9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-2251
eemeli/yaml General
7.5
HIGH
EPSS
0.5%
2023 CWE-248 1 PoC

Uncaught Exception in GitHub repository eemeli/yaml prior to 2.0.0-5.

CVE-2023-30082
Software Genérico General
7.5
HIGH
EPSS
0.3%
2023 2 PoCs

A denial of service attack might be launched against the server if an unusually lengthy password (more than 10000000 characters) is supplied using the osTicket application. This can cause the website to go down or stop responding. When a long password is entered, this procedure will consume all available CPU and memory.

CVE-2023-22551
Software Genérico General
7.5
HIGH
EPSS
9.2%
2023 1 PoC

The FTP (aka "Implementation of a simple FTP client and server") project through 96c1a35 allows remote attackers to cause a denial of service (memory consumption) by engaging in client activity, such as establishing and then terminating a connection. This occurs because malloc is used but free is not.

CVE-2023-27653
Software Genérico General
7.5
HIGH
EPSS
0.4%
2023 1 PoC

An issue found in WHOv.1.0.28, v.1.0.30, v.1.0.32 allows an attacker to cause a denial of service via the SharedPreference files.

CVE-2023-42489
v3.0.6433.1964 General
7.5
HIGH
EPSS
0.2%
2023 CWE-732 1 PoC

EisBaer Scada - CWE-732: Incorrect Permission Assignment for Critical Resource

CVE-2023-6960
TTLock App General
7.5
HIGH
EPSS
0.0%
2023 1 PoC

TTLock App virtual keys and settings are only deleted client side, and if preserved, can access the lock after intended deletion.

CVE-2023-34353
OAS Platform General
7.5
HIGH
EPSS
0.0%
2023 CWE-330 1 PoC

An authentication bypass vulnerability exists in the OAS Engine authentication functionality of Open Automation Software OAS Platform v18.00.0072. A specially crafted network sniffing can lead to decryption of sensitive information. An attacker can sniff network traffic to trigger this vulnerability.

CVE-2023-30706
Samsung Mobile Devices General
7.5
HIGH
EPSS
0.2%
2023 1 PoC

Improper authorization in Samsung Keyboard prior to SMR Sep-2023 Release 1 allows attacker to read arbitrary file with system privilege.

CVE-2023-34467
xwiki-platform General
7.5
HIGH
EPSS
1.8%
2023 CWE-402 1 PoC

XWiki Platform is a generic wiki platform. Starting in version 3.5-milestone-1 and prior to versions 14.4.8, 14.10.4, and 15.0-rc-1, the mail obfuscation configuration was not fully taken into account. While the mail displayed to the end user was obfuscated, the rest response was also containing the mail unobfuscated and users were able to filter and sort on the unobfuscated, allowing them to infer the mail content. The consequence was the possibility to retrieve the email addresses of all users even when obfuscated. This has been patched in XWiki 14.4.8, 14.10.4, and 15.0-rc-1.

CVE-2023-51443
freeswitch General
7.5
HIGH
EPSS
0.6%
2023 CWE-703 2 PoCs

FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version 1.10.11, when handling DTLS-SRTP for media setup, FreeSWITCH is susceptible to Denial of Service due to a race condition in the hello handshake phase of the DTLS protocol. This attack can be done continuously, thus denying new DTLS-SRTP encrypted calls during the attack. If an attacker manages to send a ClientHello DTLS message with an invalid CipherSuite (such as `TLS_NULL_WITH_NULL_NULL`) to the

CVE-2023-2140
DELMIA Apriso General
7.5
HIGH
EPSS
0.5%
2023 CWE-918 1 PoC

A Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022 could allow an unauthenticated attacker to issue requests to arbitrary hosts on behalf of the server running the DELMIA Apriso application.

CVE-2023-44031
Software Genérico General
7.5
HIGH
EPSS
0.1%
2023 2 PoCs

Incorrect access control in Reprise License Management Software Reprise License Manager v15.1 allows attackers to arbitrarily save sensitive files in insecure locations via a crafted POST request.

CVE-2024-38879
Omnivise T3000 Application Server R9.2 General
7.5
HIGH
EPSS
1.3%
2024 CWE-20 1 PoC

A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). The affected system exposes the port of an internal application on the public network interface allowing an attacker to circumvent authentication and directly access the exposed application.

CVE-2024-21521
@discordjs/opus General
7.5
HIGH
EPSS
0.2%
2024 CWE-400 1 PoC

All versions of the package @discordjs/opus are vulnerable to Denial of Service (DoS) due to providing an input object with a property toString to several different functions. Exploiting this vulnerability could lead to a system crash.

CVE-2024-5124
gaizhenbiao/chuanhuchatgpt General
7.5
HIGH
EPSS
46.1%
2024 CWE-203 2 PoCs

A timing attack vulnerability exists in the gaizhenbiao/chuanhuchatgpt repository, specifically within the password comparison logic. The vulnerability is present in version 20240310 of the software, where passwords are compared using the '=' operator in Python. This method of comparison allows an attacker to guess passwords based on the timing of each character's comparison. The issue arises from the code segment that checks a password for a particular username, which can lead to the exposure of sensitive information to an unauthorized actor. An attacker exploiting this vulnerability could po

CVE-2024-6960
Software Genérico General
7.5
HIGH
EPSS
0.2%
2024 CWE-502 1 PoC

The H2O machine learning platform uses "Iced" classes as the primary means of moving Java Objects around the cluster. The Iced format supports inclusion of serialized Java objects. When a model is deserialized, any class is allowed to be deserialized (no class whitelist). An attacker can construct a crafted Iced model that uses Java gadgets and leads to arbitrary code execution when imported to the H2O platform.

CVE-2024-22871
Software Genérico General
7.5
HIGH
EPSS
0.7%
2024 2 PoCs

An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure.core$partial$fn__5920 function.

CVE-2024-22640
Software Genérico General
7.5
HIGH
EPSS
1.6%
2024 1 PoC

TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.

CVE-2024-1561
gradio-app/gradio General ⚡ nuclei
7.5
HIGH
EPSS
93.4%
2024 CWE-29 2 PoCs

An issue was discovered in gradio-app/gradio, where the `/component_server` endpoint improperly allows the invocation of any method on a `Component` class with attacker-controlled arguments. Specifically, by exploiting the `move_resource_to_block_cache()` method of the `Block` class, an attacker can copy any file on the filesystem to a temporary directory and subsequently retrieve it. This vulnerability enables unauthorized local file read access, posing a significant risk especially when the application is exposed to the internet via `launch(share=True)`, thereby allowing remote attackers to

CVE-2024-56902
Software Genérico General
7.5
HIGH
EPSS
26.5%
2024 1 PoC

Information disclosure vulnerability in Geovision GV-ASManager web application with the version v6.1.0.0 or less, which discloses account information, including cleartext password.