13629 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2022-3911
iubenda | All-in-one Compliance for GDPR / CCPA Cookie Consent + more Web Windows
8.8
HIGH
EPSS
0.2%
2022 1 PoC

The iubenda WordPress plugin before 3.3.3 does does not have authorisation and CSRF in an AJAX action, and does not ensure that the options to be updated belong to the plugin as long as they are arrays. As a result, any authenticated users, such as subscriber can grant themselves any privileges, such as edit_plugins etc

CVE-2022-45544
Software Genérico Web
8.8
HIGH
EPSS
4.3%
2022 4 PoCs

Insecure Permission vulnerability in Schlix Web Inc SCHLIX CMS 2.2.7-2 allows attacker to upload arbitrary files and execute arbitrary code via the tristao parameter. NOTE: this is disputed by the vendor because an admin is intentionally allowed to upload new executable PHP code, such as a theme that was obtained from a trusted source or was developed for their own website. Only an admin can upload such code, not someone else in an "attacker" role.

CVE-2022-29221
smarty Web
8.8
HIGH
EPSS
25.5%
2022 CWE-94 1 PoC

Smarty is a template engine for PHP, facilitating the separation of presentation (HTML/CSS) from application logic. Prior to versions 3.1.45 and 4.1.1, template authors could inject php code by choosing a malicious {block} name or {include} file name. Sites that cannot fully trust template authors should upgrade to versions 3.1.45 or 4.1.1 to receive a patch for this issue. There are currently no known workarounds.

CVE-2022-22150
Foxit Web
8.8
HIGH
EPSS
0.9%
2022 CWE-460 1 PoC

A memory corruption vulnerability exists in the JavaScript engine of Foxit Software’s PDF Reader, version 11.1.0.52543. A specially-crafted PDF document can trigger an exception which is improperly handled, leaving the engine in an invalid state, which can lead to memory corruption and arbitrary code execution. An attacker needs to trick the user to open the malicious file to trigger this vulnerability. Exploitation is also possible if a user visits a specially-crafted, malicious site if the browser plugin extension is enabled.

CVE-2022-22778
TIBCO BusinessConnect Trading Community Management Web
8.8
HIGH
EPSS
0.2%
2022 1 PoC

The Web Server component of TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management contains an easily exploitable vulnerability that allows an unauthenticated attacker with network access to execute Cross-Site Request Forgery (CSRF) on the affected system. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s TIBCO BusinessConnect Trading Community Management: versions 6.1.0 and below.

CVE-2022-34448
PowerPath Management Appliance Web
8.8
HIGH
EPSS
0.2%
2022 CWE-352 1 PoC

PowerPath Management Appliance with versions 3.3 & 3.2*, 3.1 & 3.0* contains a Cross-site Request Forgery vulnerability. An unauthenticated non-privileged user could potentially exploit the issue and perform any privileged state-changing actions.

CVE-2022-37208
Software Genérico Web Database
8.8
HIGH
EPSS
1.1%
2022 1 PoC

JFinal CMS 5.1.0 is vulnerable to SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

CVE-2022-46074
Software Genérico DevOps Web
8.8
HIGH
EPSS
0.3%
2022 2 PoCs

Helmet Store Showroom 1.0 is vulnerable to Cross Site Request Forgery (CSRF). An unauthenticated user can add an admin account due to missing CSRF protection.

CVE-2022-3852
VR Calendar Web Windows
8.8
HIGH
EPSS
0.4%
2022 CWE-352 1 PoC

The VR Calendar plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 2.3.3. This is due to missing or incorrect nonce validation on several functions. This makes it possible for unauthenticated attackers to delete, and modify calendars as well as the plugin settings, via forged request granted they can trick a site administrator into performing an action such as clicking on a link.

CVE-2022-45942
Software Genérico Web
8.8
HIGH
EPSS
3.9%
2022 1 PoC

A Remote Code Execution (RCE) vulnerability was found in includes/baijiacms/common.inc.php in baijiacms v4.

CVE-2022-42070
Software Genérico Web
8.8
HIGH
EPSS
0.1%
2022 2 PoCs

Online Birth Certificate Management System version 1.0 is vulnerable to Cross Site Request Forgery (CSRF).

CVE-2022-47042
Software Genérico Web
8.8
HIGH
EPSS
0.3%
2022 1 PoC

MCMS v5.2.10 and below was discovered to contain an arbitrary file write vulnerability via the component ms/template/writeFileContent.do.

CVE-2022-43654
CAX30S Web Networking
8.8
HIGH
EPSS
2.7%
2022 CWE-78 1 PoC

NETGEAR CAX30S SSO Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of NETGEAR CAX30S routers. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the token parameter provided to the sso.php endpoint. The issue results from the lack of proper validation of a user-supplied string before using it to execute a system call. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-18227.

CVE-2022-4606
flatpressblog/flatpress Web
8.8
HIGH
EPSS
12.0%
2022 CWE-98 1 PoC

PHP Remote File Inclusion in GitHub repository flatpressblog/flatpress prior to 1.3.

CVE-2022-37205
Software Genérico Web Database
8.8
HIGH
EPSS
1.1%
2022 2 PoCs

JFinal CMS 5.1.0 is affected by: SQL Injection. These interfaces do not use the same component, nor do they have filters, but each uses its own SQL concatenation method, resulting in SQL injection.

CVE-2022-42199
Software Genérico Web
8.8
HIGH
EPSS
0.2%
2022 2 PoCs

Simple Exam Reviewer Management System v1.0 is vulnerable to Cross Site Request Forgery (CSRF) via the Exam List.

CVE-2022-1802
Firefox ESR Web
8.8
HIGH
EPSS
67.9%
2022 1 PoC

If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have achieved execution of attacker-controlled JavaScript code in a privileged context. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and Thunderbird < 91.9.1.

CVE-2022-30605
AVideo Web
8.8
HIGH
EPSS
0.7%
2022 CWE-384 1 PoC

A privilege escalation vulnerability exists in the session id functionality of WWBN AVideo 11.6 and dev master commit 3f7c0364. A specially-crafted HTTP request can lead to increased privileges. An attacker can get an authenticated user to send a crafted HTTP request to trigger this vulnerability.

CVE-2022-3860
Visual Email Designer for WooCommerce Web Database Windows
8.8
HIGH
EPSS
0.7%
2022 1 PoC

The Visual Email Designer for WooCommerce WordPress plugin before 1.7.2 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as author.

CVE-2022-31741
Thunderbird Web
8.8
HIGH
EPSS
0.3%
2022 1 PoC

A crafted CMS message could have been processed incorrectly, leading to an invalid memory read, and potentially further memory corruption. This vulnerability affects Thunderbird < 91.10, Firefox < 101, and Firefox ESR < 91.10.