9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-0994
francoisjacquet/rosariosis General
8.1
HIGH
EPSS
0.4%
2023 CWE-200 1 PoC

Exposure of Sensitive Information to an Unauthorized Actor in GitHub repository francoisjacquet/rosariosis prior to 10.8.2.

CVE-2023-0739
answerdev/answer General
8.1
HIGH
EPSS
0.5%
2023 CWE-362 1 PoC

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') in GitHub repository answerdev/answer prior to 1.0.4.

CVE-2023-5401
Experion Server General
8.1
HIGH
EPSS
1.6%
2023 CWE-121 1 PoC

Server receiving a malformed message based on a using the specified key values can cause a stack overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

CVE-2023-26984
Software Genérico General
8.1
HIGH
EPSS
0.8%
2023 1 PoC

An issue in the password reset function of Peppermint v0.2.4 allows attackers to access the emails and passwords of the Tickets page via a crafted request.

CVE-2023-50447
Software Genérico General
8.1
HIGH
EPSS
0.7%
2023 2 PoCs

Pillow through 10.1.0 allows PIL.ImageMath.eval Arbitrary Code Execution via the environment parameter, a different vulnerability than CVE-2022-22817 (which was about the expression parameter).

CVE-2023-0919
kareadita/kavita General
8.1
HIGH
EPSS
0.3%
2023 CWE-306 1 PoC

Missing Authentication for Critical Function in GitHub repository kareadita/kavita prior to 0.7.0.

CVE-2023-0569
publify/publify General
8.1
HIGH
EPSS
0.1%
2023 CWE-521 1 PoC

Weak Password Requirements in GitHub repository publify/publify prior to 9.2.10.

CVE-2023-24332
Software Genérico General
8.1
HIGH
EPSS
0.1%
2023 1 PoC

A stack overflow vulnerability in Tenda AC6 with firmware version US_AC6V5.0re_V03.03.02.01_cn_TDC01 allows attackers to run arbitrary commands via crafted POST request to /goform/PowerSaveSet.

CVE-2023-20895
VMware vCenter Server (vCenter Server) General
8.1
HIGH
EPSS
0.4%
2023 1 PoC

The VMware vCenter Server contains a memory corruption vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger a memory corruption vulnerability which may bypass authentication.

CVE-2023-45841
Buildroot General
8.1
HIGH
EPSS
0.1%
2023 CWE-494 2 PoCs

Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buildroot dev commit 622698d7847. A specially crafted man-in-the-middle attack can lead to arbitrary command execution in the builder.This vulnerability is related to the `versal-firmware` package.

CVE-2023-5400
Experion Server General
8.1
HIGH
EPSS
1.6%
2023 CWE-122 1 PoC

Server receiving a malformed message based on a using the specified key values can cause a heap overflow vulnerability which could lead to an attacker performing remote code execution or causing a failure.  See Honeywell Security Notification for recommendations on upgrading and versioning.

CVE-2023-40464
ALEOS General
8.1
HIGH
EPSS
0.0%
2023 CWE-321 1 PoC

Several versions of ALEOS, including ALEOS 4.16.0, use a hardcoded SSL certificate and private key. An attacker with access to these items could potentially perform a man in the middle attack between the ACEManager client and ACEManager server.

CVE-2023-4235
ofono General
8.1
HIGH
EPSS
0.1%
2023 CWE-119 1 PoC

A flaw was found in ofono, an Open Source Telephony on Linux. A stack overflow bug is triggered within the decode_deliver_report() function during the SMS decoding. It is assumed that the attack scenario is accessible from a compromised modem, a malicious base station, or just SMS. There is a bound check for this memcpy length in decode_submit(), but it was forgotten in decode_deliver_report().

CVE-2023-5404
Experion Server General
8.1
HIGH
EPSS
1.0%
2023 CWE-122 1 PoC

Server receiving a malformed message can cause a pointer to be overwritten which can result in a remote code execution or failure. See Honeywell Security Notification for recommendations on upgrading and versioning.

CVE-2023-30399
Software Genérico General
8.1
HIGH
EPSS
0.3%
2023 1 PoC

Insecure permissions in the settings page of GARO Wallbox GLB/GTB/GTC before v189 allows attackers to redirect users to a crafted update package link via a man-in-the-middle attack.

CVE-2023-50805
Software Genérico General
8.1
HIGH
EPSS
0.3%
2023 2 PoCs

A vulnerability was discovered in Samsung Mobile Processor, Wearable Processor, and Modems with versions Exynos 9820, Exynos 9825, Exynos 980, Exynos 990, Exynos 850, Exynos 1080, Exynos 2100, Exynos 2200, Exynos 1280, Exynos 1380, Exynos 1330, Exynos 9110, Exynos W920, Exynos W930, Exynos Modem 5123, Exynos Modem 5300 that allows an out-of-bounds write in the heap in 2G (no auth).

CVE-2023-1542
answerdev/answer General
8.1
HIGH
EPSS
0.3%
2023 CWE-840 1 PoC

Business Logic Errors in GitHub repository answerdev/answer prior to 1.0.6.

CVE-2023-2315
Opencart General
8.1
HIGH
EPSS
0.3%
2023 CWE-22 1 PoC

Path Traversal in OpenCart versions 4.0.0.0 to 4.0.2.2 allows an authenticated user with access/modify privilege on the Log component to empty out arbitrary files on the server

CVE-2023-45838
Buildroot General
8.1
HIGH
EPSS
0.1%
2023 CWE-494 2 PoCs

Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buildroot dev commit 622698d7847. A specially crafted man-in-the-middle attack can lead to arbitrary command execution in the builder.This vulnerability is related to the `aufs` package.

CVE-2023-0947
flatpressblog/flatpress General ⚡ nuclei
8.1
HIGH
EPSS
53.0%
2023 CWE-22 1 PoC

Path Traversal in GitHub repository flatpressblog/flatpress prior to 1.3.