Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 26 124

Количество 26 124

msrc логотип

CVE-2025-6141

12 месяцев назад

GNU ncurses parse_entry.c postprocess_termcap stack-based overflow

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2025-6140

около 1 года назад

spdlog pattern_formatter-inl.h scoped_padder resource consumption

CVSS3: 3.3
EPSS: Низкий
msrc логотип

CVE-2025-61145

6 месяцев назад

libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.

EPSS: Низкий
msrc логотип

CVE-2025-61144

6 месяцев назад

libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2025-61143

6 месяцев назад

libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c.

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2025-61107

7 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61106

10 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61105

6 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61104

10 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61103

6 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61102

7 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61101

10 месяцев назад

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61100

10 месяцев назад

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-61099

9 месяцев назад

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2025-60876

8 месяцев назад

BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).

EPSS: Низкий
msrc логотип

CVE-2025-6075

9 месяцев назад

Quadratic complexity in os.path.expandvars() with user-controlled template

EPSS: Низкий
msrc логотип

CVE-2025-60753

6 месяцев назад

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).

CVSS3: 5.5
EPSS: Низкий
msrc логотип

CVE-2025-60728

9 месяцев назад

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 4.3
EPSS: Низкий
msrc логотип

CVE-2025-60727

9 месяцев назад

Microsoft Excel Remote Code Execution Vulnerability

CVSS3: 7.8
EPSS: Низкий
msrc логотип

CVE-2025-60726

9 месяцев назад

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 7.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
msrc логотип
CVE-2025-6141

GNU ncurses parse_entry.c postprocess_termcap stack-based overflow

CVSS3: 3.3
0%
Низкий
12 месяцев назад
msrc логотип
CVE-2025-6140

spdlog pattern_formatter-inl.h scoped_padder resource consumption

CVSS3: 3.3
0%
Низкий
около 1 года назад
msrc логотип
CVE-2025-61145

libtiff up to v4.7.1 was discovered to contain a double free via the component tools/tiffcrop.c.

0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-61144

libtiff up to v4.7.1 was discovered to contain a stack overflow via the readSeparateStripsIntoBuffer function.

CVSS3: 9.8
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-61143

libtiff up to v4.7.1 was discovered to contain a NULL pointer dereference via the component libtiff/tif_open.c.

CVSS3: 5.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-61107

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LSA Update packet.

CVSS3: 7.5
1%
Низкий
7 месяцев назад
msrc логотип
CVE-2025-61106

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_pref_pref_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
1%
Низкий
10 месяцев назад
msrc логотип
CVE-2025-61105

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_link_info function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-61104

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_unknown_tlv function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
1%
Низкий
10 месяцев назад
msrc логотип
CVE-2025-61103

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_lan_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
1%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-61102

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_adj_sid function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
7 месяцев назад
msrc логотип
CVE-2025-61101

FRRouting/frr from v4.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the show_vty_ext_link_rmt_itf_addr function at ospf_ext.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted OSPF packet.

CVSS3: 7.5
0%
Низкий
10 месяцев назад
msrc логотип
CVE-2025-61100

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the ospf_opaque_lsa_dump function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) under specific malformed LSA conditions.

CVSS3: 7.5
0%
Низкий
10 месяцев назад
msrc логотип
CVE-2025-61099

FRRouting/frr from v2.0 through v10.4.1 was discovered to contain a NULL pointer dereference via the opaque_info_detail function at ospf_opaque.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted LS Update packet.

CVSS3: 7.5
0%
Низкий
9 месяцев назад
msrc логотип
CVE-2025-60876

BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) and other C0 control bytes in the HTTP request-target (path/query), allowing the request line to be split and attacker-controlled headers to be injected. To preserve the HTTP/1.1 request-line shape METHOD SP request-target SP HTTP/1.1, a raw space (0x20) in the request-target must also be rejected (clients should use %20).

0%
Низкий
8 месяцев назад
msrc логотип
CVE-2025-6075

Quadratic complexity in os.path.expandvars() with user-controlled template

0%
Низкий
9 месяцев назад
msrc логотип
CVE-2025-60753

An issue was discovered in libarchive bsdtar before version 3.8.1 in function apply_substitution in file tar/subst.c when processing crafted -s substitution rules. This can cause unbounded memory allocation and lead to denial of service (Out-of-Memory crash).

CVSS3: 5.5
0%
Низкий
6 месяцев назад
msrc логотип
CVE-2025-60728

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 4.3
1%
Низкий
9 месяцев назад
msrc логотип
CVE-2025-60727

Microsoft Excel Remote Code Execution Vulnerability

CVSS3: 7.8
1%
Низкий
9 месяцев назад
msrc логотип
CVE-2025-60726

Microsoft Excel Information Disclosure Vulnerability

CVSS3: 7.1
1%
Низкий
9 месяцев назад

Уязвимостей на страницу