3695 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2020-7723
promisehelpers General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package promisehelpers are vulnerable to Prototype Pollution via the insert function.

CVE-2020-6064
Accusoft General
9.8
CRITICAL
EPSS
2.2%
2020 1 PoC

An exploitable out-of-bounds write vulnerability exists in the uncompress_scan_line function of the igcore19d.dll library of Accusoft ImageGear, version 19.5.0. A specially crafted PCX file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-7782
spritesheet-js General
9.8
CRITICAL
EPSS
0.6%
2020 1 PoC

This affects all versions of package spritesheet-js. It depends on a vulnerable package platform-command. The injection point is located in line 32 in lib/generator.js, which is triggered by main entry of the package.

CVE-2020-8515
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.3%
2020 6 PoCs

DrayTek Vigor2960 1.3.1_Beta, Vigor3900 1.4.4_Beta, and Vigor300B 1.3.3_Beta, 1.4.2.1_Beta, and 1.4.4_Beta devices allow remote code execution as root (without authentication) via shell metacharacters to the cgi-bin/mainfunction.cgi URI. This issue has been fixed in Vigor3900/2960/300B v1.5.1.

CVE-2020-6076
Accusoft General
9.8
CRITICAL
EPSS
1.4%
2020 1 PoC

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll ICO icoread parser of the Accusoft ImageGear 19.5.0 library. A specially crafted ICO file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-5847
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
93.4%
2020 3 PoCs

Unraid through 6.8.0 allows Remote Code Execution.

CVE-2020-28439
corenlp-js-prefab General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package corenlp-js-prefab. The injection point is located in line 10 in 'index.js.' It depends on a vulnerable package 'corenlp-js-interface.' Vulnerability can be exploited with the following PoC:

CVE-2020-28446
ntesseract General
9.8
CRITICAL
EPSS
11.6%
2020 1 PoC

The package ntesseract before 0.2.9 are vulnerable to Command Injection via lib/tesseract.js.

CVE-2020-7714
confucious General
9.8
CRITICAL
EPSS
0.4%
2020 2 PoCs

All versions of package confucious are vulnerable to Prototype Pollution via the set function.

CVE-2020-6069
Accusoft General
9.8
CRITICAL
EPSS
2.2%
2020 2 PoCs

An exploitable out-of-bounds write vulnerability exists in the igcore19d.dll JPEG jpegread precision parser of the Accusoft ImageGear 19.5.0 library. A specially crafted JPEG file can cause an out-of-bounds write, resulting in a remote code execution. An attacker needs to provide a malformed file to the victim to trigger the vulnerability.

CVE-2020-11651
🔥 KEV Software Genérico General
9.8
CRITICAL
EPSS
94.2%
2020 14 PoCs

An issue was discovered in SaltStack Salt before 2019.2.4 and 3000 before 3000.2. The salt-master process ClearFuncs class does not properly validate method calls. This allows a remote user to access some methods without authentication. These methods can be used to retrieve user tokens from the salt master and/or run arbitrary commands on salt minions.

CVE-2020-12500
P+F Comtrol RocketLinx General
9.8
CRITICAL
EPSS
0.8%
2020 CWE-306 4 PoCs

Improper Authorization vulnerability of Pepperl+Fuchs P+F Comtrol RocketLinx ES7510-XT, ES8509-XT, ES8510-XT, ES9528-XTv2, ES7506, ES7510, ES7528, ES8508, ES8508F, ES8510, ES8510-XTE, ES9528/ES9528-XT (all versions) allows unauthenticated device administration.

CVE-2020-23584
Software Genérico General
9.8
CRITICAL
EPSS
19.0%
2020 2 PoCs

Unauthenticated remote code execution in OPTILINK OP-XT71000N, Hardware Version: V2.2 occurs when the attacker passes arbitrary commands with IP-ADDRESS using " | " to execute commands on " /diag_tracert_admin.asp " in the "PingTest" parameter that leads to command execution.

CVE-2020-4450
WebSphere Application Server General
9.8
CRITICAL
EPSS
71.9%
2020 1 PoC

IBM WebSphere Application Server 8.5 and 9.0 traditional could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects. IBM X-Force ID: 181231.

CVE-2020-36239
Jira Data Center General
9.8
CRITICAL
EPSS
16.2%
2020 CWE-862 1 PoC

Jira Data Center, Jira Core Data Center, Jira Software Data Center from version 6.3.0 before 8.5.16, from 8.6.0 before 8.13.8, from 8.14.0 before 8.17.0 and Jira Service Management Data Center from version 2.0.2 before 4.5.16, from version 4.6.0 before 4.13.8, and from version 4.14.0 before 4.17.0 exposed a Ehcache RMI network service which attackers, who can connect to the service, on port 40001 and potentially 40011[0][1], could execute arbitrary code of their choice in Jira through deserialization due to a missing authentication vulnerability. While Atlassian strongly suggests restricting a

CVE-2020-13556
EIP Stack Group General
9.8
CRITICAL
EPSS
2.6%
2020 CWE-787 1 PoC

An out-of-bounds write vulnerability exists in the Ethernet/IP server functionality of EIP Stack Group OpENer 2.3 and development commit 8c73bf3. A specially crafted series of network requests can lead to remote code execution. An attacker can send a sequence of requests to trigger this vulnerability.

CVE-2020-7784
ts-process-promises General
9.8
CRITICAL
EPSS
0.5%
2020 1 PoC

This affects all versions of package ts-process-promises. The injection point is located in line 45 in main entry of package in lib/process-promises.js. The vulnerability is demonstrated with the following PoC:

CVE-2020-4854
Spectrum Protect Plus General
9.8
CRITICAL
EPSS
0.2%
2020 1 PoC

IBM Spectrum Protect Plus 10.1.0 thorugh 10.1.6 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data. IBM X-Force ID: 190454.

CVE-2020-36997
BacklinkSpeed General
9.8
CRITICAL
EPSS
0.0%
2020 CWE-121 2 PoCs

BacklinkSpeed 2.4 contains a buffer overflow vulnerability that allows attackers to corrupt the Structured Exception Handler (SEH) chain through malicious file import. Attackers can craft a specially designed payload file to overwrite SEH addresses, potentially executing arbitrary code and gaining control of the application.

CVE-2020-7715
deep-get-set General
9.8
CRITICAL
EPSS
0.8%
2020 2 PoCs

All versions of package deep-get-set are vulnerable to Prototype Pollution via the main function.