2550 vulnerabilidades · Web · ⚡ Nuclei Orden: CVSS EPSS Año ID
CVE-2016-10940
Software Genérico Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
21.8%
2016 1 PoC

The zm-gallery plugin 1.0 for WordPress has SQL injection via the order parameter.

CVE-2016-1000129
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.8%
2016 0 PoCs

Reflected XSS in wordpress plugin defa-online-image-protector v3.3

CVE-2013-7285
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
14.8%
2013 3 PoCs

Xstream API versions up to 1.4.6 and version 1.4.10, if the security framework has not been initialized, may allow a remote attacker to run arbitrary shell commands by manipulating the processed input stream when unmarshaling XML or any supported format. e.g. JSON.

CVE-2019-10098
Apache HTTP Server Web ⚡ nuclei
N/A
UNKNOWN
EPSS
77.4%
2019 CWE-601 4 PoCs

In Apache HTTP server 2.4.0 to 2.4.39, Redirects configured with mod_rewrite that were intended to be self-referential might be fooled by encoded newlines and redirect instead to an unexpected URL within the request URL.

CVE-2016-8527
Aruba AirWave Web ⚡ nuclei
N/A
UNKNOWN
EPSS
55.8%
2016 1 PoC

Aruba Airwave all versions up to, but not including, 8.2.3.1 is vulnerable to a reflected cross-site scripting (XSS). The vulnerability is present in the VisualRF component of AirWave. By exploiting this vulnerability, an attacker who can trick a logged-in AirWave administrative user into clicking a link could obtain sensitive information, such as session cookies or passwords. The vulnerability requires that an administrative users click on the malicious link while currently logged into AirWave in the same browser.

CVE-2023-39007
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
54.1%
2023 1 PoC

/ui/cron/item/open in the Cron component of OPNsense Community Edition before 23.7 and Business Edition before 23.4.2 allows XSS via openAction in app/controllers/OPNsense/Cron/ItemController.php.

CVE-2019-0221
Apache Tomcat Web ⚡ nuclei
N/A
UNKNOWN
EPSS
14.5%
2019 4 PoCs

The SSI printenv command in Apache Tomcat 9.0.0.M1 to 9.0.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 echoes user provided data without escaping and is, therefore, vulnerable to XSS. SSI is disabled by default. The printenv command is intended for debugging and is unlikely to be present in a production website.

CVE-2016-10972
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
63.1%
2016 2 PoCs

The newspaper theme before 6.7.2 for WordPress has a lack of options access control via td_ajax_update_panel.

CVE-2016-1000133
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.0%
2016 0 PoCs

Reflected XSS in wordpress plugin forget-about-shortcode-buttons v1.1.1

CVE-2019-8937
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
43.8%
2019 2 PoCs

HotelDruid 2.3.0 has XSS affecting the nsextt, cambia1, mese_fine, origine, and anno parameters in creaprezzi.php, tabella3.php, personalizza.php, and visualizza_tabelle.php.

CVE-2016-5674
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
89.4%
2016 2 PoCs

__debugging_center_utils___.php in NUUO NVRmini 2 1.7.5 through 3.0.0, NUUO NVRsolo 1.7.5 through 3.0.0, and NETGEAR ReadyNAS Surveillance 1.1.1 through 1.4.1 allows remote attackers to execute arbitrary PHP code via the log parameter.

CVE-2016-1000126
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.2%
2016 0 PoCs

Reflected XSS in wordpress plugin admin-font-editor v1.8

CVE-2019-15713
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
4.7%
2019 0 PoCs

The my-calendar plugin before 3.1.10 for WordPress has XSS.

CVE-2016-1000149
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
7.3%
2016 0 PoCs

Reflected XSS in wordpress plugin simpel-reserveren v3.5.2

CVE-2016-10134
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
86.2%
2016 1 PoC

SQL injection vulnerability in Zabbix before 2.2.14 and 3.0 before 3.0.4 allows remote attackers to execute arbitrary SQL commands via the toggle_ids array parameter in latest.php.

CVE-2019-14251
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
56.6%
2019 1 PoC

An issue was discovered in T24 in TEMENOS Channels R15.01. The login page presents JavaScript functions to access a document on the server once successfully authenticated. However, an attacker can leverage downloadDocServer() to traverse the file system and access files or directories that are outside of the restricted directory because WealthT24/GetImage is used with the docDownloadPath and uploadLocation parameters.

CVE-2016-1000130
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.7%
2016 0 PoCs

Reflected XSS in wordpress plugin e-search v1.0

CVE-2019-10405
Jenkins DevOps Web ⚡ nuclei
N/A
UNKNOWN
EPSS
79.8%
2019 0 PoCs

Jenkins 2.196 and earlier, LTS 2.176.3 and earlier printed the value of the "Cookie" HTTP request header on the /whoAmI/ URL, allowing attackers exploiting another XSS vulnerability to obtain the HTTP session cookie despite it being marked HttpOnly.

CVE-2016-1000127
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
2.2%
2016 0 PoCs

Reflected XSS in wordpress plugin ajax-random-post v2.00

CVE-2016-10108
Software Genérico Web Cloud ⚡ nuclei
N/A
UNKNOWN
EPSS
92.2%
2016 1 PoC

Unauthenticated Remote Command injection as root occurs in the Western Digital MyCloud NAS 2.11.142 /web/google_analytics.php URL via a modified arg parameter in the POST data.