40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-57684
Software Genérico General
9.8
CRITICAL
EPSS
4.0%
2024 1 PoC

An access control issue in the component formDMZ.cgi of D-Link 816A2_FWv1.10CNB05_R1B011D88210 allows unauthenticated attackers to set the DMZ service of the device via a crafted POST request.

CVE-2024-20017
MT6890, MT7915, MT7916, MT7981, MT7986 General
9.8
CRITICAL
EPSS
68.2%
2024 2 PoCs

In wlan service, there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation Patch ID: WCNCR00350938; Issue ID: MSV-1132.

CVE-2024-22836
Software Genérico General
9.8
CRITICAL
EPSS
38.2%
2024 1 PoC

An OS command injection vulnerability exists in Akaunting v3.1.3 and earlier. An attacker can manipulate the company locale when installing an app to execute system commands on the hosting server.

CVE-2024-2055
Artica Proxy General
9.8
CRITICAL
EPSS
0.1%
2024 CWE-288 2 PoCs

The "Rich Filemanager" feature of Artica Proxy provides a web-based interface for file management capabilities. When the feature is enabled, it does not require authentication by default, and runs as the root user.

CVE-2024-55557
Software Genérico General
9.8
CRITICAL
EPSS
21.3%
2024 2 PoCs

ui/pref/ProxyPrefView.java in weasis-core in Weasis 4.5.1 has a hardcoded key for symmetric encryption of proxy credentials.

CVE-2024-36042
Software Genérico General
9.8
CRITICAL
EPSS
0.2%
2024 1 PoC

Silverpeas before 6.3.5 allows authentication bypass by omitting the Password field to AuthenticationServlet, often providing an unauthenticated user with superadmin access.

CVE-2024-54805
Software Genérico General
9.8
CRITICAL
EPSS
1.4%
2024 1 PoC

Netgear WNR854T 1.5.2 (North America) is vulnerable to Command Injection. An attacker can send a specially crafted request to post.cgi, updating the nvram parameter get_email. After which, they can visit the send_log.cgi endpoint which uses the parameter in a system call to achieve command execution.

CVE-2024-54803
Software Genérico General
9.8
CRITICAL
EPSS
2.7%
2024 1 PoC

Netgear WNR854T 1.5.2 (North America) is vulnerable to Command Injection. An attacker can send a specially crafted request to post.cgi, updating the nvram parameter pppoe_peer_mac and forcing a reboot. This will result in command injection.

CVE-2024-41276
Software Genérico General
9.8
CRITICAL
EPSS
13.6%
2024 1 PoC

A vulnerability in Kaiten version 57.131.12 and earlier allows attackers to bypass the PIN code authentication mechanism. The application requires users to input a 6-digit PIN code sent to their email for authorization after entering their login credentials. However, the request limiting mechanism can be easily bypassed, enabling attackers to perform a brute force attack to guess the correct PIN and gain unauthorized access to the application.

CVE-2024-38438
DSL-225 General
9.8
CRITICAL
EPSS
0.2%
2024 CWE-294 1 PoC

D-Link - CWE-294: Authentication Bypass by Capture-replay

CVE-2024-3845
Chrome General
9.8
CRITICAL
EPSS
0.4%
2024 1 PoC

Inappropriate implementation in Networks in Google Chrome prior to 124.0.6367.60 allowed a remote attacker to bypass mixed content policy via a crafted HTML page. (Chromium security severity: Low)

CVE-2024-24116
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
88.9%
2024 0 PoCs

An issue in Ruijie RG-NBS2009G-P RGOS v.10.4(1)P2 Release(9736) allows a remote attacker to gain privileges via the system/config_menu.htm.

CVE-2024-50648
Software Genérico General
9.8
CRITICAL
EPSS
0.7%
2024 1 PoC

yshopmall V1.0 has an arbitrary file upload vulnerability, which can enable RCE or even take over the server when improperly configured to parse JSP files.

CVE-2024-22891
Software Genérico General
9.8
CRITICAL
EPSS
39.4%
2024 2 PoCs

Nteract v.0.28.0 was discovered to contain a remote code execution (RCE) vulnerability via the Markdown link.

CVE-2024-8385
Firefox General
9.8
CRITICAL
EPSS
0.5%
2024 1 PoC

A difference in the handling of StructFields and ArrayTypes in WASM could be used to trigger an exploitable type confusion vulnerability. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Thunderbird < 128.2.

CVE-2024-38437
DSL-225 General
9.8
CRITICAL
EPSS
0.2%
2024 CWE-288 1 PoC

D-Link - CWE-288:Authentication Bypass Using an Alternate Path or Channel

CVE-2024-28986
🔥 KEV Web Help Desk General ⚡ nuclei
9.8
CRITICAL
EPSS
79.7%
2024 CWE-502 0 PoCs

SolarWinds Web Help Desk was found to be susceptible to a Java Deserialization Remote Code Execution vulnerability that, if exploited, would allow an attacker to run commands on the host machine. While it was reported as an unauthenticated vulnerability, SolarWinds has been unable to reproduce it without authentication after thorough testing.   However, out of an abundance of caution, we recommend all Web Help Desk customers apply the patch, which is now available.

CVE-2024-36081
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2024 1 PoC

Westermo EDW-100 devices through 2024-05-03 allow an unauthenticated user to download a configuration file containing a cleartext password. NOTE: this is a serial-to-Ethernet converter that should not be placed at the edge of the network.

CVE-2024-56058
VRPConnector General
9.8
CRITICAL
EPSS
43.8%
2024 CWE-502 1 PoC

Deserialization of Untrusted Data vulnerability in denniskravetstns VRPConnector vrpconnector allows Object Injection.This issue affects VRPConnector: from n/a through <= 2.0.1.

CVE-2024-29375
Software Genérico General
9.8
CRITICAL
EPSS
11.7%
2024 2 PoCs

CSV Injection vulnerability in Addactis IBNRS v.3.10.3.107 allows a remote attacker to execute arbitrary code via a crafted .ibnrs file to the Project Description, Identifiers, Custom Triangle Name (inside Input Triangles) and Yield Curve Name parameters.