Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 353 883

Количество 353 883

github логотип

GHSA-xx3m-f593-wg64

около 4 лет назад

time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.

EPSS: Низкий
github логотип

GHSA-xx3m-cmqv-q6w6

около 4 лет назад

An issue was discovered on Athom Homey and Homey Pro devices before 5.0.0. ZigBee hub devices should generate a unique Standard Network Key that is then exchanged with all enrolled devices so that all inter-device communication is encrypted. However, the cited Athom products use another widely known key that is designed for testing purposes: "01030507090b0d0f00020406080a0c0d" (the decimal equivalent of 1 3 5 7 9 11 13 15 0 2 4 6 8 10 12 13), which is human generated and static across all issued devices.

EPSS: Низкий
github логотип

GHSA-xx3m-8628-m9w5

около 4 лет назад

In Poppler 0.59.0, a floating point exception occurs in the ImageStream class in Stream.cc, which may lead to a potential attack when handling malicious PDF files.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xx3m-2jcf-frfq

больше 2 лет назад

IBM Content Navigator 3.0.13 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 259247.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-xx3j-5qgj-ppv5

около 2 лет назад

Memory corruption when allocating and accessing an entry in an SMEM partition.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xx3h-j3cx-8qfj

около 7 лет назад

Insufficient Entropy in DotNetNuke

CVSS3: 7.5
EPSS: Средний
github логотип

GHSA-xx3h-9xgv-2q4v

около 4 лет назад

Directory traversal vulnerability in the modURL function in instance.c in Weborf before 0.12.3 allows remote attackers to read arbitrary files via ..%2f sequences in a URI.

EPSS: Низкий
github логотип

GHSA-xx3g-v5fx-v7w6

больше 2 лет назад

launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this vulnerability will affect availability.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xx3g-89q2-w8hh

больше 4 лет назад

Cross-site scripting (XSS) vulnerability in the search functionality in Simon Brown Pebble 2.0.0 RC1 and RC2 allows remote attackers to inject arbitrary web script or HTML via the query string.

EPSS: Низкий
github логотип

GHSA-xx3f-8qwx-w9mh

около 4 лет назад

The (1) av-centerd SOAP service and (2) backup command in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to execute arbitrary commands via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-xx3f-44rh-4g76

почти 2 года назад

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.13489 on Windows allows an attacker to load an arbitrary Windows library. The patch released in version 12.2.0.16909 to mitigate CVE-2024-7262 was not restrictive enough. Another hyperlink parameter was not properly sanitized which leads to the execution of an arbitrary Windows library.

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-xx3f-437p-fp69

7 месяцев назад

A vulnerability was found in D-Link DI-7400G+ 19.12.25A1. This affects an unknown function of the file /msp_info.htm?flag=cmd. The manipulation of the argument cmd results in command injection. The attack can be launched remotely. The exploit has been made public and could be used.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xx3c-ww24-2pgq

больше 4 лет назад

Template injection (Improper Neutralization of Special Elements Used in a Template Engine) vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.75, Ver.2.9.x series versions prior to Ver.2.9.40, Ver.2.10.x series versions prior to Ver.2.10.44, Ver.2.11.x series versions prior to Ver.2.11.42, and Ver.3.0.x series versions prior to Ver.3.0.1 allows a remote authenticated attacker to obtain an arbitrary file on the server via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-xx3c-qf5g-hc39

2 месяца назад

Symfony has an Argument Injection in SendmailTransport via Dash-Prefixed Recipient Address

EPSS: Низкий
github логотип

GHSA-xx3c-6h6w-w5rg

около 4 лет назад

JWT.php in F21 JWT before 2.0 allows remote attackers to bypass signature verification via crafted tokens.

EPSS: Низкий
github логотип

GHSA-xx3c-35rv-h773

около 4 лет назад

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.

EPSS: Низкий
github логотип

GHSA-xx38-qpxm-6j8x

около 4 лет назад

IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux, Solaris, and HP-UX, when a Local OS registry is used, does not properly validate user accounts, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

EPSS: Низкий
github логотип

GHSA-xx38-8wp6-c2jw

около 4 лет назад

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted web content may lead to arbitrary code execution.

EPSS: Низкий
github логотип

GHSA-xx38-25wr-hmh9

около 2 месяцев назад

Subscriber Broken Access Control in Bookify <= 1.1.1 versions.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-xx36-85fv-r3w7

больше 4 лет назад

The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xx3m-f593-wg64

time.htm in the web interface on SerVision HVG Video Gateway devices with firmware through 2.2.26a100 allows remote authenticated users to gain privileges by leveraging a cookie received in an HTTP response, a different vulnerability than CVE-2015-0929 and CVE-2015-0930.

2%
Низкий
около 4 лет назад
github логотип
GHSA-xx3m-cmqv-q6w6

An issue was discovered on Athom Homey and Homey Pro devices before 5.0.0. ZigBee hub devices should generate a unique Standard Network Key that is then exchanged with all enrolled devices so that all inter-device communication is encrypted. However, the cited Athom products use another widely known key that is designed for testing purposes: "01030507090b0d0f00020406080a0c0d" (the decimal equivalent of 1 3 5 7 9 11 13 15 0 2 4 6 8 10 12 13), which is human generated and static across all issued devices.

