Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 359 154

Количество 359 154

github логотип

GHSA-xhh6-gv7c-xffj

12 месяцев назад

A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /bill/add_bill.php. Such manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 7.3
EPSS: Низкий
github логотип

GHSA-xhh6-956q-4q69

больше 6 лет назад

Argument injection in a MimeTypeGuesser in Symfony

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhh6-8vwc-47w8

больше 4 лет назад

The php_pgsql_meta_data function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 does not validate token extraction for table names, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted name. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1352.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhh6-6v9x-7wmr

почти 4 года назад

CandidATS version 3.0.0 on 'indexFile' of the 'ajax.php' resource, allows an external attacker to steal the cookie of arbitrary users. This is possible because the application application does not properly validate user input against XSS attacks.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-xhh5-q96h-2g92

больше 4 лет назад

Juniper Junos 10.4 before 10.4S15, 11.4 before 11.4R9, 11.4X27 before 11.4X27.44, 12.1 before 12.1R7, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D15, 12.2 before 12.2R6, 12.3 before 12.3R3, 13.1 before 13.1R3, and 13.2 before 13.2R1, when Proxy ARP is enabled on an unnumbered interface, allows remote attackers to perform ARP poisoning attacks and possibly obtain sensitive information via a crafted ARP message.

CVSS3: 9.3
EPSS: Низкий
github логотип

GHSA-xhh5-7x8q-mcj7

больше 2 лет назад

A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been classified as problematic. This affects an unknown part of the file /admin/vacancy/index.php. The manipulation of the argument view leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257379.

CVSS3: 3.5
EPSS: Низкий
github логотип

GHSA-xhh5-6hj3-x5w2

почти 4 года назад

In vdec fmt, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07342197; Issue ID: ALPS07342197.

CVSS3: 6.7
EPSS: Низкий
github логотип

GHSA-xhh3-4jc8-vw39

больше 4 лет назад

The mintToken function of a smart contract implementation for Thread, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhh2-grh7-5gvp

7 месяцев назад

Blitar Tourism 1.0 contains an authentication bypass vulnerability that allows attackers to bypass login by injecting SQL code through the username parameter. Attackers can manipulate the login request by sending a crafted username with SQL injection techniques to gain unauthorized administrative access.

CVSS3: 8.2
EPSS: Низкий
github логотип

GHSA-xhgx-qvgm-xg3q

больше 2 лет назад

YonBIP v3_23.05 was discovered to contain an arbitrary file read vulnerability via the nc.bs.framework.comn.serv.CommonServletDispatcher component.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xhgx-qjr6-8ff6

больше 4 лет назад

An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.

CVSS3: 7.2
EPSS: Низкий
github логотип

GHSA-xhgx-q9xg-fg3q

около 4 лет назад

An authorization bypass exists in Lenovo XClarity Controller (XCC) versions prior to 3.08 CDI340V, 3.01 TEI392O, 1.71 PSI328N where a valid authenticated user with lesser privileges may be granted read-only access to higher-privileged information if 1) “LDAP Authentication Only with Local Authorization” mode is configured and used by XCC, and 2) a lesser privileged user logs into XCC within 1 minute of a higher privileged user logging out. The authorization bypass does not exist when “Local Authentication and Authorization” or “LDAP Authentication and Authorization” modes are configured and used by XCC.

EPSS: Низкий
github логотип

GHSA-xhgx-hx6p-cqp4

больше 3 лет назад

In btm_create_conn_cancel_complete of btm_sec.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-260568245

CVSS3: 5.5
EPSS: Низкий
github логотип

GHSA-xhgx-g6j2-m588

больше 4 лет назад

A vulnerability in the Forwarding Information Base (FIB) code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, network attacker to cause a denial of service (DoS) condition. The vulnerability is due to a limitation in the way the FIB is internally representing recursive routes. An attacker could exploit this vulnerability by injecting routes into the routing protocol that have a specific recursive pattern. The attacker must be in a position on the network that provides the ability to inject a number of recursive routes with a specific pattern. An exploit could allow the attacker to cause an affected device to reload, creating a DoS condition. Cisco Bug IDs: CSCva91655.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xhgx-7r6h-x8hf

больше 2 лет назад

Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-xhgx-7974-c8v6

больше 2 лет назад

hyavijava stack overflow vulnerability

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xhgx-4832-crrx

2 месяца назад

The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-xhgw-qwwf-pg32

2 месяца назад

A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipulation of the argument offset leads to integer overflow. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The name of the patch is 533dfc82fd228bfadf42ea7180c39de7d9af47fa. A patch should be applied to remediate this issue.

CVSS3: 3.3
EPSS: Низкий
github логотип

GHSA-xhgw-hf2q-c493

почти 2 года назад

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cancel_import() function in all versions up to, and including, 5.61.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to cancel and import or check on the status.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xhgw-9c9f-wj5v

больше 2 лет назад

Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. This XSS vulnerability is in the Download Status Report, which is served by the BigFix Server. 

CVSS3: 7.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xhh6-gv7c-xffj

A security vulnerability has been detected in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /bill/add_bill.php. Such manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used.

CVSS3: 7.3
1%
Низкий
12 месяцев назад
github логотип
GHSA-xhh6-956q-4q69

Argument injection in a MimeTypeGuesser in Symfony

CVSS3: 7.5
2%
Низкий
больше 6 лет назад
github логотип
GHSA-xhh6-8vwc-47w8

The php_pgsql_meta_data function in pgsql.c in the PostgreSQL (aka pgsql) extension in PHP before 5.4.42, 5.5.x before 5.5.26, and 5.6.x before 5.6.10 does not validate token extraction for table names, which might allow remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted name. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-1352.

