9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-30729
Samsung Email General
8.1
HIGH
EPSS
0.3%
2023 1 PoC

Improper Certificate Validation in Samsung Email prior to version 6.1.82.0 allows remote attacker to intercept the network traffic including sensitive information.

CVE-2023-37910
xwiki-platform General
8.1
HIGH
EPSS
0.6%
2023 CWE-862 1 PoC

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting with the introduction of attachment move support in version 14.0-rc-1 and prior to versions 14.4.8, 14.10.4, and 15.0-rc-1, an attacker with edit access on any document (can be the user profile which is editable by default) can move any attachment of any other document to this attacker-controlled document. This allows the attacker to access and possibly publish any attachment of which the name is known, regardless if the attacker has view or edit rights on the source document of th

CVE-2023-31242
OAS Platform General
8.1
HIGH
EPSS
0.0%
2023 CWE-284 1 PoC

An authentication bypass vulnerability exists in the OAS Engine functionality of Open Automation Software OAS Platform v18.00.0072. A specially-crafted series of network requests can lead to arbitrary authentication. An attacker can send a sequence of requests to trigger this vulnerability.

CVE-2023-45839
Buildroot General
8.1
HIGH
EPSS
0.1%
2023 CWE-494 2 PoCs

Multiple data integrity vulnerabilities exist in the package hash checking functionality of Buildroot 2023.08.1 and Buildroot dev commit 622698d7847. A specially crafted man-in-the-middle attack can lead to arbitrary command execution in the builder.This vulnerability is related to the `aufs-util` package.

CVE-2023-3615
Mattermost iOS app General
8.1
HIGH
EPSS
0.3%
2023 CWE-295 1 PoC

Mattermost iOS app fails to properly validate the server certificate while initializing the TLS connection allowing a network attacker to intercept the WebSockets connection.

CVE-2023-4124
answerdev/answer General
8.1
HIGH
EPSS
0.2%
2023 CWE-862 1 PoC

Missing Authorization in GitHub repository answerdev/answer prior to v1.1.1.

CVE-2023-3224
nuxt/nuxt General
8.1
HIGH
EPSS
2.1%
2023 CWE-94 1 PoC

Code Injection in GitHub repository nuxt/nuxt prior to 3.5.3.

CVE-2023-34216
TN-5900 Series General
8.1
HIGH
EPSS
0.3%
2023 CWE-22 1 PoC

TN-4900 Series firmware versions v1.2.4 and prior and TN-5900 Series firmware versions v3.3 and prior are vulnerable to the command-injection vulnerability. This vulnerability derives from insufficient input validation in the key-delete function, which could potentially allow malicious users to delete arbitrary files.

CVE-2023-6254
OTRS General
8.1
HIGH
EPSS
0.2%
2023 CWE-522 1 PoC

A Vulnerability in OTRS AgentInterface and ExternalInterface allows the reading of plain text passwords which are send back to the client in the server response- This issue affects OTRS: from 8.0.X through 8.0.37.

CVE-2023-31178
NX General
8.1
HIGH
EPSS
0.2%
2023 1 PoC

AgilePoint NX v8.0 SU2.2 & SU2.3 – Arbitrary File Delete Vulnerability allows arbitrary file deletion, by an unspecified request.

CVE-2023-47320
Software Genérico General
8.1
HIGH
EPSS
0.3%
2023 1 PoC

Silverpeas Core 6.3.1 is vulnerable to Incorrect Access Control. An attacker with low privileges is able to execute the administrator-only function of putting the application in "Maintenance Mode" due to broken access control. This makes the application unavailable to all users. This affects Silverpeas Core 6.3.1 and below.

CVE-2024-5138
snapd General
8.1
HIGH
EPSS
0.6%
2024 1 PoC

The snapctl component within snapd allows a confined snap to interact with the snapd daemon to take certain privileged actions on behalf of the snap. It was found that snapctl did not properly parse command-line arguments, allowing an unprivileged user to trigger an authorised action on behalf of the snap that would normally require administrator privileges to perform. This could possibly allow an unprivileged user to perform a denial of service or similar.

CVE-2024-34394
Software Genérico General
8.1
HIGH
EPSS
3.3%
2024 CWE-843 1 PoC

libxmljs2 is vulnerable to a type confusion vulnerability when parsing a specially crafted XML while invoking the namespaces() function (which invokes XmlNode::get_local_namespaces()) on a grand-child of a node that refers to an entity. This vulnerability can lead to denial of service and remote code execution.

CVE-2024-24793
libdicom General
8.1
HIGH
EPSS
0.5%
2024 CWE-416 2 PoCs

A use-after-free vulnerability exists in the DICOM Element Parsing as implemented in Imaging Data Commons libdicom 1.0.5. A specially crafted DICOM file can cause premature freeing of memory that is used later. To trigger this vulnerability, an attacker would need to induce the vulnerable application to process a malicious DICOM image.The Use-After-Free happens in the `parse_meta_element_create()` parsing the elements in the File Meta Information header.

CVE-2024-49415
Samsung Mobile Devices General
8.1
HIGH
EPSS
8.0%
2024 1 PoC

Out-of-bound write in libsaped.so prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code.

CVE-2024-58134
Mojolicious General
8.1
HIGH
EPSS
0.3%
2024 CWE-321 1 PoC

Mojolicious versions from 0.999922 for Perl uses a hard coded string, or the application's class name, as an HMAC session cookie secret by default. These predictable default secrets can be exploited by an attacker to forge session cookies.  An attacker who knows or guesses the secret could compute valid HMAC signatures for the session cookie, allowing them to tamper with or hijack another user’s session.

CVE-2024-46097
Software Genérico General
8.1
HIGH
EPSS
0.1%
2024 1 PoC

TestLink 1.9.20 is vulnerable to Incorrect Access Control in the TestPlan editing section. When a new TestPlan is created, an ID with an incremental value is automatically generated. Using the edit function you can change the tplan_id parameter to another ID. The application does not carry out a check on the user's permissions maing it possible to recover the IDs of all the TestPlans (even the administrative ones) and modify them even with minimal privileges.

CVE-2024-33377
Software Genérico General
8.1
HIGH
EPSS
0.1%
2024 1 PoC

LB-LINK BL-W1210M v2.0 was discovered to contain a clickjacking vulnerability via the Administrator login page. Attackers can cause victim users to perform arbitrary operations via interaction with crafted elements on the web page.

CVE-2024-10327
Okta Verify for iOS General
8.1
HIGH
EPSS
0.1%
2024 CWE-287 1 PoC

A vulnerability in Okta Verify for iOS versions 9.25.1 (beta) and 9.27.0 (including beta) allows push notification responses through the iOS ContextExtension feature allowing the authentication to proceed regardless of the user’s selection. When a user long-presses the notification banner and selects an option, both options allow the authentication to succeed. The ContextExtension feature is one of several push mechanisms available when using Okta Verify Push on iOS devices. The vulnerable flows include: * When a user is presented with a notification on a locked screen, the user presses on t

CVE-2024-35430
Software Genérico General
8.1
HIGH
EPSS
0.1%
2024 1 PoC

In ZKTeco ZKBio CVSecurity v6.1.1_R and earlier (fixed in 6.1.3_R) an authenticated user can bypass password checks while exporting data from the application.