40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-34832
Software Genérico General
9.8
CRITICAL
EPSS
8.3%
2024 1 PoC

Directory Traversal vulnerability in CubeCart v.6.5.5 and before allows an attacker to execute arbitrary code via a crafted file uploaded to the _g and node parameters.

CVE-2023-39169
Storage Box V1 General
9.8
CRITICAL
EPSS
0.4%
2023 CWE-798 2 PoCs

The affected devices use publicly available default credentials with administrative privileges.

CVE-2023-27350
🔥 KEV NG General ⚡ nuclei
9.8
CRITICAL
EPSS
94.3%
2023 CWE-284 20 PoCs

This vulnerability allows remote attackers to bypass authentication on affected installations of PaperCut NG 22.0.5 (Build 63914). Authentication is not required to exploit this vulnerability. The specific flaw exists within the SetupCompleted class. The issue results from improper access control. An attacker can leverage this vulnerability to bypass authentication and execute arbitrary code in the context of SYSTEM. Was ZDI-CAN-18987.

CVE-2025-22952
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
24.9%
2025 0 PoCs

elestio memos v0.23.0 is vulnerable to Server-Side Request Forgery (SSRF) due to insufficient validation of user-supplied URLs, which can be exploited to perform SSRF attacks.

CVE-2023-7017
Kontrol Lux General
9.8
CRITICAL
EPSS
0.1%
2023 1 PoC

Sciener locks' firmware update mechanism do not authenticate or validate firmware updates if passed to the lock through the Bluetooth Low Energy service. A challenge request can be sent to the lock with a command to prepare for an update, rather than an unlock request, allowing an attacker to compromise the device.

CVE-2021-40506
Software Genérico General
9.8
CRITICAL
EPSS
0.6%
2021 1 PoC

An issue was discovered in the ALU unit of the OR1200 (aka OpenRISC 1200) processor 2011-09-10 through 2015-11-11. The overflow flag is not being updated for the msb and mac instructions, which results in an incorrect value in the overflow flag. Any software that relies on this flag may experience corruption in execution.

CVE-2023-30331
Software Genérico General
9.8
CRITICAL
EPSS
0.4%
2023 1 PoC

An issue in the render function of beetl v3.15.0 allows attackers to execute server-side template injection (SSTI) via a crafted payload.

CVE-2023-28501
UniData General
9.8
CRITICAL
EPSS
2.0%
2023 CWE-190 1 PoC

Rocket Software UniData versions prior to 8.2.4 build 3003 and UniVerse versions prior to 11.3.5 build 1001 or 12.2.1 build 2002 suffer from a heap-based buffer overflow in the unirpcd daemon that, if successfully exploited, can lead to remote code execution as the root user.

CVE-2024-41610
Software Genérico General
9.8
CRITICAL
EPSS
0.5%
2024 1 PoC

D-Link DIR-820LW REVB FIRMWARE PATCH 2.03.B01_TC contains hardcoded credentials in the Telnet service, enabling attackers to log in remotely to the Telnet service and perform arbitrary commands.

CVE-2021-23344
total.js General
9.8
CRITICAL
EPSS
12.7%
2021 1 PoC

The package total.js before 3.4.8 are vulnerable to Remote Code Execution (RCE) via set.

CVE-2026-3060
SGLang General
9.8
CRITICAL
EPSS
1.8%
2026 1 PoC

SGLang' encoder parallel disaggregation system is vulnerable to unauthenticated remote code execution through the disaggregation module, which deserializes untrusted data using pickle.loads() without authentication.

CVE-2026-26831
Software Genérico General
9.8
CRITICAL
EPSS
0.5%
2026 1 PoC

textract through 2.5.0 is vulnerable to OS Command Injection via the file path parameter in multiple extractors. When processing files with malicious filenames, the filePath is passed directly to child_process.exec() in lib/extractors/doc.js, rtf.js, dxf.js, images.js, and lib/util.js with inadequate sanitization

CVE-2025-27646
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2025 2 PoCs

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.913 Application 20.0.2253 allows Edit User Account Exposure V-2024-001.

CVE-2025-24231
macOS General
9.8
CRITICAL
EPSS
0.2%
2025 1 PoC

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to modify protected parts of the file system.

CVE-2026-30741
Software Genérico General
9.8
CRITICAL
EPSS
0.4%
2026 1 PoC

A remote code execution (RCE) vulnerability in OpenClaw Agent Platform v2026.2.6 allows attackers to execute arbitrary code via a Request-Side prompt injection attack.

CVE-2024-28222
Software Genérico General
9.8
CRITICAL
EPSS
1.4%
2024 1 PoC

In Veritas NetBackup before 8.1.2 and NetBackup Appliance before 3.1.2, the BPCD process inadequately validates the file path, allowing an unauthenticated attacker to upload and execute a custom file.

CVE-2023-52032
Software Genérico General
9.8
CRITICAL
EPSS
16.3%
2023 1 PoC

TOTOlink EX1200T V4.1.2cu.5232_B20210713 was discovered to contain a remote command execution (RCE) vulnerability via the "main" function.

CVE-2024-13160
🔥 KEV Endpoint Manager General ⚡ nuclei
9.8
CRITICAL
EPSS
93.8%
2024 CWE-36 1 PoC

Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to leak sensitive information.

CVE-2023-46359
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
93.0%
2023 0 PoCs

An OS command injection vulnerability in Hardy Barth cPH2 eCharge Ladestation v1.87.0 and earlier, may allow an unauthenticated remote attacker to execute arbitrary commands on the system via a specifically crafted arguments passed to the connectivity check feature.

CVE-2024-22916
Software Genérico General
9.8
CRITICAL
EPSS
1.0%
2024 2 PoCs

In D-LINK Go-RT-AC750 v101b03, the sprintf function in the sub_40E700 function within the cgibin is susceptible to stack overflow.