2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2015-4050
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
76.2%
2015 0 PoCs

FragmentListener in the HttpKernel component in Symfony 2.3.19 through 2.3.28, 2.4.9 through 2.4.10, 2.5.4 through 2.5.11, and 2.6.0 through 2.6.7, when ESI or SSI support enabled, does not check if the _controller attribute is set, which allows remote attackers to bypass URL signing and security rules by including (1) no hash or (2) an invalid hash in a request to /_fragment.

CVE-2021-25016
Floating Chat Widget: Contact Icons, Messages, Telegram, Email, SMS, Call Button – Chaty Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
15.7%
2021 CWE-79 1 PoC

The Chaty WordPress plugin before 2.8.3 and Chaty Pro WordPress plugin before 2.8.2 do not sanitise and escape the search parameter before outputting it back in the admin dashboard, leading to a Reflected Cross-Site Scripting

CVE-2021-39433
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
82.5%
2021 1 PoC

A local file inclusion (LFI) vulnerability exists in version BIQS IT Biqs-drive v1.83 and below when sending a specific payload as the file parameter to download/index.php. This allows the attacker to read arbitrary files from the server with the permissions of the configured web-user.

CVE-2021-24358
The Plus Addons for Elementor Page Builder Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.9%
2021 CWE-601 1 PoC

The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.10 did not validate a redirect parameter on a specifically crafted URL before redirecting the user to it, leading to an Open Redirect issue.

CVE-2021-33221
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
91.2%
2021 2 PoCs

An issue was discovered in CommScope Ruckus IoT Controller 1.7.1.0 and earlier. There are Unauthenticated API Endpoints.

CVE-2021-24351
The Plus Addons for Elementor Page Builder Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
12.4%
2021 CWE-79 1 PoC

The theplus_more_post AJAX action of The Plus Addons for Elementor Page Builder WordPress plugin before 4.1.12 did not properly sanitise some of its fields, leading to a reflected Cross-Site Scripting (exploitable on both unauthenticated and authenticated users)

CVE-2021-40978
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.7%
2021 2 PoCs

The mkdocs 1.2.2 built-in dev-server allows directory traversal using the port 8000, enabling remote exploitation to obtain :sensitive information. NOTE: the vendor has disputed this as described in https://github.com/mkdocs/mkdocs/issues/2601.] and https://github.com/nisdn/CVE-2021-40978/issues/1

CVE-2021-44528
https://github.com/rails/rails Web ⚡ nuclei
N/A
UNKNOWN
EPSS
20.8%
2021 CWE-601 0 PoCs

A open redirect vulnerability exists in Action Pack >= 6.0.0 that could allow an attacker to craft a "X-Forwarded-Host" headers in combination with certain "allowed host" formats can cause the Host Authorization middleware in Action Pack to redirect users to a malicious website.

CVE-2021-37573
Software Genérico DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
51.9%
2021 3 PoCs

A reflected cross-site scripting (XSS) vulnerability in the web server TTiny Java Web Server and Servlet Container (TJWS) <=1.115 allows an adversary to inject malicious code on the server's "404 Page not Found" error page

CVE-2021-42663
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
38.0%
2021 3 PoCs

An HTML injection vulnerability exists in Sourcecodester Online Event Booking and Reservation System in PHP/MySQL via the msg parameter to /event-management/index.php. An attacker can leverage this vulnerability in order to change the visibility of the website. Once the target user clicks on a given link he will display the content of the HTML code of the attacker's choice.

CVE-2021-34187
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
89.5%
2021 1 PoC

main/inc/ajax/model.ajax.php in Chamilo through 1.11.14 allows SQL Injection via the searchField, filters, or filters2 parameter.

CVE-2021-24146
Modern Events Calendar Lite Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
76.5%
2021 CWE-284 2 PoCs

Lack of authorisation checks in the Modern Events Calendar Lite WordPress plugin, versions before 5.16.5, did not properly restrict access to the export files, allowing unauthenticated users to exports all events data in CSV or XML format for example.

CVE-2015-20067
WP Attachment Export Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
19.1%
2015 CWE-862 2 PoCs

The WP Attachment Export WordPress plugin before 0.2.4 does not have proper access controls, allowing unauthenticated users to download the XML data that holds all the details of attachments/posts on a Wordpress

CVE-2023-39109
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
78.5%
2023 0 PoCs

rconfig v3.9.4 was discovered to contain a Server-Side Request Forgery (SSRF) via the path_a parameter in the doDiff Function of /classes/compareClass.php. This vulnerability allows authenticated attackers to make arbitrary requests via injection of crafted URLs.

CVE-2021-24644
Images to WebP Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
30.5%
2021 CWE-22 1 PoC

The Images to WebP WordPress plugin before 1.9 does not validate or sanitise the tab parameter before passing it to the include() function, which could lead to a Local File Inclusion issue

CVE-2021-24527
User Registration & User Profile – Profile Builder Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
75.6%
2021 CWE-287 1 PoC

The User Registration & User Profile – Profile Builder WordPress plugin before 3.4.9 has a bug allowing any user to reset the password of the admin of the blog, and gain unauthorised access, due to a bypass in the way the reset key is checked. Furthermore, the admin will not be notified of such change by email for example.

CVE-2021-3002
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
12.7%
2021 1 PoC

Seo Panel 4.8.0 allows reflected XSS via the seo/seopanel/login.php?sec=forgot email parameter.

CVE-2021-39501
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
31.9%
2021 0 PoCs

EyouCMS 1.5.4 is vulnerable to Open Redirect. An attacker can redirect a user to a malicious url via the Logout function.

CVE-2021-31250
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
82.8%
2021 1 PoC

Multiple storage XSS vulnerabilities were discovered on BF-430, BF-431 and BF-450M TCP/IP Converter devices from CHIYU Technology Inc due to a lack of sanitization of the input on the components man.cgi, if.cgi, dhcpc.cgi, ppp.cgi.

CVE-2021-26702
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
3.3%
2021 0 PoCs

EPrints 3.4.2 exposes a reflected XSS opportunity in the dataset parameter to the cgi/dataset_dictionary URI.