3391 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2022-22734
Simple Quotation Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

The Simple Quotation WordPress plugin through 1.3.2 does not have CSRF check when creating or editing a quote and does not sanitise and escape Quotes. As a result, attacker could make a logged in admin create or edit arbitrary quote, and put Cross-Site Scripting payloads in them

CVE-2022-0212
SpiderCalendar Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
1.2%
2022 CWE-79 1 PoC

The SpiderCalendar WordPress plugin through 1.5.65 does not sanitise and escape the callback parameter before outputting it back in the page via the window AJAX action (available to both unauthenticated and authenticated users), leading to a Reflected Cross-Site Scripting issue.

CVE-2022-1221
Gwyn's Imagemap Selector Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
3.3%
2022 CWE-79 1 PoC

The Gwyn's Imagemap Selector WordPress plugin through 0.3.3 does not sanitise and escape some parameters before outputting them back in attributes, leading to a Reflected Cross-Site Scripting.

CVE-2022-0279
AnyComment Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-362 1 PoC

The AnyComment WordPress plugin before 0.2.18 is affected by a race condition when liking/disliking a comment/reply, which could allow any authenticated user to quickly raise their rating or lower the rating of other users

CVE-2022-31400
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

A cross-site scripting (XSS) vulnerability in /staff/setup/email-addresses of Helpdeskz v2.0.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the email name field.

CVE-2022-30040
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
0.5%
2022 2 PoCs

Tenda AX1803 v1.0.0.1_2890 is vulnerable to Buffer Overflow. The vulnerability lies in rootfs_ In / goform / setsystimecfg of / bin / tdhttpd in ubif file system, attackers can access http://ip/goform/SetSysTimeCfg, and by setting the ntpserve parameter, the stack buffer overflow can be caused to achieve the effect of router denial of service.

CVE-2022-37175
Software Genérico Web
N/A
UNKNOWN
EPSS
0.5%
2022 1 PoC

Tenda ac15 firmware V15.03.05.18 httpd server has stack buffer overflow in /goform/formWifiBasicSet.

CVE-2022-39988
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2022 1 PoC

A cross-site scripting (XSS) vulnerability in Centreon 22.04.0 allows attackers to execute arbitrary web script or HTML via a crafted payload injected into the Service>Templates service_alias parameter.

CVE-2022-1772
Google Places Reviews Web Windows
N/A
UNKNOWN
EPSS
2.5%
2022 CWE-79 1 PoC

The Google Places Reviews WordPress plugin before 2.0.0 does not properly escape its Google API key setting, which is reflected on the site's administration panel. A malicious administrator could abuse this bug, in a multisite WordPress configuration, to trick super-administrators into viewing the booby-trapped payload and taking over their account.

CVE-2022-0388
Interactive Medical Drawing of Human Body Web Windows
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-79 1 PoC

The Interactive Medical Drawing of Human Body WordPress plugin before 2.6 does not sanitise and escape the Link field, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVE-2022-35225
SAP NetWeaver Enterprise Portal Web
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-79 1 PoC

SAP NetWeaver Enterprise Portal - versions 7.10, 7.11, 7.20, 7.30, 7.31, 7.40, 7.50, does not sufficiently encode user-controlled inputs over the network, resulting in reflected Cross-Site Scripting (XSS) vulnerability, therefore changing the scope of the attack. This leads to limited impact on confidentiality and integrity of data.

CVE-2022-37191
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
32.5%
2022 0 PoCs

The component "cuppa/api/index.php" of CuppaCMS v1.0 is Vulnerable to LFI. An authenticated user can read system files via crafted POST request using [function] parameter value as LFI payload.

CVE-2022-2314
VR Calendar Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
80.8%
2022 CWE-78 1 PoC

The VR Calendar WordPress plugin through 2.3.2 lets any user execute arbitrary PHP functions on the site.

CVE-2022-23911
Testimonial WordPress Plugin – AP Custom Testimonial Web Database Windows
N/A
UNKNOWN
EPSS
0.6%
2022 CWE-89 1 PoC

The Testimonial WordPress Plugin WordPress plugin before 1.4.7 does not validate and escape the id parameter before using it in a SQL statement when retrieving a testimonial to edit, leading to a SQL Injection

CVE-2022-35910
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2022 2 PoCs

In Jellyfin before 10.8, stored XSS allows theft of an admin access token.

CVE-2022-1971
NextCellent Gallery – NextGEN Legacy Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The NextCellent Gallery WordPress plugin through 1.9.35 does not sanitise and escape some of its image settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2022-29704
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

BrowsBox CMS v4.0 was discovered to contain a SQL injection vulnerability.

CVE-2022-0739
BookingPress – Appointments Booking Calendar Plugin and Online Scheduling Plugin Web Database Windows
N/A
UNKNOWN
EPSS
69.9%
2022 CWE-89 10 PoCs

The BookingPress WordPress plugin before 1.0.11 fails to properly sanitize user supplied POST data before it is used in a dynamically constructed SQL query via the bookingpress_front_get_category_services AJAX action (available to unauthenticated users), leading to an unauthenticated SQL Injection

CVE-2022-38463
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
48.1%
2022 0 PoCs

ServiceNow through San Diego Patch 4b and Patch 6 allows reflected XSS in the logout functionality.

CVE-2022-0825
Amelia – Events & Appointments Booking Calendar Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-863 1 PoC

The Amelia WordPress plugin before 1.0.49 does not have proper authorisation when managing appointments, allowing any customer to update other's booking status, as well as retrieve sensitive information about the bookings, such as the full name and phone number of the person who booked it.