13629 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2022-4323
Analyticator Web Windows
7.2
HIGH
EPSS
0.9%
2022 1 PoC

The Analyticator WordPress plugin before 6.5.6 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present

CVE-2022-3366
PublishPress Capabilities – User Role Access, Editor Permissions, Admin Menus Web Windows
7.2
HIGH
EPSS
0.9%
2022 CWE-502 1 PoC

The PublishPress Capabilities WordPress plugin before 2.5.2, PublishPress Capabilities Pro WordPress plugin before 2.5.2 unserializes the content of imported files, which could lead to PHP object injection attacks by administrators, on multisite WordPress configurations. Successful exploitation in this case requires other plugins with a suitable gadget chain to be present on the site.

CVE-2022-3334
Easy WP SMTP Web Windows
7.2
HIGH
EPSS
0.9%
2022 CWE-502 1 PoC

The Easy WP SMTP WordPress plugin before 1.5.0 unserialises the content of an imported file, which could lead to PHP object injection issue when an admin import (intentionally or not) a malicious file and a suitable gadget chain is present on the blog.

CVE-2022-4489
HUSKY Web Windows
7.2
HIGH
EPSS
1.1%
2022 1 PoC

The HUSKY WordPress plugin before 1.3.2 unserializes user input provided via the settings, which could allow high privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.

CVE-2022-39179
College Management System v1.0 Web Database
7.2
HIGH
EPSS
1.4%
2022 1 PoC

College Management System v1.0 - Authenticated remote code execution. An admin user (the authentication can be bypassed using SQL Injection that mentioned in my other report) can upload .php file that contains malicious code via student.php file.

CVE-2022-2711
Import any XML or CSV File to WordPress Web Windows
7.2
HIGH
EPSS
0.9%
2022 CWE-22 1 PoC

The Import any XML or CSV File to WordPress plugin before 3.6.9 is not validating the paths of files contained in uploaded zip archives, allowing highly privileged users, such as admins, to write arbitrary files to any part of the file system accessible by the web server via a path traversal vector.

CVE-2022-24734
mybb Web
7.2
HIGH
EPSS
82.4%
2022 CWE-94 4 PoCs

MyBB is a free and open source forum software. In affected versions the Admin CP's Settings management module does not validate setting types correctly on insertion and update, making it possible to add settings of supported type `php` with PHP code, executed on on _Change Settings_ pages. This results in a Remote Code Execution (RCE) vulnerability. The vulnerable module requires Admin CP access with the `Can manage settings?` permission. MyBB's Settings module, which allows administrators to add, edit, and delete non-default settings, stores setting data in an options code string ($options_co

CVE-2022-21705
october Web ⚡ nuclei
7.2
HIGH
EPSS
76.6%
2022 CWE-74 0 PoCs

Octobercms is a self-hosted CMS platform based on the Laravel PHP Framework. In affected versions user input was not properly sanitized before rendering. An authenticated user with the permissions to create, modify and delete website pages can exploit this vulnerability to bypass `cms.safe_mode` / `cms.enableSafeMode` in order to execute arbitrary code. This issue only affects admin panels that rely on safe mode and restricted permissions. To exploit this vulnerability, an attacker must first have access to the backend area. The issue has been patched in Build 474 (v1.0.474) and v1.1.10. Users

CVE-2022-4352
Qe SEO Handyman Web Database Windows
7.2
HIGH
EPSS
0.7%
2022 1 PoC

The Qe SEO Handyman WordPress plugin through 1.0 does not properly sanitize and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin

CVE-2022-3076
CM Download Manager Web Windows
7.2
HIGH
EPSS
1.1%
2022 CWE-434 1 PoC

The CM Download Manager WordPress plugin before 2.8.6 allows high privilege users such as admin to upload arbitrary files by setting the any extension via the plugin's setting, which could be used by admins of multisite blog to upload PHP files for example.

CVE-2022-4546
Mapwiz Web Database Windows
7.2
HIGH
EPSS
0.5%
2022 1 PoC

The Mapwiz WordPress plugin through 1.0.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.

CVE-2022-24376
git-promise Web
7.2
HIGH
EPSS
2.5%
2022 2 PoCs

All versions of package git-promise are vulnerable to Command Injection due to an inappropriate fix of a prior [vulnerability](https://security.snyk.io/vuln/SNYK-JS-GITPROMISE-567476) in this package. **Note:** Please note that the vulnerability will not be fixed. The README file was updated with a warning regarding this issue.

CVE-2022-4547
Conditional Payment Methods for WooCommerce Web Database Windows
7.2
HIGH
EPSS
0.6%
2022 1 PoC

The Conditional Payment Methods for WooCommerce WordPress plugin through 1.0 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by [high privilege users such as admin|users with a role as low as admin.

CVE-2022-3380
Customizer Export/Import Web Windows
7.2
HIGH
EPSS
1.0%
2022 CWE-502 1 PoC

The Customizer Export/Import WordPress plugin before 0.9.5 unserializes the content of an imported file, which could lead to PHP object injection issues when an admin imports (intentionally or not) a malicious file and a suitable gadget chain is present on the blog.

CVE-2022-1243
medialize/uri.js Web
7.2
HIGH
EPSS
0.3%
2022 CWE-20 1 PoC

CRHTLF can lead to invalid protocol extraction potentially leading to XSS in GitHub repository medialize/uri.js prior to 1.19.11.

CVE-2022-38066
QUARTZ-GOLD Web
7.2
HIGH
EPSS
0.4%
2022 CWE-78 2 PoCs

An OS command injection vulnerability exists in the httpd SNMP functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP response can lead to arbitrary command execution. An attacker can send a network request to trigger this vulnerability.

CVE-2022-3131
Search Logger – Know What Your Visitors Search Web Database Windows
7.2
HIGH
EPSS
0.6%
2022 CWE-89 1 PoC

The Search Logger WordPress plugin through 0.9 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users

CVE-2022-3689
HTML Forms Web Database Windows
7.2
HIGH
EPSS
40.3%
2022 3 PoCs

The HTML Forms WordPress plugin before 1.3.25 does not properly properly escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users

CVE-2022-3300
Form Maker by 10Web – Mobile-Friendly Drag & Drop Contact Form Builder Web Database Windows
7.2
HIGH
EPSS
0.8%
2022 CWE-89 1 PoC

The Form Maker by 10Web WordPress plugin before 1.15.6 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin

CVE-2022-38459
QUARTZ-GOLD Web
7.2
HIGH
EPSS
10.2%
2022 CWE-120 2 PoCs

A stack-based buffer overflow vulnerability exists in the httpd downfile.cgi functionality of Siretta QUARTZ-GOLD G5.0.1.5-210720-141020. A specially-crafted HTTP request can lead to remote code execution. An attacker can send an HTTP request to trigger this vulnerability.