2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-2791
WebCenter Sites Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
87.0%
2018 2 PoCs

Vulnerability in the Oracle WebCenter Sites component of Oracle Fusion Middleware (subcomponent: Advanced UI). Supported versions that are affected are 11.1.1.8.0, 12.2.1.2.0 and 12.2.1.3.0. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebCenter Sites. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle WebCenter Sites, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthorized access to crit

CVE-2018-10737
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
83.2%
2018 0 PoCs

A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/logbook.php txtSearch parameter.

CVE-2019-16662
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
94.5%
2019 5 PoCs

An issue was discovered in rConfig 3.9.2. An attacker can directly execute system commands by sending a GET request to ajaxServerSettingsChk.php because the rootUname parameter is passed to the exec function without filtering, which can lead to command execution.

CVE-2018-5230
Jira Web ⚡ nuclei
N/A
UNKNOWN
EPSS
22.7%
2018 0 PoCs

The issue collector in Atlassian Jira before version 7.6.6, from version 7.7.0 before version 7.7.4, from version 7.8.0 before version 7.8.4 and from version 7.9.0 before version 7.9.2 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in the error message of custom fields when an invalid value is specified.

CVE-2018-18775
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
16.0%
2018 2 PoCs

Microstrategy Web, version 7, does not sufficiently encode user-controlled inputs, resulting in a Cross-Site Scripting (XSS) vulnerability via the Login.asp Msg parameter. NOTE: this is a deprecated product.

CVE-2019-9762
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
53.5%
2019 1 PoC

A SQL Injection was discovered in PHPSHE 1.7 in include/plugin/payment/alipay/pay.php with the parameter id. The vulnerability does not need any authentication.

CVE-2018-19207
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
91.9%
2018 4 PoCs

The Van Ons WP GDPR Compliance (aka wp-gdpr-compliance) plugin before 1.4.3 for WordPress allows remote attackers to execute arbitrary code because $wpdb->prepare() input is mishandled, as exploited in the wild in November 2018.

CVE-2013-4117
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
11.8%
2013 2 PoCs

Cross-site scripting (XSS) vulnerability in includes/CatGridPost.php in the Category Grid View Gallery plugin 2.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the ID parameter.

CVE-2019-17233
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.1%
2019 1 PoC

Functions/EWD_UFAQ_Import.php in the ultimate-faqs plugin through 1.8.24 for WordPress allows HTML content injection.

CVE-2018-18608
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
7.9%
2018 0 PoCs

DedeCMS 5.7 SP2 allows XSS via the function named GetPageList defined in the include/datalistcp.class.php file that is used to display the page numbers list at the bottom of some templates, as demonstrated by the PATH_INFO to /member/index.php, /member/pm.php, /member/content_list.php, or /plus/feedback.php.

CVE-2018-7765
U.Motion Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
6.1%
2018 1 PoC

The vulnerability exists within processing of track_import_export.php in Schneider Electric U.motion Builder software versions prior to v1.3.4. The underlying SQLite database query is subject to SQL injection on the object_id input parameter.

CVE-2019-10717
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.2%
2019 1 PoC

BlogEngine.NET 3.3.7.0 allows /api/filemanager Directory Traversal via the path parameter.

CVE-2018-16363
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.4%
2018 2 PoCs

The mndpsingh287 File Manager plugin V2.9 for WordPress has XSS via the lang parameter in a wp-admin/admin.php?page=wp_file_manager request because set_transient is used in file_folder_manager.php and there is an echo of lang in lib\wpfilemanager.php.

CVE-2018-8024
Apache Spark Web ⚡ nuclei
N/A
UNKNOWN
EPSS
61.1%
2018 0 PoCs

In Apache Spark 2.1.0 to 2.1.2, 2.2.0 to 2.2.1, and 2.3.0, it's possible for a malicious user to construct a URL pointing to a Spark cluster's UI's job and stage info pages, and if a user can be tricked into accessing the URL, can be used to cause script to execute and expose information from the user's view of the Spark UI. While some browsers like recent versions of Chrome and Safari are able to block this type of attack, current versions of Firefox (and possibly others) do not.

CVE-2019-18371
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.3%
2019 0 PoCs

An issue was discovered on Xiaomi Mi WiFi R3G devices before 2.28.23-stable. There is a directory traversal vulnerability to read arbitrary files via a misconfigured NGINX alias, as demonstrated by api-third-party/download/extdisks../etc/config/account. With this vulnerability, the attacker can bypass authentication.

CVE-2018-19439
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
38.9%
2018 2 PoCs

XSS exists in the Administration Console in Oracle Secure Global Desktop 4.4 20080807152602 (but was fixed in later versions including 5.4). helpwindow.jsp has reflected XSS via all parameters, as demonstrated by the sgdadmin/faces/com_sun_web_ui/help/helpwindow.jsp windowTitle parameter.

CVE-2018-6008
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.0%
2018 2 PoCs

Arbitrary File Download exists in the Jtag Members Directory 5.3.7 component for Joomla! via the download_file parameter.

CVE-2019-9618
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
86.8%
2019 2 PoCs

The GraceMedia Media Player plugin 1.0 for WordPress allows Local File Inclusion via the "cfg" parameter.

CVE-2018-10822
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
85.9%
2018 2 PoCs

Directory traversal vulnerability in the web interface on D-Link DWR-116 through 1.06, DIR-140L through 1.02, DIR-640L through 1.02, DWR-512 through 2.02, DWR-712 through 2.02, DWR-912 through 2.02, DWR-921 through 2.02, and DWR-111 through 1.01 devices allows remote attackers to read arbitrary files via a /.. or // after "GET /uir" in an HTTP request. NOTE: this vulnerability exists because of an incorrect fix for CVE-2017-6190.

CVE-2018-3167
Application Management Pack for Oracle E-Business Suite Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
68.0%
2018 1 PoC

Vulnerability in the Application Management Pack for Oracle E-Business Suite component of Oracle E-Business Suite (subcomponent: User Monitoring). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6 and 12.2.7. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Application Management Pack for Oracle E-Business Suite. Successful attacks of this vulnerability can result in unauthorized read access to a subset of Application Management Pack for Oracle E-Business Suite accessible data. CVSS 3.0 Base Score 5.3 (Con