40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-0939
janeczku/calibre-web General
9.0
CRITICAL
EPSS
0.3%
2022 CWE-918 1 PoC

Server-Side Request Forgery (SSRF) in GitHub repository janeczku/calibre-web prior to 0.6.18.

CVE-2021-25387
Samsung Mobile Devices General
9.0
CRITICAL
EPSS
0.2%
2021 CWE-122 1 PoC

An improper input validation vulnerability in sflacfd_get_frm() in libsflacextractor library prior to SMR MAY-2021 Release 1 allows attackers to execute arbitrary code on mediaextractor process.

CVE-2017-2867
Natus General
9.0
CRITICAL
EPSS
1.9%
2017 1 PoC

An exploitable code execution vulnerability exists in the SavePatientMontage functionality of Natus Xltek NeuroWorks 8. A specially crafted network packet can cause a stack buffer overflow resulting in code execution. An attacker can a malicious packet to trigger this vulnerability.

CVE-2023-27830
Software Genérico General
9.0
CRITICAL
EPSS
0.5%
2023 1 PoC

TightVNC before v2.8.75 allows attackers to escalate privileges on the host operating system via replacing legitimate files with crafted files when executing a file transfer. This is due to the fact that TightVNC runs in the backend as a high-privileges account.

CVE-2023-38388
JupiterX Core General
9.0
CRITICAL
EPSS
22.9%
2023 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5.

CVE-2025-30406
🔥 KEV CentreStack General ⚡ nuclei
9.0
CRITICAL
EPSS
83.4%
2025 CWE-321 6 PoCs

Gladinet CentreStack through 16.1.10296.56315 (fixed in 16.4.10315.56368) has a deserialization vulnerability due to the CentreStack portal's hardcoded machineKey use, as exploited in the wild in March 2025. This enables threat actors (who know the machineKey) to serialize a payload for server-side deserialization to achieve remote code execution. NOTE: a CentreStack admin can manually delete the machineKey defined in portal\web.config.

CVE-2023-0014
NetWeaver ABAP Server and ABAP Platform General
9.0
CRITICAL
EPSS
0.4%
2023 CWE-294 1 PoC

SAP NetWeaver ABAP Server and ABAP Platform - versions SAP_BASIS 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, KERNEL 7.22, 7.53, 7.77, 7.81, 7.85, 7.89, KRNL64UC 7.22, 7.22EXT, 7.53, KRNL64NUC 7.22, 7.22EXT, creates information about system identity in an ambiguous format. This could lead to capture-replay vulnerability and may be exploited by malicious users to obtain illegitimate access to the system.

CVE-2019-5015
Pixar Renderman General
9.0
CRITICAL
EPSS
0.0%
2019 CWE-749 1 PoC

A local privilege escalation vulnerability exists in the Mac OS X version of Pixar Renderman 22.3.0's Install Helper helper tool. A user with local access can use this vulnerability to escalate their privileges to root. An attacker would need local access to the machine for a successful exploit.

CVE-2018-3947
Yi Technology General
9.0
CRITICAL
EPSS
0.5%
2018 1 PoC

An exploitable information disclosure vulnerability exists in the phone-to-camera communications of Yi Home Camera 27US 1.8.7.0D. An attacker can sniff network traffic to exploit this vulnerability.

CVE-2018-3934
Yi Technology General
9.0
CRITICAL
EPSS
1.7%
2018 1 PoC

An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted set of UDP packets can cause a logic flaw, resulting in an authentication bypass. An attacker can sniff network traffic and send a set of packets to trigger this vulnerability.

CVE-2024-42465
upKeeper Manager General
9.0
CRITICAL
EPSS
0.4%
2024 CWE-307 1 PoC

Improper Restriction of Excessive Authentication Attempts vulnerability in upKeeper Solutions product upKeeper Manager allows Authentication Abuse.This issue affects upKeeper Manager: through 5.1.9.

CVE-2018-4054
Pixar Renderman General
9.0
CRITICAL
EPSS
0.0%
2018 1 PoC

A local privilege escalation vulnerability exists in the install helper tool of the Mac OS X version of Pixar Renderman, version 22.2.0. A user with local access can use this vulnerability to escalate their privileges to root. An attacker would need local access to the machine to successfully exploit this flaw.

CVE-2023-1287
ENOVIA Live Collaboration General
9.0
CRITICAL
EPSS
2.6%
2023 CWE-74 1 PoC

An XSL template vulnerability in ENOVIA Live Collaboration V6R2013xE allows Remote Code Execution.

CVE-2024-10773
SICK InspectorP61x General
9.0
CRITICAL
EPSS
0.4%
2024 CWE-912 1 PoC

The product is vulnerable to pass-the-hash attacks in combination with hardcoded credentials of hidden user levels. This means that an attacker can log in with the hidden user levels and gain full access to the device.

CVE-2017-2883
Circle General
9.0
CRITICAL
EPSS
1.0%
2017 1 PoC

An exploitable vulnerability exists in the database update functionality of Circle with Disney running firmware 2.0.1. Specially crafted network packets can cause the device to execute arbitrary code. An attacker needs to impersonate a remote server in order to trigger this vulnerability.

CVE-2020-10062
zephyr General
9.0
CRITICAL
EPSS
5.8%
2020 CWE-193 2 PoCs

An off-by-one error in the Zephyr project MQTT packet length decoder can result in memory corruption and possible remote code execution. NCC-ZEP-031 This issue affects: zephyrproject-rtos zephyr version 2.2.0 and later versions.

CVE-2021-33351
Software Genérico General
9.0
CRITICAL
EPSS
0.4%
2021 1 PoC

Cross Site Scripting Vulnerability in Wyomind Help Desk Magento 2 extension v.1.3.6 and before and fixed in v.1.3.7 allows attackers to escalte privileges via a crafted payload in the ticket message field.

CVE-2017-2882
Circle General
9.0
CRITICAL
EPSS
1.2%
2017 1 PoC

An exploitable vulnerability exists in the servers update functionality of Circle with Disney running firmware 2.0.1. Specially crafted network packets can cause the device to overwrite sensitive files, resulting in code execution. An attacker needs to impersonate a remote server in order to trigger this vulnerability.

CVE-2020-29026
GateManager General
9.0
CRITICAL
EPSS
0.3%
2020 CWE-22 1 PoC

A directory traversal vulnerability exists in the file upload function of the GateManager that allows an authenticated attacker with administrative permissions to read and write arbitrary files in the Linux file system. This issue affects: GateManager all versions prior to 9.2c.