1238 vulnerabilidades · Windows Orden: CVSS EPSS Año ID
CVE-2023-2321
WPForms Google Sheet Connector Web Windows
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

The WPForms Google Sheet Connector WordPress plugin before 3.4.6, gsheetconnector-wpforms-pro WordPress plugin through 3.4.6 does not escape a parameter before outputting it back in an attribute, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

CVE-2023-3460
Ultimate Member Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
92.8%
2023 14 PoCs

The Ultimate Member WordPress plugin before 2.6.7 does not prevent visitors from creating user accounts with arbitrary capabilities, effectively allowing attackers to create administrator accounts at will. This is actively being exploited in the wild.

CVE-2023-0369
GoToWP Web Windows
N/A
UNKNOWN
EPSS
0.2%
2023 1 PoC

The GoToWP WordPress plugin through 5.1.1 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

CVE-2023-3134
Forminator Web Windows
N/A
UNKNOWN
EPSS
0.1%
2023 2 PoCs

The Forminator WordPress plugin before 1.24.4 does not properly escape values that are being reflected inside form fields that use pre-populated query parameters, which could lead to reflected XSS attacks.

CVE-2023-2225
SEO ALert Web Windows
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

The SEO ALert WordPress plugin through 1.59 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

CVE-2023-6035
EazyDocs Web Database Windows
N/A
UNKNOWN
EPSS
0.4%
2023 1 PoC

The EazyDocs WordPress plugin before 2.3.4 does not properly sanitize and escape "data" parameter before using it in an SQL statement via an AJAX action, which could allow any authenticated users, such as subscribers, to perform SQL Injection attacks.

CVE-2023-2256
Product Addons & Fields for WooCommerce Web Windows ⚡ nuclei
N/A
UNKNOWN
EPSS
21.2%
2023 1 PoC

The Product Addons & Fields for WooCommerce WordPress plugin before 32.0.7 does not sanitize and escape some URL parameters, leading to Reflected Cross-Site Scripting.

CVE-2023-2143
Enable SVG, WebP & ICO Upload Web Windows
N/A
UNKNOWN
EPSS
0.2%
2023 1 PoC

The Enable SVG, WebP & ICO Upload WordPress plugin through 1.0.3 does not sanitize SVG file contents, leading to a Cross-Site Scripting vulnerability.

CVE-2023-3392
Read More & Accordion Web Windows
N/A
UNKNOWN
EPSS
0.6%
2023 1 PoC

The Read More & Accordion WordPress plugin before 3.2.7 unserializes user input provided via the settings, which could allow high-privilege users such as admin to perform PHP Object Injection when a suitable gadget is present.

CVE-2023-32353
iTunes for Windows Windows
N/A
UNKNOWN
EPSS
1.5%
2023 1 PoC

A logic issue was addressed with improved checks. This issue is fixed in iTunes 12.12.9 for Windows. An app may be able to elevate privileges.

CVE-2023-2709
AN_GradeBook Web Windows
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

The AN_GradeBook WordPress plugin through 5.0.1 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

CVE-2023-2605
wpbrutalai Web Windows
N/A
UNKNOWN
EPSS
0.2%
2023 2 PoCs

The wpbrutalai WordPress plugin before 2.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against a logged in high privilege users such as admin.

CVE-2023-2470
Add to Feedly Web Windows
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

The Add to Feedly WordPress plugin through 1.2.11 does not sanitize and escape its settings, allowing high-privilege users such as admin to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.

CVE-2023-20560
Ryzen™ Master Windows
N/A
UNKNOWN
EPSS
0.0%
2023 1 PoC

Insufficient validation of the IOCTL (Input Output Control) input buffer in AMD Ryzen™ Master may allow a privileged attacker to provide a null value potentially resulting in a Windows crash leading to denial of service.

CVE-2023-2010
Forminator Web Windows
N/A
UNKNOWN
EPSS
0.1%
2023 1 PoC

The Forminator WordPress plugin before 1.24.1 does not use an atomic operation to check whether a user has already voted, and then update that information. This leads to a Race Condition that may allow a single user to vote multiple times on a poll.

CVE-2023-26563
Software Genérico Windows
N/A
UNKNOWN
EPSS
1.3%
2023 1 PoC

The Syncfusion EJ2 Node File Provider 0102271 is vulnerable to filesystem-server.js directory traversal. As a result, an unauthenticated attacker can: - On Windows, list files in any directory, read any file, delete any file, upload any file to any directory accessible by the web server. - On Linux, read any file, download any directory, delete any file, upload any file to any directory accessible by the web server.

CVE-2023-2329
WooCommerce Google Sheet Connector Web Windows
N/A
UNKNOWN
EPSS
0.2%
2023 1 PoC

The WooCommerce Google Sheet Connector WordPress plugin before 1.3.6 does not have CSRF check when updating its Access Code, which could allow attackers to make logged in admin change the access code to an arbitrary one via a CSRF attack

CVE-2023-5673
WP Mail Log Web Windows
N/A
UNKNOWN
EPSS
1.4%
2023 1 PoC

The WP Mail Log WordPress plugin before 1.1.3 does not properly validate file extensions uploading files to attach to emails, allowing attackers to upload PHP files, leading to remote code execution.

CVE-2023-2068
file-manager-advanced-shortcode Web Windows
N/A
UNKNOWN
EPSS
70.4%
2023 2 PoCs

The File Manager Advanced Shortcode WordPress plugin through 2.3.2 does not adequately prevent uploading files with disallowed MIME types when using the shortcode. This leads to RCE in cases where the allowed MIME type list does not include PHP files. In the worst case, this is available to unauthenticated users.

CVE-2023-4311
Vrm 360 3D Model Viewer Web Windows
N/A
UNKNOWN
EPSS
0.5%
2023 1 PoC

The Vrm 360 3D Model Viewer WordPress plugin through 1.2.1 is vulnerable to arbitrary file upload due to insufficient checks in a plugin shortcode.