9052 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2025-41674
mbNET.mini General
7.2
HIGH
EPSS
0.2%
2025 CWE-78 1 PoC

A high privileged remote attacker can execute arbitrary system commands via POST requests in the diagnostic action due to improper neutralization of special elements used in an OS command.

CVE-2025-2749
🔥 KEV Xperience General
7.2
HIGH
EPSS
3.8%
2025 CWE-22 1 PoC

An authenticated remote code execution in Kentico Xperience allows authenticated users Staging Sync Server to upload arbitrary data to path relative locations. This results in path traversal and arbitrary file upload, including content that can be executed server side leading to remote code execution.This issue affects Kentico Xperience through 13.0.178.

CVE-2025-50124
EcoStruxure™ IT Data Center Expert General
7.2
HIGH
EPSS
0.1%
2025 CWE-269 1 PoC

A CWE-269: Improper Privilege Management vulnerability exists that could cause privilege escalation when the server is accessed by a privileged account via a console and through exploitation of a setup script.

CVE-2025-28403
Software Genérico General
7.2
HIGH
EPSS
0.8%
2025 1 PoC

An issue in RUoYi v.4.8.0 allows a remote attacker to escalate privileges via the editSave method does not properly validate whether the requesting user has administrative privileges before allowing modifications to system configuration settings

CVE-2025-14273
Mattermost General
7.2
HIGH
EPSS
0.1%
2025 CWE-303 1 PoC

Mattermost versions 11.1.x <= 11.1.0, 11.0.x <= 11.0.5, 10.12.x <= 10.12.3, 10.11.x <= 10.11.7 with the Jira plugin enabled and Mattermost Jira plugin versions <=4.4.0 fail to enforce authentication and issue-key path restrictions in the Jira plugin, which allows an unauthenticated attacker who knows a valid user ID to issue authenticated GET and POST requests to the Jira server via crafted plugin payloads that spoof the user ID and inject arbitrary issue key paths. Mattermost Advisory ID: MMSA-2025-00555

CVE-2025-14097
ABL90 FLEX and ABL90 FLEX PLUS Analyzers General
7.2
HIGH
EPSS
0.4%
2025 CWE-287 1 PoC

A vulnerability in the application software of multiple Radiometer products may allow remote code execution and unauthorized device management when specific internal conditions are met. Exploitation requires that a remote connection is established with additional information obtained through other means. The issue is caused by a weakness in the analyzer’s application software.                                                                                                                                                                                                Other related CVE's are CVE-

CVE-2025-20968
Samsung Gallery General
7.2
HIGH
EPSS
0.3%
2025 1 PoC

Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows remote attackers to access data and perform internal operations within Samsung Gallery.

CVE-2025-3944
Niagara Framework General
7.2
HIGH
EPSS
0.3%
2025 CWE-732 1 PoC

Incorrect Permission Assignment for Critical Resource vulnerability in Tridium Niagara Framework on QNX, Tridium Niagara Enterprise Security on QNX allows File Manipulation. This issue affects Niagara Framework: before 4.14.2, before 4.15.1, before 4.10.11; Niagara Enterprise Security: before 4.14.2, before 4.15.1, before 4.10.11. Tridium recommends upgrading to Niagara Framework and Enterprise Security versions 4.14.2u2, 4.15.u1, or 4.10u.11.

CVE-2025-50123
EcoStruxure™ IT Data Center Expert General
7.2
HIGH
EPSS
0.1%
2025 CWE-94 2 PoCs

A CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exists that could cause remote command execution by a privileged account when the server is accessed via a console and through exploitation of the hostname input.

CVE-2020-8260
🔥 KEV Pulse Connect Secure / Pulse Policy Secure General
7.2
HIGH
EPSS
75.9%
2020 CWE-434 2 PoCs

A vulnerability in the Pulse Connect Secure < 9.1R9 admin web interface could allow an authenticated attacker to perform an arbitrary code execution using uncontrolled gzip extraction.

