Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 361 446

Количество 361 446

github логотип

GHSA-xg58-pq9h-2xc7

почти 3 года назад

EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared static SSH host keys for all installations. This vulnerability could allow an attacker to spoof the SSH host signature and thereby masquerade as a legitimate Orchestrator host.

CVSS3: 7.4
EPSS: Низкий
github логотип

GHSA-xg58-pjf6-w895

почти 3 года назад

A race condition was addressed with improved state handling. This issue is fixed in macOS Ventura 13.5. An app may be able to execute arbitrary code with kernel privileges.

CVSS3: 7
EPSS: Низкий
github логотип

GHSA-xg58-j2w4-mjfm

около 4 лет назад

Buffer overflow in the C12.22 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xg58-75qf-9r67

больше 1 года назад

Cilium's Layer 7 policy enforcement may not occur in policies with wildcarded port ranges

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-xg57-xmq9-gj9x

больше 4 лет назад

Integer signedness error in the get_type_length function in epan/dissectors/packet-btsdp.c in the Bluetooth SDP dissector in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 allows remote attackers to cause a denial of service (loop and CPU consumption) via a crafted packet.

EPSS: Низкий
github логотип

GHSA-xg56-wphw-5jwj

больше 4 лет назад

ircp_io.c in libopenobex for ircp 1.2, when ircp is run with the -r option, does not prompt the user when overwriting files, which allows user-assisted remote attackers to overwrite dangerous files via an arbitrary destination file name in an OBEX File Transfer session.

EPSS: Низкий
github логотип

GHSA-xg56-w2gw-94vg

больше 3 лет назад

On version 14.1.x before 14.1.5.3, and all versions of 13.1.x, when the BIG-IP APM system is configured with all the following elements, undisclosed requests may cause the Traffic Management Microkernel (TMM) to terminate: * An OAuth Server that references an OAuth Provider * An OAuth profile with the Authorization Endpoint set to '/' * An access profile that references the above OAuth profile and is associated with an HTTPS virtual server Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xg55-jq33-cf6c

больше 4 лет назад

An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xg55-gx79-h9h6

около 3 лет назад

The PWA for WP & AMP plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the pwaforwp_update_features_options function in versions up to, and including, 1.7.32. This makes it possible for authenticated attackers to change the otherwise restricted settings within the plugin.

CVSS3: 6.3
EPSS: Низкий
github логотип

GHSA-xg54-xmx7-gch7

больше 4 лет назад

PHP remote file inclusion vulnerability in index.php in ArticleBeach Script 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.

EPSS: Низкий
github логотип

GHSA-xg54-3m24-j48q

больше 4 лет назад

The Text Hover WordPress plugin before 4.2 does not sanitize and escape the text to hover, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVSS3: 4.8
EPSS: Низкий
github логотип

GHSA-xg53-rgc9-jmqc

больше 1 года назад

Cross-Site Request Forgery (CSRF) vulnerability in takien Rewrite allows Cross Site Request Forgery. This issue affects Rewrite: from n/a through 0.2.1.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-xg53-mhh9-3cq7

около 1 года назад

The Backup Plus extension for TYPO3 (ns_backup) allows XSS

EPSS: Низкий
github логотип

GHSA-xg53-f74r-6v3r

больше 4 лет назад

Metadata Anonymisation Toolkit (MAT) 0.6 and 0.6.1 silently fails to perform "Clean metadata" actions upon invocation from the Nautilus contextual menu, which allows context-dependent attackers to obtain sensitive information by reading a file for which cleaning had been attempted.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xg53-7pj5-ccgw

около 4 лет назад

RICON Industrial Cellular Router S9922L 16.10.3(3794) is affected by cleartext storage of sensitive information and sends username and password as base64.

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-xg52-wr75-9hc5

больше 4 лет назад

Mozilla Firefox before 1.5.0.7 and SeaMonkey before 1.0.5 allows remote attackers to bypass the security model and inject content into the sub-frame of another site via targetWindow.frames[n].document.open(), which facilitates spoofing and other attacks.

EPSS: Низкий
github логотип

GHSA-xg52-rc56-qm35

7 месяцев назад

Stored Cross-Site Scripting (XSS) vulnerability in WorkDo's HRMGo, consisting of a lack of proper validation of user input by sending a POST request to ‘/hrmgo/ticket/changereply’, using the ‘description’ parameter.

EPSS: Низкий
github логотип

GHSA-xg52-pgjm-f8fw

больше 4 лет назад

MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 does not properly handle when the Zend interpreter xml_parse function does not expand entities, which allows remote attackers to inject arbitrary web script or HTML via a crafted SVG file.

EPSS: Низкий
github логотип

GHSA-xg52-54c7-pvc7

больше 3 лет назад

Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module. An unauthenticated attacker could successfully perform an attack to extract potentially sensitive information from the database if the survey id exists.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-xg4x-xhfv-p56h

около 4 лет назад

The login page in Telmat AccessLog <= 6.0 (TAL_20180415) allows an attacker to get root shell access via Unauthenticated code injection over the network.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-xg58-pq9h-2xc7

EdgeConnect SD-WAN Orchestrator instances prior to the versions resolved in this advisory were found to have shared static SSH host keys for all installations. This vulnerability could allow an attacker to spoof the SSH host signature and thereby masquerade as a legitimate Orchestrator host.

