Количество 359 154
Количество 359 154
GHSA-xhq3-46hw-hr5h
WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port.
GHSA-xhq3-455r-xv44
Moodle SQL injection via user preferences
GHSA-xhq2-rm43-2hrp
In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
GHSA-xhq2-qpwv-fp33
Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in SonicWall GMS and Analytics allows an authenticated remote attacker to traverse the directory and extract arbitrary files using Zip Slip method to any location on the underlying filesystem with root privileges. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions.
GHSA-xhpx-f3qp-rwvq
The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->sctpParams->e2tCounters[IN_SUCC][MSG_COUNTER][ProcedureCode_id_RICsubscription]->Increment().
GHSA-xhpw-qr8c-jfj2
The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some places, which could allow attackers to make logged in admin users delete users via CSRF attacks
GHSA-xhpv-xmqr-mf62
Deserialization of Untrusted Data vulnerability in MotoPress Timetable and Event Schedule allows Object Injection.This issue affects Timetable and Event Schedule: from n/a through 2.4.13.
GHSA-xhpv-hc6g-r9c6
Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial
GHSA-xhpv-gh4w-v5jf
GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash.
GHSA-xhpr-rjf3-gg6p
There exists an arbitrary memory read within the Linux Kernel BPF - Constants provided to fill pointers in structs passed in to bpf_sys_bpf are not verified and can point anywhere, including memory not owned by BPF. An attacker with CAP_BPF can arbitrarily read memory from anywhere on the system. We recommend upgrading past commit 86f44fcec22c
GHSA-xhpr-rcx8-q343
Hrsale 2.0.0 allows download?type=files&filename=../ directory traversal to read arbitrary files.
GHSA-xhpr-465j-7p9q
Keycloak phishing attack via email verification step in first login flow
GHSA-xhpq-8p2q-qgm6
The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin, version 1.5.3, is vulnerable to Post-Authenticated SQL Injection via multiple JSON parameters in the /wp-json/burst/v1/data/compare endpoint. Affected parameters include 'browser', 'device', 'page_id', 'page_url', 'platform', and 'referrer'. This vulnerability arises due to insufficient escaping of user-supplied parameters and the lack of adequate preparation in SQL queries. As a result, authenticated attackers with editor access or higher can append additional SQL queries into existing ones, potentially leading to unauthorized access to sensitive information from the database.
GHSA-xhpp-qjw5-78w2
Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2.
GHSA-xhpp-8gq6-3hf5
NLnet Labs’ Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects. This is due to insufficient input checking in the bcder library covered by CVE-2023-39914.
GHSA-xhpp-7jwj-prh5
Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions.
GHSA-xhpp-7ccj-w96g
In SmsController, there is a possible information disclosure due to a permissions bypass. This could lead to local escalation of privilege and sending sms with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-195311502
GHSA-xhpp-2hqr-g6hp
Use after free in GFX in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)
GHSA-xhpm-r2g2-c7vg
Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587.
GHSA-xhpm-f58r-37px
On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-xhq3-46hw-hr5h WircSrv IRC Server 5.07s allows remote attackers to cause a denial of service via a long string to the server port. | 3% Низкий | больше 4 лет назад | ||
GHSA-xhq3-455r-xv44 Moodle SQL injection via user preferences | CVSS3: 9.8 | 15% Средний | около 4 лет назад | |
GHSA-xhq2-rm43-2hrp In multiple locations, there is a possible way to trick a user into accepting a permission due to a tapjacking/overlay attack. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | CVSS3: 7.8 | 0% Низкий | 8 месяцев назад | |
GHSA-xhq2-qpwv-fp33 Improper limitation of a pathname to a restricted directory ('Path Traversal') vulnerability in SonicWall GMS and Analytics allows an authenticated remote attacker to traverse the directory and extract arbitrary files using Zip Slip method to any location on the underlying filesystem with root privileges. This issue affects GMS: 9.3.2-SP1 and earlier versions; Analytics: 2.5.0.4-R7 and earlier versions. | CVSS3: 8.8 | 41% Средний | около 3 лет назад | |
