2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2018-11709
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.3%
2018 1 PoC

wpforo_get_request_uri in wpf-includes/functions.php in the wpForo Forum plugin before 1.4.12 for WordPress allows Unauthenticated Reflected Cross-Site Scripting (XSS) via the URI.

CVE-2021-31682
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
41.1%
2021 1 PoC

The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the operatorlocale GET parameter not being sanitized. This issue impacts versions 6.5 and below. This issue works by passing in a basic XSS payload to a vulnerable GET parameter that is reflected in the output without sanitization.

CVE-2021-24236
Imagements Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
74.1%
2021 CWE-434 1 PoC

The Imagements WordPress plugin through 1.2.5 allows images to be uploaded in comments, however only checks for the Content-Type in the request to forbid dangerous files. This allows unauthenticated attackers to upload arbitrary files by using a valid image Content-Type along with a PHP filename and code, leading to RCE.

CVE-2018-7251
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
90.6%
2018 2 PoCs

An issue was discovered in config/error.php in Anchor 0.12.3. The error log is exposed at an errors.log URI, and contains MySQL credentials if a MySQL error (such as "Too many connections") has occurred.

CVE-2018-19127
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
84.8%
2018 1 PoC

A code injection vulnerability in /type.php in PHPCMS 2008 allows attackers to write arbitrary content to a website cache file with a controllable filename, leading to arbitrary code execution. The PHP code is sent via the template parameter, and is written to a data/cache_template/*.tpl.php file along with a "<?php function " substring.

CVE-2018-19749
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.2%
2018 1 PoC

DomainMOD through 4.11.01 has XSS via the assets/add/account-owner.php Owner name field.

CVE-2014-9180
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
8.4%
2014 1 PoC

Open redirect vulnerability in go.php in Eleanor CMS allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the QUERY_STRING.

CVE-2013-6281
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.9%
2013 1 PoC

Cross-site scripting (XSS) vulnerability in codebase/spreadsheet.php in the Spreadsheet (dhtmlxSpreadsheet) plugin 2.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the "page" parameter.

CVE-2018-18069
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
14.2%
2018 1 PoC

process_forms in the WPML (aka sitepress-multilingual-cms) plugin through 3.6.3 for WordPress has XSS via any locale_file_name_ parameter (such as locale_file_name_en) in an authenticated theme-localization.php request to wp-admin/admin.php.

CVE-2018-5715
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.4%
2018 1 PoC

phprint.php in SugarCRM 3.5.1 has XSS via a parameter name in the query string (aka a $key variable).

CVE-2018-10230
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.4%
2018 0 PoCs

Zend Debugger in Zend Server before 9.1.3 has XSS, aka ZSR-2455.

CVE-2018-19914
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.3%
2018 1 PoC

DomainMOD through 4.11.01 has XSS via the assets/add/dns.php Profile Name or notes field.

CVE-2018-16299
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
82.4%
2018 3 PoCs

The Localize My Post plugin 1.0 for WordPress allows Directory Traversal via the ajax/include.php file parameter.

CVE-2018-19877
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.5%
2018 1 PoC

login.php in Adiscon LogAnalyzer before 4.1.7 has XSS via the Login Button Referer field.

CVE-2018-1335
Apache Tika Web ⚡ nuclei
N/A
UNKNOWN
EPSS
93.9%
2018 8 PoCs

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVE-2021-27358
Software Genérico DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
87.0%
2021 0 PoCs

The snapshot feature in Grafana 6.7.3 through 7.4.1 can allow an unauthenticated remote attackers to trigger a Denial of Service via a remote API call if a commonly used configuration is set.

CVE-2018-7653
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.1%
2018 2 PoCs

In YzmCMS 3.6, index.php has XSS via the a, c, or m parameter.

CVE-2018-8770
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
58.0%
2018 1 PoC

Physical path Leakage exists in Western Bridge Cobub Razor 0.8.0 via generate.php, controllers/getConfigTest.php, controllers/getUpdateTest.php, controllers/postclientdataTest.php, controllers/posterrorTest.php, controllers/posteventTest.php, controllers/posttagTest.php, controllers/postusinglogTest.php, fixtures/Controller_fixt.php, fixtures/Controller_fixt2.php, fixtures/view_fixt2.php, libs/ipTest.php, or models/commonDbfix.php in tests/.

CVE-2021-25052
Button Generator – easily Button Builder Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
42.4%
2021 CWE-352 1 PoC

The Button Generator WordPress plugin before 2.3.3 within the wow-company admin menu page allows to include() arbitrary file with PHP extension (as well as with data:// or http:// protocols), thus leading to CSRF RCE.

CVE-2018-1000129
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.8%
2018 1 PoC

An XSS vulnerability exists in the Jolokia agent version 1.3.7 in the HTTP servlet that allows an attacker to execute malicious javascript in the victim's browser.