3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-37205
Firefox General
N/A
UNKNOWN
EPSS
0.2%
2023 1 PoC

The use of RTL Arabic characters in the address bar may have allowed for URL spoofing. This vulnerability affects Firefox < 115.

CVE-2023-34723
Software Genérico General
N/A
UNKNOWN
EPSS
3.4%
2023 2 PoCs

An issue was discovered in TechView LA-5570 Wireless Gateway 1.0.19_T53, allows attackers to gain sensitive information via /config/system.conf.

CVE-2023-33269
Software Genérico General
N/A
UNKNOWN
EPSS
1.2%
2023 1 PoC

An issue was discovered in DTS Monitoring 3.57.0. The parameter options within the WGET check function is vulnerable to OS command injection (blind).

CVE-2023-31492
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2023 1 PoC

Zoho ManageEngine ADManager Plus version 7182 and prior disclosed the default passwords for the account restoration of unauthorized domains to the authenticated users.

CVE-2023-21246
Android General
N/A
UNKNOWN
EPSS
0.0%
2023 1 PoC

In ShortcutInfo of ShortcutInfo.java, there is a possible way for an app to retain notification listening access due to an uncaught exception. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVE-2023-47283
CubeCart General
N/A
UNKNOWN
EPSS
0.3%
2023 1 PoC

Directory traversal vulnerability in CubeCart prior to 6.5.3 allows a remote authenticated attacker with an administrative privilege to obtain files in the system.

CVE-2023-6205
Firefox General
N/A
UNKNOWN
EPSS
0.4%
2023 1 PoC

It was possible to cause the use of a MessagePort after it had already been freed, which could potentially have led to an exploitable crash. This vulnerability affects Firefox < 120, Firefox ESR < 115.5.0, and Thunderbird < 115.5.

CVE-2023-38877
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2023 1 PoC

A host header injection vulnerability exists in gugoan's Economizzer v.0.9-beta1 and commit 3730880 (April 2023). By sending a specially crafted host header in the reset password request, it is possible to send password reset links to users which, once clicked, lead to an attacker-controlled server and thus leak the password reset token. This allows an attacker to reset other users' passwords.

CVE-2023-39004
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

Insecure permissions in the configuration directory (/conf/) of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allow attackers to access sensitive information (e.g., hashed root password) which could lead to privilege escalation.

CVE-2023-29409
crypto/tls General
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

Extremely large RSA keys in certificate chains can cause a client/server to expend significant CPU time verifying signatures. With fix, the size of RSA keys transmitted during handshakes is restricted to <= 8192 bits. Based on a survey of publicly trusted RSA keys, there are currently only three certificates in circulation with keys larger than this, and all three appear to be test certificates that are not actively deployed. It is possible there are larger keys in use in private PKIs, but we target the web PKI, so causing breakage here in the interests of increasing the default safety of user

CVE-2023-26760
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

Sme.UP ERP TOKYO V6R1M220406 was discovered to contain an information disclosure vulnerability via the /debug endpoint. This vulnerability allows attackers to access cleartext credentials needed to authenticate to the AS400 system.

CVE-2023-38971
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2023 1 PoC

Cross Site Scripting vulnerabiltiy in Badaso v.0.0.1 thru v.2.9.7 allows a remote attacker to execute arbitrary code via a crafted payload to the rack number parameter in the add new rack function.

CVE-2023-49964
Software Genérico General
N/A
UNKNOWN
EPSS
5.7%
2023 1 PoC

An issue was discovered in Hyland Alfresco Community Edition through 7.2.0. By inserting malicious content in the folder.get.html.ftl file, an attacker may perform SSTI (Server-Side Template Injection) attacks, which can leverage FreeMarker exposed objects to bypass restrictions and achieve RCE (Remote Code Execution). NOTE: this issue exists because of an incomplete fix for CVE-2020-12873.

CVE-2023-32407
macOS General
N/A
UNKNOWN
EPSS
2.5%
2023 1 PoC

A logic issue was addressed with improved state management. This issue is fixed in watchOS 9.5, tvOS 16.5, macOS Ventura 13.4, iOS 15.7.6 and iPadOS 15.7.6, macOS Big Sur 11.7.7, macOS Monterey 12.6.6, iOS 16.5 and iPadOS 16.5. An app may be able to bypass Privacy preferences.

CVE-2023-31069
Software Genérico General
N/A
UNKNOWN
EPSS
1.1%
2023 2 PoCs

An issue was discovered in TSplus Remote Access through 16.0.2.14. Credentials are stored as cleartext within the HTML source code of the login page.

CVE-2023-21400
Android General
N/A
UNKNOWN
EPSS
0.0%
2023 1 PoC

In multiple functions of io_uring.c, there is a possible kernel memory corruption due to improper locking. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.

CVE-2023-27169
Software Genérico General
N/A
UNKNOWN
EPSS
0.2%
2023 2 PoCs

Xpand IT Write-back manager v2.3.1 uses a hardcoded salt in license class configuration which leads to the generation of a hardcoded and predictable symmetric encryption keys for license generation and validation.

CVE-2023-40293
Software Genérico General
N/A
UNKNOWN
EPSS
0.3%
2023 1 PoC

Harman Infotainment 20190525031613 and later allows command injection via unauthenticated RPC with a D-Bus connection object.

CVE-2023-40791
Software Genérico General
N/A
UNKNOWN
EPSS
0.0%
2023 1 PoC

extract_user_to_sg in lib/scatterlist.c in the Linux kernel before 6.4.12 fails to unpin pages in a certain situation, as demonstrated by a WARNING for try_grab_page.

CVE-2023-46324
Software Genérico General
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

pkg/suci/suci.go in free5GC udm before 1.2.0, when Go before 1.19 is used, allows an Invalid Curve Attack because it may compute a shared secret via an uncompressed public key that has not been validated. An attacker can send arbitrary SUCIs to the UDM, which tries to decrypt them via both its private key and the attacker's public key.