1466 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2024-44193
iTunes for Windows Windows
8.4
HIGH
EPSS
3.2%
2024 1 PoC

A logic issue was addressed with improved restrictions. This issue is fixed in iTunes 12.13.3 for Windows. A local attacker may be able to elevate their privileges.

CVE-2024-29050
Windows 10 Version 1809 Windows
8.4
HIGH
EPSS
38.3%
2024 CWE-197 1 PoC

Windows Cryptographic Services Remote Code Execution Vulnerability

CVE-2024-9593
Time Clock Pro Web Windows ⚡ nuclei
8.3
HIGH
EPSS
85.5%
2024 CWE-94 3 PoCs

The Time Clock plugin and Time Clock Pro plugin for WordPress are vulnerable to Remote Code Execution in versions up to, and including, 1.2.2 (for Time Clock) and 1.1.4 (for Time Clock Pro) via the 'etimeclockwp_load_function_callback' function. This allows unauthenticated attackers to execute code on the server. The invoked function's parameters cannot be specified.

CVE-2024-4749
wp-eMember Web Windows
8.3
HIGH
EPSS
0.2%
2024 1 PoC

The wp-eMember WordPress plugin before 10.3.9 does not sanitize and escape the "fieldId" parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting.

CVE-2024-11114
Chrome Windows
8.3
HIGH
EPSS
0.5%
2024 1 PoC

Inappropriate implementation in Views in Google Chrome on Windows prior to 131.0.6778.69 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)

CVE-2024-4856
FS Product Inquiry Web Windows
8.2
HIGH
EPSS
1.7%
2024 1 PoC

The FS Product Inquiry WordPress plugin through 1.1.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin or unauthenticated users

CVE-2024-43965
SendGrid for WordPress Web Database Windows ⚡ nuclei
8.2
HIGH
EPSS
18.4%
2024 CWE-89 1 PoC

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smackcoders SendGrid for WordPress allows SQL Injection.This issue affects SendGrid for WordPress: from n/a through 1.4.

CVE-2024-37742
Software Genérico Windows
8.2
HIGH
EPSS
0.5%
2024 4 PoCs

Insecure Access Control in Safe Exam Browser (SEB) = 3.5.0 on Windows. The vulnerability allows an attacker to share clipboard data between the SEB kiosk mode and the underlying system, compromising exam integrity. By exploiting this flaw, an attacker can bypass exam controls and gain an unfair advantage during exams.

CVE-2024-0324
User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor Web Windows
8.2
HIGH
EPSS
37.3%
2024 CWE-284 1 PoC

The User Profile Builder – Beautiful User Registration Forms, User Profiles & User Role Editor plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'wppb_two_factor_authentication_settings_update' function in all versions up to, and including, 3.10.8. This makes it possible for unauthenticated attackers to enable or disable the 2FA functionality present in the Premium version of the plugin for arbitrary user roles.

CVE-2024-21407
Windows 10 Version 1809 Windows
8.1
HIGH
EPSS
6.3%
2024 CWE-416 1 PoC

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2024-13800
ConvertPlus Web Windows
8.1
HIGH
EPSS
0.1%
2024 CWE-862 1 PoC

The ConvertPlus plugin for WordPress is vulnerable to unauthorized modification of data that can lead to a denial of service due to a missing capability check on the 'cp_dismiss_notice' AJAX endpoint in all versions up to, and including, 3.5.30. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update option values to '1' on the WordPress site. This can be leveraged to update an option that would create an error on the site and deny service to legitimate users or be used to set some values to true such as registration.

CVE-2024-43582
Windows 10 Version 1809 Windows
8.1
HIGH
EPSS
26.0%
2024 CWE-416 1 PoC

Remote Desktop Protocol Server Remote Code Execution Vulnerability

CVE-2024-6719
Offload Videos Web Windows
8.1
HIGH
EPSS
0.1%
2024 1 PoC

The Offload Videos WordPress plugin before 1.0.1 does not have CSRF check in place when updating its settings, which could allow low privilege users to update them via a CSRF attack

CVE-2024-3983
WooCommerce Customers Manager Web Windows
8.1
HIGH
EPSS
0.2%
2024 1 PoC

The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as deleting customers via CSRF attacks

CVE-2024-4757
Logo Manager For Enamad Web Windows
8.1
HIGH
EPSS
0.5%
2024 1 PoC

The Logo Manager For Enamad WordPress plugin through 0.7.0 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack

CVE-2024-3183
Software Genérico Windows
8.1
HIGH
EPSS
21.2%
2024 CWE-916 1 PoC

A vulnerability was found in FreeIPA in a way when a Kerberos TGS-REQ is encrypted using the client’s session key. This key is different for each new session, which protects it from brute force attacks. However, the ticket it contains is encrypted using the target principal key directly. For user principals, this key is a hash of a public per-principal randomly-generated salt and the user’s password. If a principal is compromised it means the attacker would be able to retrieve tickets encrypted to any principal, all of them being encrypted by their own key directly. By taking these tickets

CVE-2024-11848
NitroPack – Performance, Page Speed & Cache Plugin for Core Web Vitals, CDN & Image Optimization Web Windows
8.1
HIGH
EPSS
5.6%
2024 CWE-862 1 PoC

The NitroPack plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the 'nitropack_dismiss_notice_forever' AJAX action in all versions up to, and including, 1.17.0. This makes it possible for authenticated attackers, with subscriber-level access and above, to update arbitrary options to a fixed value of '1' which can activate certain options (e.g., enable user registration) or modify certain options in a way that leads to a denial of service condition.

CVE-2024-2505
GamiPress Web Windows
8.1
HIGH
EPSS
0.5%
2024 1 PoC

The GamiPress WordPress plugin before 6.8.9's access control mechanism fails to properly restrict access to its settings, permitting Authors to manipulate requests and extend access to lower privileged users, like Subscribers, despite initial settings prohibiting such access. This vulnerability resembles broken access control, enabling unauthorized users to modify critical GamiPress WordPress plugin before 6.8.9 configurations.

CVE-2024-3075
MM-email2image Web Windows
8.1
HIGH
EPSS
0.5%
2024 1 PoC

The MM-email2image WordPress plugin through 0.2.5 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVE-2024-2441
VikBooking Hotel Booking Engine & PMS Web Windows
8.1
HIGH
EPSS
0.6%
2024 1 PoC

The VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8 allows direct access to menus, allowing an authenticated user with subscriber privileges or above, to bypass authorization and access settings of the VikBooking Hotel Booking Engine & PMS WordPress plugin before 1.6.8's they shouldn't be allowed to.