3391 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2022-0873
Gmedia Photo Gallery Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.8%
2022 CWE-79 1 PoC

The Gmedia Photo Gallery WordPress plugin before 1.20.0 does not sanitise and escape the Album's name before outputting it in pages/posts with a media embed, which could allow high privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered-html capability is disallowed

CVE-2022-31861
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

Cross site Scripting (XSS) in ThingsBoard IoT Platform through 3.3.4.1 via a crafted value being sent to the audit logs.

CVE-2022-32393
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.3%
2022 2 PoCs

Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/cells/view_cell.php:4

CVE-2022-23896
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

Admidio 4.1.2 version is affected by stored cross-site scripting (XSS).

CVE-2022-0214
Popup | Custom Popup Builder Web Windows
N/A
UNKNOWN
EPSS
2.0%
2022 1 PoC

The Custom Popup Builder WordPress plugin before 1.3.1 autoload data from its popup on every pages, as such data can be sent by unauthenticated user, and is not validated in length, this could cause a denial of service on the blog

CVE-2022-29158
Apache OFBiz Web
N/A
UNKNOWN
EPSS
1.5%
2022 CWE-1333 1 PoC

Apache OFBiz up to version 18.12.05 is vulnerable to Regular Expression Denial of Service (ReDoS) in the way it handles URLs provided by external, unauthenticated users. Upgrade to 18.12.06 or apply patches at https://issues.apache.org/jira/browse/OFBIZ-12599

CVE-2022-35294
SAP NetWeaver AS ABAP Web
N/A
UNKNOWN
EPSS
0.4%
2022 CWE-79 1 PoC

An attacker with basic business user privileges could craft and upload a malicious file to SAP NetWeaver Application Server ABAP, which is then downloaded and viewed by other users resulting in a stored Cross-Site-Scripting attack. This could lead to information disclosure including stealing authentication information and impersonating the affected user.

CVE-2022-2410
mTouch Quiz Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The mTouch Quiz WordPress plugin through 3.1.3 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2022-4115
Editorial Calendar Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

The Editorial Calendar WordPress plugin before 3.8.3 does not sanitise and escape its settings, allowing users with roles as low as contributor to inject arbitrary web scripts in the plugin admin panel, enabling a Stored Cross-Site Scripting vulnerability targeting higher privileged users.

CVE-2022-2275
WP Edit Menu Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-352 1 PoC

The WP Edit Menu WordPress plugin before 1.5.0 does not have CSRF in an AJAX action, which could allow attackers to make a logged in admin delete arbitrary posts/pages from the blog via a CSRF attack

CVE-2022-25486
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
68.1%
2022 0 PoCs

CuppaCMS v1.0 was discovered to contain a local file inclusion via the url parameter in /alerts/alertConfigField.php.

CVE-2022-1194
Mobile Events Manager Web Windows
N/A
UNKNOWN
EPSS
1.2%
2022 CWE-1236 1 PoC

The Mobile Events Manager WordPress plugin before 1.4.8 does not properly escape the Enquiry source field when exporting events, or the Paid for field when exporting transactions as CSV, leading to a CSV injection vulnerability.

CVE-2022-1349
WPQA Builder Plugin Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-287 1 PoC

The WPQA Builder Plugin WordPress plugin before 5.2, used as a companion plugin for the Discy and Himer , does not validate that the value passed to the image_id parameter of the ajax action wpqa_remove_image belongs to the requesting user, allowing any users (with privileges as low as Subscriber) to delete the profile pictures of any other user.

CVE-2022-2317
Simple Membership Web Windows
N/A
UNKNOWN
EPSS
0.9%
2022 CWE-269 1 PoC

The Simple Membership WordPress plugin before 4.1.3 allows user to change their membership at the registration stage due to insufficient checking of a user supplied parameter.

CVE-2022-32567
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

The Appfire Jira Misc Custom Fields (JMCF) app 2.4.6 for Atlassian Jira allows XSS via a crafted project name to the Add Auto Indexing Rule function.

CVE-2022-2763
WP Socializer – Simple & Easy Social Media Share Icons Web Windows
N/A
UNKNOWN
EPSS
0.5%
2022 CWE-79 1 PoC

The WP Socializer WordPress plugin before 7.3 does not sanitise and escape some of its Icons settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2022-30015
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2022 2 PoCs

In Simple Food Website 1.0, a moderation can put the Cross Site Scripting Payload in any of the fields on http://127.0.0.1:1234/food/admin/all_users.php like Full Username, etc .This causes stored xss.

CVE-2022-1903
ARMember – Membership Plugin, Content Restriction, Member Levels, User Profile & User signup Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
78.4%
2022 CWE-862 2 PoCs

The ARMember WordPress plugin before 3.4.8 is vulnerable to account takeover (even the administrator) due to missing nonce and authorization checks in an AJAX action available to unauthenticated users, allowing them to change the password of arbitrary users by knowing their username

CVE-2022-1323
Discy Web Windows
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

The Discy WordPress theme before 5.0 lacks authorization checks then processing ajax requests to the discy_update_options action, allowing any logged in users (with privileges as low as Subscriber,) to change Theme options by sending a crafted POST request.

CVE-2022-3209
soledad Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The soledad WordPress theme before 8.2.5 does not sanitise the {id,datafilter[type],...} parameters in its penci_more_slist_post_ajax AJAX action, leading to a Reflected Cross-Site Scripting (XSS) vulnerability.