Show filters
59 Total Results
Displaying 41-50 of 59
Sort by:
Attacker Value
Unknown
CVE-2013-2294
Disclosure Date: January 30, 2020 (last updated February 21, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in ViewGit before 0.0.7 allow remote repository users to inject arbitrary web script or HTML via a (1) tag name to the Shortlog table in templates/shortlog.php or branch name to the (2) Shortlog table in templates/shortlog.php or (3) Heads table in plates/summary.php.
0
Attacker Value
Unknown
CVE-2012-6114
Disclosure Date: January 28, 2020 (last updated February 21, 2025)
The git-changelog utility in git-extras 1.7.0 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/changelog or (2) /tmp/.git-effort.
0
Attacker Value
Unknown
CVE-2019-10776
Disclosure Date: January 07, 2020 (last updated February 21, 2025)
In "index.js" file line 240, the run command executes the git command with a user controlled variable called remoteUrl. This affects git-diff-apply all versions prior to 0.22.2.
0
Attacker Value
Unknown
CVE-2013-1425
Disclosure Date: November 07, 2019 (last updated November 08, 2023)
ldap-git-backup before 1.0.4 exposes password hashes due to incorrect directory permissions.
0
Attacker Value
Unknown
CVE-2018-3785
Disclosure Date: August 17, 2018 (last updated November 27, 2024)
A command injection in git-dummy-commit v1.3.0 allows os level commands to be executed due to an unescaped parameter.
0
Attacker Value
Unknown
CVE-2018-14912
Disclosure Date: August 03, 2018 (last updated November 27, 2024)
cgit_clone_objects in CGit before 1.2.1 has a directory traversal vulnerability when `enable-http-clone=1` is not turned off, as demonstrated by a cgit/cgit.cgi/git/objects/?path=../ request.
0
Attacker Value
Unknown
CVE-2018-10857
Disclosure Date: July 16, 2018 (last updated November 27, 2024)
git-annex is vulnerable to a private data exposure and exfiltration attack. It could expose the content of files located outside the git-annex repository, or content from a private web server on localhost or the LAN.
0
Attacker Value
Unknown
CVE-2018-10859
Disclosure Date: July 16, 2018 (last updated November 27, 2024)
git-annex is vulnerable to an Information Exposure when decrypting files. A malicious server for a special remote could trick git-annex into decrypting a file that was encrypted to the user's gpg key. This attack could be used to expose encrypted data that was never stored in git-annex
0
Attacker Value
Unknown
CVE-2018-13537
Disclosure Date: July 09, 2018 (last updated November 27, 2024)
The mintToken function of a smart contract implementation for EthereumLegit, an Ethereum token, has an integer overflow that allows the owner of the contract to set the balance of an arbitrary user to any value.
0
Attacker Value
Unknown
CVE-2018-13212
Disclosure Date: July 05, 2018 (last updated November 27, 2024)
The sell function of a smart contract implementation for EthereumLegit, an Ethereum token, has an integer overflow in which "amount * sellPrice" can be zero, consequently reducing a seller's assets.
0