11328 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2026-2418
Login with Salesforce Web Windows
9.1
CRITICAL
EPSS
0.1%
2026 1 PoC

The Login with Salesforce WordPress plugin through 1.0.2 does not validate that users are allowed to login through Salesforce, allowing unauthenticated users to be authenticated as any user (such as admin) by simply knowing the email

CVE-2026-30794
RustDesk Client Web Windows
9.1
CRITICAL
EPSS
0.0%
2026 CWE-295 1 PoC

Improper Certificate Validation vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (HTTP API client, TLS transport modules) allows Adversary in the Middle (AiTM). This vulnerability is associated with program files src/hbbs_http/http_client.Rs and program routines TLS retry with danger_accept_invalid_certs(true). This issue affects RustDesk Client: through 1.4.5.

CVE-2026-39912
v2board Web Windows
9.1
CRITICAL
EPSS
0.1%
2026 CWE-201 1 PoC

V2Board 1.6.1 through 1.7.4 and Xboard through 0.1.9 expose authentication tokens in HTTP response bodies of the loginWithMailLink endpoint when the login_with_mail_link_enable feature is active. Unauthenticated attackers can POST to the loginWithMailLink endpoint with a known email address to receive the full authentication URL in the response, then exchange the token at the token2Login endpoint to obtain a valid bearer token with complete account access including admin privileges.

CVE-2023-23459
Priority for Windows Database Windows
9.1
CRITICAL
EPSS
0.4%
2023 CWE-89 1 PoC

Priority Windows may allow Command Execution via SQL Injection using an unspecified method.

CVE-2023-45685
Titan MFT Windows
9.1
CRITICAL
EPSS
0.4%
2023 CWE-22 1 PoC

Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal

CVE-2023-38428
Software Genérico Windows
9.1
CRITICAL
EPSS
0.1%
2023 1 PoC

An issue was discovered in the Linux kernel before 6.3.4. fs/ksmbd/smb2pdu.c in ksmbd does not properly check the UserName value because it does not consider the address of security buffer, leading to an out-of-bounds read.

CVE-2024-5450
Bug Library Web Windows
9.1
CRITICAL
EPSS
2.1%
2024 1 PoC

The Bug Library WordPress plugin before 2.1.1 does not check the file type on user-submitted bug reports, allowing an unauthenticated user to upload PHP files

CVE-2024-42049
Software Genérico Windows
9.1
CRITICAL
EPSS
5.8%
2024 1 PoC

TightVNC (Server for Windows) before 2.8.84 allows attackers to connect to the control pipe via a network connection.

CVE-2024-6366
User Profile Builder Web Windows ⚡ nuclei
9.1
CRITICAL
EPSS
91.5%
2024 3 PoCs

The User Profile Builder WordPress plugin before 3.11.8 does not have proper authorisation, allowing unauthenticated users to upload media files via the async upload functionality of WP.

CVE-2024-8673
Z-Downloads Web Windows ⚡ nuclei
9.1
CRITICAL
EPSS
5.8%
2024 1 PoC

The Z-Downloads WordPress plugin before 1.11.7 does not properly validate uploaded files allowing for the uploading of SVGs containing malicious JavaScript.

CVE-2024-5975
CZ Loan Management Web Database Windows ⚡ nuclei
9.1
CRITICAL
EPSS
43.9%
2024 1 PoC

The CZ Loan Management WordPress plugin through 1.1 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

CVE-2024-3673
Web Directory Free Web Windows ⚡ nuclei
9.1
CRITICAL
EPSS
92.2%
2024 2 PoCs

The Web Directory Free WordPress plugin before 1.7.3 does not validate a parameter before using it in an include(), which could lead to Local File Inclusion issues.

CVE-2024-4180
The Events Calendar Web Windows ⚡ nuclei
9.1
CRITICAL
EPSS
42.4%
2024 1 PoC

The Events Calendar WordPress plugin before 6.4.0.1 does not properly sanitize user-submitted content when rendering some views via AJAX.

CVE-2024-3050
Site Reviews Web Windows
9.1
CRITICAL
EPSS
0.8%
2024 1 PoC

The Site Reviews WordPress plugin before 7.0.0 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to bypass IP-based blocking

CVE-2024-40898
Apache HTTP Server Web Windows
9.1
CRITICAL
EPSS
0.7%
2024 CWE-918 4 PoCs

SSRF in Apache HTTP Server on Windows with mod_rewrite in server/vhost context, allows to potentially leak NTML hashes to a malicious server via SSRF and malicious requests. Users are recommended to upgrade to version 2.4.62 which fixes this issue. 

CVE-2024-7385
WP Simple HTML Sitemap Web Database Windows
9.1
CRITICAL
EPSS
13.1%
2024 CWE-89 1 PoC

The WordPress Simple HTML Sitemap plugin for WordPress is vulnerable to SQL Injection via the 'id' parameter in all versions up to, and including, 3.1 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for authenticated attackers, with Administrator-level access and above, to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-5973
MasterStudy LMS WordPress Plugin Web Windows
9.1
CRITICAL
EPSS
0.9%
2024 1 PoC

The MasterStudy LMS WordPress Plugin WordPress plugin before 3.3.24 does not prevent students from creating instructor accounts, which could be used to get access to functionalities they shouldn't have.

CVE-2024-2472
LatePoint Plugin Web Windows
9.1
CRITICAL
EPSS
1.8%
2024 CWE-639 1 PoC

The LatePoint Plugin plugin for WordPress is vulnerable to unauthorized access of data and modification of data due to a missing capability check on the 'start_or_use_session_for_customer' function in all versions up to and including 4.9.9. This makes it possible for unauthenticated attackers to view other customer's cabinets, including the ability to view PII such as email addresses and to change their LatePoint user password, which may or may not be associated with a WordPress account.

CVE-2021-4374
WordPress Automatic Plugin Web Windows ⚡ nuclei
9.1
CRITICAL
EPSS
75.0%
2021 CWE-862 0 PoCs

The WordPress Automatic Plugin for WordPress is vulnerable to arbitrary options updates in versions up to, and including, 3.53.2. This is due to missing authorization and option validation in the process_form.php file. This makes it possible for unauthenticated attackers to arbitrarily update the settings of a vulnerable site and ultimately compromise the entire site.