40888 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2025-34161
Coolify General
9.4
CRITICAL
EPSS
1.2%
2025 CWE-78 1 PoC

Coolify versions prior to v4.0.0-beta.420.7 are vulnerable to a remote code execution vulnerability in the project deployment workflow. The platform allows authenticated users, with low-level member privileges, to inject arbitrary shell commands via the Git Repository field during project creation. By submitting a crafted repository string containing command injection syntax, an attacker can execute arbitrary commands on the underlying host system, resulting in full server compromise.

CVE-2025-49596
inspector General ⚡ nuclei
9.4
CRITICAL
EPSS
3.3%
2025 CWE-306 2 PoCs

The MCP inspector is a developer tool for testing and debugging MCP servers. Versions of MCP Inspector below 0.14.1 are vulnerable to remote code execution due to lack of authentication between the Inspector client and proxy, allowing unauthenticated requests to launch MCP commands over stdio. Users should immediately upgrade to version 0.14.1 or later to address these vulnerabilities.

CVE-2025-54948
🔥 KEV Trend Micro Apex One General
9.4
CRITICAL
EPSS
8.8%
2025 CWE-78 1 PoC

A vulnerability in Trend Micro Apex One (on-premise) management console could allow a pre-authenticated remote attacker to upload malicious code and execute commands on affected installations.

CVE-2025-8876
🔥 KEV N-central General
9.4
CRITICAL
EPSS
10.3%
2025 CWE-20 1 PoC

Improper Input Validation vulnerability in N-able N-central allows OS Command Injection.This issue affects N-central: before 2025.3.1.

CVE-2025-30216
CryptoLib General
9.4
CRITICAL
EPSS
7.7%
2025 CWE-122 1 PoC

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. In versions 1.3.3 and prior, a Heap Overflow vulnerability occurs in the `Crypto_TM_ProcessSecurity` function (`crypto_tm.c:1735:8`). When processing the Secondary Header Length of a TM protocol packet, if the Secondary Header Length exceeds the packet's total length, a heap overflow is triggered during the memcpy operation that copies packet data into the dynamicall

CVE-2025-34056
IP camera, DVR, and NVR Devices General
9.4
CRITICAL
EPSS
2.0%
2025 CWE-78 2 PoCs

An OS command injection vulnerability exists in AVTECH IP camera, DVR, and NVR devices via the PwdGrp.cgi endpoint, which handles user and group management operations. Authenticated users can supply input through the pwd or grp parameters, which are directly embedded into system commands without proper sanitation. This allows for the execution of arbitrary shell commands with root privileges.

CVE-2025-3321
OnlineSuite General
9.4
CRITICAL
EPSS
0.1%
2025 CWE-798 1 PoC

A predefined administrative account is not documented and cannot be deactivated. This account cannot be misused from the network, only by local users on the server.

CVE-2025-2523
C300 PCNT02 General
9.4
CRITICAL
EPSS
1.2%
2025 CWE-191 1 PoC

The Honeywell Experion PKS and OneWireless WDM contains an Integer Underflow vulnerability in the component Control Data Access (CDA). An attacker could potentially exploit this vulnerability, leading to a Communication Channel Manipulation, which could result in a failure during subtraction allowing remote code execution. Honeywell recommends updating to the most recent version of Honeywell Experion PKS:520.2 TCU9 HF1 and 530.1 TCU3 HF1 and OneWireless: 322.5 and 331.1. The affected Experion PKS products are C300 PCNT02, C300 PCNT05, FIM4, FIM8, UOC, CN100, HCA, C300PM, and C

CVE-2025-34042
N100 IP Camera General
9.4
CRITICAL
EPSS
1.3%
2025 CWE-78 1 PoC

An authenticated command injection vulnerability exists in the Beward N100 IP Camera firmware version M2.1.6.04C014 via the ServerName and TimeZone parameters in the servetest CGI page. An attacker with access to the web interface can inject arbitrary system commands into these parameters, which are unsafely embedded into backend system calls without proper input sanitization. Successful exploitation results in remote code execution with root privileges. Exploitation evidence was observed by the Shadowserver Foundation on 2024-12-02 UTC.

