2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2022-1574
HTML2WP Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
76.9%
2022 1 PoC

The HTML2WP WordPress plugin through 1.0.0 does not have authorisation and CSRF checks when importing files, and does not validate them, as a result, unauthenticated attackers can upload arbitrary files (such as PHP) on the remote server

CVE-2022-24681
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
23.4%
2022 1 PoC

Zoho ManageEngine ADSelfService Plus before 6121 allows XSS via the welcome name attribute to the Reset Password, Unlock Account, or User Must Change Password screen.

CVE-2022-2552
Duplicator Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
51.1%
2022 2 PoCs

The Duplicator WordPress plugin before 1.4.7 does not authenticate or authorize visitors before displaying information about the system such as server software, php version and full file system path to the site.

CVE-2022-1692
CP Image Store with Slideshow Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
73.4%
2022 CWE-89 2 PoCs

The CP Image Store with Slideshow WordPress plugin before 1.0.68 does not sanitise and escape the ordering_by query parameter before using it in a SQL statement in pages where the [codepeople-image-store] is embed, allowing unauthenticated users to perform an SQL injection attack

CVE-2022-26159
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
87.2%
2022 2 PoCs

The auto-completion plugin in Ametys CMS before 4.5.0 allows a remote unauthenticated attacker to read documents such as plugins/web/service/search/auto-completion/<domain>/en.xml (and similar pathnames for other languages), which contain all characters typed by all users, including the content of private pages. For example, a private page may contain usernames, e-mail addresses, and possibly passwords.

CVE-2022-0208
MapPress Maps for WordPress Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.3%
2022 CWE-79 1 PoC

The MapPress Maps for WordPress plugin before 2.73.4 does not sanitise and escape the mapid parameter before outputting it back in the "Bad mapid" error message, leading to a Reflected Cross-Site Scripting

CVE-2022-32429
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.9%
2022 4 PoCs

An authentication-bypass issue in the component http://MYDEVICEIP/cgi-bin-sdb/ExportSettings.sh of Mega System Technologies Inc MSNSwitch MNT.2408 allows unauthenticated attackers to arbitrarily configure settings within the application, leading to remote code execution.

CVE-2000-0760
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
30.4%
2000 0 PoCs

The Snoop servlet in Jakarta Tomcat 3.1 and 3.0 under Apache reveals sensitive system information when a remote attacker requests a nonexistent URL with a .snp extension.

CVE-2006-1681
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.2%
2006 0 PoCs

Cross-site scripting (XSS) vulnerability in Cherokee HTTPD 0.5 and earlier allows remote attackers to inject arbitrary web script or HTML via a malformed request that generates an HTTP 400 error, which is not properly handled when the error message is generated.

CVE-2006-2842
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
0.9%
2006 1 PoC

PHP remote file inclusion vulnerability in functions/plugin.php in SquirrelMail 1.4.6 and earlier, if register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the plugins array parameter. NOTE: this issue has been disputed by third parties, who state that Squirrelmail provides prominent warnings to the administrator when register_globals is enabled. Since the varieties of administrator negligence are uncountable, perhaps this type of issue should not be included in CVE. However, the original developer has posted a secur