2786 vulnerabilidades · Web Orden: CVSS EPSS Año ID
CVE-2020-35201
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

Ignite Realtime Openfire 4.6.0 has create-bookmark.jsp users Stored XSS.

CVE-2020-6859
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
1.1%
2020 1 PoC

Multiple Insecure Direct Object Reference vulnerabilities in includes/core/class-files.php in the Ultimate Member plugin through 2.1.2 for WordPress allow remote attackers to change other users' profiles and cover photos via a modified user_id parameter. This is related to ajax_image_upload and ajax_resize_image.

CVE-2020-28874
Software Genérico Web
N/A
UNKNOWN
EPSS
1.1%
2020 1 PoC

reset-password.php in ProjectSend before r1295 allows remote attackers to reset a password because of incorrect business logic. Errors are not properly considered (an invalid token parameter).

CVE-2020-29279
Software Genérico Web ⚡ nuclei
N/A
UNKNOWN
EPSS
62.2%
2020 0 PoCs

PHP remote file inclusion in the assign_resume_tpl method in Application/Common/Controller/BaseController.class.php in 74CMS before 6.0.48 allows remote code execution.

CVE-2020-36139
Software Genérico Web
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

BloofoxCMS 0.5.2.1 allows Reflected Cross-Site Scripting (XSS) vulnerability by inserting a XSS payload within the 'fileurl' parameter.

CVE-2020-28960
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.3%
2020 1 PoC

Chichen Tech CMS v1.0 was discovered to contain multiple SQL injection vulnerabilities in the file product_list.php via the id and cid parameters.

CVE-2020-12640
Software Genérico Web
N/A
UNKNOWN
EPSS
22.7%
2020 3 PoCs

Roundcube Webmail before 1.4.4 allows attackers to include local files and execute code via directory traversal in a plugin name to rcube_plugin_api.php.

CVE-2020-9030
Software Genérico Web Cloud
N/A
UNKNOWN
EPSS
0.2%
2020 1 PoC

Symmetricom SyncServer S100 2.90.70.3, S200 1.30, S250 1.25, S300 2.65.0, and S350 2.80.1 devices allow Directory Traversal via the FileName parameter to the syslog.php.

CVE-2020-10802
Software Genérico Web Database
N/A
UNKNOWN
EPSS
1.6%
2020 1 PoC

In phpMyAdmin 4.x before 4.9.5 and 5.x before 5.0.2, a SQL injection vulnerability has been discovered where certain parameters are not properly escaped when generating certain queries for search actions in libraries/classes/Controllers/Table/TableSearchController.php. An attacker can generate a crafted database or table name. The attack can be performed if a user attempts certain search operations on the malicious database or table.

CVE-2020-12706
Software Genérico Web
N/A
UNKNOWN
EPSS
1.7%
2020 1 PoC

Multiple Cross-site scripting vulnerabilities in PHP-Fusion 9.03.50 allow remote attackers to inject arbitrary web script or HTML via the go parameter to faq/faq_admin.php or shoutbox_panel/shoutbox_admin.php

CVE-2020-13853
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 2 PoCs

Artica Pandora FMS 7.44 has persistent XSS in the Messages feature.

CVE-2020-27379
Software Genérico Web
N/A
UNKNOWN
EPSS
0.1%
2020 2 PoCs

Cross Site Request Forgery (CSRF) vulnerability in Booking Core - Ultimate Booking System Booking Core 1.7.0 . The CSRF token is not being validated when the request is sent as a GET method. This results in an unauthorized change in the user's email ID, which can later be used to reset the password. The new password will be sent to a modified email ID.

CVE-2020-28945
Software Genérico Web
N/A
UNKNOWN
EPSS
0.4%
2020 2 PoCs

OX App Suite 7.10.4 and earlier allows XSS via crafted content to reach an undocumented feature, such as ![](http://onerror=Function.constructor, in a Notes item.

CVE-2020-25514
Software Genérico Web
N/A
UNKNOWN
EPSS
0.3%
2020 2 PoCs

Sourcecodester Simple Library Management System 1.0 is affected by Incorrect Access Control via the Login Panel, http://<site>/lms/admin.php.

CVE-2020-15715
Software Genérico Web
N/A
UNKNOWN
EPSS
1.9%
2020 1 PoC

rConfig 3.9.5 could allow a remote authenticated attacker to execute arbitrary code on the system, because of an error in the search.crud.php script. An attacker could exploit this vulnerability using the nodeId parameter.

CVE-2020-11511
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
2.8%
2020 2 PoCs

The LearnPress plugin before 3.2.6.9 for WordPress allows remote attackers to escalate the privileges of any user to LP Instructor via the accept-to-be-teacher action parameter.

CVE-2020-8804
Software Genérico Web Database
N/A
UNKNOWN
EPSS
0.4%
2020 1 PoC

SuiteCRM through 7.11.10 allows SQL Injection via the SOAP API, the EmailUIAjax interface, or the MailMerge module.

CVE-2020-9372
Software Genérico Web Windows
N/A
UNKNOWN
EPSS
19.3%
2020 2 PoCs

The Appointment Booking Calendar plugin before 1.3.35 for WordPress allows user input (in fields such as Description or Name) in any booking form to be any formula, which then could be exported via the Bookings list tab in /wp-admin/admin.php?page=cpabc_appointments.php. The attacker could achieve remote code execution via CSV injection.

CVE-2020-28581
Trend Micro InterScan Web Security Virtual Appliance Web
N/A
UNKNOWN
EPSS
73.4%
2020 1 PoC

A command injection vulnerability in ModifyVLANItem of Trend Micro InterScan Web Security Virtual Appliance 6.5 SP2 could allow an authenticated, remote attacker to send specially crafted HTTP messages and execute arbitrary OS commands with elevated privileges.