5091 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2025-61482
Software Genérico General
7.2
HIGH
EPSS
0.0%
2025 1 PoC

Improper handling of OTP/TOTP/HOTP values in NetKnights GmbH privacyIDEA Authenticator v.4.3.0 on Android allows local attackers with root access to bypass two factor authentication. By hooking into app crypto routines and intercepting decryption paths, attacker can recover plaintext secrets, enabling generation of valid one-time passwords, and bypassing authentication for enrolled accounts.

CVE-2025-32813
Software Genérico General ⚡ nuclei
7.2
HIGH
EPSS
11.2%
2025 0 PoCs

An issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.

CVE-2025-12399
Alex Reservations: Smart Restaurant Booking Web Windows
7.2
HIGH
EPSS
0.2%
2025 CWE-434 2 PoCs

The Alex Reservations: Smart Restaurant Booking plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the /wp-json/srr/v1/app/upload/file REST endpoint in all versions up to, and including, 2.2.3. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVE-2025-36729
M!DGE2 General
7.2
HIGH
EPSS
0.1%
2025 CWE-269 1 PoC

A non-primary administrator user with admin rights to the web interface but without shell access permissions can display configuration of the device including the master admin password. This vulnerability also allows the user to give themselves shell access with the root gid.

CVE-2025-6085
Make Connector Web Windows
7.2
HIGH
EPSS
1.0%
2025 CWE-434 1 PoC

The Make Connector plugin for WordPress is vulnerable to arbitrary file uploads due to misconfigured file type validation in the 'upload_media' function in all versions up to, and including, 1.5.10. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVE-2025-10686
Creta Testimonial Showcase Web Windows
7.2
HIGH
EPSS
0.1%
2025 1 PoC

The Creta Testimonial Showcase WordPress plugin before 1.2.4 is vulnerable to Local File Inclusion. This makes it possible for authenticated attackers, with editor-level access and above, to include and execute arbitrary files on the server, allowing the execution of any PHP code in those files.

CVE-2025-0514
LibreOffice Windows
7.2
HIGH
EPSS
0.2%
2025 CWE-20 1 PoC

Improper Input Validation vulnerability in The Document Foundation LibreOffice allows Windows Executable hyperlink targets to be executed unconditionally on activation.This issue affects LibreOffice: from 24.8 before < 24.8.5.

CVE-2025-22962
Software Genérico General
7.2
HIGH
EPSS
1.1%
2025 1 PoC

A critical remote code execution (RCE) vulnerability exists in the web-based management interface of GatesAir Maxiva UAXT, VAXT transmitters when debugging mode is enabled. An attacker with a valid session ID (sess_id) can send specially crafted POST requests to the /json endpoint, enabling arbitrary command execution on the underlying system. This vulnerability can lead to full system compromise, including unauthorized access, privilege escalation, and potentially full device takeover.

CVE-2025-7050
Use-your-Drive | Google Drive plugin for WordPress Web Windows
7.2
HIGH
EPSS
0.2%
2025 CWE-79 1 PoC

The Use-your-Drive | Google Drive plugin for WordPress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' parameter in file metadata in all versions up to, and including, 3.3.1 due to insufficient input sanitization and output escaping. This makes it possible for attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page. The vulnerability can be exploited by the lowest authentication level permitted to upload files, including unauthenticated users, once a file upload shortcode is published on a publicly accessi

CVE-2025-46123
Software Genérico General
7.2
HIGH
EPSS
1.4%
2025 1 PoC

An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDirector prior to 10.5.1.0.279, where the authenticated configuration endpoint `/admin/_conf.jsp` writes the Wi-Fi guest password to memory with snprintf using the attacker-supplied value as the format string; a crafted password therefore triggers uncontrolled format-string processing and enables remote code execution on the controller.

CVE-2025-46657
Karazal Web
7.2
HIGH
EPSS
0.1%
2025 CWE-79 2 PoCs

Karaz Karazal through 2025-04-14 allows reflected XSS via the lang parameter to the default URI.

CVE-2025-63220
Software Genérico General
7.2
HIGH
EPSS
0.2%
2025 1 PoC

The Sound4 FIRST web-based management interface is vulnerable to Remote Code Execution (RCE) via a malicious firmware update package. The update mechanism fails to validate the integrity of manual.sh, allowing an attacker to inject arbitrary commands by modifying this script and repackaging the firmware.

CVE-2025-6586
Download Plugin Web Windows
7.2
HIGH
EPSS
0.6%
2025 CWE-434 2 PoCs

The Download Plugin plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the dpwap_plugin_locInstall function in all versions up to, and including, 2.2.8. This makes it possible for authenticated attackers, with Administrator-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVE-2025-12973
S2B AI Assistant – ChatBot, AI Agents, ChatGPT API, Image Generator Web Windows
7.2
HIGH
EPSS
0.1%
2025 CWE-434 2 PoCs

The S2B AI Assistant – ChatBot, ChatGPT, OpenAI, Content & Image Generator plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the storeFile() function in all versions up to, and including, 1.7.8. This makes it possible for authenticated attackers, with Editor-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.

CVE-2025-41673
mbNET.mini General
7.2
HIGH
EPSS
0.2%
2025 CWE-78 1 PoC

A high privileged remote attacker can execute arbitrary system commands via POST requests in the send_sms action due to improper neutralization of special elements used in an OS command.

CVE-2025-0924
WP Activity Log Web Windows
7.2
HIGH
EPSS
8.5%
2025 CWE-79 1 PoC

The WP Activity Log plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘message’ parameter in all versions up to, and including, 5.2.2 due to insufficient input sanitization and output escaping. This makes it possible for unauthenticated attackers to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

CVE-2025-4190
CSV Mass Importer Web Windows
7.2
HIGH
EPSS
0.2%
2025 3 PoCs

The CSV Mass Importer WordPress plugin through 1.2 does not properly validate uploaded files, allowing high privilege users such as admin to upload arbitrary files on the server even when they should not be allowed to (for example in multisite setup)

CVE-2025-41675
mbNET.mini Cloud
7.2
HIGH
EPSS
0.2%
2025 CWE-78 1 PoC

A high privileged remote attacker can execute arbitrary system commands via GET requests in the cloud server communication script due to improper neutralization of special elements used in an OS command.

CVE-2025-64050
Software Genérico Web
7.2
HIGH
EPSS
0.6%
2025 1 PoC

A Remote Code Execution (RCE) vulnerability in the template management component in REDAXO CMS 5.20.0 allows remote authenticated administrators to execute arbitrary operating system commands by injecting PHP code into an active template. The payload is executed when visitors access frontend pages using the compromised template.

CVE-2025-41674
mbNET.mini General
7.2
HIGH
EPSS
0.2%
2025 CWE-78 1 PoC

A high privileged remote attacker can execute arbitrary system commands via POST requests in the diagnostic action due to improper neutralization of special elements used in an OS command.