2786 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2020-10596
Software Genérico Web
N/A
UNKNOWN
EPSS
1.2%
2020 3 PoCs

OpenCart 3.0.3.2 allows remote authenticated users to conduct XSS attacks via a crafted filename in the users' image upload section.

CVE-2020-13596
Software Genérico Web
N/A
UNKNOWN
EPSS
0.8%
2020 2 PoCs

An issue was discovered in Django 2.2 before 2.2.13 and 3.0 before 3.0.7. Query parameters generated by the Django admin ForeignKeyRawIdWidget were not properly URL encoded, leading to a possibility of an XSS attack.

CVE-2020-7611
io.micronaut:micronaut-http-client Web
N/A
UNKNOWN
EPSS
0.5%
2020 1 PoC

All versions of io.micronaut:micronaut-http-client before 1.2.11 and all versions from 1.3.0 before 1.3.2 are vulnerable to HTTP Request Header Injection due to not validating request headers passed to the client.

CVE-2020-8170
AirMax AirOS for TI, XW and XM boards Web
N/A
UNKNOWN
EPSS
0.4%
2020 CWE-79 3 PoCs

We have recently released new version of AirMax AirOS firmware v6.3.0 for TI, XW and XM boards that fixes vulnerabilities found on AirMax AirOS v6.2.0 and prior TI, XW and XM boards, according to the description below:Multiple end-points with parameters vulnerable to reflected cross site scripting (XSS), allowing attackers to abuse the user' session information and/or account takeover of the admin user.Mitigation:Update to the latest AirMax AirOS firmware version available at the AirMax download page.

CVE-2020-25557
Software Genérico Web
N/A
UNKNOWN
EPSS
6.3%
2020 2 PoCs

In CMSuno 1.6.2, an attacker can inject malicious PHP code as a "username" while changing his/her username & password. After that, when attacker logs in to the application, attacker's code will be run. As a result of this vulnerability, authenticated user can run command on the server.

CVE-2020-14370
podman DevOps Web
N/A
UNKNOWN
EPSS
0.2%
2020 CWE-212 1 PoC

An information disclosure vulnerability was found in containers/podman in versions before 2.0.5. When using the deprecated Varlink API or the Docker-compatible REST API, if multiple containers are created in a short duration, the environment variables from the first container will get leaked into subsequent containers. An attacker who has control over the subsequent containers could use this flaw to gain access to sensitive information stored in such variables.

CVE-2020-24036
Software Genérico Web
N/A
UNKNOWN
EPSS
1.0%
2020 3 PoCs

PHP object injection in the Ajax endpoint of the backend in ForkCMS below version 5.8.3 allows an authenticated remote user to execute malicious code.

CVE-2020-7671
goliath Web
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

goliath through 1.0.6 allows request smuggling attacks where goliath is used as a backend and a frontend proxy also being vulnerable. It is possible to conduct HTTP request smuggling attacks by sending the Content-Length header twice. Furthermore, invalid Transfer Encoding headers were found to be parsed as valid which could be leveraged for TE:CL smuggling attacks.

CVE-2020-1944
Apache Traffic Server Web
N/A
UNKNOWN
EPSS
1.2%
2020 1 PoC

There is a vulnerability in Apache Traffic Server 6.0.0 to 6.2.3, 7.0.0 to 7.1.8, and 8.0.0 to 8.0.5 with a smuggling attack and Transfer-Encoding and Content length headers. Upgrade to versions 7.1.9 and 8.0.6 or later versions.

CVE-2020-25409
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.7%
2020 1 PoC

Projectsworlds College Management System Php 1.0 is vulnerable to SQL injection issues over multiple parameters.

CVE-2020-26584
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

An issue was discovered in Sage DPW 2020_06_x before 2020_06_002. The search field "Kurs suchen" on the page Kurskatalog is vulnerable to Reflected XSS. If the attacker can lure a user into clicking a crafted link, he can execute arbitrary JavaScript code in the user's browser. The vulnerability can be used to change the contents of the displayed site, redirect to other sites, or steal user credentials. Additionally, users are potential victims of browser exploits and JavaScript malware.

CVE-2020-5792
Nagios XI Web
N/A
UNKNOWN
EPSS
81.2%
2020 2 PoCs

Improper neutralization of argument delimiters in a command in Nagios XI 5.7.3 allows a remote, authenticated admin user to write to arbitrary files and ultimately execute code with the privileges of the apache user.

CVE-2020-23069
Software Genérico Web
N/A
UNKNOWN
EPSS
1.4%
2020 1 PoC

Path Traversal vulneraility exists in webTareas 2.0 via the extpath parameter in general_serv.php, which could let a malicious user read arbitrary files.

CVE-2020-18048
Software Genérico Web
N/A
UNKNOWN
EPSS
1.8%
2020 2 PoCs

An issue in craigms/main.php of CraigMS 1.0 allows attackers to execute arbitrary commands via a crafted input entered into the DB Name field.

CVE-2020-11998
Apache ActiveMQ Web Database
N/A
UNKNOWN
EPSS
6.9%
2020 6 PoCs

A regression has been introduced in the commit preventing JMX re-bind. By passing an empty environment map to RMIConnectorServer, instead of the map that contains the authentication credentials, it leaves ActiveMQ open to the following attack: https://docs.oracle.com/javase/8/docs/technotes/guides/management/agent.html "A remote client could create a javax.management.loading.MLet MBean and use it to create new MBeans from arbitrary URLs, at least if there is no security manager. In other words, a rogue remote client could make your Java application execute arbitrary code." Mitigation: Upgrade

CVE-2020-13957
Apache Solr Web
N/A
UNKNOWN
EPSS
84.8%
2020 1 PoC

Apache Solr versions 6.6.0 to 6.6.6, 7.0.0 to 7.7.3 and 8.0.0 to 8.6.2 prevents some features considered dangerous (which could be used for remote code execution) to be configured in a ConfigSet that's uploaded via API without authentication/authorization. The checks in place to prevent such features can be circumvented by using a combination of UPLOAD/CREATE actions.

CVE-2020-17452
Software Genérico Web
N/A
UNKNOWN
EPSS
0.8%
2020 2 PoCs

flatCore before 1.5.7 allows upload and execution of a .php file by an admin.

CVE-2020-35854
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

Textpattern 4.8.4 is affected by cross-site scripting (XSS) in the Body parameter.

CVE-2020-9032
Software Genérico Web Cloud
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices allow Directory Traversal via the FileName parameter to kernlog.php.