3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-53962
Impact/Pulse/First General
8.8
HIGH
EPSS
5.3%
2023 CWE-22 2 PoCs

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated directory traversal vulnerability that allows remote attackers to write arbitrary files through the 'upgfile' parameter in upload.cgi. Attackers can exploit the vulnerability by sending crafted multipart form-data POST requests with directory traversal sequences to write files to unintended system locations.

CVE-2023-25355
Software Genérico General
8.8
HIGH
EPSS
10.8%
2023 2 PoCs

CoreDial sipXcom up to and including 21.04 is vulnerable to Insecure Permissions. A user who has the ability to run commands as the `daemon` user on a sipXcom server can overwrite a service file, and escalate their privileges to `root`.

CVE-2023-5839
hestiacp/hestiacp General
8.8
HIGH
EPSS
0.0%
2023 CWE-268 1 PoC

Privilege Chaining in GitHub repository hestiacp/hestiacp prior to 1.8.9.

CVE-2023-4033
mlflow/mlflow General
8.8
HIGH
EPSS
0.2%
2023 CWE-78 1 PoC

OS Command Injection in GitHub repository mlflow/mlflow prior to 2.6.0.

CVE-2023-26122
safe-eval General
8.8
HIGH
EPSS
8.1%
2023 CWE-265 1 PoC

All versions of the package safe-eval are vulnerable to Sandbox Bypass due to improper input sanitization. The vulnerability is derived from prototype pollution exploitation. Exploiting this vulnerability might result in remote code execution ("RCE"). **Vulnerable functions:** __defineGetter__, stack(), toLocaleString(), propertyIsEnumerable.call(), valueOf().

CVE-2023-25732
Firefox General
8.8
HIGH
EPSS
0.2%
2023 1 PoC

When encoding data from an <code>inputStream</code> in <code>xpcom</code> the size of the input being encoded was not correctly calculated potentially leading to an out of bounds memory write. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.

CVE-2023-1219
Chrome General
8.8
HIGH
EPSS
0.2%
2023 1 PoC

Heap buffer overflow in Metrics in Google Chrome prior to 111.0.5563.64 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVE-2023-53964
Impact/Pulse/First General
8.8
HIGH
EPSS
1.2%
2023 CWE-306 2 PoCs

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an unauthenticated vulnerability in the /usr/cgi-bin/restorefactory.cgi endpoint that allows remote attackers to reset device configuration. Attackers can send a POST request to the endpoint with specific data to trigger a factory reset and bypass authentication, gaining full system control.

CVE-2023-24217
Software Genérico General
8.8
HIGH
EPSS
4.9%
2023 1 PoC

AgileBio Electronic Lab Notebook v4.234 was discovered to contain a local file inclusion vulnerability.

CVE-2023-26690
Software Genérico General
8.8
HIGH
EPSS
0.7%
2023 1 PoC

File Upload vulnerability in CS-Cart MultiVendor 4.16.1 allows remote attackers to run arbitrary code via File Manager/Editor component in the vendor or admin menu.

CVE-2023-50015
Software Genérico General
8.8
HIGH
EPSS
0.3%
2023 1 PoC

An issue was discovered in Grandstream GXP14XX 1.0.8.9 and GXP16XX 1.0.7.13, allows remote attackers to escalate privileges via incorrect access control using an end-user session-identity token.

CVE-2023-33533
Software Genérico General
8.8
HIGH
EPSS
6.5%
2023 1 PoC

Netgear D6220 with Firmware Version 1.0.0.80, D8500 with Firmware Version 1.0.3.60, R6700 with Firmware Version 1.0.2.26, and R6900 with Firmware Version 1.0.2.26 are vulnerable to Command Injection. If an attacker gains web management privileges, they can inject commands into the post request parameters, gaining shell privileges.

CVE-2023-39780
🔥 KEV RT-AX55 General
8.8
HIGH
EPSS
41.1%
2023 CWE-78 1 PoC

On ASUS RT-AX55 3.0.0.4.386.51598 devices, authenticated attackers can perform OS command injection via the /start_apply.htm qos_bw_rulelist parameter. NOTE: for the similar "token-generated module" issue, see CVE-2023-41345; for the similar "token-refresh module" issue, see CVE-2023-41346; for the similar "check token module" issue, see CVE-2023-41347; and for the similar "code-authentication module" issue, see CVE-2023-41348.

CVE-2023-51066
Software Genérico General
8.8
HIGH
EPSS
9.0%
2023 1 PoC

An authenticated remote code execution vulnerability in QStar Archive Solutions Release RELEASE_3-0 Build 7 Patch 0 allows attackers to arbitrarily execute commands.

CVE-2023-4125
answerdev/answer General
8.8
HIGH
EPSS
0.2%
2023 CWE-521 1 PoC

Weak Password Requirements in GitHub repository answerdev/answer prior to v1.1.0.

CVE-2023-4355
Chrome General
8.8
HIGH
EPSS
39.3%
2023 1 PoC

Out of bounds memory access in V8 in Google Chrome prior to 116.0.5845.96 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVE-2023-43236
Software Genérico General
8.8
HIGH
EPSS
1.9%
2023 1 PoC

D-Link DIR-816 A2 v1.10CNB05 was discovered to contain a stack overflow via parameter statuscheckpppoeuser in dir_setWanWifi.

CVE-2023-2724
Chrome General
8.8
HIGH
EPSS
15.2%
2023 1 PoC

Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVE-2023-26314
Software Genérico General
8.8
HIGH
EPSS
1.2%
2023 2 PoCs

The mono package before 6.8.0.105+dfsg-3.3 for Debian allows arbitrary code execution because the application/x-ms-dos-executable MIME type is associated with an un-sandboxed Mono CLR interpreter.

CVE-2023-33284
Software Genérico General
8.8
HIGH
EPSS
1.2%
2023 1 PoC

Marval MSM through 14.19.0.12476 and 15.0 has a Remote Code Execution vulnerability. A remote attacker authenticated as any user is able to execute code in context of the web server.