3333 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2024-12655
USB over Network General
6.8
MEDIUM
EPSS
0.0%
2024 CWE-476 1 PoC

A vulnerability, which was classified as problematic, has been found in FabulaTech USB over Network 6.0.6.1. Affected by this issue is the function 0x220420 in the library ftusbbus2.sys of the component IOCT Handler. The manipulation leads to null pointer dereference. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-0145
nvJPEG2000 General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-122 1 PoC

NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a heap-based buffer overflow issue by means of a specially crafted JPEG2000 file. A successful exploit of this vulnerability might lead to code execution and data tampering.

CVE-2024-12662
Advanced SystemCare Utimate General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-476 1 PoC

A vulnerability classified as problematic has been found in IObit Advanced SystemCare Utimate up to 17.0.0. This affects the function 0x8001E040 in the library AscRegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-27157
Toshiba Tec e-Studio multi-function peripheral (MFP) General
6.8
MEDIUM
EPSS
0.2%
2024 CWE-532 1 PoC

The sessions are stored in clear-text logs. An attacker can retrieve authentication sessions. A remote attacker can retrieve the credentials and bypass the authentication mechanism. As for the affected products/models/versions, see the reference URL.

CVE-2024-3121
parisneo/lollms General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-94 1 PoC

A remote code execution vulnerability exists in the create_conda_env function of the parisneo/lollms repository, version 5.9.0. The vulnerability arises from the use of shell=True in the subprocess.Popen function, which allows an attacker to inject arbitrary commands by manipulating the env_name and python_version parameters. This issue could lead to a serious security breach as demonstrated by the ability to execute the 'whoami' command among potentially other harmful commands.

CVE-2024-12654
USB over Network General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-476 1 PoC

A vulnerability classified as problematic was found in FabulaTech USB over Network 6.0.6.1. Affected by this vulnerability is the function 0x220408 in the library ftusbbus2.sys of the component IOCT Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-31958
Software Genérico General
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

An issue was discovered in Samsung Mobile Processor EExynos 2200, Exynos 1480, Exynos 2400. It lacks a check for the validation of native handles, which can result in an Out-of-Bounds Write.

CVE-2024-0144
nvJPEG2000 General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-120 1 PoC

NVIDIA nvJPEG2000 library contains a vulnerability where an attacker can cause a buffer overflow issue by means of a specially crafted JPEG2000 file. A successful exploit of this vulnerability might lead to data tampering.

CVE-2024-38888
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2024 1 PoC

An issue in Horizon Business Services Inc. Caterease 16.0.1.1663 through 24.0.1.2405 and possibly later versions, allows a local attacker to perform a Password Brute Forcing attack due to improper restriction of excessive authentication attempts.

CVE-2024-39832
Mattermost General
6.8
MEDIUM
EPSS
0.3%
2024 CWE-754 1 PoC

Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6, 9.7.x <= 9.7.5, 9.8.x <= 9.8.1 fail to properly safeguard an error handling which allows a malicious remote to permanently delete local data by abusing dangerous error handling, when share channels were enabled.

CVE-2024-37016
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2024 2 PoCs

Mengshen Wireless Door Alarm M70 2024-05-24 allows Authentication Bypass via a Capture-Replay approach.

CVE-2024-29090
AI Engine: ChatGPT Chatbot General
6.8
MEDIUM
EPSS
0.8%
2024 CWE-918 2 PoCs

Server-Side Request Forgery (SSRF) vulnerability in Jordy Meow AI Engine: ChatGPT Chatbot.This issue affects AI Engine: ChatGPT Chatbot: from n/a through 2.1.4.

CVE-2024-35133
Security Verify Access General
6.8
MEDIUM
EPSS
2.9%
2024 CWE-601 2 PoCs

IBM Security Verify Access 10.0.0 through 10.0.8 OIDC Provider could allow a remote authenticated attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim.

CVE-2024-31800
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2024 1 PoC

Authentication Bypass in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to gain a privileged command shell via the UART Debugging Port.

CVE-2024-36440
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2024 2 PoCs

An issue was discovered on Swissphone DiCal-RED 4009 devices. An attacker with access to the file /etc/deviceconfig may recover the administrative device password via password-cracking methods, because unsalted MD5 is used.

CVE-2024-47944
IoT Interface & CMC III Processing Unit General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-1299 1 PoC

The device directly executes .patch firmware upgrade files on a USB stick without any prior authentication in the admin interface. This leads to an unauthenticated code execution via the firmware upgrade function.

CVE-2024-54916
Software Genérico General
6.8
MEDIUM
EPSS
0.8%
2024 1 PoC

An issue in the SharedConfig class of Telegram Android APK v.11.7.0 allows a physically proximate attacker to bypass authentication and escalate privileges by manipulating the return value of the checkPasscode method.

CVE-2024-12659
Advanced SystemCare Utimate General
6.8
MEDIUM
EPSS
0.0%
2024 CWE-476 1 PoC

A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0. It has been classified as problematic. Affected is the function 0x8001E004 in the library AscRegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-51228
Software Genérico General ⚡ nuclei
6.8
MEDIUM
EPSS
64.2%
2024 0 PoCs

An issue in TOTOLINK-CX-A3002RU V1.0.4-B20171106.1512 and TOTOLINK-CX-N150RT V2.1.6-B20171121.1002 and TOTOLINK-CX-N300RT V2.1.6-B20170724.1420 and TOTOLINK-CX-N300RT V2.1.8-B20171113.1408 and TOTOLINK-CX-N300RT V2.1.8-B20191010.1107 and TOTOLINK-CX-N302RE V2.0.2-B20170511.1523 allows a remote attacker to execute arbitrary code via the /boafrm/formSysCmd component.

CVE-2024-56331
uptime-kuma General
6.8
MEDIUM
EPSS
53.2%
2024 CWE-22 1 PoC

Uptime Kuma is an open source, self-hosted monitoring tool. An **Improper URL Handling Vulnerability** allows an attacker to access sensitive local files on the server by exploiting the `file:///` protocol. This vulnerability is triggered via the **"real-browser"** request type, which takes a screenshot of the URL provided by the attacker. By supplying local file paths, such as `file:///etc/passwd`, an attacker can read sensitive data from the server. This vulnerability arises because the system does not properly validate or sanitize the user input for the URL field. Specifically: 1. The URL i