3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-26216
TIBCO EBX Add-ons General
9.1
CRITICAL
EPSS
0.3%
2023 1 PoC

The server component of TIBCO Software Inc.'s TIBCO EBX Add-ons contains an exploitable vulnerability that allows an attacker to upload files to a directory accessible by the web server. Affected releases are TIBCO Software Inc.'s TIBCO EBX Add-ons: versions 4.5.16 and below.

CVE-2023-0877
froxlor/froxlor General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-94 1 PoC

Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11.

CVE-2023-6014
mlflow/mlflow General
9.1
CRITICAL
EPSS
0.9%
2023 CWE-598 1 PoC

An attacker is able to arbitrarily create an account in MLflow bypassing any authentication requirment.

CVE-2023-1712
deepset-ai/haystack General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-547 1 PoC

Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.

CVE-2023-23460
Priority Web General
9.1
CRITICAL
EPSS
0.3%
2023 1 PoC

Priority Web version 19.1.0.68, parameter manipulation on an unspecified end-point may allow authentication bypass.

CVE-2023-36922
SAP ECC and SAP S/4HANA (IS-OIL) General
9.1
CRITICAL
EPSS
0.2%
2023 CWE-78 1 PoC

Due to programming error in function module and report, IS-OIL component in SAP ECC and SAP S/4HANA allows an authenticated attacker to inject an arbitrary operating system command into an unprotected parameter in a common (default) extension.  On successful exploitation, the attacker can read or modify the system data as well as shut down the system.

CVE-2023-28725
Software Genérico General
9.1
CRITICAL
EPSS
2.2%
2023 3 PoCs

General Bytes Crypto Application Server (CAS) 20230120, as distributed with General Bytes BATM devices, allows remote attackers to execute arbitrary Java code by uploading a Java application to the /batm/app/admin/standalone/deployments directory, aka BATM-4780, as exploited in the wild in March 2023. This is fixed in 20221118.48 and 20230120.44.

CVE-2023-31056
Software Genérico General
9.1
CRITICAL
EPSS
0.3%
2023 1 PoC

CloverDX before 5.17.3 writes passwords to the audit log in certain situations, if the audit log is enabled and single sign-on is not employed. The fixed versions are 5.15.4, 5.16.2, 5.17.3, and 6.0.x.

CVE-2023-26556
Software Genérico General
9.1
CRITICAL
EPSS
0.6%
2023 1 PoC

io.finnet tss-lib before 2.0.0 can leak a secret key via a timing side-channel attack because it relies on the scalar-multiplication implementation in Go crypto/elliptic, which is not constant time (there is an if statement in a loop). One leak is in ecdsa/keygen/round_2.go. (bnb-chain/tss-lib and thorchain/tss are also affected.)

CVE-2023-30769
Node General
9.1
CRITICAL
EPSS
1.3%
2023 CWE-400 2 PoCs

Vulnerability discovered is related to the peer-to-peer (p2p) communications, attackers can craft consensus messages, send it to individual nodes and take them offline. An attacker can crawl the network peers using getaddr message and attack the unpatched nodes.

CVE-2023-21456
Samsung Mobile Devices General
9.0
CRITICAL
EPSS
0.1%
2023 CWE-22 1 PoC

Path traversal vulnerability in Galaxy Themes Service prior to SMR Mar-2023 Release 1 allows attacker to access arbitrary file with system uid.

CVE-2023-35085
UniFi Access Points General
9.0
CRITICAL
EPSS
7.0%
2023 1 PoC

An integer overflow vulnerability in all UniFi Access Points and Switches, excluding the Switch Flex Mini, with SNMP Monitoring and default settings enabled could allow a Remote Code Execution (RCE). Affected Products: All UniFi Access Points (Version 6.5.50 and earlier) All UniFi Switches (Version 6.5.32 and earlier) -USW Flex Mini excluded. Mitigation: Update UniFi Access Points to Version 6.5.62 or later. Update the UniFi Switches to Version 6.5.59 or later.

CVE-2023-31422
Kibana General
9.0
CRITICAL
EPSS
0.4%
2023 CWE-532 1 PoC

An issue was discovered by Elastic whereby sensitive information is recorded in Kibana logs in the event of an error. The issue impacts only Kibana version 8.10.0 when logging in the JSON layout or when the pattern layout is configured to log the %meta pattern. Elastic has released Kibana 8.10.1 which resolves this issue. The error object recorded in the log contains request information, which can include sensitive data, such as authentication credentials, cookies, authorization headers, query params, request paths, and other metadata. Some examples of sensitive data which can be included in t

CVE-2023-1287
ENOVIA Live Collaboration General
9.0
CRITICAL
EPSS
2.6%
2023 CWE-74 1 PoC

An XSL template vulnerability in ENOVIA Live Collaboration V6R2013xE allows Remote Code Execution.

CVE-2023-31475
Software Genérico General
9.0
CRITICAL
EPSS
25.8%
2023 1 PoC

An issue was discovered on GL.iNet devices before 3.216. The function guci2_get() found in libglutil.so has a buffer overflow when an item is requested from a UCI context, and the value is pasted into a char pointer to a buffer without checking the size of the buffer.

CVE-2023-6730
huggingface/transformers General
9.0
CRITICAL
EPSS
0.2%
2023 CWE-502 1 PoC

Deserialization of Untrusted Data in GitHub repository huggingface/transformers prior to 4.36.

CVE-2023-0014
NetWeaver ABAP Server and ABAP Platform General
9.0
CRITICAL
EPSS
0.4%
2023 CWE-294 1 PoC

SAP NetWeaver ABAP Server and ABAP Platform - versions SAP_BASIS 700, 701, 702, 710, 711, 730, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, KERNEL 7.22, 7.53, 7.77, 7.81, 7.85, 7.89, KRNL64UC 7.22, 7.22EXT, 7.53, KRNL64NUC 7.22, 7.22EXT, creates information about system identity in an ambiguous format. This could lead to capture-replay vulnerability and may be exploited by malicious users to obtain illegitimate access to the system.

CVE-2023-38388
JupiterX Core General
9.0
CRITICAL
EPSS
22.9%
2023 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type vulnerability in Artbees JupiterX Core.This issue affects JupiterX Core: from n/a through 3.3.5.

CVE-2023-25617
Business Objects (Adaptive Job Server) General
9.0
CRITICAL
EPSS
1.7%
2023 CWE-78 1 PoC

SAP Business Object (Adaptive Job Server) - versions 420, 430, allows remote execution of arbitrary commands on Unix, when program objects execution is enabled, to authenticated users with scheduling rights, using the BI Launchpad, Central Management Console or a custom application based on the public java SDK. Programs could impact the confidentiality, integrity and availability of the system.

CVE-2023-27267
Diagnostics Agent (OSCommand Bridge) General
9.0
CRITICAL
EPSS
2.4%
2023 CWE-306 1 PoC

Due to missing authentication and insufficient input validation, the OSCommand Bridge of SAP Diagnostics Agent - version 720, allows an attacker with deep knowledge of the system to execute scripts on all connected Diagnostics Agents. On successful exploitation, the attacker can completely compromise confidentiality, integrity and availability of the system.