GHSA-xhpx-f3qp-rwvq The O-RAN E2T I-Release Prometheus metric Increment function can crash in sctpThread.cpp for message.peerInfo->sctpParams->e2tCounters[IN_SUCC][MSG_COUNTER][ProcedureCode_id_RICsubscription]->Increment(). | CVSS3: 7.5 | 1% Низкий | больше 2 лет назад | |
GHSA-xhpw-qr8c-jfj2 The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some places, which could allow attackers to make logged in admin users delete users via CSRF attacks | CVSS3: 6.5 | 0% Низкий | около 2 лет назад | |
GHSA-xhpv-xmqr-mf62 Deserialization of Untrusted Data vulnerability in MotoPress Timetable and Event Schedule allows Object Injection.This issue affects Timetable and Event Schedule: from n/a through 2.4.13. | CVSS3: 5.5 | 0% Низкий | около 2 лет назад | |
GHSA-xhpv-hc6g-r9c6 Handlebars.js has JavaScript Injection via AST Type Confusion when passing an object as dynamic partial | CVSS3: 8.1 | 1% Низкий | 5 месяцев назад | |
GHSA-xhpv-gh4w-v5jf GIMP 2.10.30 and 2.99.10 are vulnerable to Buffer Overflow. Through a crafted XCF file, the program will allocate for a huge amount of memory, resulting in insufficient memory or program crash. | CVSS3: 5.5 | 1% Низкий | около 4 лет назад | |
GHSA-xhpr-rjf3-gg6p There exists an arbitrary memory read within the Linux Kernel BPF - Constants provided to fill pointers in structs passed in to bpf_sys_bpf are not verified and can point anywhere, including memory not owned by BPF. An attacker with CAP_BPF can arbitrarily read memory from anywhere on the system. We recommend upgrading past commit 86f44fcec22c | CVSS3: 5.5 | 0% Низкий | почти 4 года назад | |
GHSA-xhpr-rcx8-q343 Hrsale 2.0.0 allows download?type=files&filename=../ directory traversal to read arbitrary files. | 3% Низкий | около 4 лет назад | ||
GHSA-xhpr-465j-7p9q Keycloak phishing attack via email verification step in first login flow | CVSS3: 5.4 | 0% Низкий | около 1 года назад | |
GHSA-xhpq-8p2q-qgm6 The Burst Statistics – Privacy-Friendly Analytics for WordPress plugin, version 1.5.3, is vulnerable to Post-Authenticated SQL Injection via multiple JSON parameters in the /wp-json/burst/v1/data/compare endpoint. Affected parameters include 'browser', 'device', 'page_id', 'page_url', 'platform', and 'referrer'. This vulnerability arises due to insufficient escaping of user-supplied parameters and the lack of adequate preparation in SQL queries. As a result, authenticated attackers with editor access or higher can append additional SQL queries into existing ones, potentially leading to unauthorized access to sensitive information from the database. | CVSS3: 7.2 | 1% Низкий | больше 2 лет назад | |
GHSA-xhpp-qjw5-78w2 Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2. | CVSS3: 4.3 | 0% Низкий | больше 1 года назад | |
GHSA-xhpp-8gq6-3hf5 NLnet Labs’ Routinator up to and including version 0.12.1 may crash when trying to parse certain malformed RPKI objects. This is due to insufficient input checking in the bcder library covered by CVE-2023-39914. | CVSS3: 7.5 | 1% Низкий | почти 3 года назад | |
GHSA-xhpp-7jwj-prh5 Unauthenticated Broken Access Control in Contact Form by WPForms <= 1.10.0.4 versions. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад | |
GHSA-xhpp-7ccj-w96g In SmsController, there is a possible information disclosure due to a permissions bypass. This could lead to local escalation of privilege and sending sms with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-12LAndroid ID: A-195311502 | CVSS3: 7.8 | 0% Низкий | больше 4 лет назад | |
GHSA-xhpp-2hqr-g6hp Use after free in GFX in Google Chrome on Mac prior to 150.0.7871.47 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High) | CVSS3: 8.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-xhpm-r2g2-c7vg Unspecified vulnerability in the arclib component in the Anti-Virus engine in CA Anti-Virus for the Enterprise (formerly eTrust Antivirus) 7.1 through r8.1; Anti-Virus 2007 (v8) through 2009; eTrust EZ Antivirus r7.1; Internet Security Suite 2007 (v3) through Plus 2009; and other CA products allows remote attackers to cause a denial of service via a crafted RAR archive file that triggers stack corruption, a different vulnerability than CVE-2009-3587. | 2% Низкий | больше 4 лет назад | ||
GHSA-xhpm-f58r-37px On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer. | CVSS3: 7.5 | 0% Низкий | 2 месяца назад |
Уязвимостей на страницу