2350 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-42770
ST-IPm-8460 General
10.0
CRITICAL
EPSS
0.2%
2023 CWE-288 1 PoC

Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over UDP/IP. When the same message is received over TCP/IP the RTU will simply accept the message with no authentication challenge.

CVE-2023-22527
🔥 KEV Confluence Data Center General ⚡ nuclei
10.0
CRITICAL
EPSS
94.4%
2023 27 PoCs

A template injection vulnerability on older versions of Confluence Data Center and Server allows an unauthenticated attacker to achieve RCE on an affected instance. Customers using an affected version must take immediate action. Most recent supported versions of Confluence Data Center and Server are not affected by this vulnerability as it was ultimately mitigated during regular version updates. However, Atlassian recommends that customers take care to install the latest version to protect their instances from non-critical vulnerabilities outlined in Atlassian’s January Security Bulletin.

CVE-2023-6977
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
83.0%
2023 CWE-29 1 PoC

This vulnerability enables malicious users to read sensitive files on the server.

CVE-2023-2356
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
90.5%
2023 CWE-23 1 PoC

Relative Path Traversal in GitHub repository mlflow/mlflow prior to 2.3.1.

CVE-2023-6018
mlflow/mlflow General ⚡ nuclei
10.0
CRITICAL
EPSS
91.3%
2023 CWE-78 0 PoCs

An attacker can overwrite any file on the server hosting MLflow without any authentication.

CVE-2023-4804
Quantum HD Unity Compressor General
10.0
CRITICAL
EPSS
0.1%
2023 CWE-489 1 PoC

An unauthorized user could access debug features in Quantum HD Unity products that were accidentally exposed.

CVE-2023-6015
mlflow/mlflow General
10.0
CRITICAL
EPSS
0.8%
2023 CWE-22 1 PoC

MLflow allowed arbitrary files to be PUT onto the server.

CVE-2023-5572
vriteio/vrite General
10.0
CRITICAL
EPSS
0.3%
2023 CWE-918 1 PoC

Server-Side Request Forgery (SSRF) in GitHub repository vriteio/vrite prior to 0.3.0.

CVE-2023-7163
D-View 8 General
10.0
CRITICAL
EPSS
3.4%
2023 CWE-20 1 PoC

A security issue exists in D-Link D-View 8 v2.0.2.89 and prior that could allow an attacker to manipulate the probe inventory of the D-View service. This could result in the disclosure of information from other probes, denial of service conditions due to the probe inventory becoming full, or the execution of tasks on other probes.

CVE-2023-40151
ST-IPm-8460 General
10.0
CRITICAL
EPSS
0.4%
2023 CWE-749 1 PoC

When user authentication is not enabled the shell can execute commands with the highest privileges. Red Lion SixTRAK and VersaTRAK Series RTUs with authenticated users enabled (UDR-A) any Sixnet UDR message will meet an authentication challenge over UDP/IP. When the same message comes over TCP/IP the RTU will simply accept the message with no authentication challenge.

CVE-2023-28100
flatpak General
10.0
CRITICAL
EPSS
0.7%
2023 CWE-20 1 PoC

Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1.10.8, 1.12.8, 1.14.4, and 1.15.4 contain a vulnerability similar to CVE-2017-5226, but using the `TIOCLINUX` ioctl command instead of `TIOCSTI`. If a Flatpak app is run on a Linux virtual console such as `/dev/tty1`, it can copy text from the virtual console and paste it into the command buffer, from which the command might be run after the Flatpak app has exited. Ordinary graphical terminal emulators like xterm, gnome-terminal and Konsole are unaffected. This vulnerability

CVE-2023-1283
builderio/qwik General
10.0
CRITICAL
EPSS
0.3%
2023 CWE-94 1 PoC

Code Injection in GitHub repository builderio/qwik prior to 0.21.0.

CVE-2023-35078
🔥 KEV Endpoint Manager Mobile General ⚡ nuclei
10.0
CRITICAL
EPSS
94.4%
2023 10 PoCs

An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication.

CVE-2023-3696
automattic/mongoose General
10.0
CRITICAL
EPSS
0.5%
2023 CWE-1321 1 PoC

Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4.

CVE-2023-26475
xwiki-platform General
10.0
CRITICAL
EPSS
34.7%
2023 CWE-270 1 PoC

XWiki Platform is a generic wiki platform. Starting in version 2.3-milestone-1, the annotation displayer does not execute the content in a restricted context. This allows executing anything with the right of the author of any document by annotating the document. This has been patched in XWiki 13.10.11, 14.4.7 and 14.10. There is no easy workaround except to upgrade.

CVE-2024-45409
ruby-saml General
10.0
CRITICAL
EPSS
42.4%
2024 CWE-347 1 PoC

The Ruby SAML library is for implementing the client side of a SAML authorization. Ruby-SAML in <= 12.2 and 1.13.0 <= 1.16.0 does not properly verify the signature of the SAML Response. An unauthenticated attacker with access to any signed saml document (by the IdP) can thus forge a SAML Response/Assertion with arbitrary contents. This would allow the attacker to log in as arbitrary user within the vulnerable system. This vulnerability is fixed in 1.17.0 and 1.12.3.

CVE-2024-9478
upKeeper Instant Privilege Access General
10.0
CRITICAL
EPSS
0.2%
2024 CWE-266 1 PoC

Improper Privilege Management vulnerability in upKeeper Solutions upKeeper Instant Privilege Access allows Privilege Escalation.This issue affects upKeeper Instant Privilege Access: before 1.2.

CVE-2024-50526
Multi Purpose Mail Form General
10.0
CRITICAL
EPSS
1.1%
2024 CWE-434 2 PoCs

Unrestricted Upload of File with Dangerous Type vulnerability in Lindeni Mahlalela Multi Purpose Mail Form multi-purpose-mail-form allows Upload a Web Shell to a Web Server.This issue affects Multi Purpose Mail Form: from n/a through <= 1.0.2.

CVE-2024-7591
LoadMaster General ⚡ nuclei
10.0
CRITICAL
EPSS
31.5%
2024 CWE-78 1 PoC

Improper Input Validation vulnerability in Progress LoadMaster allows OS Command Injection.This issue affects: * LoadMaster: 7.2.40.0 and above * ECS: All versions * Multi-Tenancy: 7.1.35.4 and above

CVE-2024-39700
extension-template General
10.0
CRITICAL
EPSS
3.9%
2024 CWE-94 1 PoC

JupyterLab extension template is a `copier` template for JupyterLab extensions. Repositories created using this template with `test` option include `update-integration-tests.yml` workflow which has an RCE vulnerability. Extension authors hosting their code on GitHub are urged to upgrade the template to the latest version. Users who made changes to `update-integration-tests.yml`, accept overwriting of this file and re-apply your changes later. Users may wish to temporarily disable GitHub Actions while working on the upgrade. We recommend rebasing all open pull requests from untrusted users as