CVE-2025-34029
Edimax EW-7438RPn Mini General
9.4
CRITICAL
EPSS
5.4%
2025 CWE-78 1 PoC

An OS command injection vulnerability exists in the Edimax EW-7438RPn Mini firmware version 1.13 and prior via the syscmd.asp form handler. The /goform/formSysCmd endpoint exposes a system command interface through the sysCmd parameter. A remote authenticated attacker can submit arbitrary shell commands directly, resulting in command execution as the root user. Exploitation evidence was observed by the Shadowserver Foundation on 2024-09-14 UTC.

CVE-2024-36439
Software Genérico General
9.4
CRITICAL
EPSS
0.6%
2024 4 PoCs

Swissphone DiCal-RED 4009 devices allow a remote attacker to gain access to the administrative web interface via the device password's hash value, without knowing the actual device password.

CVE-2025-24797
firmware General
9.4
CRITICAL
EPSS
2.0%
2025 CWE-119 1 PoC

Meshtastic is an open source mesh networking solution. A fault in the handling of mesh packets containing invalid protobuf data can result in an attacker-controlled buffer overflow, allowing an attacker to hijack execution flow, potentially resulting in remote code execution. This attack does not require authentication or user interaction, as long as the target device rebroadcasts packets on the default channel. This vulnerability fixed in 2.6.2.

CVE-2025-34150
M300 Wi-Fi Repeater General
9.4
CRITICAL
EPSS
0.3%
2025 CWE-78 1 PoC

The PPPoE configuration interface of the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) is vulnerable to command injection via the 'user' parameter. Input is processed unsafely during network setup, allowing attackers to execute arbitrary system commands with root privileges.

CVE-2025-34149
M300 Wi-Fi Repeater General
9.4
CRITICAL
EPSS
0.3%
2025 CWE-78 1 PoC

A command injection vulnerability affects the Shenzhen Aitemi M300 Wi-Fi Repeater (hardware model MT02) during WPA2 configuration. The 'key' parameter is interpreted directly by the system shell, enabling attackers to execute arbitrary commands as root. Exploitation requires no authentication and can be triggered during wireless setup.

CVE-2025-34071
Kerio Control General
9.4
CRITICAL
EPSS
3.1%
2025 CWE-306 1 PoC

A remote code execution vulnerability in GFI Kerio Control 9.4.5 allows attackers with administrative access to upload and execute arbitrary code through the firmware upgrade feature. The system upgrade mechanism accepts unsigned .img files, which can be modified to include malicious scripts within the upgrade.sh or disk image components. These modified upgrade images are not validated for authenticity or integrity, and are executed by the system post-upload, enabling root access.

CVE-2021-21952
Anker" General
9.4
CRITICAL
EPSS
0.5%
2021 CWE-288 1 PoC

An authentication bypass vulnerability exists in the CMD_DEVICE_GET_RSA_KEY_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted set of network packets can lead to increased privileges.

CVE-2025-34024
Edimax EW-7438RPn Mini General
9.4
CRITICAL
EPSS
4.3%
2025 CWE-78 1 PoC

An OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and prior via the mp.asp form handler. The /goform/mp endpoint improperly handles user-supplied input to the command parameter. An authenticated attacker can inject shell commands using shell metacharacters to achieve arbitrary command execution as the root user. Exploitation evidence was observed by the Shadowserver Foundation on 2024-09-14 UTC.

CVE-2022-46164
NodeBB General
9.4
CRITICAL
EPSS
56.8%
2022 CWE-665 1 PoC

NodeBB is an open source Node.js based forum software. Due to a plain object with a prototype being used in socket.io message handling a specially crafted payload can be used to impersonate other users and takeover accounts. This vulnerability has been patched in version 2.6.1. Users are advised to upgrade. Users unable to upgrade may cherry-pick commit `48d143921753914da45926cca6370a92ed0c46b8` into their codebase to patch the exploit.

CVE-2022-3224
ionicabizau/parse-url General
9.4
CRITICAL
EPSS
0.3%
2022 CWE-115 1 PoC

Misinterpretation of Input in GitHub repository ionicabizau/parse-url prior to 8.1.0.

CVE-2022-0688
microweber/microweber General
9.4
CRITICAL
EPSS
0.3%
2022 CWE-840 1 PoC

Business Logic Errors in Packagist microweber/microweber prior to 1.2.11.