2131 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2019-11199
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2019 1 PoC

Dolibarr ERP/CRM 9.0.1 was affected by stored XSS within uploaded files. These vulnerabilities allowed the execution of a JavaScript payload each time any regular user or administrative user clicked on the malicious link hosted on the same domain. The vulnerabilities could be exploited by low privileged users to target administrators. The viewimage.php page did not perform any contextual output encoding and would display the content within the uploaded file with a user-requested MIME type.

CVE-2019-14952
Software Genérico Web
N/A
UNKNOWN
EPSS
0.0%
2019 1 PoC

JetBrains YouTrack versions before 2019.1.52584 had a possible XSS in the issue titles.

CVE-2019-9913
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
0.3%
2019 2 PoCs

The wp-live-chat-support plugin before 8.0.18 for WordPress has wp-admin/admin.php?page=wplivechat-menu-gdpr-page term XSS.

CVE-2019-15826
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
1.1%
2019 1 PoC

The wps-hide-login plugin before 1.5.3 for WordPress has a protection bypass via wp-login.php in the Referer field.

CVE-2019-17392
Software Genérico Web
N/A
UNKNOWN
EPSS
0.5%
2019 1 PoC

Progress Sitefinity 12.1 has a Weak Password Recovery Mechanism for a Forgotten Password because the HTTP Host header is mishandled.

CVE-2019-11591
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
0.2%
2019 3 PoCs

The WebDorado Contact Form plugin before 1.13.5 for WordPress allows CSRF via the wp-admin/admin-ajax.php action parameter, with resultant local file inclusion via directory traversal, because there can be a discrepancy between the $_POST['action'] value and the $_GET['action'] value, and the latter is unsanitized.

CVE-2019-11629
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2019 1 PoC

Sonatype Nexus Repository Manager 2.x before 2.14.13 allows XSS.

CVE-2019-19576
Software Genérico Web
N/A
UNKNOWN
EPSS
50.6%
2019 4 PoCs

class.upload.php in verot.net class.upload before 1.0.3 and 2.x before 2.0.4, as used in the K2 extension for Joomla! and other products, omits .phar from the set of dangerous file extensions.

CVE-2019-16701
Software Genérico Web
N/A
UNKNOWN
EPSS
20.5%
2019 1 PoC

pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value.

CVE-2019-2666
One-to-One Fulfillment Web Database
N/A
UNKNOWN
EPSS
0.8%
2019 1 PoC

Vulnerability in the Oracle One-to-One Fulfillment component of Oracle E-Business Suite (subcomponent: Print Server). Supported versions that are affected are 12.1.1 - 12.1.3 and 12.2.3 - 12.2.8. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle One-to-One Fulfillment. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Oracle One-to-One Fulfillment, attacks may significantly impact additional products. Successful attacks of this vulnerability can result in unauthor

CVE-2019-9912
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
0.8%
2019 2 PoCs

The wp-google-maps plugin before 7.10.43 for WordPress has XSS via the wp-admin/admin.php PATH_INFO.

CVE-2019-10893
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2019 4 PoCs

CentOS-WebPanel.com (aka CWP) CentOS Web Panel 0.9.8.793 (Free/Open Source Version) and 0.9.8.753 (Pro) is vulnerable to Stored/Persistent XSS for Admin Email fields on the "CWP Settings > "Edit Settings" screen. By changing the email ID to any XSS Payload and clicking on Save Changes, the XSS Payload will execute.

CVE-2019-17638
Eclipse Jetty Web
N/A
UNKNOWN
EPSS
30.9%
2019 CWE-672 3 PoCs

In Eclipse Jetty, versions 9.4.27.v20200227 to 9.4.29.v20200521, in case of too large response headers, Jetty throws an exception to produce an HTTP 431 error. When this happens, the ByteBuffer containing the HTTP response headers is released back to the ByteBufferPool twice. Because of this double release, two threads can acquire the same ByteBuffer from the pool and while thread1 is about to use the ByteBuffer to write response1 data, thread2 fills the ByteBuffer with other data. Thread1 then proceeds to write the buffer that now contains different data. This results in client1, which issued

CVE-2019-16108
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2019 2 PoCs

phpBB 3.2.7 allows adding an arbitrary Cascading Style Sheets (CSS) token sequence to a page through BBCode.

CVE-2019-14478
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2019 1 PoC

AdRem NetCrunch 10.6.0.4587 has a stored Cross-Site Scripting (XSS) vulnerability in the NetCrunch web client. The user's input data is not properly encoded when being echoed back to the user. This data can be interpreted as executable code by the browser and allows an attacker to execute JavaScript code in the context of the user's browser if the victim opens or searches for a node whose "Display Name" contains an XSS payload.

CVE-2019-20180
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
2.7%
2019 2 PoCs

The TablePress plugin 1.9.2 for WordPress allows tablepress[data] CSV injection by Editor users. Note: The vendor disputes this issue and argues that this responsibility lies with the application that opens the CSV file and not TablePress.

CVE-2019-15109
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
0.1%
2019 1 PoC

The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter.

CVE-2019-8368
Software Genérico Web
N/A
UNKNOWN
EPSS
38.8%
2019 1 PoC

OpenEMR v5.0.1-6 allows XSS.

CVE-2019-6715
Software Genérico Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
91.5%
2019 3 PoCs

pub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via the SubscribeURL field in SubscriptionConfirmation JSON data.

CVE-2019-16692
Software Genérico Web Database
N/A
UNKNOWN
EPSS
16.3%
2019 2 PoCs

phpIPAM 1.4 allows SQL injection via the app/admin/custom-fields/filter-result.php table parameter when action=add is used.