9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-40805
iOS and iPadOS General
7.7
HIGH
EPSS
0.0%
2024 2 PoCs

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences.

CVE-2024-34598
GoodLock General
7.7
HIGH
EPSS
0.0%
2024 1 PoC

Improper export of component in GoodLock prior to version 2.2.04.95 allows local attackers to install arbitrary applications from Galaxy Store.

CVE-2024-40824
iOS and iPadOS General
7.7
HIGH
EPSS
0.0%
2024 2 PoCs

This issue was addressed through improved state management. This issue is fixed in iOS 17.6 and iPadOS 17.6, macOS Sonoma 14.6, tvOS 17.6, watchOS 10.6. An app may be able to bypass Privacy preferences.

CVE-2024-38449
Software Genérico General
7.7
HIGH
EPSS
0.2%
2024 1 PoC

A Directory Traversal vulnerability in KasmVNC 1.3.1.230e50f7b89663316c70de7b0e3db6f6b9340489 and possibly earlier versions allows remote authenticated attackers to browse parent directories and read the content of files outside the scope of the application.

CVE-2024-56429
iLabClient General
7.7
HIGH
EPSS
0.1%
2024 CWE-321 1 PoC

itech iLabClient 3.7.1 relies on the hard-coded YngAYdgAE/kKZYu2F2wm6w== key (found in iLabClient.jar) for local users to read or write to the database.

CVE-2024-8040
3DSwymer General
7.7
HIGH
EPSS
0.0%
2024 CWE-639 1 PoC

An authorization bypass through user-controlled key vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an authenticated attacker to access some unauthorized data.

CVE-2024-8698
Software Genérico General ⚡ nuclei
7.7
HIGH
EPSS
81.3%
2024 CWE-347 1 PoC

A flaw exists in the SAML signature validation method within the Keycloak XMLSignatureUtil class. The method incorrectly determines whether a SAML signature is for the full document or only for specific assertions based on the position of the signature in the XML document, rather than the Reference element used to specify the signed element. This flaw allows attackers to create crafted responses that can bypass the validation, potentially leading to privilege escalation or impersonation attacks.

CVE-2024-40676
Android General
7.7
HIGH
EPSS
0.1%
2024 3 PoCs

In checkKeyIntent of AccountManagerService.java, there is a possible way to bypass intent security check and install an unknown app due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVE-2024-1163
mbloch/mapshaper General
7.7
HIGH
EPSS
0.1%
2024 CWE-22 1 PoC

The attacker may exploit a path traversal vulnerability leading to information disclosure.

CVE-2024-36495
WINSelect (Standard + Enterprise) General
7.7
HIGH
EPSS
0.0%
2024 CWE-276 2 PoCs

The application Faronics WINSelect (Standard + Enterprise) saves its configuration in an encrypted file on the file system which "Everyone" has read and write access to, path to file: C:\ProgramData\WINSelect\WINSelect.wsd The path for the affected WINSelect Enterprise configuration file is: C:\ProgramData\Faronics\StorageSpace\WS\WINSelect.wsd

CVE-2024-27155
Toshiba Tec e-Studio multi-function peripheral (MFP) General
7.7
HIGH
EPSS
0.1%
2024 CWE-276 1 PoC

The Toshiba printers are vulnerable to a Local Privilege Escalation vulnerability. An attacker can remotely compromise any Toshiba printer. The programs can be replaced by malicious programs by any local or remote attacker. As for the affected products/models/versions, see the reference URL.

CVE-2024-20895
Samsung Mobile Devices General
7.7
HIGH
EPSS
0.0%
2024 1 PoC

Improper access control in Dar service prior to SMR Jul-2024 Release 1 allows local attackers to bypass restriction for calling SDP features.

CVE-2019-16777
cli General
7.7
HIGH
EPSS
0.3%
2019 CWE-22 1 PoC

Versions of the npm CLI prior to 6.13.4 are vulnerable to an Arbitrary File Overwrite. It fails to prevent existing globally-installed binaries to be overwritten by other package installations. For example, if a package was installed globally and created a serve binary, any subsequent installs of packages that also create a serve binary would overwrite the previous serve binary. This behavior is still allowed in local installations and also through install scripts. This vulnerability bypasses a user using the --ignore-scripts install option.

CVE-2019-3697
Leap 15.1 General
7.7
HIGH
EPSS
0.1%
2019 CWE-59 1 PoC

UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of gnump3d in openSUSE Leap 15.1 allows local attackers to escalate from user gnump3d to root. This issue affects: openSUSE Leap 15.1 gnump3d version 3.0-lp151.2.1 and prior versions.

CVE-2019-11538
Software Genérico General
7.7
HIGH
EPSS
3.1%
2019 1 PoC

In Pulse Secure Pulse Connect Secure version 9.0RX before 9.0R3.4, 8.3RX before 8.3R7.1, 8.2RX before 8.2R12.1, and 8.1RX before 8.1R15.1, an NFS problem could allow an authenticated attacker to access the contents of arbitrary files on the affected device.

CVE-2019-3691
SUSE Linux Enterprise Server 15 General
7.7
HIGH
EPSS
0.1%
2019 CWE-59 1 PoC

A Symbolic Link (Symlink) Following vulnerability in the packaging of munge in SUSE Linux Enterprise Server 15; openSUSE Factory allowed local attackers to escalate privileges from user munge to root. This issue affects: SUSE Linux Enterprise Server 15 munge versions prior to 0.5.13-4.3.1. openSUSE Factory munge versions prior to 0.5.13-6.1.

CVE-2019-3814
dovecot General
7.7
HIGH
EPSS
1.6%
2019 CWE-295 2 PoCs

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.

CVE-2019-18898
SUSE Linux Enterprise Server 15 SP1 General
7.7
HIGH
EPSS
0.1%
2019 CWE-59 2 PoCs

UNIX Symbolic Link (Symlink) Following vulnerability in the trousers package of SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allowed local attackers escalate privileges from user tss to root. This issue affects: SUSE Linux Enterprise Server 15 SP1 trousers versions prior to 0.3.14-6.3.1. openSUSE Factory trousers versions prior to 0.3.14-7.1.

CVE-2019-3606
McAfee Network Security Manager (NSM) General
7.7
HIGH
EPSS
0.0%
2019 1 PoC

Data Leakage Attacks vulnerability in the web portal component when in an MDR pair in McAfee Network Security Management (NSM) 9.1 < 9.1.7.75 (Update 4) and 9.2 < 9.2.7.31 Update2 allows administrators to view configuration information in plain text format via the GUI or GUI terminal commands.

CVE-2019-3692
SUSE Linux Enterprise Server 11 General
7.7
HIGH
EPSS
0.2%
2019 CWE-59 2 PoCs

The packaging of inn on SUSE Linux Enterprise Server 11; openSUSE Factory, Leap 15.1 allows local attackers to escalate from user inn to root via symlink attacks. This issue affects: SUSE Linux Enterprise Server 11 inn version 2.4.2-170.21.3.1 and prior versions. openSUSE Factory inn version 2.6.2-2.2 and prior versions. openSUSE Leap 15.1 inn version 2.5.4-lp151.2.47 and prior versions.