6739 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-6291
Chrome General
7.5
HIGH
EPSS
0.3%
2024 CWE-416 1 PoC

Use after free in Swiftshader in Google Chrome prior to 126.0.6478.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVE-2024-21536
http-proxy-middleware Web
7.5
HIGH
EPSS
0.4%
2024 CWE-400 1 PoC

Versions of the package http-proxy-middleware before 2.0.7, from 3.0.0 and before 3.0.3 are vulnerable to Denial of Service (DoS) due to an UnhandledPromiseRejection error thrown by micromatch. An attacker could kill the Node.js process and crash the server by making requests to certain paths.

CVE-2024-13925
Klarna Checkout for WooCommerce Web Windows
7.5
HIGH
EPSS
0.6%
2024 1 PoC

The Klarna Checkout for WooCommerce WordPress plugin before 2.13.5 exposes an unauthenticated WooCommerce Ajax endpoint that allows an attacker to flood the log files with data at the maximum size allowed for a POST parameter per request. This can result in rapid consumption of disk space, potentially filling the entire disk.

CVE-2024-47917
CCTV FW Web
7.5
HIGH
EPSS
0.1%
2024 CWE-79 1 PoC

CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

CVE-2024-40803
macOS General
7.5
HIGH
EPSS
0.3%
2024 2 PoCs

A type confusion issue was addressed with improved checks. This issue is fixed in macOS Monterey 12.7.6, macOS Sonoma 14.6, macOS Ventura 13.6.8. An attacker may be able to cause unexpected app termination.

CVE-2024-45293
PhpSpreadsheet Web ⚡ nuclei
7.5
HIGH
EPSS
70.3%
2024 CWE-611 0 PoCs

PHPSpreadsheet is a pure PHP library for reading and writing spreadsheet files. The security scanner responsible for preventing XXE attacks in the XLSX reader can be bypassed by slightly modifying the XML structure, utilizing white-spaces. On servers that allow users to upload their own Excel (XLSX) sheets, Server files and sensitive information can be disclosed by providing a crafted sheet. The security scan function in src/PhpSpreadsheet/Reader/Security/XmlScanner.php contains a flawed XML encoding check to retrieve the input file's XML encoding in the toUtf8 function. The function searches

CVE-2024-39033
Software Genérico General
7.5
HIGH
EPSS
0.2%
2024 1 PoC

In Newgensoft OmniDocs 11.0_SP1_03_006, Insecure Direct Object Reference (IDOR) in the getuserproperty function allows user's configuration and PII to be stolen.

CVE-2024-27620
Software Genérico Web
7.5
HIGH
EPSS
6.8%
2024 1 PoC

An issue in Ladder v.0.0.1 thru v.0.0.21 allows a remote attacker to obtain sensitive information via a crafted request to the API.

CVE-2024-21075
Trade Management Web Database
7.5
HIGH
EPSS
1.6%
2024 1 PoC

Vulnerability in the Oracle Trade Management product of Oracle E-Business Suite (component: Claim Line LOV). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Trade Management. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Oracle Trade Management accessible data. CVSS 3.1 Base Score 7.5 (Confidentiality impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N).

CVE-2024-45276
mbNET.mini General
7.5
HIGH
EPSS
0.5%
2024 CWE-306 1 PoC

An unauthenticated remote attacker can get read access to files in the "/tmp" directory due to missing authentication.

CVE-2024-48950
Software Genérico Web
7.5
HIGH
EPSS
0.2%
2024 2 PoCs

An issue was discovered in Logpoint before 7.5.0. An endpoint used by Distributed Logpoint Setup was exposed, allowing unauthenticated attackers to bypass CSRF protections and authentication.

CVE-2024-12905
Software Genérico General
7.5
HIGH
EPSS
0.8%
2024 CWE-59 2 PoCs

An Improper Link Resolution Before File Access ("Link Following") and Improper Limitation of a Pathname to a Restricted Directory ("Path Traversal"). This vulnerability occurs when extracting a maliciously crafted tar file, which can result in unauthorized file writes or overwrites outside the intended extraction directory. The issue is associated with index.js in the tar-fs package. This issue affects tar-fs: from 0.0.0 before 1.16.4, from 2.0.0 before 2.1.2, from 3.0.0 before 3.0.8.

CVE-2024-24444
Software Genérico General
7.5
HIGH
EPSS
0.3%
2024 1 PoC

Improper file descriptor handling for closed connections in OpenAirInterface CN5G AMF (oai-cn5g-amf) up to v2.0.0 allows attackers to cause a Denial of Service (DoS) by repeatedly establishing SCTP connections with the N2 interface.

CVE-2024-29301
Software Genérico Web Database
7.5
HIGH
EPSS
0.1%
2024 1 PoC

SourceCodester PHP Task Management System 1.0 is vulnerable to SQL Injection via update-admin.php?admin_id=

CVE-2024-31392
Firefox for iOS General
7.5
HIGH
EPSS
0.5%
2024 1 PoC

If an insecure element was added to a page after a delay, Firefox would not replace the secure icon with a mixed content security status This vulnerability affects Firefox for iOS < 124.

CVE-2024-45253
VideoIQ iCVR HD camera General
7.5
HIGH
EPSS
0.4%
2024 CWE-22 1 PoC

Avigilon – CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

CVE-2024-52924
Software Genérico General
7.5
HIGH
EPSS
0.2%
2024 1 PoC

An issue was discovered in NRMM in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, Modem 5300, and Modem 5400. Lack of boundary check during the decoding of Registration Accept messages can lead to out-of-bounds writes on the stack

CVE-2024-6477
UsersWP Web Windows
7.5
HIGH
EPSS
0.4%
2024 1 PoC

The UsersWP WordPress plugin before 1.2.12 uses predictable filenames when an admin generates an export, which could allow unauthenticated attackers to download them and retrieve sensitive information such as IP, username, and email address

CVE-2024-39721
Software Genérico Web
7.5
HIGH
EPSS
0.3%
2024 1 PoC

An issue was discovered in Ollama before 0.1.34. The CreateModelHandler function uses os.Open to read a file until completion. The req.Path parameter is user-controlled and can be set to /dev/random, which is blocking, causing the goroutine to run infinitely (even after the HTTP request is aborted by the client).

CVE-2024-48360
Software Genérico Web ⚡ nuclei
7.5
HIGH
EPSS
91.0%
2024 1 PoC

Qualitor v8.24 was discovered to contain a Server-Side Request Forgery (SSRF) via the component /request/viewValidacao.php.