40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-46455
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2024 1 PoC

unstructured v.0.14.2 and before is vulnerable to XML External Entity (XXE) via the XMLParser.

CVE-2023-36812
opentsdb General
9.8
CRITICAL
EPSS
84.3%
2023 CWE-74 1 PoC

OpenTSDB is a open source, distributed, scalable Time Series Database (TSDB). OpenTSDB is vulnerable to Remote Code Execution vulnerability by writing user-controlled input to Gnuplot configuration file and running Gnuplot with the generated configuration. This issue has been patched in commit `07c4641471c` and further refined in commit `fa88d3e4b`. These patches are available in the `2.4.2` release. Users are advised to upgrade. User unable to upgrade may disable Gunuplot via the config option`tsd.core.enable_ui = true` and remove the shell files `mygnuplot.bat` and `mygnuplot.sh`.

CVE-2026-26832
Software Genérico General
9.8
CRITICAL
EPSS
0.3%
2026 1 PoC

node-tesseract-ocr is an npm package that provides a Node.js wrapper for Tesseract OCR. In all versions through 2.2.1, the recognize() function in src/index.js is vulnerable to OS Command Injection. The file path parameter is concatenated into a shell command string and passed to child_process.exec() without proper sanitization

CVE-2025-63206
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2025 1 PoC

An authentication bypass issue was discovered in Dasan Switch DS2924 web based interface, firmware versions 1.01.18 and 1.02.00, allowing attackers to gain escalated privileges via storing crafted cookies in the web browser.

CVE-2025-43951
Software Genérico General
9.8
CRITICAL
EPSS
0.4%
2025 1 PoC

LabVantage before LV 8.8.0.13 HF6 allows local file inclusion. Authenticated users can retrieve arbitrary files from the environment via the objectname request parameter.

CVE-2023-45249
🔥 KEV Acronis Cyber Infrastructure General
9.8
CRITICAL
EPSS
93.5%
2023 CWE-1393 1 PoC

Remote command execution due to use of default passwords. The following products are affected: Acronis Cyber Infrastructure (ACI) before build 5.0.1-61, Acronis Cyber Infrastructure (ACI) before build 5.1.1-71, Acronis Cyber Infrastructure (ACI) before build 5.2.1-69, Acronis Cyber Infrastructure (ACI) before build 5.3.1-53, Acronis Cyber Infrastructure (ACI) before build 5.4.4-132.

CVE-2023-30013
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
92.4%
2023 1 PoC

TOTOLINK X5000R V9.1.0u.6118_B20201102 and V9.1.0u.6369_B20230113 contain a command insertion vulnerability in setting/setTracerouteCfg. This vulnerability allows an attacker to execute arbitrary commands through the "command" parameter.

CVE-2023-26802
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
83.6%
2023 0 PoCs

An issue in the component /network_config/nsg_masq.cgi of DCN (Digital China Networks) DCBI-Netlog-LAB v1.0 allows attackers to bypass authentication and execute arbitrary commands via a crafted request.

CVE-2026-27848
MR9600 General
9.8
CRITICAL
EPSS
0.1%
2026 CWE-78 1 PoC

Due to missing neutralization of special elements, OS commands can be injected via the handshake of a TLS-SRP connection, which are ultimately run as the root user. This issue affects MR9600: 1.0.4.205530; MX4200: 1.0.13.210200.

CVE-2023-31446
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
91.7%
2023 1 PoC

In Cassia Gateway firmware XC1000_2.1.1.2303082218 and XC2000_2.1.1.2303090947, the queueUrl parameter in /bypass/config is not sanitized. This leads to injecting Bash code and executing it with root privileges on device startup.

CVE-2025-10127
Security Gateway General
9.8
CRITICAL
EPSS
0.1%
2025 CWE-640 1 PoC

Daikin Europe N.V Security Gateway is vulnerable to an authorization bypass through a user-controlled key vulnerability that could allow an attacker to bypass authentication. An unauthorized attacker could access the system without prior credentials.

CVE-2021-33990
Software Genérico General
9.8
CRITICAL
EPSS
66.4%
2021 1 PoC

Liferay Portal 6.2.5 allows Command=FileUpload&Type=File&CurrentFolder=/ requests when frmfolders.html exists. NOTE: The vendor disputes this issue because the exploit reference link only shows frmfolders.html is accessible and does not demonstrate how an unauthorized user can upload a file.

CVE-2024-12356
🔥 KEV Remote Support General
9.8
CRITICAL
EPSS
93.9%
2024 CWE-77 2 PoCs

A critical vulnerability has been discovered in Privileged Remote Access (PRA) and Remote Support (RS) products which can allow an unauthenticated attacker to inject commands that are run as a site user.

CVE-2023-51968
Software Genérico General
9.8
CRITICAL
EPSS
0.3%
2023 1 PoC

Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function getIptvInfo.

CVE-2026-3060
SGLang General
9.8
CRITICAL
EPSS
1.8%
2026 1 PoC

SGLang' encoder parallel disaggregation system is vulnerable to unauthenticated remote code execution through the disaggregation module, which deserializes untrusted data using pickle.loads() without authentication.

CVE-2023-29862
Software Genérico General
9.8
CRITICAL
EPSS
2.6%
2023 1 PoC

An issue found in Agasio-Camera device version not specified allows a remote attacker to execute arbitrary code via the check and authLevel parameters.

CVE-2026-26831
Software Genérico General
9.8
CRITICAL
EPSS
0.5%
2026 1 PoC

textract through 2.5.0 is vulnerable to OS Command Injection via the file path parameter in multiple extractors. When processing files with malicious filenames, the filePath is passed directly to child_process.exec() in lib/extractors/doc.js, rtf.js, dxf.js, images.js, and lib/util.js with inadequate sanitization

CVE-2026-30741
Software Genérico General
9.8
CRITICAL
EPSS
0.4%
2026 1 PoC

A remote code execution (RCE) vulnerability in OpenClaw Agent Platform v2026.2.6 allows attackers to execute arbitrary code via a Request-Side prompt injection attack.

CVE-2021-21943
ImageGear General
9.8
CRITICAL
EPSS
1.2%
2021 CWE-122 1 PoC

A heap-based buffer overflow vulnerability exists in the XWD parser functionality of Accusoft ImageGear 19.10. A specially-crafted file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2024-27776
DeviceHub General
9.8
CRITICAL
EPSS
0.6%
2024 CWE-22 1 PoC

MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE