2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-12296
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
73.1%
2018 1 PoC

Insufficient access control in /api/external/7.0/system.System.get_infos in Seagate NAS OS version 4.3.15.1 allows attackers to obtain information about the NAS without authentication via empty POST requests.

CVE-2021-24970
All-in-One Video Gallery Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
8.8%
2021 CWE-22 1 PoC

The All-in-One Video Gallery WordPress plugin before 2.5.0 does not sanitise and validate the tab parameter before using it in a require statement in the admin dashboard, leading to a Local File Inclusion issue

CVE-2018-15535
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.1%
2018 1 PoC

/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname that should be within a restricted directory, but it does not properly neutralize get_file sequences such as ".." that can resolve to a location that is outside of that directory, aka Directory Traversal.

CVE-2018-2894
WebLogic Server Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
94.3%
2018 4 PoCs

Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS - Web Services). Supported versions that are affected are 12.1.3.0, 12.2.1.2 and 12.2.1.3. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in takeover of Oracle WebLogic Server. CVSS 3.0 Base Score 9.8 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H).

CVE-2021-21745
MF971R Web ⚡ nuclei
N/A
UNKNOWN
EPSS
36.4%
2021 0 PoCs

ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to click.

CVE-2018-12909
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
89.7%
2018 0 PoCs

Webgrind 1.5 relies on user input to display a file, which lets anyone view files from the local filesystem (that the webserver user has access to) via an index.php?op=fileviewer&file= URI. NOTE: the vendor indicates that the product is not intended for a "publicly accessible environment.

CVE-2014-9609
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
31.2%
2014 1 PoC

Directory traversal vulnerability in webadmin/reporter/view_server_log.php in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to list directory contents via a .. (dot dot) in the log parameter in a stats action.

CVE-2014-9607
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
9.0%
2014 1 PoC

Cross-site scripting (XSS) vulnerability in remotereporter/load_logfiles.php in Netsweeper 4.0.3 and 4.0.4 allows remote attackers to inject arbitrary web script or HTML via the url parameter.

CVE-2013-5979
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
24.2%
2013 1 PoC

Directory traversal vulnerability in Spring Signage Xibo 1.2.x before 1.2.3 and 1.4.x before 1.4.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter to index.php.

CVE-2018-20010
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.5%
2018 1 PoC

DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider-account.php username field.

CVE-2018-15517
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.9%
2018 2 PoCs

The MailConnect feature on D-Link Central WiFiManager CWM-100 1.03 r0098 devices is intended to check a connection to an SMTP server but actually allows outbound TCP to any port on any IP address, leading to SSRF, as demonstrated by an index.php/System/MailConnect/host/127.0.0.1/port/22/secure/ URI.

CVE-2018-10141
Palo Alto Networks Web Networking ⚡ nuclei
N/A
UNKNOWN
EPSS
44.2%
2018 0 PoCs

GlobalProtect Portal Login page in Palo Alto Networks PAN-OS before 8.1.4 allows an unauthenticated attacker to inject arbitrary JavaScript or HTML.

CVE-2021-24210
PhastPress Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
35.4%
2021 CWE-601 2 PoCs

There is an open redirect in the PhastPress WordPress plugin before 1.111 that allows an attacker to malform a request to a page with the plugin and then redirect the victim to a malicious page. There is also a support comment from another user one year ago (https://wordpress.org/support/topic/phast-php-used-for-remote-fetch/) that says that the php involved in the request only go to whitelisted pages but it's possible to redirect the victim to any domain.

CVE-2018-12613
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
94.3%
2018 7 PoCs

An issue was discovered in phpMyAdmin 4.8.x before 4.8.2, in which an attacker can include (view and potentially execute) files on the server. The vulnerability comes from a portion of code where pages are redirected and loaded within phpMyAdmin, and an improper test for whitelisted pages. An attacker must be authenticated, except in the "$cfg['AllowArbitraryServer'] = true" case (where an attacker can specify any host he/she is already in control of, and execute arbitrary code on phpMyAdmin) and the "$cfg['ServerDefault'] = 0" case (which bypasses the login requirement and runs the vulnerable

CVE-2021-24145
Modern Events Calendar Lite Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
91.3%
2021 CWE-434 4 PoCs

Arbitrary file upload in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly check the imported file, allowing PHP ones to be uploaded by administrator by using the 'text/csv' content-type in the request.

CVE-2018-10736
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
83.2%
2018 0 PoCs

A SQL injection issue was discovered in Nagios XI before 5.4.13 via the admin/info.php key1 parameter.

CVE-2018-14728
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
90.7%
2018 2 PoCs

upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.

CVE-2018-12095
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.7%
2018 2 PoCs

A Reflected Cross-Site Scripting web vulnerability has been discovered in the OEcms v3.1 web-application. The vulnerability is located in the mod parameter of info.php.

CVE-2018-8033
Apache OFBiz Web ⚡ nuclei
N/A
UNKNOWN
EPSS
92.2%
2018 1 PoC

In Apache OFBiz 16.11.01 to 16.11.04, the OFBiz HTTP engine (org.apache.ofbiz.service.engine.HttpEngine.java) handles requests for HTTP services via the /webtools/control/httpService endpoint. Both POST and GET requests to the httpService endpoint may contain three parameters: serviceName, serviceMode, and serviceContext. The exploitation occurs by having DOCTYPEs pointing to external references that trigger a payload that returns secret information from the host.

CVE-2021-46387
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
33.4%
2021 2 PoCs

ZyXEL ZyWALL 2 Plus Internet Security Appliance is affected by Cross Site Scripting (XSS). Insecure URI handling leads to bypass security restriction to achieve Cross Site Scripting, which allows an attacker able to execute arbitrary JavaScript codes to perform multiple attacks such as clipboard hijacking and session hijacking.