3333 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-13503
NTC2218, NTC2250, NTC2299 General
9.5
CRITICAL
EPSS
0.5%
2024 CWE-120 1 PoC

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in Newtec NTC2218, NTC2250, NTC2299 on Linux, PowerPC, ARM (Updating signaling process in the swdownload binary modules) allows Local Execution of Code, Remote Code Inclusion. This issue affects NTC2218, NTC2250, NTC2299: from 1.0.1.1 through 2.2.6.19. The issue is both present on the PowerPC versions of the modem and the ARM versions. A stack buffer buffer overflow in the swdownload binary allows attackers to execute arbitrary code. The parse_INFO function uses an unrestricted `sscanf` to read a string of an

CVE-2024-42466
upKeeper Manager General
9.5
CRITICAL
EPSS
0.4%
2024 CWE-307 1 PoC

Improper Restriction of Excessive Authentication Attempts vulnerability in upKeeper Solutions product upKeeper Manager allows Authentication Abuse.This issue affects upKeeper Manager: through 5.1.9.

CVE-2024-35307
Pandora FMS General
9.4
CRITICAL
EPSS
15.3%
2024 CWE-88 1 PoC

Argument Injection Leading to Remote Code Execution in Realtime Graph Extension, allowing unauthenticated attackers to execute arbitrary code on the server. This issue affects Pandora FMS: from 700 through <777.

CVE-2024-6235
NetScaler Console General ⚡ nuclei
9.4
CRITICAL
EPSS
86.8%
2024 0 PoCs

Sensitive information disclosure in NetScaler Console

CVE-2024-23346
pymatgen General
9.4
CRITICAL
EPSS
54.9%
2024 CWE-77 6 PoCs

Pymatgen (Python Materials Genomics) is an open-source Python library for materials analysis. A critical security vulnerability exists in the `JonesFaithfulTransformation.from_transformation_str()` method within the `pymatgen` library prior to version 2024.2.20. This method insecurely utilizes `eval()` for processing input, enabling execution of arbitrary code when parsing untrusted input. Version 2024.2.20 fixes this issue.

CVE-2024-28253
OpenMetadata General ⚡ nuclei
9.4
CRITICAL
EPSS
92.9%
2024 CWE-94 0 PoCs

OpenMetadata is a unified platform for discovery, observability, and governance powered by a central metadata repository, in-depth lineage, and seamless team collaboration. `CompiledRule::validateExpression` is also called from `PolicyRepository.prepare`. `prepare()` is called from `EntityRepository.prepareInternal()` which, in turn, gets called from `EntityResource.createOrUpdate()`. Note that even though there is an authorization check (`authorizer.authorize()`), it gets called after `prepareInternal()` gets called and therefore after the SpEL expression has been evaluated. In order to reach

CVE-2024-25124
fiber General
9.4
CRITICAL
EPSS
0.5%
2024 CWE-346 2 PoCs

Fiber is a web framework written in go. Prior to version 2.52.1, the CORS middleware allows for insecure configurations that could potentially expose the application to multiple CORS-related vulnerabilities. Specifically, it allows setting the Access-Control-Allow-Origin header to a wildcard (`*`) while also having the Access-Control-Allow-Credentials set to true, which goes against recommended security best practices. The impact of this misconfiguration is high as it can lead to unauthorized access to sensitive user data and expose the system to various types of attacks listed in the PortSwig

CVE-2024-36439
Software Genérico General
9.4
CRITICAL
EPSS
0.6%
2024 4 PoCs

Swissphone DiCal-RED 4009 devices allow a remote attacker to gain access to the administrative web interface via the device password's hash value, without knowing the actual device password.

CVE-2024-0917
paddlepaddle/paddle General
9.4
CRITICAL
EPSS
1.8%
2024 CWE-94 1 PoC

remote code execution in paddlepaddle/paddle 2.6.0

CVE-2024-0521
paddlepaddle/paddle General
9.3
CRITICAL
EPSS
0.1%
2024 CWE-94 1 PoC

Code Injection in paddlepaddle/paddle

CVE-2024-0817
paddlepaddle/paddle General
9.3
CRITICAL
EPSS
0.3%
2024 CWE-77 1 PoC

Command injection in IrGraph.draw in paddlepaddle/paddle 2.6.0

CVE-2024-22252
VMware ESXi General
9.3
CRITICAL
EPSS
0.2%
2024 1 PoC

VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbox whereas, on Workstation and Fusion, this may lead to code execution on the machine where Workstation or Fusion is installed.

CVE-2024-39375
Markoni-D (Compact) FM Transmitters General
9.3
CRITICAL
EPSS
0.0%
2024 CWE-603 1 PoC

TELSAT marKoni FM Transmitters are vulnerable to an attacker bypassing authentication and gaining administrator privileges.

CVE-2024-7988
ThinManager® ThinServer™ General
9.3
CRITICAL
EPSS
12.6%
2024 CWE-20 1 PoC

A remote code execution vulnerability exists in the Rockwell Automation ThinManager® ThinServer™ that allows a threat actor to execute arbitrary code with System privileges. This vulnerability exists due to the lack of proper data input validation, which allows files to be overwritten.

CVE-2024-7395
JetPort 5601v3 General
9.3
CRITICAL
EPSS
0.1%
2024 CWE-287 2 PoCs

An authentication bypass vulnerability in Korenix JetPort 5601v3 allows an attacker to access functionality on the device without specifying a password.This issue affects JetPort 5601v3: through 1.2.

CVE-2024-4879
🔥 KEV Now Platform General ⚡ nuclei
9.3
CRITICAL
EPSS
94.3%
2024 CWE-1287 12 PoCs

ServiceNow has addressed an input validation vulnerability that was identified in Vancouver and Washington DC Now Platform releases. This vulnerability could enable an unauthenticated user to remotely execute code within the context of the Now Platform. ServiceNow applied an update to hosted instances, and ServiceNow released the update to our partners and self-hosted customers. Listed below are the patches and hot fixes that address the vulnerability. If you have not done so already, we recommend applying security patches relevant to your instance as soon as possible.

CVE-2024-42500
HPE HP-UX ONCplus General
9.3
CRITICAL
EPSS
0.1%
2024 1 PoC

HPE has identified a denial of service vulnerability in HPE HP-UX System's Network File System (NFSv4) services.

CVE-2024-13502
NTC2218, NTC2250, NTC2299 General
9.3
CRITICAL
EPSS
0.2%
2024 CWE-78 1 PoC

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Newtec/iDirect NTC2218, NTC2250, NTC2299 on Linux, PowerPC, ARM allows Local Code Inclusion.This issue affects NTC2218, NTC2250, NTC2299: from 1.0.1.1 through 2.2.6.19. The `commit_multicast` page used to configure multicasts in the modem's web administration interface uses improperly parses incoming data from the request before passing it to an `eval` statement in a bash script. This allows attackers to inject arbitrary shell commands.

CVE-2024-0815
paddlepaddle/paddle General
9.3
CRITICAL
EPSS
0.1%
2024 CWE-78 1 PoC

Command injection in paddle.utils.download._wget_download (bypass filter) in paddlepaddle/paddle 2.6.0

CVE-2024-24759
mindsdb General ⚡ nuclei
9.3
CRITICAL
EPSS
82.8%
2024 CWE-918 0 PoCs

MindsDB is a platform for building artificial intelligence from enterprise data. Prior to version 23.12.4.2, a threat actor can bypass the server-side request forgery protection on the whole website with DNS Rebinding. The vulnerability can also lead to denial of service. Version 23.12.4.2 contains a patch.