3387 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2023-42931
macOS General
8.3
HIGH
EPSS
2.8%
2023 2 PoCs

The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.6.3, macOS Sonoma 14.2, macOS Monterey 12.7.2. A process may gain admin privileges without proper authentication.

CVE-2023-0227
pyload/pyload General
8.3
HIGH
EPSS
0.1%
2023 CWE-613 1 PoC

Insufficient Session Expiration in GitHub repository pyload/pyload prior to 0.5.0b3.dev36.

CVE-2023-32226
Sysaid General
8.3
HIGH
EPSS
0.1%
2023 CWE-552 1 PoC

Sysaid - CWE-552: Files or Directories Accessible to External Parties -  Authenticated users may exfiltrate files from the server via an unspecified method.

CVE-2023-5846
TS-550 General
8.3
HIGH
EPSS
0.0%
2023 CWE-916 1 PoC

Franklin Fueling System TS-550 versions prior to 1.9.23.8960 are vulnerable to attackers decoding admin credentials, resulting in unauthenticated access to the device.

CVE-2023-4815
answerdev/answer General
8.3
HIGH
EPSS
0.1%
2023 CWE-306 1 PoC

Missing Authentication for Critical Function in GitHub repository answerdev/answer prior to v1.1.3.

CVE-2023-26573
IDWeb General
8.2
HIGH
EPSS
0.2%
2023 CWE-306 1 PoC

Missing authentication in the SetDB method in IDAttend’s IDWeb application 3.1.052 and earlier allows denial of service or theft of database login credentials.

CVE-2023-27326
Desktop General
8.2
HIGH
EPSS
2.8%
2023 CWE-22 2 PoCs

Parallels Desktop Toolgate Directory Traversal Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop. An attacker must first obtain the ability to execute high-privileged code on the target guest system in order to exploit this vulnerability. The specific flaw exists within the Toolgate component. The issue results from the lack of proper validation of a user-supplied path prior to using it in file operations. An attacker can leverage this vulnerability to escalate privileges and execute arbitr

CVE-2023-0975
Trellix Agent General
8.2
HIGH
EPSS
0.0%
2023 CWE-281 1 PoC

A vulnerability exists in Trellix Agent for Windows version 5.7.8 and earlier, that allows local users, during install/upgrade workflow, to replace one of the Agent’s executables before it can be executed. This allows the user to elevate their permissions.

CVE-2023-27351
🔥 KEV NG General ⚡ nuclei
8.2
HIGH
EPSS
87.0%
2023 CWE-287 0 PoCs

This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Build 63914). Authentication is not required to exploit this vulnerability. The specific flaw exists within the SecurityRequestFilter class. The issue results from improper implementation of the authentication algorithm. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-19226.

CVE-2023-26114
code-server General
8.2
HIGH
EPSS
0.2%
2023 CWE-1385 1 PoC

Versions of the package code-server before 4.10.1 are vulnerable to Missing Origin Validation in WebSockets handshakes. Exploiting this vulnerability can allow an adversary in specific scenarios to access data from and connect to the code-server instance.

CVE-2023-41806
Pandora FMS General
8.2
HIGH
EPSS
0.1%
2023 CWE-269 1 PoC

Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation. This vulnerability causes that a bad privilege assignment could cause a DOS attack that affects the availability of the Pandora FMS server. This issue affects Pandora FMS: from 700 through 773.

CVE-2023-45539
Software Genérico General
8.2
HIGH
EPSS
0.0%
2023 1 PoC

HAProxy before 2.8.2 accepts # as part of the URI component, which might allow remote attackers to obtain sensitive information or have unspecified other impact upon misinterpretation of a path_end rule, such as routing index.html#.png to a static server.

CVE-2023-5760
Avast/Avg Antivirus General
8.2
HIGH
EPSS
0.1%
2023 CWE-367 1 PoC

A time-of-check to time-of-use (TOCTOU) bug in handling of IOCTL (input/output control) requests. This TOCTOU bug leads to an out-of-bounds write vulnerability which can be further exploited, allowing an attacker to gain full local privilege escalation on the system.This issue affects Avast/Avg Antivirus: 23.8.

CVE-2023-4898
mintplex-labs/anything-llm General
8.2
HIGH
EPSS
0.1%
2023 CWE-305 1 PoC

Authentication Bypass by Primary Weakness in GitHub repository mintplex-labs/anything-llm prior to 0.0.1.

CVE-2023-21501
Samsung Mobile Devices General
8.2
HIGH
EPSS
0.1%
2023 CWE-20 1 PoC

Improper input validation vulnerability in mPOS fiserve trustlet prior to SMR May-2023 Release 1 allows local attackers to execute arbitrary code.

CVE-2023-28324
Ivanti Endpoint Manager General
8.2
HIGH
EPSS
79.9%
2023 1 PoC

A improper input validation vulnerability exists in Ivanti Endpoint Manager 2022 and below that could allow privilege escalation or remote code execution.

CVE-2023-5948
teamamaze/amazefileutilities General
8.2
HIGH
EPSS
0.0%
2023 CWE-285 1 PoC

Improper Authorization in GitHub repository teamamaze/amazefileutilities prior to 1.91.

CVE-2023-26133
progressbar.js General
8.2
HIGH
EPSS
0.1%
2023 CWE-1321 1 PoC

All versions of the package progressbar.js are vulnerable to Prototype Pollution via the function extend() in the file utils.js.

CVE-2023-52169
Software Genérico General
8.2
HIGH
EPSS
0.2%
2023 1 PoC

The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains an out-of-bounds read that allows an attacker to read beyond the intended buffer. The bytes read beyond the intended buffer are presented as a part of a filename listed in the file system image. This has security relevance in some known web-service use cases where untrusted users can upload files and have them extracted by a server-side 7-Zip process.

CVE-2023-7009
Kontrol Lux General
8.2
HIGH
EPSS
0.0%
2023 1 PoC

Some Sciener-based locks support plaintext message processing over Bluetooth Low Energy, allowing unencrypted malicious commands to be passed to the lock. These malicious commands, less then 16 bytes in length, will be processed by the lock as if they were encrypted communications. This can be further exploited by an attacker to compromise the lock's integrity.