CVSS3: 7.4
0%
Низкий
почти 3 года назад
github логотип
GHSA-xg58-pjf6-w895

A race condition was addressed with improved state handling. This issue is fixed in macOS Ventura 13.5. An app may be able to execute arbitrary code with kernel privileges.

CVSS3: 7
0%
Низкий
почти 3 года назад
github логотип
GHSA-xg58-j2w4-mjfm

Buffer overflow in the C12.22 dissector in Wireshark 3.4.0 to 3.4.9 and 3.2.0 to 3.2.17 allows denial of service via packet injection or crafted capture file

CVSS3: 7.5
5%
Низкий
около 4 лет назад
github логотип
GHSA-xg58-75qf-9r67

Cilium's Layer 7 policy enforcement may not occur in policies with wildcarded port ranges

CVSS3: 5.8
1%
Низкий
больше 1 года назад
github логотип
GHSA-xg57-xmq9-gj9x

Integer signedness error in the get_type_length function in epan/dissectors/packet-btsdp.c in the Bluetooth SDP dissector in Wireshark 1.8.x before 1.8.9 and 1.10.x before 1.10.1 allows remote attackers to cause a denial of service (loop and CPU consumption) via a crafted packet.

4%
Низкий
больше 4 лет назад
github логотип
GHSA-xg56-wphw-5jwj

ircp_io.c in libopenobex for ircp 1.2, when ircp is run with the -r option, does not prompt the user when overwriting files, which allows user-assisted remote attackers to overwrite dangerous files via an arbitrary destination file name in an OBEX File Transfer session.

1%
Низкий
больше 4 лет назад
github логотип
GHSA-xg56-w2gw-94vg

On version 14.1.x before 14.1.5.3, and all versions of 13.1.x, when the BIG-IP APM system is configured with all the following elements, undisclosed requests may cause the Traffic Management Microkernel (TMM) to terminate: * An OAuth Server that references an OAuth Provider * An OAuth profile with the Authorization Endpoint set to '/' * An access profile that references the above OAuth profile and is associated with an HTTPS virtual server Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xg55-jq33-cf6c

An issue was discovered in ytnef before 1.9.2. There is a potential out-of-bounds access with fields of Size 0 in TNEFParse() in libytnef.

CVSS3: 7.5
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xg55-gx79-h9h6

The PWA for WP & AMP plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on the pwaforwp_update_features_options function in versions up to, and including, 1.7.32. This makes it possible for authenticated attackers to change the otherwise restricted settings within the plugin.

CVSS3: 6.3
1%
Низкий
около 3 лет назад
github логотип
GHSA-xg54-xmx7-gch7

PHP remote file inclusion vulnerability in index.php in ArticleBeach Script 2.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.

3%
Низкий
больше 4 лет назад
github логотип
GHSA-xg54-3m24-j48q

The Text Hover WordPress plugin before 4.2 does not sanitize and escape the text to hover, which could allow high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVSS3: 4.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-xg53-rgc9-jmqc

Cross-Site Request Forgery (CSRF) vulnerability in takien Rewrite allows Cross Site Request Forgery. This issue affects Rewrite: from n/a through 0.2.1.

CVSS3: 4.3
0%
Низкий
больше 1 года назад
github логотип
GHSA-xg53-mhh9-3cq7

The Backup Plus extension for TYPO3 (ns_backup) allows XSS

0%
Низкий
около 1 года назад
github логотип
GHSA-xg53-f74r-6v3r

Metadata Anonymisation Toolkit (MAT) 0.6 and 0.6.1 silently fails to perform "Clean metadata" actions upon invocation from the Nautilus contextual menu, which allows context-dependent attackers to obtain sensitive information by reading a file for which cleaning had been attempted.

CVSS3: 7.5
2%
Низкий
больше 4 лет назад
github логотип
GHSA-xg53-7pj5-ccgw

RICON Industrial Cellular Router S9922L 16.10.3(3794) is affected by cleartext storage of sensitive information and sends username and password as base64.

CVSS3: 5.3
1%
Низкий
около 4 лет назад
github логотип
GHSA-xg52-wr75-9hc5

Mozilla Firefox before 1.5.0.7 and SeaMonkey before 1.0.5 allows remote attackers to bypass the security model and inject content into the sub-frame of another site via targetWindow.frames[n].document.open(), which facilitates spoofing and other attacks.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xg52-rc56-qm35

Stored Cross-Site Scripting (XSS) vulnerability in WorkDo's HRMGo, consisting of a lack of proper validation of user input by sending a POST request to ‘/hrmgo/ticket/changereply’, using the ‘description’ parameter.

0%
Низкий
7 месяцев назад
github логотип
GHSA-xg52-pgjm-f8fw

MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 does not properly handle when the Zend interpreter xml_parse function does not expand entities, which allows remote attackers to inject arbitrary web script or HTML via a crafted SVG file.

2%
Низкий
больше 4 лет назад
github логотип
GHSA-xg52-54c7-pvc7

Interspire Email Marketer through 6.5.1 allows SQL Injection via the surveys module. An unauthenticated attacker could successfully perform an attack to extract potentially sensitive information from the database if the survey id exists.

CVSS3: 7.5
1%
Низкий
больше 3 лет назад
github логотип
GHSA-xg4x-xhfv-p56h

The login page in Telmat AccessLog <= 6.0 (TAL_20180415) allows an attacker to get root shell access via Unauthenticated code injection over the network.

CVSS3: 9.8
2%
Низкий
около 4 лет назад

Уязвимостей на страницу