6739 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-3405
WP Prayer Web Windows
7.6
HIGH
EPSS
0.2%
2024 1 PoC

The WP Prayer WordPress plugin through 2.0.9 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack

CVE-2024-4758
Muslim Prayer Time BD Web Windows
7.6
HIGH
EPSS
0.1%
2024 1 PoC

The Muslim Prayer Time BD WordPress plugin through 2.4 does not have CSRF check in place when reseting its settings, which could allow attackers to make a logged in admin reset them via a CSRF attack

CVE-2024-5429
Logo Slider Web Windows
7.6
HIGH
EPSS
0.4%
2024 1 PoC

The Logo Slider WordPress plugin before 4.1.0 does not validate and escape some of its Slider Settings before outputting them back in attributes, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks

CVE-2024-44728
Software Genérico Web
7.6
HIGH
EPSS
0.4%
2024 1 PoC

Sourcecodehero Event Management System 1.0 allows Stored Cross-Site Scripting via parameters Full Name, Address, Email, and contact# in /clientdetails/admin/regester.php.

CVE-2024-21689
Bamboo Data Center General
7.6
HIGH
EPSS
37.7%
2024 3 PoCs

This High severity RCE (Remote Code Execution) vulnerability CVE-2024-21689  was introduced in versions 9.1.0, 9.2.0, 9.3.0, 9.4.0, 9.5.0, and 9.6.0 of Bamboo Data Center and Server. This RCE (Remote Code Execution) vulnerability, with a CVSS Score of 7.6, allows an authenticated attacker to execute arbitrary code which has high impact to confidentiality, high impact to integrity, high impact to availability, and requires user interaction. Atlassian recommends that Bamboo Data Center and Server customers upgrade to latest version, if you are unable to do so, upgrade your instance to one

CVE-2024-29399
Software Genérico Web
7.6
HIGH
EPSS
5.3%
2024 1 PoC

An issue was discovered in GNU Savane v.3.13 and before, allows a remote attacker to execute arbitrary code and escalate privileges via a crafted file to the upload.php component.

CVE-2024-6205
PayPlus Payment Gateway Web Database Windows ⚡ nuclei
7.6
HIGH
EPSS
90.4%
2024 2 PoCs

The PayPlus Payment Gateway WordPress plugin before 6.6.9 does not properly sanitise and escape a parameter before using it in a SQL statement via a WooCommerce API route available to unauthenticated users, leading to an SQL injection vulnerability.

CVE-2024-28434
Software Genérico Web
7.6
HIGH
EPSS
0.2%
2024 1 PoC

The CRM platform Twenty is vulnerable to stored cross site scripting via file upload in version 0.3.0. A crafted svg file can trigger the execution of the javascript code.

CVE-2024-33911
School Management Pro Database
7.6
HIGH
EPSS
7.9%
2024 CWE-89 1 PoC

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Weblizar School Management Pro.This issue affects School Management Pro: from n/a through 10.3.4.

CVE-2024-3661
DHCP Networking
7.6
HIGH
EPSS
2.9%
2024 CWE-306 4 PoCs

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

CVE-2024-31621
Software Genérico Web ⚡ nuclei
7.6
HIGH
EPSS
80.2%
2024 1 PoC

An issue in FlowiseAI Inc Flowise v.1.6.2 and before allows a remote attacker to execute arbitrary code via a crafted script to the api/v1 component.

CVE-2024-32136
BWL Advanced FAQ Manager Database
7.6
HIGH
EPSS
36.0%
2024 CWE-89 1 PoC

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xenioushk BWL Advanced FAQ Manager.This issue affects BWL Advanced FAQ Manager: from n/a through 2.0.3.

CVE-2024-46607
Software Genérico Web
7.6
HIGH
EPSS
0.1%
2024 1 PoC

Incorrect access control in IceCMS v3.4.7 and before allows attackers to authenticate by entering any arbitrary values as the username and password via the loginAdmin method in the UserController.java file.

CVE-2024-38879
Omnivise T3000 Application Server R9.2 General
7.5
HIGH
EPSS
1.3%
2024 CWE-20 1 PoC

A vulnerability has been identified in Omnivise T3000 Application Server R9.2 (All versions), Omnivise T3000 R8.2 SP3 (All versions), Omnivise T3000 R8.2 SP4 (All versions). The affected system exposes the port of an internal application on the public network interface allowing an attacker to circumvent authentication and directly access the exposed application.

CVE-2024-21521
@discordjs/opus General
7.5
HIGH
EPSS
0.2%
2024 CWE-400 1 PoC

All versions of the package @discordjs/opus are vulnerable to Denial of Service (DoS) due to providing an input object with a property toString to several different functions. Exploiting this vulnerability could lead to a system crash.

CVE-2024-5124
gaizhenbiao/chuanhuchatgpt General
7.5
HIGH
EPSS
46.1%
2024 CWE-203 2 PoCs

A timing attack vulnerability exists in the gaizhenbiao/chuanhuchatgpt repository, specifically within the password comparison logic. The vulnerability is present in version 20240310 of the software, where passwords are compared using the '=' operator in Python. This method of comparison allows an attacker to guess passwords based on the timing of each character's comparison. The issue arises from the code segment that checks a password for a particular username, which can lead to the exposure of sensitive information to an unauthorized actor. An attacker exploiting this vulnerability could po

CVE-2024-6960
Software Genérico General
7.5
HIGH
EPSS
0.2%
2024 CWE-502 1 PoC

The H2O machine learning platform uses "Iced" classes as the primary means of moving Java Objects around the cluster. The Iced format supports inclusion of serialized Java objects. When a model is deserialized, any class is allowed to be deserialized (no class whitelist). An attacker can construct a crafted Iced model that uses Java gadgets and leads to arbitrary code execution when imported to the H2O platform.

CVE-2024-22871
Software Genérico General
7.5
HIGH
EPSS
0.7%
2024 2 PoCs

An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure.core$partial$fn__5920 function.

CVE-2024-22640
Software Genérico General
7.5
HIGH
EPSS
1.6%
2024 1 PoC

TCPDF version <=6.6.5 is vulnerable to ReDoS (Regular Expression Denial of Service) if parsing an untrusted HTML page with a crafted color.

CVE-2024-1561
gradio-app/gradio General ⚡ nuclei
7.5
HIGH
EPSS
93.4%
2024 CWE-29 2 PoCs

An issue was discovered in gradio-app/gradio, where the `/component_server` endpoint improperly allows the invocation of any method on a `Component` class with attacker-controlled arguments. Specifically, by exploiting the `move_resource_to_block_cache()` method of the `Block` class, an attacker can copy any file on the filesystem to a temporary directory and subsequently retrieve it. This vulnerability enables unauthorized local file read access, posing a significant risk especially when the application is exposed to the internet via `launch(share=True)`, thereby allowing remote attackers to