2786 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2020-14959
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

Multiple XSS vulnerabilities in the Easy Testimonials plugin before 3.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the wp-admin/post.php Client Name, Position, Web Address, Other, Location Reviewed, Product Reviewed, Item Reviewed, or Rating parameter.

CVE-2020-15364
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
1.6%
2020 1 PoC

The Nexos theme through 1.7 for WordPress allows top-map/?search_location= reflected XSS.

CVE-2020-29552
Software Genérico Web
N/A
UNKNOWN
EPSS
8.9%
2020 4 PoCs

An issue was discovered in URVE Build 24.03.2020. By using the _internal/pc/vpro.php?mac=0&ip=0&operation=0&usr=0&pass=0%3bpowershell+-c+" substring, it is possible to execute a Powershell command and redirect its output to a file under the web root.

CVE-2020-8424
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

Cups Easy (Purchase & Inventory) 1.0 is vulnerable to CSRF that leads to admin account takeover via passwordmychange.php.

CVE-2020-10397
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 2 PoCs

The way URIs are handled in admin/header.php in Chadha PHPKB Standard Multi-Language 9 allows Reflected XSS (injecting arbitrary web script or HTML) in admin/add-news.php by adding a question mark (?) followed by the payload.

CVE-2020-25015
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
0.3%
2020 2 PoCs

A specific router allows changing the Wi-Fi password remotely. Genexis Platinum 4410 V2-1.28, a compact router generally used at homes and offices was found to be vulnerable to Broken Access Control and CSRF which could be combined to remotely change the WIFI access point’s password.

CVE-2020-27159
Software Genérico Web Cloud
N/A
UNKNOWN
EPSS
8.3%
2020 2 PoCs

Addressed remote code execution vulnerability in DsdkProxy.php due to insufficient sanitization and insufficient validation of user input in Western Digital My Cloud NAS devices prior to 5.04.114

CVE-2020-23055
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

ANCOM WLAN Controller (Wireless Series & Hotspot) WLC-1000 & WLC-4006 was discovered to contain multiple cross-site scripting (XSS) vulnerabilities in the /authen/start/ module via the userid and password parameters.

CVE-2020-36034
Software Genérico Web Database
N/A
UNKNOWN
EPSS
1.5%
2020 2 PoCs

SQL Injection vulnerability in oretnom23 School Faculty Scheduling System version 1.0, allows remote attacker to execute arbitrary code, escalate privilieges, and gain sensitive information via crafted payload to id parameter in manage_user.php.

CVE-2020-16168
Software Genérico Web
N/A
UNKNOWN
EPSS
0.1%
2020 1 PoC

Origin Validation Error in temi Robox OS prior to 120, temi Android app up to 1.3.7931 allows remote attackers to access the REST API and MQTT broker used by the temi and send it custom data/requests via unspecified vectors.

CVE-2020-12052
Software Genérico DevOps Web
N/A
UNKNOWN
EPSS
0.7%
2020 1 PoC

Grafana version < 6.7.3 is vulnerable for annotation popup XSS.

CVE-2020-35590
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
42.9%
2020 2 PoCs

LimitLoginAttempts.php in the limit-login-attempts-reloaded plugin before 2.17.4 for WordPress allows a bypass of (per IP address) rate limits because the X-Forwarded-For header can be forged. When the plugin is configured to accept an arbitrary header for the client source IP address, a malicious user is not limited to perform a brute force attack, because the client IP header accepts any arbitrary string. When randomizing the header input, the login count does not ever reach the maximum allowed retries.

CVE-2020-11463
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

An issue was discovered in Deskpro before 2019.8.0. The /api/email_accounts endpoint failed to properly validate a user's privilege, allowing an attacker to retrieve cleartext credentials of all helpdesk email accounts, including incoming and outgoing email credentials. This enables an attacker to get full access to all emails sent or received by the system including password reset emails, making it possible to reset any user's password.

CVE-2020-35665
Software Genérico Web
N/A
UNKNOWN
EPSS
88.6%
2020 3 PoCs

An unauthenticated command-execution vulnerability exists in TerraMaster TOS through 4.2.06 via shell metacharacters in the Event parameter in include/makecvs.php during CSV creation.

CVE-2020-14295
Software Genérico Web Database
N/A
UNKNOWN
EPSS
81.2%
2020 5 PoCs

A SQL injection issue in color.php in Cacti 1.2.12 allows an admin to inject SQL via the filter parameter. This can lead to remote command execution because the product accepts stacked queries.

CVE-2020-15345
Software Genérico Web Cloud
N/A
UNKNOWN
EPSS
0.1%
2020 2 PoCs

Zyxel CloudCNM SecuManager 3.1.0 and 3.1.1 has an unauthenticated zy_get_instances_for_update API.

CVE-2020-25760
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.4%
2020 5 PoCs

Projectworlds Visitor Management System in PHP 1.0 allows SQL Injection. The file front.php does not perform input validation on the 'rid' parameter. An attacker can append SQL queries to the input to extract sensitive information from the database.

CVE-2020-10986
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

A CSRF issue in the /goform/SysToolReboot endpoint of Tenda AC15 AC1900 version 15.03.05.19 allows remote attackers to reboot the device and cause denial of service via a payload hosted by an attacker-controlled web page.

CVE-2020-27386
Software Genérico Web
N/A
UNKNOWN
EPSS
77.9%
2020 3 PoCs

An unrestricted file upload issue in FlexDotnetCMS before v1.5.9 allows an authenticated remote attacker to upload and execute arbitrary files by using the FileManager to upload malicious code (e.g., ASP code) in the form of a safe file type (e.g., a TXT file), and then using the FileEditor (in v1.5.8 and prior) or the FileManager's rename function (in v1.5.7 and prior) to rename the file to an executable extension (e.g., ASP), and finally executing the file via an HTTP GET request to /<path_to_file>.

CVE-2020-12696
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
11.0%
2020 1 PoC

The iframe plugin before 4.5 for WordPress does not sanitize a URL.