3118 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2021-24827
Asgaros Forum Web Database Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
67.7%
2021 CWE-89 1 PoC

The Asgaros Forum WordPress plugin before 1.15.13 does not validate and escape user input when subscribing to a topic before using it in a SQL statement, leading to an unauthenticated SQL injection issue

CVE-2021-25934
OpenNMS Web
N/A
UNKNOWN
EPSS
0.3%
2021 1 PoC

In OpenNMS Horizon, versions opennms-18.0.0-1 through opennms-27.1.0-1; OpenNMS Meridian, versions meridian-foundation-2015.1.0-1 through meridian-foundation-2019.1.18-1; meridian-foundation-2020.1.0-1 through meridian-foundation-2020.1.7-1 are vulnerable to Stored Cross-Site Scripting, since the function `createRequisitionedNode()` does not perform any validation checks on the input sent to the `node-label` parameter. Due to this flaw an attacker could inject an arbitrary script which will be stored in the database.

CVE-2021-37152
Software Genérico Web
N/A
UNKNOWN
EPSS
3.2%
2021 3 PoCs

Multiple XSS issues exist in Sonatype Nexus Repository Manager 3 before 3.33.0. An authenticated attacker with the ability to add HTML files to a repository could redirect users to Nexus Repository Manager’s pages with code modifications.

CVE-2021-33469
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2021 2 PoCs

COVID19 Testing Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the "Admin name" parameter.

CVE-2021-20080
ManageEngine ServiceDesk Plus Web
N/A
UNKNOWN
EPSS
18.6%
2021 1 PoC

Insufficient output sanitization in ManageEngine ServiceDesk Plus before version 11200 and ManageEngine AssetExplorer before version 6800 allows a remote, unauthenticated attacker to conduct persistent cross-site scripting (XSS) attacks by uploading a crafted XML asset file.

CVE-2021-26762
Software Genérico Web Database
N/A
UNKNOWN
EPSS
1.1%
2021 3 PoCs

SQL injection vulnerability in PHPGurukul Student Record System 4.0 allows remote attackers to execute arbitrary SQL statements, via the cid parameter to edit-course.php.

CVE-2021-25002
Tipsacarrier Web Windows
N/A
UNKNOWN
EPSS
1.6%
2021 CWE-862 1 PoC

The Tipsacarrier WordPress plugin before 1.5.0.5 does not have any authorisation check in place some functions, which could allow unauthenticated users to access Orders data which could be used to retrieve the client full address, name and phone via tracking URL

CVE-2021-43484
Software Genérico Web
N/A
UNKNOWN
EPSS
12.7%
2021 1 PoC

A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.

CVE-2021-24355
Simple 301 Redirects by BetterLinks Web Windows
N/A
UNKNOWN
EPSS
0.2%
2021 CWE-862 1 PoC

In the Simple 301 Redirects by BetterLinks WordPress plugin before 2.0.4, the lack of capability checks and insufficient nonce check on the AJAX actions, simple301redirects/admin/get_wildcard and simple301redirects/admin/wildcard, made it possible for authenticated users to retrieve and update the wildcard value for redirects.

CVE-2021-41920
Software Genérico Web Database
N/A
UNKNOWN
EPSS
1.6%
2021 1 PoC

webTareas version 2.4 and earlier allows an unauthenticated user to perform Time and Boolean-based blind SQL Injection on the endpoint /includes/library.php, via the sor_cible, sor_champs, and sor_ordre HTTP POST parameters. This allows an attacker to access all the data in the database and obtain access to the webTareas application.

CVE-2021-24661
PostX – Gutenberg Blocks for Post Grid Web Windows
N/A
UNKNOWN
EPSS
0.2%
2021 CWE-200 1 PoC

The PostX – Gutenberg Blocks for Post Grid WordPress plugin before 2.4.10, with Saved Templates Addon enabled, allows users with Contributor roles or higher to read password-protected or private post contents the user is otherwise unable to read, given the post ID.

CVE-2021-24131
Anti-Spam by CleanTalk Web Database Windows
N/A
UNKNOWN
EPSS
1.0%
2021 CWE-89 1 PoC

Unvalidated input in the Anti-Spam by CleanTalk WordPress plugin, versions before 5.149, lead to multiple authenticated SQL injection vulnerabilities, however, it requires high privilege user (admin+).

CVE-2021-41317
Software Genérico Web
N/A
UNKNOWN
EPSS
0.5%
2021 1 PoC

XSS Hunter Express before 2021-09-17 does not properly enforce authentication requirements for paths.

CVE-2021-22132
Elasticsearch Web Database
N/A
UNKNOWN
EPSS
0.4%
2021 CWE-522 1 PoC

Elasticsearch versions 7.7.0 to 7.10.1 contain an information disclosure flaw in the async search API. Users who execute an async search will improperly store the HTTP headers. An Elasticsearch user with the ability to read the .tasks index could obtain sensitive request headers of other users in the cluster. This issue is fixed in Elasticsearch 7.10.2

CVE-2021-27338
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2021 1 PoC

Faraday Edge before 3.7 allows XSS via the network/create/ page and its network name parameter.

CVE-2021-24736
Easy Download Manager and File Sharing Plugin with frontend file upload – a better Media Library — Shared Files Web Windows
N/A
UNKNOWN
EPSS
0.2%
2021 CWE-79 1 PoC

The Easy Download Manager and File Sharing Plugin with frontend file upload – a better Media Library — Shared Files WordPress plugin before 1.6.57 does not sanitise and escape some of its settings before outputting them in attributes, which could lead to Stored Cross-Site Scripting issues.

CVE-2021-31682
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
41.1%
2021 1 PoC

The login portal for the Automated Logic WebCTRL/WebCTRL OEM web application contains a vulnerability that allows for reflected XSS attacks due to the operatorlocale GET parameter not being sanitized. This issue impacts versions 6.5 and below. This issue works by passing in a basic XSS payload to a vulnerable GET parameter that is reflected in the output without sanitization.

CVE-2021-23928
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2021 1 PoC

OX App Suite through 7.10.3 allows XSS via the ajax/apps/manifests query string.

CVE-2021-25076
WP User Frontend – Membership, Profile, Registration & Post Submission Plugin for WordPress Web Database Windows
N/A
UNKNOWN
EPSS
52.3%
2021 CWE-89 5 PoCs

The WP User Frontend WordPress plugin before 3.5.26 does not validate and escape the status parameter before using it in a SQL statement in the Subscribers dashboard, leading to an SQL injection. Due to the lack of sanitisation and escaping, this could also lead to Reflected Cross-Site Scripting

CVE-2021-3164
Software Genérico Web
N/A
UNKNOWN
EPSS
20.8%
2021 1 PoC

ChurchRota 2.6.4 is vulnerable to authenticated remote code execution. The user does not need to have file upload permission in order to upload and execute an arbitrary file via a POST request to resources.php.