40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2019-19230
CA Release Automation General
9.8
CRITICAL
EPSS
5.6%
2019 CWE-502 1 PoC

An unsafe deserialization vulnerability exists in CA Release Automation (Nolio) 6.6 with the DataManagement component that can allow a remote attacker to execute arbitrary code.

CVE-2021-20991
Fibaro Home Center General
9.8
CRITICAL
EPSS
34.2%
2021 CWE-78 3 PoCs

In Fibaro Home Center 2 and Lite devices with firmware version 4.540 and older an authenticated user can run commands as root user using a command injection vulnerability.

CVE-2021-43857
Gerapy General
9.8
CRITICAL
EPSS
49.6%
2021 CWE-78 5 PoCs

Gerapy is a distributed crawler management framework. Gerapy prior to version 0.9.8 is vulnerable to remote code execution, and this issue is patched in version 0.9.8.

CVE-2013-4810
🔥 KEV Software Genérico General
9.8
CRITICAL
EPSS
89.7%
2013 1 PoC

HP ProCurve Manager (PCM) 3.20 and 4.0, PCM+ 3.20 and 4.0, Identity Driven Manager (IDM) 4.0, and Application Lifecycle Management allow remote attackers to execute arbitrary code via a marshalled object to (1) EJBInvokerServlet or (2) JMXInvokerServlet, aka ZDI-CAN-1760. NOTE: this is probably a duplicate of CVE-2007-1036, CVE-2010-0738, and/or CVE-2012-0874.

CVE-2020-13585
Accusoft General
9.8
CRITICAL
EPSS
0.7%
2020 CWE-131 1 PoC

An out-of-bounds write vulnerability exists in the PSD Header processing functionality of Accusoft ImageGear 19.8. A specially crafted malformed file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2020-29007
Software Genérico General
9.8
CRITICAL
EPSS
17.4%
2020 1 PoC

The Score extension through 0.3.0 for MediaWiki has a remote code execution vulnerability due to improper sandboxing of the GNU LilyPond executable. This allows any user with an ability to edit articles (potentially including unauthenticated anonymous users) to execute arbitrary Scheme or shell code by using crafted {{Image data to generate musical scores containing malicious code.

CVE-2024-39844
Software Genérico General
9.8
CRITICAL
EPSS
37.1%
2024 1 PoC

In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK.

CVE-2021-23555
vm2 General
9.8
CRITICAL
EPSS
1.1%
2021 1 PoC

The package vm2 before 3.9.6 are vulnerable to Sandbox Bypass via direct access to host error objects generated by node internals during generation of a stacktraces, which can lead to execution of arbitrary code on the host machine.

CVE-2021-25941
deep-override General
9.8
CRITICAL
EPSS
2.9%
2021 1 PoC

Prototype pollution vulnerability in 'deep-override' versions 1.0.0 through 1.0.1 allows an attacker to cause a denial of service and may lead to remote code execution.

CVE-2020-6066
Accusoft General
9.8
CRITICAL
EPSS
2.2%
2020 2 PoCs

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll JPEG SOFx parser of the Accusoft ImageGear 19.5.0 library. A specially crafted JPEG file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2025-54957
Software Genérico General
9.8
CRITICAL
EPSS
0.0%
2025 1 PoC

An issue was discovered in Dolby UDC 4.5 through 4.13. A crash of the DD+ decoder process can occur when a malformed DD+ bitstream is processed. When Evolution data is processed by evo_priv.c from the DD+ bitstream, the decoder writes that data into a buffer. The length calculation for a write can overflow due to an integer wraparound. This can lead to the allocated buffer being too small, and the out-of-bounds check of the subsequent write to be ineffective, leading to an out-of-bounds write.

CVE-2023-4696
usememos/memos General
9.8
CRITICAL
EPSS
1.3%
2023 CWE-284 2 PoCs

Improper Access Control in GitHub repository usememos/memos prior to 0.13.2.

CVE-2021-23376
ffmpegdotjs General
9.8
CRITICAL
EPSS
0.6%
2021 1 PoC

This affects all versions of package ffmpegdotjs. If attacker-controlled user input is given to the trimvideo function, it is possible for an attacker to execute arbitrary commands. This is due to use of the child_process exec function without input sanitization.

CVE-2024-22853
Software Genérico General
9.8
CRITICAL
EPSS
86.9%
2024 2 PoCs

D-LINK Go-RT-AC750 GORTAC750_A1_FW_v101b03 has a hardcoded password for the Alphanetworks account, which allows remote attackers to obtain root access via a telnet session.

CVE-2024-13159
🔥 KEV Endpoint Manager General ⚡ nuclei
9.8
CRITICAL
EPSS
94.0%
2024 CWE-36 1 PoC

Absolute path traversal in Ivanti EPM before the 2024 January-2025 Security Update and 2022 SU6 January-2025 Security Update allows a remote unauthenticated attacker to leak sensitive information.

CVE-2018-6530
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.3%
2018 0 PoCs

OS command injection vulnerability in soap.cgi (soapcgi_main in cgibin) in D-Link DIR-880L DIR-880L_REVA_FIRMWARE_PATCH_1.08B04 and previous versions, DIR-868L DIR868LA1_FW112b04 and previous versions, DIR-65L DIR-865L_REVA_FIRMWARE_PATCH_1.08.B01 and previous versions, and DIR-860L DIR860LA1_FW110b04 and previous versions allows remote attackers to execute arbitrary OS commands via the service parameter.

CVE-2020-7717
dot-notes General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package dot-notes are vulnerable to Prototype Pollution via the create function.

CVE-2020-12504
P+F Comtrol RocketLinx General
9.8
CRITICAL
EPSS
0.6%
2020 CWE-912 5 PoCs

Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) and ICRL-M-8RJ45/4SFP-G-DIN, ICRL-M-16RJ45/4CP-G-DIN FW 1.2.3 and below has an active TFTP-Service.

CVE-2025-27674
Software Genérico General
9.8
CRITICAL
EPSS
0.5%
2025 2 PoCs

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 22.0.843 Application 20.0.1923 allows Hardcoded IdP Key V-2023-006.

CVE-2024-40117
Software Genérico General
9.8
CRITICAL
EPSS
0.2%
2024 1 PoC

Incorrect access control in Solar-Log 1000 before v2.8.2 and build 52- 23.04.2013 allows attackers to obtain Administrative privileges via connecting to the web administration server. Not existing for SL 200, 500, 1000 / fixed in 4.2.8 for SL 250, 300, 1200, 2000, SL 50 Gateway / fixed in 5.1.2 / 6.0.0 for SL Base.