3333 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-23443
Kibana General
4.9
MEDIUM
EPSS
5.4%
2024 CWE-400 1 PoC

A high-privileged user, allowed to create custom osquery packs 17 could affect the availability of Kibana by uploading a maliciously crafted osquery pack.

CVE-2024-51665
Magical Addons For Elementor General
4.9
MEDIUM
EPSS
35.4%
2024 CWE-918 1 PoC

Server-Side Request Forgery (SSRF) vulnerability in Noor Alam Magical Addons For Elementor magical-addons-for-elementor allows Server Side Request Forgery.This issue affects Magical Addons For Elementor: from n/a through <= 1.2.1.

CVE-2024-22723
Software Genérico General
4.9
MEDIUM
EPSS
0.2%
2024 1 PoC

Webtrees 2.1.18 is vulnerable to Directory Traversal. By manipulating the "media_folder" parameter in the URL, an attacker (in this case, an administrator) can navigate beyond the intended directory (the 'media/' directory) to access sensitive files in other parts of the application's file system.

CVE-2024-31955
Software Genérico General
4.9
MEDIUM
EPSS
0.0%
2024 1 PoC

An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the RPMB (Replay Protected Memory Block) area without possessing secret information.

CVE-2024-22275
VMware vCenter Server General
4.9
MEDIUM
EPSS
11.7%
2024 1 PoC

The vCenter Server contains a partial file read vulnerability. A malicious actor with administrative privileges on the vCenter appliance shell may exploit this issue to partially read arbitrary files containing sensitive data.

CVE-2024-23791
OTRS General
4.9
MEDIUM
EPSS
0.1%
2024 CWE-532 1 PoC

Insertion of debug information into log file during building the elastic search index allows reading of sensitive information from articles.This issue affects OTRS: from 7.0.X through 7.0.48, from 8.0.X through 8.0.37, from 2023.X through 2023.1.1.

CVE-2024-20871
Samsung Keyboard General
4.9
MEDIUM
EPSS
0.0%
2024 1 PoC

Improper authorization vulnerability in Samsung Keyboard prior to version One UI 5.1.1 allows physical attackers to partially bypass the factory reset protection.

CVE-2024-38460
Software Genérico General
4.9
MEDIUM
EPSS
0.2%
2024 1 PoC

In SonarQube before 10.4 and 9.9.4 LTA, encrypted values generated using the Settings Encryption feature are potentially exposed in cleartext as part of the URL parameters in the logs (such as SonarQube Access Logs, Proxy Logs, etc).

CVE-2024-36814
Software Genérico General
4.9
MEDIUM
EPSS
0.4%
2024 1 PoC

An arbitrary file read vulnerability in Adguard Home before v0.107.52 allows authenticated attackers to access arbitrary files as root on the underlying Operating System via placing a crafted file into a readable directory.

CVE-2024-40553
Software Genérico General
4.9
MEDIUM
EPSS
0.1%
2024 1 PoC

Tmall_demo v2024.07.03 was discovered to contain an arbitrary file upload via the component uploadUserHeadImage.

CVE-2024-6696
Pentaho Data Integration & Analytics General
4.9
MEDIUM
EPSS
0.0%
2024 CWE-1220 1 PoC

The product implements access controls via a policy or other feature with the intention to disable or restrict accesses (reads and/or writes) to assets in a system from untrusted agents. However, implemented access controls lack required granularity, which renders the control policy too broad because it allows accesses from unauthorized agents to the security-sensitive assets. (CWE-1220)  Hitachi Vantara Pentaho Business Analytics Server versions before 10.2.0.0 and 9.3.0.9, including 8.3.x, do not correctly perform an authorization check in the user console trash content  An attac

CVE-2024-51432
Software Genérico General
4.8
MEDIUM
EPSS
0.2%
2024 1 PoC

Cross Site Scripting vulnerability in FiberHome HG6544C RP2743 allows an attacker to execute arbitrary code via the SSID field in the WIFI Clients List not being sanitized

CVE-2024-53617
Software Genérico General
4.8
MEDIUM
EPSS
5.3%
2024 1 PoC

A Cross Site Scripting vulnerability in LibrePhotos before commit 32237 allows attackers to takeover any account via uploading an HTML file on behalf of the admin user using IDOR in file upload.

CVE-2024-48872
Mattermost General
4.8
MEDIUM
EPSS
0.1%
2024 CWE-362 1 PoC

Mattermost versions 10.1.x <= 10.1.2, 10.0.x <= 10.0.2, 9.11.x <= 9.11.4, and 9.5.x <= 9.5.12 fail to prevent concurrently checking and updating the failed login attempts. which allows an attacker to bypass of "Max failed attempts" restriction and send a big number of login attempts before being blocked via simultaneously sending multiple login requests

CVE-2024-48948
Software Genérico General
4.8
MEDIUM
EPSS
0.2%
2024 1 PoC

The Elliptic package 6.5.7 for Node.js, in its for ECDSA implementation, does not correctly verify valid signatures if the hash contains at least four leading 0 bytes and when the order of the elliptic curve's base point is smaller than the hash, because of an _truncateToN anomaly. This leads to valid signatures being rejected. Legitimate transactions or communications may be incorrectly flagged as invalid.

CVE-2024-42901
Software Genérico General
4.8
MEDIUM
EPSS
0.2%
2024 1 PoC

A CSV injection vulnerability in Lime Survey v6.5.12 allows attackers to execute arbitrary code via uploading a crafted CSV file.

CVE-2024-10559
Airport Booking Management System General
4.8
MEDIUM
EPSS
0.1%
2024 CWE-120 1 PoC

A vulnerability was found in SourceCodester Airport Booking Management System 1.0 and classified as critical. Affected by this issue is the function Details. The manipulation of the argument passport/name leads to buffer overflow. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well.

CVE-2024-11097
Student Record Management System General
4.8
MEDIUM
EPSS
0.0%
2024 CWE-835 1 PoC

A vulnerability has been found in SourceCodester Student Record Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the component Main Menu. The manipulation leads to infinite loop. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVE-2024-11261
Student Record Management System General
4.8
MEDIUM
EPSS
0.1%
2024 CWE-119 1 PoC

A vulnerability, which was classified as critical, was found in SourceCodester Student Record Management System 1.0. Affected is an unknown function of the file StudentRecordManagementSystem.cpp of the component Number of Students Menu. The manipulation leads to memory corruption. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

CVE-2024-39836
Mattermost General
4.8
MEDIUM
EPSS
0.5%
2024 CWE-693 1 PoC

Mattermost versions 9.9.x <= 9.9.1, 9.5.x <= 9.5.7, 9.10.x <= 9.10.0 and 9.8.x <= 9.8.2 fail to ensure that remote/synthetic users cannot create sessions or reset passwords, which allows the munged email addresses, created by shared channels, to be used to receive email notifications and to reset passwords, when they are valid, functional emails.