3391 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2022-2276
WP Edit Menu Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-862 1 PoC

The WP Edit Menu WordPress plugin before 1.5.0 does not have authorisation and CSRF in an AJAX action, which could allow unauthenticated attackers to delete arbitrary posts/pages from the blog

CVE-2022-40778
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2022 1 PoC

A stored Cross-Site Scripting (XSS) vulnerability in OPSWAT MetaDefender ICAP Server before 4.13.0 allows attackers to execute arbitrary JavaScript or HTML because of the blocked page response.

CVE-2022-23907
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2022 1 PoC

CMS Made Simple v2.2.15 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the parameter m1_fmmessage.

CVE-2022-32394
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.3%
2022 2 PoCs

Prison Management System v1.0 was discovered to contain a SQL injection vulnerability via the 'id' parameter at /pms/admin/inmates/view_inmate.php:3

CVE-2022-2638
Export All URLs Web Windows
N/A
UNKNOWN
EPSS
0.4%
2022 CWE-73 1 PoC

The Export All URLs WordPress plugin before 4.4 does not validate the path of the file to be removed on the system which is supposed to be the CSV file. This could allow high privilege users to delete arbitrary file from the server

CVE-2022-23366
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.3%
2022 3 PoCs

HMS v1.0 was discovered to contain a SQL injection vulnerability via patientlogin.php.

CVE-2022-31978
Software Genérico Web Database ⚡ nuclei
N/A
UNKNOWN
EPSS
48.2%
2022 0 PoCs

Online Fire Reporting System v1.0 is vulnerable to SQL Injection via /ofrs/classes/Master.php?f=delete_inquiry.

CVE-2022-0376
User Meta – User Profile Builder and User management plugin Web Windows
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-79 1 PoC

The User Meta WordPress plugin before 2.4.3 does not sanitise and escape the Form Name, as well as Shared Field Labels before outputting them in the admin dashboard when editing a form, which could allow high privilege users to perform Cross-Site Scripting attacks even when unfiltered_html is disallowed

CVE-2022-0188
CMP Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
5.9%
2022 1 PoC

The CMP WordPress plugin before 4.0.19 allows any user, even not logged in, to arbitrarily change the coming soon page layout.

CVE-2022-0661
Ad Injection Web Windows
N/A
UNKNOWN
EPSS
11.8%
2022 CWE-94 1 PoC

The Ad Injection WordPress plugin through 1.2.0.19 does not properly sanitize the body of the adverts injected into the pages, allowing a high privileged user (Admin+) to inject arbitrary HTML or javascript even with unfiltered_html disallowed, leading to a stored cross-site scripting (XSS) vulnerability. Further it is also possible to inject PHP code, leading to a Remote Code execution (RCE) vulnerability, even if the DISALLOW_FILE_EDIT and DISALLOW_FILE_MOD constants are both set.

CVE-2022-1562
Enable SVG Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The Enable SVG WordPress plugin before 1.4.0 does not sanitise uploaded SVG files, which could allow users with a role as low as Author to upload a malicious SVG containing XSS payloads

CVE-2022-0593
Login with phone number Web Windows
N/A
UNKNOWN
EPSS
0.5%
2022 CWE-73 1 PoC

The Login with phone number WordPress plugin before 1.3.7 includes a file delete.php with no form of authentication or authorization checks placed in the plugin directory, allowing unauthenticated user to remotely delete the plugin files leading to a potential Denial of Service situation.

CVE-2022-25489
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
5.9%
2022 0 PoCs

Atom CMS v2.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the "A" parameter in /widgets/debug.php.

CVE-2022-0347
LoginPress | Custom Login Page Customizer Web Windows
N/A
UNKNOWN
EPSS
0.2%
2022 CWE-79 1 PoC

The LoginPress | Custom Login Page Customizer WordPress plugin before 1.5.12 does not escape the redirect-page parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting

CVE-2022-0493
String locator Web Windows
N/A
UNKNOWN
EPSS
1.0%
2022 CWE-22 1 PoC

The String locator WordPress plugin before 2.5.0 does not properly validate the path of the files to be searched, allowing high privilege users such as admin to query arbitrary files on the web server via a path traversal vector. Furthermore, due to a flaw in the search, allowing a pattern to be provided, which will be used to output the relevant matches from the matching file, all content of the file can be disclosed.

CVE-2022-38796
Software Genérico Web
N/A
UNKNOWN
EPSS
0.1%
2022 1 PoC

A Host Header Injection vulnerability in Feehi CMS 2.1.1 may allow an attacker to spoof a particular header. This can be exploited by abusing password reset emails.

CVE-2022-23046
PhpIPAM Web Database
N/A
UNKNOWN
EPSS
49.0%
2022 5 PoCs

PhpIPAM v1.4.4 allows an authenticated admin user to inject SQL sentences in the "subnet" parameter while searching a subnet via app/admin/routing/edit-bgp-mapping-search.php

CVE-2022-29005
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
7.4%
2022 2 PoCs

Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fname or lname parameters.

CVE-2022-1166
Noo JobMonster Web
N/A
UNKNOWN
EPSS
0.3%
2022 CWE-22 1 PoC

The JobMonster Theme was vulnerable to Directory Listing in the /wp-content/uploads/jobmonster/ folder, as it did not include a default PHP file, or .htaccess file. This could expose personal data such as people's resumes. Although Directory Listing can be prevented by securely configuring the web server, vendors can also take measures to make it less likely to happen.

CVE-2022-1846
Tiny Contact Form Web Windows
N/A
UNKNOWN
EPSS
0.1%
2022 CWE-352 1 PoC

The Tiny Contact Form WordPress plugin through 0.7 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack