430 vulnerabilidades · General · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2023-3765
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
91.5%
2023 CWE-36 1 PoC

Absolute Path Traversal in GitHub repository mlflow/mlflow prior to 2.5.0.

CVE-2024-21650
xwiki-platform General ⚡ nuclei
10.0
CRITICAL
EPSS
92.5%
2024 CWE-95 1 PoC

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki is vulnerable to a remote code execution (RCE) attack through its user registration feature. This issue allows an attacker to execute arbitrary code by crafting malicious payloads in the "first name" or "last name" fields during user registration. This impacts all installations that have user registration enabled for guests. This vulnerability has been patched in XWiki 14.10.17, 15.5.3 and 15.8 RC1.

CVE-2024-1212
🔥 KEV LoadMaster General ⚡ nuclei
10.0
CRITICAL
EPSS
94.3%
2024 CWE-78 5 PoCs

Unauthenticated remote attackers can access the system through the LoadMaster management interface, enabling arbitrary system command execution.

CVE-2024-51568
Software Genérico General ⚡ nuclei
10.0
CRITICAL
EPSS
93.0%
2024 2 PoCs

CyberPanel (aka Cyber Panel) before 2.3.5 allows Command Injection via completePath in the ProcessUtilities.outputExecutioner() sink. There is /filemanager/upload (aka File Manager upload) unauthenticated remote code execution via shell metacharacters.

CVE-2023-6977
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
83.0%
2023 CWE-29 1 PoC

This vulnerability enables malicious users to read sensitive files on the server.

CVE-2024-7591
LoadMaster General ⚡ nuclei
10.0
CRITICAL
EPSS
31.5%
2024 CWE-78 1 PoC

Improper Input Validation vulnerability in Progress LoadMaster allows OS Command Injection.This issue affects: * LoadMaster: 7.2.40.0 and above * ECS: All versions * Multi-Tenancy: 7.1.35.4 and above

CVE-2023-40044
🔥 KEV WS_FTP Server General ⚡ nuclei
10.0
CRITICAL
EPSS
94.4%
2023 CWE-502 6 PoCs

In WS_FTP Server versions prior to 8.7.4 and 8.8.2, a pre-authenticated attacker could leverage a .NET deserialization vulnerability in the Ad Hoc Transfer module to execute remote commands on the underlying WS_FTP Server operating system.

CVE-2024-50498
WP Query Console General ⚡ nuclei
10.0
CRITICAL
EPSS
91.9%
2024 CWE-94 4 PoCs

Improper Control of Generation of Code ('Code Injection') vulnerability in Ajit Bohra WP Query Console wp-query-console allows Code Injection.This issue affects WP Query Console: from n/a through <= 1.0.

CVE-2023-2356
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
90.5%
2023 CWE-23 1 PoC

Relative Path Traversal in GitHub repository mlflow/mlflow prior to 2.3.1.

CVE-2023-6018
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
91.3%
2023 CWE-78 0 PoCs

An attacker can overwrite any file on the server hosting MLflow without any authentication.

CVE-2023-51409
AI Engine: ChatGPT Chatbot General ⚡ nuclei
10.0
CRITICAL
EPSS
92.9%
2023 CWE-434 4 PoCs

Unrestricted Upload of File with Dangerous Type vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 1.9.98.

CVE-2023-35082
🔥 KEV EPMM General ⚡ nuclei
10.0
CRITICAL
EPSS
94.4%
2023 1 PoC

An authentication bypass vulnerability in Ivanti EPMM 11.10 and older, allows unauthorized users to access restricted functionality or resources of the application without proper authentication. This vulnerability is unique to CVE-2023-35078 announced earlier.

CVE-2024-43160
BerqWP General ⚡ nuclei
10.0
CRITICAL
EPSS
83.7%
2024 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in BerqWP allows Code Injection.This issue affects BerqWP: from n/a through 1.7.6.

CVE-2026-28409
WeGIA General ⚡ nuclei
10.0
CRITICAL
EPSS
1.4%
2026 CWE-78 0 PoCs

WeGIA is a web manager for charitable institutions. Prior to version 3.6.5, a critical Remote Code Execution (RCE) vulnerability exists in the WeGIA application's database restoration functionality. An attacker with administrative access (which can be obtained via the previously reported Authentication Bypass) can execute arbitrary OS commands on the server by uploading a backup file with a specifically crafted filename. Version 3.6.5 fixes the issue.

CVE-2024-51378
🔥 KEV Software Genérico General ⚡ nuclei
10.0
CRITICAL
EPSS
93.9%
2024 5 PoCs

getresetstatus in dns/views.py and ftp/views.py in CyberPanel (aka Cyber Panel) before 1c0c6cb allows remote attackers to bypass authentication and execute arbitrary commands via /dns/getresetstatus or /ftp/getresetstatus by bypassing secMiddleware (which is only for a POST request) and using shell metacharacters in the statusfile property, as exploited in the wild in October 2024 by PSAUX. Versions through 2.3.6 and (unpatched) 2.3.7 are affected.

CVE-2024-1709
🔥 KEV ScreenConnect General ⚡ nuclei
10.0
CRITICAL
EPSS
94.3%
2024 CWE-288 15 PoCs

ConnectWise ScreenConnect 23.9.7 and prior are affected by an Authentication Bypass Using an Alternate Path or Channel vulnerability, which may allow an attacker direct access to confidential information or critical systems.

CVE-2024-22476
Intel(R) Neural Compressor software General ⚡ nuclei
10.0
CRITICAL
EPSS
74.9%
2024 0 PoCs

Improper input validation in some Intel(R) Neural Compressor software before version 2.5.0 may allow an unauthenticated user to potentially enable escalation of privilege via remote access.

CVE-2023-35078
🔥 KEV Endpoint Manager Mobile General ⚡ nuclei
10.0
CRITICAL
EPSS
94.4%
2023 10 PoCs

An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication.

CVE-2023-22527
🔥 KEV Confluence Data Center General ⚡ nuclei
10.0
CRITICAL
EPSS
94.4%
2023 27 PoCs

A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated attacker to achieve RCE on an affected instance. Customers using an affected version must take immediate action. Most recent supported versions of Confluence Data Center and Server are not affected by this vulnerability as it was ultimately mitigated during regular version updates. However, Atlassian recommends that customers take care to install the latest version to protect their instances from non-critical vulnerabilities outlined in Atlassian’s January Security Bulletin.

CVE-2026-23550
Modular DS General ⚡ nuclei
10.0
CRITICAL
EPSS
4.8%
2026 CWE-266 1 PoC

Incorrect Privilege Assignment vulnerability in Modular DS Modular DS modular-connector allows Privilege Escalation.This issue affects Modular DS: from n/a through <= 2.5.1.