4628 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2024-3901
Genesis Blocks Web Windows
6.8
MEDIUM
EPSS
0.3%
2024 1 PoC

The Genesis Blocks WordPress plugin through 3.1.3 does not properly escape attributes provided to some of its custom blocks, making it possible for users allowed to write posts (like those with the contributor role) to conduct Stored XSS attacks.

CVE-2024-13347
Essential WP Real Estate Web Windows
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

The Essential WP Real Estate WordPress plugin through 1.1.3 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting.

CVE-2024-4305
Post Grid Gutenberg Blocks and WordPress Blog Plugin Web Windows
6.8
MEDIUM
EPSS
0.4%
2024 1 PoC

The Post Grid Gutenberg Blocks and WordPress Blog Plugin WordPress plugin before 4.1.0 does not validate and escape some of its block options before outputting them back in a page/post where the block is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVE-2024-5744
wp-eMember Web Windows
6.8
MEDIUM
EPSS
0.5%
2024 1 PoC

The wp-eMember WordPress plugin before 10.6.7 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute, which could lead to Reflected Cross-Site Scripting in old web browsers

CVE-2024-2322
WooCommerce Cart Abandonment Recovery Web Windows
6.8
MEDIUM
EPSS
0.2%
2024 1 PoC

The WooCommerce Cart Abandonment Recovery WordPress plugin before 1.2.27 does not have CSRF check in its bulk actions, which could allow attackers to make logged in admins delete arbitrary email templates as well as delete and unsubscribe users from abandoned orders via CSRF attacks.

CVE-2024-2640
Watu Quiz Web Windows
6.8
MEDIUM
EPSS
0.4%
2024 1 PoC

The Watu Quiz WordPress plugin before 3.4.1.2 does not sanitise and escape some of its settings, which could allow users such as authors (if they've been authorized by admins) to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVE-2024-51984
HL-L8260CDN Windows
6.8
MEDIUM
EPSS
0.5%
2024 CWE-522 2 PoCs

An authenticated attacker can reconfigure the target device to use an external service (such as LDAP or FTP) controlled by the attacker. If an existing password is present for an external service, the attacker can force the target device to authenticate to an attacker controlled device using the existing credentials for that external service. In the case of an external LDAP or FTP service, this will disclose the plaintext password for that external service to the attacker.

CVE-2024-8743
File Manager Web Windows
6.8
MEDIUM
EPSS
42.9%
2024 CWE-434 1 PoC

The Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress plugin for WordPress is vulnerable to Limited JavaScript File Upload in all versions up to, and including, 6.5.7. This is due to a lack of proper checks on allowed file types. This makes it possible for authenticated attackers, with Subscriber-level access and above, and granted permissions by an administrator, to upload .css and .js files, which could lead to Stored Cross-Site Scripting.

CVE-2024-1588
SendPress Newsletters Web Windows
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

The SendPress Newsletters WordPress plugin through 1.23.11.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2024-2907
AGCA Web Windows
6.8
MEDIUM
EPSS
0.3%
2024 1 PoC

The AGCA WordPress plugin before 7.2.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

CVE-2024-1231
CM Download Manager Web Windows
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

The CM Download Manager WordPress plugin before 2.9.0 does not have CSRF checks in some places, which could allow attackers to make logged in admins unpublish downloads via a CSRF attack

CVE-2024-4977
Index WP MySQL For Speed Web Database Windows
6.8
MEDIUM
EPSS
0.4%
2024 1 PoC

The Index WP MySQL For Speed WordPress plugin before 1.4.18 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

CVE-2024-3632
Smart Image Gallery Web Windows
6.8
MEDIUM
EPSS
0.2%
2024 1 PoC

The Smart Image Gallery WordPress plugin before 1.0.19 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

CVE-2024-3710
Image Photo Gallery Final Tiles Grid Web Windows
6.8
MEDIUM
EPSS
0.4%
2024 1 PoC

The Image Photo Gallery Final Tiles Grid WordPress plugin before 3.6.0 does not validate and escape some of its shortcode attributes before outputting them back in the page, which could allow users with a role as low as contributor to perform Stored Cross-Site Scripting attacks which could be used against high privilege users such as admin

CVE-2024-3669
Web Directory Free Web Windows
6.8
MEDIUM
EPSS
0.6%
2024 1 PoC

The Web Directory Free WordPress plugin before 1.7.2 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

CVE-2019-3621
Data Loss Prevention (DLPe) for Windows Windows
6.8
MEDIUM
EPSS
0.1%
2019 1 PoC

Authentication protection bypass vulnerability in McAfee Data Loss Prevention (DLPe) for Windows 11.x prior to 11.3.0 allows physical local user to bypass the Windows lock screen via DLPe processes being killed just prior to the screen being locked or when the screen is locked. The attacker requires physical access to the machine.

CVE-2021-47771
RDP Manager Windows
6.8
MEDIUM
EPSS
0.0%
2021 CWE-770 2 PoCs

RDP Manager 4.9.9.3 contains a denial of service vulnerability in connection input fields that allows local attackers to crash the application. Attackers can add oversized entries in Verbindungsname and Server fields to permanently freeze and crash the software, potentially requiring full reinstallation.

CVE-2021-35567
Java SE JDK and JRE Database Windows
6.8
MEDIUM
EPSS
0.2%
2021 1 PoC

Vulnerability in the Java SE, Oracle GraalVM Enterprise Edition product of Oracle Java SE (component: Libraries). Supported versions that are affected are Java SE: 8u301, 11.0.12, 17; Oracle GraalVM Enterprise Edition: 20.3.3 and 21.2.0. Easily exploitable vulnerability allows low privileged attacker with network access via Kerberos to compromise Java SE, Oracle GraalVM Enterprise Edition. Successful attacks require human interaction from a person other than the attacker and while the vulnerability is in Java SE, Oracle GraalVM Enterprise Edition, attacks may significantly impact additional pr

CVE-2021-47759
MTPutty Networking Windows
6.8
MEDIUM
EPSS
0.0%
2021 CWE-522 1 PoC

MTPutty 1.0.1.21 contains a sensitive information disclosure vulnerability that allows local attackers to view SSH connection passwords through Windows PowerShell process listing. Attackers can run a PowerShell command to retrieve the full command line of MTPutty processes, exposing plaintext SSH credentials.

CVE-2021-34480
Windows 10 Version 1809 Windows
6.8
MEDIUM
EPSS
3.1%
2021 1 PoC

Scripting Engine Memory Corruption Vulnerability