2350 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2020-11651
🔥 KEV Software Genérico General
9.8
CRITICAL
EPSS
94.2%
2020 14 PoCs

An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly validate method calls. This allows a remote user to access some methods without authentication. These methods can be used to retrieve user tokens from the salt master and/or run arbitrary commands on salt minions.

CVE-2020-23584
Software Genérico General
9.8
CRITICAL
EPSS
19.0%
2020 2 PoCs

Unauthenticated remote code execution in OPTILINK OP-XT71000N, Hardware Version: V2.2 occurs when the attacker passes arbitrary commands with IP-ADDRESS using " | " to execute commands on " /diag_tracert_admin.asp " in the "PingTest" parameter that leads to command execution.

CVE-2020-36239
Jira Data Center General
9.8
CRITICAL
EPSS
16.2%
2020 CWE-862 1 PoC

Jira Data Center, Jira Core Data Center, Jira Software Data Center from version 6.3.0 before 8.5.16, from 8.6.0 before 8.13.8, from 8.14.0 before 8.17.0 and Jira Service Management Data Center from version 2.0.2 before 4.5.16, from version 4.6.0 before 4.13.8, and from version 4.14.0 before 4.17.0 exposed a Ehcache RMI network service which attackers, who can connect to the service, on port 40001 and potentially 40011[0][1], could execute arbitrary code of their choice in Jira through deserialization due to a missing authentication vulnerability. While Atlassian strongly suggests restricting a

CVE-2020-7697
mock2easy General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package mock2easy. a malicious user could inject commands through the _data variable: Affected Area require('../server/getJsonByCurl')(mock2easy, function (error, stdout) { if (error) { return res.json(500, error); } res.json(JSON.parse(stdout)); }, '', _data.interfaceUrl, query, _data.cookie,_data.interfaceType);

CVE-2020-26867
PcVue General
9.8
CRITICAL
EPSS
3.2%
2020 CWE-502 2 PoCs

ARC Informatique PcVue prior to version 12.0.17 is vulnerable due to the deserialization of untrusted data, which may allow an attacker to remotely execute arbitrary code on the web and mobile back-end server.

CVE-2020-10915
One Agent General
9.8
CRITICAL
EPSS
83.9%
2020 CWE-502 2 PoCs

This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.4587. Authentication is not required to exploit this vulnerability. The specific flaw exists within the HandshakeResult method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-10401.

CVE-2020-10914
One Agent General
9.8
CRITICAL
EPSS
79.6%
2020 CWE-502 1 PoC

This vulnerability allows remote attackers to execute arbitrary code on affected installations of VEEAM One Agent 9.5.4.4587. Authentication is not required to exploit this vulnerability. The specific flaw exists within the PerformHandshake method. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-10400.

CVE-2020-7775
freediskspace General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package freediskspace. The vulnerability arises out of improper neutralization of arguments in line 71 of freediskspace.js.

CVE-2020-7725
worksmith General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package worksmith are vulnerable to Prototype Pollution via the setValue function.

CVE-2020-26919
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
93.8%
2020 1 PoC

NETGEAR JGS516PE devices before 2.6.0.43 are affected by lack of access control at the function level.

CVE-2020-6152
Accusoft General
9.8
CRITICAL
EPSS
0.5%
2020 CWE-252 1 PoC

A code execution vulnerability exists in the DICOM parse_dicom_meta_info functionality of Accusoft ImageGear 19.7. A specially crafted malformed file can cause an out-of-bounds write. An attacker can trigger this vulnerability by providing a victim with a malicious DICOM file.

CVE-2020-6072
Videolabs General
9.8
CRITICAL
EPSS
0.8%
2020 1 PoC

An exploitable code execution vulnerability exists in the label-parsing functionality of Videolabs libmicrodns 0.1.0. When parsing compressed labels in mDNS messages, the rr_decode function's return value is not checked, leading to a double free that could be exploited to execute arbitrary code. An attacker can send an mDNS message to trigger this vulnerability.

CVE-2020-7713
arr-flatten-unflatten General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package arr-flatten-unflatten are vulnerable to Prototype Pollution via the constructor.

CVE-2020-28438
deferred-exec General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package deferred-exec. The injection point is located in line 42 in lib/deferred-exec.js

CVE-2020-8644
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.1%
2020 3 PoCs

PlaySMS before 1.4.3 does not sanitize inputs from a malicious string.

CVE-2020-15505
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.4%
2020 2 PoCs

A remote code execution vulnerability in MobileIron Core & Connector versions 10.3.0.3 and earlier, 10.4.0.0, 10.4.0.1, 10.4.0.2, 10.4.0.3, 10.5.1.0, 10.5.2.0 and 10.6.0.0; and Sentry versions 9.7.2 and earlier, and 9.8.0; and Monitor and Reporting Database (RDB) version 2.0.0.1 and earlier that allows remote attackers to execute arbitrary code via unspecified vectors.

CVE-2020-7723
promisehelpers General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package promisehelpers are vulnerable to Prototype Pollution via the insert function.

CVE-2020-7715
deep-get-set General
9.8
CRITICAL
EPSS
0.8%
2020 2 PoCs

All versions of package deep-get-set are vulnerable to Prototype Pollution via the main function.

CVE-2020-6076
Accusoft General
9.8
CRITICAL
EPSS
1.4%
2020 1 PoC

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll ICO icoread parser of the Accusoft ImageGear 19.5.0 library. A specially crafted ICO file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.