Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 359 154

Количество 359 154

github логотип

GHSA-xhq3-46hw-hr5h

больше 4 лет назад

WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port.

EPSS: Низкий
github логотип

GHSA-xhq3-455r-xv44

около 4 лет назад

Moodle SQL injection via user preferences

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-xhq2-rm43-2hrp

8 месяцев назад

In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xhq2-qpwv-fp33

около 3 лет назад

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in SonicWall GMS and Analytics allows an authenticated remote attacker to traverse the directory and extract arbitrary files using Zip Slip method to any location on the underlying filesystem with root privileges. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-xhpx-f3qp-rwvq

больше 2 лет назад

The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->sctpParams->e2tCounters[IN_SUCC][MSG_COUNTER][ProcedureCode_id_RICsubscription]->Increment().

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhpw-qr8c-jfj2

около 2 лет назад

The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some places, which could allow attackers to make logged in admin users delete users via CSRF attacks

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xhpv-xmqr-mf62

около 2 лет назад

Deserialization of Untrusted Data vulnerability in MotoPress Timetable and Event Schedule allows Object Injection.This issue affects Timetable and Event Schedule: from n/a through 2.4.13.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhpv-hc6g-r9c6

5 месяцев назад

Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xhpv-gh4w-v5jf

около 4 лет назад

GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash.

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhpr-rjf3-gg6p

почти 4 года назад

There exists an arbitrary memory read within the Linux Kernel BPF - Constants provided to fill pointers in structs passed in to bpf_sys_bpf are not verified and can point anywhere, including memory not owned by BPF. An attacker with CAP_BPF can arbitrarily read memory from anywhere on the system. We recommend upgrading past commit 86f44fcec22c

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhpr-rcx8-q343

около 4 лет назад

Hrsale 2.0.0 allows download?type=files&filename=../ directory traversal to read arbitrary files.

EPSS: Низкий
github логотип

GHSA-xhpr-465j-7p9q

около 1 года назад

Keycloak phishing attack via email verification step in first login flow

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xhpq-8p2q-qgm6

больше 2 лет назад

The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin, version 1.5.3, is vulnerable to Post-Authenticated SQL Injection via multiple JSON parameters in the /wp-json/burst/v1/data/compare endpoint. Affected parameters include 'browser', 'device', 'page_id', 'page_url', 'platform', and 'referrer'. This vulnerability arises due to insufficient escaping of user-supplied parameters and the lack of adequate preparation in SQL queries. As a result, authenticated attackers with editor access or higher can append additional SQL queries into existing ones, potentially leading to unauthorized access to sensitive information from the database.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xhpp-qjw5-78w2

больше 1 года назад

Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xhpp-8gq6-3hf5

почти 3 года назад

NLnet Labs’ Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects. This is due to insufficient input checking in the bcder library covered by CVE-2023-39914.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhpp-7jwj-prh5

2 месяца назад

Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhpp-7ccj-w96g

больше 4 лет назад

In SmsController, there is a possible information disclosure due to a permissions bypass. This could lead to local escalation of privilege and sending sms with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-195311502

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xhpp-2hqr-g6hp

около 2 месяцев назад

Use after free in GFX in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-xhpm-r2g2-c7vg

больше 4 лет назад

Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587.

EPSS: Низкий
github логотип

GHSA-xhpm-f58r-37px

2 месяца назад

On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xhq3-46hw-hr5h

WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-xhq3-455r-xv44

Moodle SQL injection via user preferences

CVSS3: 9.8
15%
Средний
около 4 лет назад
github логотип
GHSA-xhq2-rm43-2hrp

In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 7.8
0%
Низкий
8 месяцев назад
github логотип
GHSA-xhq2-qpwv-fp33

Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in SonicWall GMS and Analytics allows an authenticated remote attacker to traverse the directory and extract arbitrary files using Zip Slip method to any location on the underlying filesystem with root privileges. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.

CVSS3: 8.8
41%
Средний
около 3 лет назад
github логотип
GHSA-xhpx-f3qp-rwvq

The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->sctpParams->e2tCounters[IN_SUCC][MSG_COUNTER][ProcedureCode_id_RICsubscription]->Increment().

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xhpw-qr8c-jfj2

The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some places, which could allow attackers to make logged in admin users delete users via CSRF attacks

CVSS3: 6.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xhpv-xmqr-mf62

Deserialization of Untrusted Data vulnerability in MotoPress Timetable and Event Schedule allows Object Injection.This issue affects Timetable and Event Schedule: from n/a through 2.4.13.

CVSS3: 5.5
0%
Низкий
около 2 лет назад
github логотип
GHSA-xhpv-hc6g-r9c6

Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial

CVSS3: 8.1
1%
Низкий
5 месяцев назад
github логотип
GHSA-xhpv-gh4w-v5jf

GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash.

CVSS3: 5.5
1%
Низкий
около 4 лет назад
github логотип
GHSA-xhpr-rjf3-gg6p

There exists an arbitrary memory read within the Linux Kernel BPF - Constants provided to fill pointers in structs passed in to bpf_sys_bpf are not verified and can point anywhere, including memory not owned by BPF. An attacker with CAP_BPF can arbitrarily read memory from anywhere on the system. We recommend upgrading past commit 86f44fcec22c

CVSS3: 5.5
0%
Низкий
почти 4 года назад
github логотип
GHSA-xhpr-rcx8-q343

Hrsale 2.0.0 allows download?type=files&filename=../ directory traversal to read arbitrary files.

3%
Низкий
около 4 лет назад
github логотип
GHSA-xhpr-465j-7p9q

Keycloak phishing attack via email verification step in first login flow

CVSS3: 5.4
0%
Низкий
около 1 года назад
github логотип
GHSA-xhpq-8p2q-qgm6

The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin, version 1.5.3, is vulnerable to Post-Authenticated SQL Injection via multiple JSON parameters in the /wp-json/burst/v1/data/compare endpoint. Affected parameters include 'browser', 'device', 'page_id', 'page_url', 'platform', and 'referrer'. This vulnerability arises due to insufficient escaping of user-supplied parameters and the lack of adequate preparation in SQL queries. As a result, authenticated attackers with editor access or higher can append additional SQL queries into existing ones, potentially leading to unauthorized access to sensitive information from the database.

CVSS3: 7.2
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xhpp-qjw5-78w2

Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-xhpp-8gq6-3hf5

NLnet Labs’ Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects. This is due to insufficient input checking in the bcder library covered by CVE-2023-39914.

CVSS3: 7.5
1%
Низкий
почти 3 года назад
github логотип
GHSA-xhpp-7jwj-prh5

Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions.

CVSS3: 7.5
0%
Низкий
2 месяца назад
github логотип
GHSA-xhpp-7ccj-w96g

In SmsController, there is a possible information disclosure due to a permissions bypass. This could lead to local escalation of privilege and sending sms with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-195311502

CVSS3: 7.8
0%
Низкий
больше 4 лет назад
github логотип
GHSA-xhpp-2hqr-g6hp

Use after free in GFX in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xhpm-r2g2-c7vg

Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xhpm-f58r-37px

On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer.

CVSS3: 7.5
0%
Низкий
2 месяца назад

Уязвимостей на страницу