CVE-2020-7329
MVISION Endpoint ePO extension General
7.2
HIGH
EPSS
0.7%
2020 CWE-918 1 PoC

Server-side request forgery vulnerability in the ePO extension in McAfee MVISION Endpoint prior to 20.11 allows remote attackers trigger server-side DNS requests to arbitrary domains via carefully constructed XML files loaded by an ePO administrator.

CVE-2020-12503
P+F Comtrol RocketLinx General
7.2
HIGH
EPSS
6.4%
2020 CWE-863 5 PoCs

Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) and ICRL-M-8RJ45/4SFP-G-DIN, ICRL-M-16RJ45/4CP-G-DIN FW 1.2.3 and below is prone to multiple authenticated command injections.

CVE-2020-6191
SAP Landscape Management General
7.2
HIGH
EPSS
0.4%
2020 1 PoC

SAP Landscape Management, version 3.0, allows an attacker with admin privileges to execute malicious executables with root privileges in SAP Host Agent via SAP Landscape Management due to Missing Input Validation.

CVE-2020-16125
GDM3 General
7.2
HIGH
EPSS
22.1%
2020 CWE-754 2 PoCs

gdm3 versions before 3.36.2 or 3.38.2 would start gnome-initial-setup if gdm3 can't contact the accountservice service via dbus in a timely manner; on Ubuntu (and potentially derivatives) this could be be chained with an additional issue that could allow a local user to create a new privileged account.

CVE-2020-5248
glpi General
7.2
HIGH
EPSS
2.8%
2020 CWE-798 3 PoCs

GLPI before before version 9.4.6 has a vulnerability involving a default encryption key. GLPIKEY is public and is used on every instance. This means anyone can decrypt sensitive data stored using this key. It is possible to change the key before installing GLPI. But on existing instances, data must be reencrypted with the new key. Problem is we can not know which columns or rows in the database are using that; espcially from plugins. Changing the key without updating data would lend in bad password sent from glpi; but storing them again from the UI will work.

CVE-2020-6234
SAP Host Agent General
7.2
HIGH
EPSS
0.7%
2020 1 PoC

SAP Host Agent, version 7.21, allows an attacker with admin privileges to use the operation framework to gain root privileges over the underlying operating system, leading to Privilege Escalation.

CVE-2020-2037
PAN-OS General
7.2
HIGH
EPSS
1.0%
2020 CWE-78 1 PoC

An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to execute arbitrary OS commands with root privileges. This issue impacts: PAN-OS 8.1 versions earlier than PAN-OS 8.1.16; PAN-OS 9.0 versions earlier than PAN-OS 9.0.10; PAN-OS 9.1 versions earlier than PAN-OS 9.1.3.

CVE-2020-8103
Bitdefender Antivirus Free General
7.2
HIGH
EPSS
2.1%
2020 CWE-59 1 PoC

A vulnerability in the improper handling of symbolic links in Bitdefender Antivirus Free can allow an unprivileged user to substitute a quarantined file, and restore it to a privileged location. This issue affects Bitdefender Antivirus Free versions prior to 1.0.17.178.

CVE-2020-8218
🔥 KEV Pulse Connect Secure General
7.2
HIGH
EPSS
91.1%
2020 CWE-94 3 PoCs

A code injection vulnerability exists in Pulse Connect Secure <9.1R8 that allows an attacker to crafted a URI to perform an arbitrary code execution via the admin web interface.

CVE-2020-37078
i-doit Open Source CMDB General
7.2
HIGH
EPSS
0.1%
2020 CWE-73 1 PoC

i-doit Open Source CMDB 1.14.1 contains a file deletion vulnerability in the import module that allows authenticated attackers to delete arbitrary files by manipulating the delete_import parameter. Attackers can send a POST request to the import module with a crafted filename to remove files from the server's filesystem.