2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2021-24554
Paytm – Donation Plugin Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
21.0%
2021 CWE-89 2 PoCs

The Paytm – Donation Plugin WordPress plugin through 1.3.2 does not sanitise, validate or escape the id GET parameter before using it in a SQL statement when deleting donations, leading to an authenticated SQL injection issue

CVE-2021-24979
Paid Memberships Pro Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.7%
2021 CWE-79 1 PoC

The Paid Memberships Pro WordPress plugin before 2.6.6 does not escape the s parameter before outputting it back in an attribute in an admin page, leading to a Reflected Cross-Site Scripting

CVE-2021-24746
Social Sharing Plugin – Sassy Social Share Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.8%
2021 CWE-79 1 PoC

The Social Sharing Plugin WordPress plugin before 3.3.40 does not escape the viewed post URL before outputting it back in onclick attributes when the "Enable 'More' icon" option is enabled (which is the default setting), leading to a Reflected Cross-Site Scripting issue.

CVE-2021-24657
Limit Login Attempts Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.8%
2021 CWE-79 1 PoC

The Limit Login Attempts WordPress plugin before 4.0.50 does not escape the IP addresses (which can be controlled by attacker via headers such as X-Forwarded-For) of attempted logins before outputting them in the reports table, leading to an Unauthenticated Stored Cross-Site Scripting issue.

CVE-2014-5368
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
48.3%
2014 1 PoC

Directory traversal vulnerability in the file_get_contents function in downloadfiles/download.php in the WP Content Source Control (wp-source-control) plugin 3.0.0 and earlier for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the path parameter.

CVE-2014-4592
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.8%
2014 0 PoCs

Cross-site scripting (XSS) vulnerability in rss.class/scripts/magpie_debug.php in the WP-Planet plugin 0.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the url parameter.

CVE-2015-5471
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
54.0%
2015 2 PoCs

Absolute path traversal vulnerability in include/user/download.php in the Swim Team plugin 1.44.10777 for WordPress allows remote attackers to read arbitrary files via a full pathname in the file parameter.

CVE-2021-22053
Spring Cloud Netflix Web Cloud ⚡ nuclei
N/A
UNKNOWN
EPSS
89.6%
2021 CWE-94 2 PoCs

Applications using both `spring-cloud-netflix-hystrix-dashboard` and `spring-boot-starter-thymeleaf` expose a way to execute code submitted within the request URI path during the resolution of view templates. When a request is made at `/hystrix/monitor;[user-provided data]`, the path elements following `hystrix/monitor` are being evaluated as SpringEL expressions, which can lead to code execution.

CVE-2021-40651
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.5%
2021 2 PoCs

OS4Ed OpenSIS Community 8.0 is vulnerable to a local file inclusion vulnerability in Modules.php (modname parameter), which can disclose arbitrary file from the server's filesystem as long as the application has access to the file.

CVE-2021-24510
MF Gig Calendar Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
21.1%
2021 1 PoC

The MF Gig Calendar WordPress plugin before 1.2 does not sanitise and escape the id GET parameter before outputting back in the admin dashboard when editing an Event, leading to a reflected Cross-Site Scripting issue

CVE-2021-40542
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
25.3%
2021 0 PoCs

Opensis-Classic Version 8.0 is affected by cross-site scripting (XSS). An unauthenticated user can inject and execute JavaScript code through the link_url parameter in Ajax_url_encode.php.

CVE-2021-24286
Redirect 404 to parent Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
52.3%
2021 CWE-79 2 PoCs

The settings page of the Redirect 404 to parent WordPress plugin before 1.3.1 did not properly sanitise the tab parameter before outputting it back, leading to a reflected Cross-Site Scripting issue

CVE-2021-24214
OpenID Connect Generic Client Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.0%
2021 CWE-79 1 PoC

The OpenID Connect Generic Client WordPress plugin 3.8.0 and 3.8.1 did not sanitise the login error when output back in the login form, leading to a reflected Cross-Site Scripting issue. This issue does not require authentication and can be exploited with the default configuration.

CVE-2021-38156
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
84.0%
2021 1 PoC

In Nagios XI before 5.8.6, XSS exists in the dashboard page (/dashboards/#) when administrative users attempt to edit a dashboard.

CVE-2021-32478
moodle Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.4%
2021 CWE-79 0 PoCs

The redirect URI in the LTI authorization endpoint required extra sanitizing to prevent reflected XSS and open redirect risks. Moodle versions 3.10 to 3.10.3, 3.9 to 3.9.6, 3.8 to 3.8.8 and earlier unsupported versions are affected.

CVE-2023-38879
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.0%
2023 1 PoC

The Community Edition version 9.0 of OS4ED's openSIS Classic allows remote attackers to read arbitrary files via a directory traversal vulnerability in the 'filename' parameter of 'DownloadWindow.php'.

CVE-2021-29200
Apache OFBiz Web ⚡ nuclei
N/A
UNKNOWN
EPSS
92.5%
2021 2 PoCs

Apache OFBiz has unsafe deserialization prior to 17.12.07 version An unauthenticated user can perform an RCE attack

CVE-2021-27124
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
22.3%
2021 3 PoCs

SQL injection in the expertise parameter in search_result.php in Doctor Appointment System v1.0 allows an authenticated patient user to dump the database credentials via a SQL injection attack.

CVE-2021-37291
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
57.5%
2021 1 PoC

An SQL Injection vulnerability exists in KevinLAB Inc Building Energy Management System 4ST BEMS 1.0.0 ivia the input_id POST parameter in index.php.

CVE-2021-24291
Photo Gallery by 10Web – Mobile-Friendly Image Gallery Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
14.6%
2021 CWE-79 2 PoCs

The Photo Gallery by 10Web – Mobile-Friendly Image Gallery WordPress plugin before 1.5.69 was vulnerable to Reflected Cross-Site Scripting (XSS) issues via the gallery_id, tag, album_id and _id GET parameters passed to the bwg_frontend_data AJAX action (available to both unauthenticated and authenticated users)