1%
Низкий
около 4 лет назад
github логотип
GHSA-xx3m-8628-m9w5

In Poppler 0.59.0, a floating point exception occurs in the ImageStream class in Stream.cc, which may lead to a potential attack when handling malicious PDF files.

CVSS3: 7.8
1%
Низкий
около 4 лет назад
github логотип
GHSA-xx3m-2jcf-frfq

IBM Content Navigator 3.0.13 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks. IBM X-Force ID: 259247.

CVSS3: 5.4
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xx3j-5qgj-ppv5

Memory corruption when allocating and accessing an entry in an SMEM partition.

CVSS3: 7.8
0%
Низкий
около 2 лет назад
github логотип
GHSA-xx3h-j3cx-8qfj

Insufficient Entropy in DotNetNuke

CVSS3: 7.5
54%
Средний
около 7 лет назад
github логотип
GHSA-xx3h-9xgv-2q4v

Directory traversal vulnerability in the modURL function in instance.c in Weborf before 0.12.3 allows remote attackers to read arbitrary files via ..%2f sequences in a URI.

9%
Низкий
около 4 лет назад
github логотип
GHSA-xx3g-v5fx-v7w6

launchAnyWhere vulnerability in the ActivityManagerService module. Successful exploitation of this vulnerability will affect availability.

CVSS3: 7.5
0%
Низкий
больше 2 лет назад
github логотип
GHSA-xx3g-89q2-w8hh

Cross-site scripting (XSS) vulnerability in the search functionality in Simon Brown Pebble 2.0.0 RC1 and RC2 allows remote attackers to inject arbitrary web script or HTML via the query string.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xx3f-8qwx-w9mh

The (1) av-centerd SOAP service and (2) backup command in the ossim-framework service in AlienVault OSSIM before 4.6.0 allows remote attackers to execute arbitrary commands via unspecified vectors.

4%
Низкий
около 4 лет назад
github логотип
GHSA-xx3f-44rh-4g76

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.13489 on Windows allows an attacker to load an arbitrary Windows library. The patch released in version 12.2.0.16909 to mitigate CVE-2024-7262 was not restrictive enough. Another hyperlink parameter was not properly sanitized which leads to the execution of an arbitrary Windows library.

CVSS3: 7.8
0%
Низкий
почти 2 года назад
github логотип
GHSA-xx3f-437p-fp69

A vulnerability was found in D-Link DI-7400G+ 19.12.25A1. This affects an unknown function of the file /msp_info.htm?flag=cmd. The manipulation of the argument cmd results in command injection. The attack can be launched remotely. The exploit has been made public and could be used.

CVSS3: 6.3
4%
Низкий
7 месяцев назад
github логотип
GHSA-xx3c-ww24-2pgq

Template injection (Improper Neutralization of Special Elements Used in a Template Engine) vulnerability in a-blog cms Ver.2.8.x series versions prior to Ver.2.8.75, Ver.2.9.x series versions prior to Ver.2.9.40, Ver.2.10.x series versions prior to Ver.2.10.44, Ver.2.11.x series versions prior to Ver.2.11.42, and Ver.3.0.x series versions prior to Ver.3.0.1 allows a remote authenticated attacker to obtain an arbitrary file on the server via unspecified vectors.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xx3c-qf5g-hc39

Symfony has an Argument Injection in SendmailTransport via Dash-Prefixed Recipient Address

0%
Низкий
2 месяца назад
github логотип
GHSA-xx3c-6h6w-w5rg

JWT.php in F21 JWT before 2.0 allows remote attackers to bypass signature verification via crafted tokens.

4%
Низкий
около 4 лет назад
github логотип
GHSA-xx3c-35rv-h773

The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet flood.

6%
Низкий
около 4 лет назад
github логотип
GHSA-xx38-qpxm-6j8x

IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux, Solaris, and HP-UX, when a Local OS registry is used, does not properly validate user accounts, which allows remote attackers to bypass intended access restrictions via unspecified vectors.

3%
Низкий
около 4 лет назад
github логотип
GHSA-xx38-8wp6-c2jw

Multiple memory corruption issues were addressed with improved memory handling. This issue is fixed in iOS 13.3.1 and iPadOS 13.3.1, tvOS 13.3.1, Safari 13.0.5, iTunes for Windows 12.10.4, iCloud for Windows 11.0, iCloud for Windows 7.17. Processing maliciously crafted web content may lead to arbitrary code execution.

2%
Низкий
около 4 лет назад
github логотип
GHSA-xx38-25wr-hmh9

Subscriber Broken Access Control in Bookify <= 1.1.1 versions.

CVSS3: 6.5
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-xx36-85fv-r3w7

The dhcp.client program for QNX 4.25 vmware is setuid, possibly by default, which allows local users to modify the NIC configuration and conduct other attacks.

0%
Низкий
больше 4 лет назад

Уязвимостей на страницу