4628 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2017-4028
McAfee Anti-Virus Plus (AVP) Windows
5.0
MEDIUM
EPSS
0.1%
2017 1 PoC

Maliciously misconfigured registry vulnerability in all Microsoft Windows products in McAfee consumer and corporate products allows an administrator to inject arbitrary code into a debugged McAfee process via manipulation of registry parameters.

CVE-2025-32103
CrushFTP Windows
5.0
MEDIUM
EPSS
1.6%
2025 CWE-40 2 PoCs

CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files accessible by SMB at UNC share pathnames, bypassing SecurityManager restrictions.

CVE-2015-10146
Thumbnail Slider With Lightbox Web Database Windows
4.9
MEDIUM
EPSS
0.0%
2015 CWE-89 1 PoC

The Thumbnail Slider With Lightbox plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 1.0.4 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2023-2111
Fast & Effective Popups & Lead-Generation for WordPress Web Database Windows
4.9
MEDIUM
EPSS
0.3%
2023 1 PoC

The Fast & Effective Popups & Lead-Generation for WordPress plugin before 2.1.4 concatenates user input into an SQL query without escaping it first in the plugin's report API endpoint, which could allow administrators in multi-site configuration to leak sensitive information from the site's database.

CVE-2023-0156
All-In-One Security (AIOS) Web Windows
4.9
MEDIUM
EPSS
34.9%
2023 2 PoCs

The All-In-One Security (AIOS) WordPress plugin before 5.1.5 does not limit what log files to display in it's settings pages, allowing an authorized user (admin+) to view the contents of arbitrary files and list directories anywhere on the server (to which the web server has access). The plugin only displays the last 50 lines of the file.

CVE-2023-1427
Photo Gallery by 10Web Web Windows
4.9
MEDIUM
EPSS
0.4%
2023 1 PoC

- The Photo Gallery by 10Web WordPress plugin before 1.8.15 did not ensure that uploaded files are kept inside its uploads folder, allowing high privilege users to put images anywhere in the filesystem via a path traversal vector.

CVE-2023-7247
Login as User or Customer Web Windows
4.9
MEDIUM
EPSS
0.3%
2023 2 PoCs

The Login as User or Customer WordPress plugin through 3.8 does not prevent users to log in as any other user on the site.

CVE-2023-3814
Advanced File Manager Web Windows
4.9
MEDIUM
EPSS
0.2%
2023 1 PoC

The Advanced File Manager WordPress plugin before 5.1.1 does not adequately authorize its usage on multisite installations, allowing site admin users to list and read arbitrary files and folders on the server.

CVE-2023-3279
WordPress Gallery Plugin Web Windows
4.9
MEDIUM
EPSS
1.1%
2023 1 PoC

The WordPress Gallery Plugin WordPress plugin before 3.39 does not validate some block attributes before using them to generate paths passed to include function/s, allowing Admin users to perform LFI attacks

CVE-2024-3112
Quotes and Tips by BestWebSoft Web Windows
4.9
MEDIUM
EPSS
0.2%
2024 1 PoC

The Quotes and Tips by BestWebSoft WordPress plugin before 1.45 does not properly validate image files uploaded, allowing high privilege users such as admin to upload arbitrary files on the server even when they should not be allowed to (for example in multisite setup)

CVE-2024-9874
Poll Maker – Versus Polls, Anonymous Polls, Image Polls Web Database Windows
4.9
MEDIUM
EPSS
1.1%
2024 CWE-89 1 PoC

The Poll Maker – Versus Polls, Anonymous Polls, Image Polls plugin for WordPress is vulnerable to time-based SQL Injection via the ‘orderby’ parameter in all versions up to, and including, 5.4.6 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-1286
pmpro-membership-maps Web Windows
4.9
MEDIUM
EPSS
0.4%
2024 1 PoC

The pmpro-membership-maps WordPress plugin before 0.7 does not prevent users with at least the contributor role from leaking sensitive information about users with a membership on the site.

CVE-2024-10708
System Dashboard Web Windows ⚡ nuclei
4.9
MEDIUM
EPSS
8.5%
2024 1 PoC

The System Dashboard WordPress plugin before 2.8.15 does not validate user input used in a path, which could allow high privilege users such as admin to perform path traversal attacks an read arbitrary files on the server

CVE-2024-1310
WooCommerce Web Windows
4.9
MEDIUM
EPSS
0.6%
2024 1 PoC

The WooCommerce WordPress plugin before 8.6 does not prevent users with at least the contributor role from leaking products they shouldn't have access to. (e.g. private, draft and trashed products)

CVE-2021-28209
BMC firmware for ASMB9-iKVM Windows
4.9
MEDIUM
EPSS
0.4%
2021 CWE-22 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Delete video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

CVE-2021-28206
BMC firmware for ASMB9-iKVM Windows
4.9
MEDIUM
EPSS
0.4%
2021 CWE-22 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Record video file function) does not filter the specific parameter. As obtaining the administrator permission, remote attackers can use the means of path traversal to access system files.

CVE-2021-28201
BMC firmware for ASMB9-iKVM Windows
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The Service configuration-1 function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28199
BMC firmware for ASMB9-iKVM Windows
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The specific function in ASUS BMC’s firmware Web management page (Modify user’s information function) does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28193
BMC firmware for ASMB9-iKVM Windows
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The SMTP configuration function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.

CVE-2021-28191
BMC firmware for ASMB9-iKVM Windows
4.9
MEDIUM
EPSS
0.9%
2021 CWE-120 1 PoC

The Firmware update function in ASUS BMC’s firmware Web management page does not verify the string length entered by users, resulting in a Buffer overflow vulnerability. As obtaining the privileged permission, remote attackers use the leakage to abnormally terminate the Web service.