2786 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2020-28328
Software Genérico Web
N/A
UNKNOWN
EPSS
49.5%
2020 3 PoCs

SuiteCRM before 7.11.17 is vulnerable to remote code execution via the system settings Log File Name setting. In certain circumstances involving admin account takeover, logger_file_name can refer to an attacker-controlled .php file under the web root.

CVE-2020-5308
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to XSS, as demonstrated by the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName parameter in add-product.php.

CVE-2020-1948
Apache Dubbo Web
N/A
UNKNOWN
EPSS
63.6%
2020 3 PoCs

This vulnerability can affect all Dubbo users stay on version 2.7.6 or lower. An attacker can send RPC requests with unrecognized service name or method name along with some malicious parameter payloads. When the malicious parameter is deserialized, it will execute some malicious code. More details can be found below.

CVE-2020-28409
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

The server in Dundas BI through 8.0.0.1001 allows XSS via addition of a Component (e.g., a button) when events such as click, hover, etc. occur.

CVE-2020-1963
Apache Ignite Web Database
N/A
UNKNOWN
EPSS
4.7%
2020 1 PoC

Apache Ignite uses H2 database to build SQL distributed execution engine. H2 provides SQL functions which could be used by attacker to access to a filesystem.

CVE-2020-15676
Firefox Web
N/A
UNKNOWN
EPSS
1.0%
2020 2 PoCs

Firefox sometimes ran the onload handler for SVG elements that the DOM sanitizer decided to remove, resulting in JavaScript being executed after pasting attacker-controlled data into a contenteditable element. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.

CVE-2020-7222
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

An issue was discovered in Amcrest Web Server 2.520.AC00.18.R 2017-06-29 WEB 3.2.1.453504. The login page responds with JavaScript when one tries to authenticate. An attacker who changes the result parameter (to true) in this JavaScript code can bypass authentication and achieve limited privileges (ability to see every option but not modify them).

CVE-2020-29475
Software Genérico Web
N/A
UNKNOWN
EPSS
0.5%
2020 1 PoC

nopCommerce Store 4.30 is affected by cross-site scripting (XSS) in the Schedule tasks name field. This vulnerability can allow an attacker to inject the XSS payload in Schedule tasks and each time any user will go to that page of the website, the XSS triggers and attacker can able to steal the cookie according to the crafted payload.

CVE-2020-1721
pki-core Web
N/A
UNKNOWN
EPSS
0.8%
2020 CWE-79 1 PoC

A flaw was found in the Key Recovery Authority (KRA) Agent Service in pki-core 10.10.5 where it did not properly sanitize the recovery ID during a key recovery request, enabling a reflected cross-site scripting (XSS) vulnerability. An attacker could trick an authenticated victim into executing specially crafted Javascript code.

CVE-2020-21784
Software Genérico Web
N/A
UNKNOWN
EPSS
0.6%
2020 1 PoC

phpwcms 1.9.13 is vulnerable to Code Injection via /phpwcms/setup/setup.php.

CVE-2020-5796
Nagios XI Web
N/A
UNKNOWN
EPSS
0.1%
2020 1 PoC

Improper preservation of permissions in Nagios XI 5.7.4 allows a local, low-privileged, authenticated user to weaken the permissions of files, resulting in low-privileged users being able to write to and execute arbitrary PHP code with root privileges.

CVE-2020-29540
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

API calls in the Translation API feature in Systran Pure Neural Server before 9.7.0 allow a threat actor to use the Systran Pure Neural Server as a Denial-of-Service proxy by sending a large amount of translation requests to a destination host on any given TCP port regardless of whether a web service is running on the destination port.

CVE-2020-15688
Software Genérico Web
N/A
UNKNOWN
EPSS
2.1%
2020 1 PoC

The HTTP Digest Authentication in the GoAhead web server before 5.1.2 does not completely protect against replay attacks. This allows an unauthenticated remote attacker to bypass authentication via capture-replay if TLS is not used to protect the underlying communication channel.

CVE-2020-21998
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
1.4%
2020 1 PoC

In HomeAutomation 3.3.2 input passed via the 'redirect' GET parameter in 'api.php' script is not properly verified before being used to redirect users. This can be exploited to redirect a user to an arbitrary website e.g. when a user clicks a specially crafted link to the affected script hosted on a trusted domain.

CVE-2020-8800
Software Genérico Web
N/A
UNKNOWN
EPSS
0.8%
2020 1 PoC

SuiteCRM through 7.11.11 allows EmailsControllerActionGetFromFields PHP Object Injection.

CVE-2020-24223
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
15.3%
2020 3 PoCs

Mara CMS 7.5 allows cross-site scripting (XSS) in contact.php via the theme or pagetheme parameters.

CVE-2020-25759
Software Genérico Web Networking
N/A
UNKNOWN
EPSS
1.5%
2020 1 PoC

An issue was discovered on D-Link DSR-250 3.17 devices. Certain functionality in the Unified Services Router web interface could allow an authenticated attacker to execute arbitrary commands, due to a lack of validation of inputs provided in multipart HTTP POST requests.

CVE-2020-10195
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
0.5%
2020 1 PoC

The popup-builder plugin before 3.64.1 for WordPress allows information disclosure and settings modification, leading to in-scope privilege escalation via admin-post actions to com/classes/Actions.php. By sending a POST request to wp-admin/admin-post.php, an authenticated attacker with minimal (subscriber-level) permissions can modify the plugin's settings to allow arbitrary roles (including subscribers) access to plugin functionality by setting the action parameter to sgpbSaveSettings, export a list of current newsletter subscribers by setting the action parameter to csv_file, or obtain syste

CVE-2020-28091
Software Genérico Web Database
N/A
UNKNOWN
EPSS
6.5%
2020 1 PoC

cxuucms v3 has a SQL injection vulnerability, which can lead to the leakage of all database data via the keywords parameter via search.php.

CVE-2020-1953
Apache Commons Configuration Web
N/A
UNKNOWN
EPSS
2.7%
2020 1 PoC

Apache Commons Configuration uses a third-party library to parse YAML files which by default allows the instantiation of classes if the YAML includes special statements. Apache Commons Configuration versions 2.2, 2.3, 2.4, 2.5, 2.6 did not change the default settings of this library. So if a YAML file was loaded from an untrusted source, it could therefore load and execute code out of the control of the host application.