40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2022-0660
microweber/microweber General ⚡ nuclei
9.4
CRITICAL
EPSS
7.5%
2022 CWE-209 1 PoC

Generation of Error Message Containing Sensitive Information in Packagist microweber/microweber prior to 1.2.11.

CVE-2023-6930
ETL3100 General
9.4
CRITICAL
EPSS
0.0%
2023 CWE-284 1 PoC

EuroTel ETL3100 versions v01c01 and v01x37 suffer from an unauthenticated configuration and log download vulnerability. This enables the attacker to disclose sensitive information and assist in authentication bypass, privilege escalation, and full system access.

CVE-2024-6235
NetScaler Console General ⚡ nuclei
9.4
CRITICAL
EPSS
86.8%
2024 0 PoCs

Sensitive information disclosure in NetScaler Console

CVE-2024-35307
Pandora FMS General
9.4
CRITICAL
EPSS
15.3%
2024 CWE-88 1 PoC

Argument Injection Leading to Remote Code Execution in Realtime Graph Extension, allowing unauthenticated attackers to execute arbitrary code on the server. This issue affects Pandora FMS: from 700 through <777.

CVE-2023-23770
MBTS Site Controller General
9.4
CRITICAL
EPSS
0.1%
2023 CWE-259 1 PoC

Motorola MBTS Site Controller accepts hard-coded backdoor password. The Motorola MBTS Site Controller Man Machine Interface (MMI), allowing for service technicians to diagnose and configure the device, accepts a hard-coded backdoor password that cannot be changed or disabled.

CVE-2022-0401
yuda-lyu/w-zip General
9.4
CRITICAL
EPSS
0.7%
2022 CWE-22 1 PoC

Path Traversal in NPM w-zip prior to 1.0.12.

CVE-2025-34151
M300 Wi-Fi Repeater General
9.4
CRITICAL
EPSS
2.0%
2025 CWE-78 1 PoC

A command injection vulnerability exists in the 'passwd' parameter of the PPPoE setup process on the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). The input is passed directly to system-level commands without sanitation, enabling unauthenticated attackers to achieve root-level code execution.

CVE-2025-59934
formbricks General
9.4
CRITICAL
EPSS
0.0%
2025 CWE-347 1 PoC

Formbricks is an open source qualtrics alternative. Prior to version 4.0.1, Formbricks is missing JWT signature verification. This vulnerability stems from a token validation routine that only decodes JWTs (jwt.decode) without verifying their signatures. Both the email verification token login path and the password reset server action use the same validator, which does not check the token’s signature, expiration, issuer, or audience. If an attacker learns the victim’s actual user.id, they can craft an arbitrary JWT with an alg: "none" header and use it to authenticate and reset the victim’s pa

CVE-2025-34148
M300 Wi-Fi Repeater General
9.4
CRITICAL
EPSS
0.2%
2025 CWE-78 1 PoC

An unauthenticated OS command injection vulnerability exists in the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02). When configuring the device in WISP mode, the 'ssid' parameter is passed unsanitized to system-level scripts. This allows remote attackers within Wi-Fi range to inject arbitrary shell commands that execute as root, resulting in full device compromise.

CVE-2011-10010
QuickShare File Server General
9.4
CRITICAL
EPSS
57.9%
2011 CWE-22 5 PoCs

QuickShare File Server 1.2.1 contains a path traversal vulnerability in its FTP service due to improper sanitation of user-supplied file paths. Authenticated users can exploit this flaw by submitting crafted sequences to access or write files outside the intended virtual directory. When the "Writable" option is enabled (default during account creation), this allows attackers to upload arbitrary files to privileged locations such as system32, enabling remote code execution via MOF injection or executable placement.

CVE-2025-59793
Software Genérico General
9.4
CRITICAL
EPSS
0.8%
2025 1 PoC

Rocket TRUfusion Enterprise through 7.10.5 exposes the endpoint at /axis2/services/WsPortalV6UpDwAxis2Impl to authenticated users to be able to upload files. However, the application doesn't properly sanitize the jobDirectory parameter, which allows path traversal sequences to be included. This allows writing files to arbitrary local filesystem locations and may subsequently lead to remote code execution.

CVE-2025-56749
Software Genérico General
9.4
CRITICAL
EPSS
0.1%
2025 1 PoC

Creativeitem Academy LMS up to and including 6.14 uses a hardcoded default JWT secret for token signing. This predictable secret allows attackers to forge valid JWT tokens, leading to authentication bypass and unauthorized access to any user account.

CVE-2021-20999
UC20-WL2000-AC (No. 1334950000) General
9.4
CRITICAL
EPSS
0.4%
2021 CWE-668 1 PoC

In Weidmüller u-controls and IoT-Gateways in versions up to 1.12.1 a network port intended only for device-internal usage is accidentally accessible via external network interfaces. By exploiting this vulnerability the device may be manipulated or the operation may be stopped.

CVE-2019-20695
Software Genérico General
9.4
CRITICAL
EPSS
0.3%
2019 1 PoC

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects SRK60 before 2.3.5.106, SRR60 before 2.3.5.106, and SRS60 before 2.3.5.106.

CVE-2024-23346
pymatgen General
9.4
CRITICAL
EPSS
54.9%
2024 CWE-77 6 PoCs

Pymatgen (Python Materials Genomics) is an open-source Python library for materials analysis. A critical security vulnerability exists in the `JonesFaithfulTransformation.from_transformation_str()` method within the `pymatgen` library prior to version 2024.2.20. This method insecurely utilizes `eval()` for processing input, enabling execution of arbitrary code when parsing untrusted input. Version 2024.2.20 fixes this issue.

CVE-2025-8875
🔥 KEV N-central General
9.4
CRITICAL
EPSS
3.0%
2025 CWE-502 1 PoC

Deserialization of Untrusted Data vulnerability in N-able N-central allows Local Execution of Code.This issue affects N-central: before 2025.3.1.

CVE-2025-34161
Coolify General
9.4
CRITICAL
EPSS
1.2%
2025 CWE-78 1 PoC

Coolify versions prior to v4.0.0-beta.420.7 are vulnerable to a remote code execution vulnerability in the project deployment workflow. The platform allows authenticated users, with low-level member privileges, to inject arbitrary shell commands via the Git Repository field during project creation. By submitting a crafted repository string containing command injection syntax, an attacker can execute arbitrary commands on the underlying host system, resulting in full server compromise.

CVE-2025-34071
Kerio Control General
9.4
CRITICAL
EPSS
3.1%
2025 CWE-306 1 PoC

A remote code execution vulnerability in GFI Kerio Control 9.4.5 allows attackers with administrative access to upload and execute arbitrary code through the firmware upgrade feature. The system upgrade mechanism accepts unsigned .img files, which can be modified to include malicious scripts within the upgrade.sh or disk image components. These modified upgrade images are not validated for authenticity or integrity, and are executed by the system post-upload, enabling root access.

CVE-2025-49596
inspector General ⚡ nuclei
9.4
CRITICAL
EPSS
3.3%
2025 CWE-306 2 PoCs

The MCP inspector is a developer tool for testing and debugging MCP servers. Versions of MCP Inspector below 0.14.1 are vulnerable to remote code execution due to lack of authentication between the Inspector client and proxy, allowing unauthenticated requests to launch MCP commands over stdio. Users should immediately upgrade to version 0.14.1 or later to address these vulnerabilities.

CVE-2025-8876
🔥 KEV N-central General
9.4
CRITICAL
EPSS
10.3%
2025 CWE-20 1 PoC

Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: before 2025.3.1.