CVSS3: 7.5
6%
Низкий
больше 4 лет назад
github логотип
GHSA-xhh6-6v9x-7wmr

CandidATS version 3.0.0 on 'indexFile' of the 'ajax.php' resource, allows an external attacker to steal the cookie of arbitrary users. This is possible because the application application does not properly validate user input against XSS attacks.

CVSS3: 6.1
1%
Низкий
почти 4 года назад
github логотип
GHSA-xhh5-q96h-2g92

Juniper Junos 10.4 before 10.4S15, 11.4 before 11.4R9, 11.4X27 before 11.4X27.44, 12.1 before 12.1R7, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D15, 12.2 before 12.2R6, 12.3 before 12.3R3, 13.1 before 13.1R3, and 13.2 before 13.2R1, when Proxy ARP is enabled on an unnumbered interface, allows remote attackers to perform ARP poisoning attacks and possibly obtain sensitive information via a crafted ARP message.

CVSS3: 9.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xhh5-7x8q-mcj7

A vulnerability was found in Campcodes Online Job Finder System 1.0. It has been classified as problematic. This affects an unknown part of the file /admin/vacancy/index.php. The manipulation of the argument view leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-257379.

CVSS3: 3.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xhh5-6hj3-x5w2

In vdec fmt, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS07342197; Issue ID: ALPS07342197.

CVSS3: 6.7
0%
Низкий
почти 4 года назад
github логотип
GHSA-xhh3-4jc8-vw39

The mintToken function of a smart contract implementation for Thread, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xhh2-grh7-5gvp

Blitar Tourism 1.0 contains an authentication bypass vulnerability that allows attackers to bypass login by injecting SQL code through the username parameter. Attackers can manipulate the login request by sending a crafted username with SQL injection techniques to gain unauthorized administrative access.

CVSS3: 8.2
0%
Низкий
7 месяцев назад
github логотип
GHSA-xhgx-qvgm-xg3q

YonBIP v3_23.05 was discovered to contain an arbitrary file read vulnerability via the nc.bs.framework.comn.serv.CommonServletDispatcher component.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xhgx-qjr6-8ff6

An Access Control vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 due to an undocumented backdoor account. A malicious user can log in using the backdor account with admin highest privileges and obtain system control.

CVSS3: 7.2
7%
Низкий
больше 4 лет назад
github логотип
GHSA-xhgx-q9xg-fg3q

An authorization bypass exists in Lenovo XClarity Controller (XCC) versions prior to 3.08 CDI340V, 3.01 TEI392O, 1.71 PSI328N where a valid authenticated user with lesser privileges may be granted read-only access to higher-privileged information if 1) “LDAP Authentication Only with Local Authorization” mode is configured and used by XCC, and 2) a lesser privileged user logs into XCC within 1 minute of a higher privileged user logging out. The authorization bypass does not exist when “Local Authentication and Authorization” or “LDAP Authentication and Authorization” modes are configured and used by XCC.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xhgx-hx6p-cqp4

In btm_create_conn_cancel_complete of btm_sec.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-260568245

CVSS3: 5.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-xhgx-g6j2-m588

A vulnerability in the Forwarding Information Base (FIB) code of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, network attacker to cause a denial of service (DoS) condition. The vulnerability is due to a limitation in the way the FIB is internally representing recursive routes. An attacker could exploit this vulnerability by injecting routes into the routing protocol that have a specific recursive pattern. The attacker must be in a position on the network that provides the ability to inject a number of recursive routes with a specific pattern. An exploit could allow the attacker to cause an affected device to reload, creating a DoS condition. Cisco Bug IDs: CSCva91655.

CVSS3: 5.3
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xhgx-7r6h-x8hf

Vulnerability of improper permission control in the window management module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.

CVSS3: 7.7
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xhgx-7974-c8v6

hyavijava stack overflow vulnerability

CVSS3: 9.8
1%
Низкий
больше 2 лет назад
github логотип
GHSA-xhgx-4832-crrx

The bac-scanresult method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.

CVSS3: 8.1
0%
Низкий
2 месяца назад
github логотип
GHSA-xhgw-qwwf-pg32

A vulnerability has been found in cilium ebpf up to 0.21.0. This affects the function loadRawSpec of the file btf/btf.go of the component LoadCollectionSpec/LoadCollectionSpecFromReader. Such manipulation of the argument offset leads to integer overflow. The attack can only be performed from a local environment. The exploit has been disclosed to the public and may be used. The name of the patch is 533dfc82fd228bfadf42ea7180c39de7d9af47fa. A patch should be applied to remediate this issue.

CVSS3: 3.3
0%
Низкий
2 месяца назад
github логотип
GHSA-xhgw-hf2q-c493

The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cancel_import() function in all versions up to, and including, 5.61.0. This makes it possible for authenticated attackers, with Subscriber-level access and above, to cancel and import or check on the status.

CVSS3: 4.3
0%
Низкий
почти 2 года назад
github логотип
GHSA-xhgw-9c9f-wj5v

Unauthenticated Stored Cross-Site Scripting (XSS) vulnerability. This XSS vulnerability is in the Download Status Report, which is served by the BigFix Server. 

CVSS3: 7.7
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу