA-xhv3-q5hx-88ww Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset and size. | CVSS3: 6.5 | 2% Низкий | около 4 лет назад | |
GHSA-xhv3-q4xx-349r stistigmem-node: quarantine review surface exposes and mutates other tenants' quarantined facts (cross-tenant BOLA) | около 2 месяцев назад | |||
GHSA-xhv3-jg9x-x2jh A faultinfo_content expression language injection remote code execution vulnerability was discovered in HPE Intelligent Management Center (iMC) version(s): Prior to iMC PLAT 7.3 (E0705P07). | 7% Низкий | около 4 лет назад | ||
GHSA-xhv3-f69c-rq49 Information disclosure while decoding this RTP packet headers received by UE from the network when the padding bit is set. | CVSS3: 8.2 | 0% Низкий | 11 месяцев назад | |
GHSA-xhv3-6p64-vccw A use-after-free in Busybox's awk applet leads to denial of service and possibly code execution when processing a crafted awk pattern in the evaluate function | CVSS3: 7.2 | 2% Низкий | около 4 лет назад | |
GHSA-xhv2-m579-hgcc Utilities.php in the miniorange-saml-20-single-sign-on plugin before 4.8.84 for WordPress allows XSS via a crafted SAML XML Response to wp-login.php. This is related to the SAMLResponse and RelayState variables, and the Destination parameter of the samlp:Response XML element. | CVSS3: 6.1 | 1% Низкий | около 4 лет назад | |
GHSA-xhv2-gw9c-73rm In the Linux kernel, the following vulnerability has been resolved: Bluetooth: HCI: Remove HCI_AMP support Since BT_HS has been remove HCI_AMP controllers no longer has any use so remove it along with the capability of creating AMP controllers. Since we no longer need to differentiate between AMP and Primary controllers, as only HCI_PRIMARY is left, this also remove hdev->dev_type altogether. | CVSS3: 5.5 | 0% Низкий | около 2 лет назад | |
GHSA-xhv2-33qj-qmwc Buffer overflow in the ActiveX component (pdf.ocx) for Adobe Acrobat 5.0.5 and Acrobat Reader, and possibly other versions, allows remote attackers to execute arbitrary code via a URI for a PDF file with a null terminator (%00) followed by a long string. | 7% Низкий | больше 4 лет назад | ||
GHSA-xhrx-q868-cx2w The Bilingual Magic Ball (aka com.wBilingualMagicBall) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate. | 0% Низкий | около 4 лет назад | ||
GHSA-xhrx-h7vh-5v4q Missing Authorization vulnerability in Chris Baldelomar Shortcodes allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Shortcodes: from n/a through 3.46. | CVSS3: 4.3 | 1% Низкий | больше 1 года назад | |
GHSA-xhrx-9p3c-7wxw A vulnerability in the IPv4 Software-Defined Access (SD-Access) fabric edge node feature of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause high CPU utilization and stop all traffic processing, resulting in a denial of service (DoS) condition on an affected device. This vulnerability is due to improper handling of certain IPv4 packets. An attacker could exploit this vulnerability by sending certain IPv4 packets to an affected device. A successful exploit could allow the attacker to cause the device to exhaust CPU resources and stop processing traffic, resulting in a DoS condition. | CVSS3: 8.6 | 1% Низкий | больше 2 лет назад | |
GHSA-xhrx-96p4-r9ww A specially crafted IOCTL can be issued to the rzpnk.sys driver in Razer Synapse that can cause an out of bounds read operation to occur due to a field within the IOCTL data being used as a length. | CVSS3: 5.5 | 0% Низкий | около 4 лет назад | |
GHSA-xhrx-7gxr-xjcp The rampart_timestamp_token_validate function in util/rampart_timestamp_token.c in Apache Rampart/C 1.3.0 does not properly calculate the expiration of timestamp tokens, which allows remote attackers to bypass intended access restrictions by leveraging an expired token, a different vulnerability than CVE-2011-0730. | 2% Низкий | около 4 лет назад | ||
GHSA-xhrw-5qxx-jpwr Microsoft APM CLI's plugin.json component paths escape plugin root and copy arbitrary host files during install | CVSS3: 7.1 | 0% Низкий | 3 месяца назад | |
GHSA-xhrw-53w4-q6mr Darwin Streaming Server 5.0.1, and possibly earlier versions, allows remote attackers to cause a denial of service (server crash) via a DESCRIBE request with a location that contains a null byte. | 1% Низкий | больше 4 лет назад | ||
GHSA-xhrw-4447-w35f The issue was addressed with improved memory handling. This issue is fixed in macOS Sonoma 14.7, macOS Sequoia 15. Processing a maliciously crafted video file may lead to unexpected app termination. | CVSS3: 5.5 | 0% Низкий | почти 2 года назад | |
GHSA-xhrv-87p6-f9gg A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'email' in '/backend/api/users/searchUserByEmail.php'. | CVSS3: 7.5 | 0% Низкий | 9 месяцев назад | |
GHSA-xhrv-757w-cxjj Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request. | CVSS3: 5.4 | 1% Низкий | больше 4 лет назад | |
GHSA-xhrr-v9w4-p3m4 SQL injection vulnerability in default.asp in EfesTECH Video 5.0 allows remote attackers to execute arbitrary SQL commands via the catID parameter. | 1% Низкий | больше 4 лет назад |
Уязвимостей на страницу