6739 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-35058
Software Genérico Web
7.5
HIGH
EPSS
0.1%
2024 1 PoC

An issue in the API wait function of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary code via supplying a crafted string.

CVE-2024-39719
Software Genérico Web
7.5
HIGH
EPSS
44.5%
2024 2 PoCs

An issue was discovered in Ollama through 0.3.14. File existence disclosure can occur via api/create. When calling the CreateModel route with a path parameter that does not exist, it reflects the "File does not exist" error message to the attacker, providing a primitive for file existence on the server.

CVE-2024-39249
Software Genérico General
7.5
HIGH
EPSS
0.2%
2024 2 PoCs

Async <= 2.6.4 and <= 3.2.5 are vulnerable to ReDoS (Regular Expression Denial of Service) while parsing function in autoinject function. NOTE: this is disputed by the supplier because there is no realistic threat model: regular expressions are not used with untrusted input.

CVE-2024-35060
Software Genérico General
7.5
HIGH
EPSS
0.1%
2024 1 PoC

An issue in the YAML Python library of NASA AIT-Core v2.5.2 allows attackers to execute arbitrary commands via supplying a crafted YAML file.

CVE-2024-23756
Software Genérico DevOps Web
7.5
HIGH
EPSS
0.3%
2024 1 PoC

The HTTP PUT and DELETE methods are enabled in the Plone official Docker version 5.2.13 (5221), allowing unauthenticated attackers to execute dangerous actions such as uploading files to the server or deleting them.

CVE-2024-51326
Software Genérico Web Database
7.5
HIGH
EPSS
0.5%
2024 1 PoC

SQL Injection vulnerability in projectworlds Travel management System v.1.0 allows a remote attacker to execute arbitrary code via the 't2' parameter in deletesubcategory.php.

CVE-2024-8383
Firefox General
7.5
HIGH
EPSS
0.2%
2024 1 PoC

Firefox normally asks for confirmation before asking the operating system to find an application to handle a scheme that the browser does not support. It did not ask before doing so for the Usenet-related schemes news: and snews:. Since most operating systems don't have a trusted newsreader installed by default, an unscrupulous program that the user downloaded could register itself as a handler. The website that served the application download could then launch that application at will. This vulnerability affects Firefox < 130, Firefox ESR < 128.2, and Firefox ESR < 115.15.

CVE-2024-37843
Software Genérico Web Database ⚡ nuclei
7.5
HIGH
EPSS
89.4%
2024 2 PoCs

Craft CMS up to v3.7.31 was discovered to contain a SQL injection vulnerability via the GraphQL API endpoint.

CVE-2024-36823
Software Genérico General
7.5
HIGH
EPSS
11.8%
2024 1 PoC

The encrypt() function of Ninja Core v7.0.0 was discovered to use a weak cryptographic algorithm, leading to a possible leakage of sensitive information.

CVE-2024-42646
Software Genérico General
7.5
HIGH
EPSS
0.1%
2024 1 PoC

A segmentation fault in NanoMQ v0.21.10 allows attackers to cause a Denial of Service (DoS) via crafted messages.

CVE-2024-50508
Woocommerce Product Design General
7.5
HIGH
EPSS
26.3%
2024 CWE-22 1 PoC

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Chetan Khandla Woocommerce Product Design woo-product-design allows Path Traversal.This issue affects Woocommerce Product Design: from n/a through <= 1.0.0.

CVE-2024-48951
Software Genérico Web
7.5
HIGH
EPSS
0.1%
2024 2 PoCs

An issue was discovered in Logpoint before 7.5.0. Server-Side Request Forgery (SSRF) on SOAR can be used to leak Logpoint's API Token leading to authentication bypass.

CVE-2024-38178
🔥 KEV Windows 11 Version 24H2 Windows
7.5
HIGH
EPSS
30.2%
2024 CWE-843 1 PoC

Scripting Engine Memory Corruption Vulnerability

CVE-2024-21539
@eslint/plugin-kit General
7.5
HIGH
EPSS
0.2%
2024 CWE-1333 1 PoC

Versions of the package @eslint/plugin-kit before 0.2.3 are vulnerable to Regular Expression Denial of Service (ReDoS) due to improper input sanitization. An attacker can increase the CPU usage and crash the program by exploiting this vulnerability.

CVE-2024-13489
LTL Freight Quotes – Old Dominion Edition Web Database Windows
7.5
HIGH
EPSS
3.9%
2024 CWE-89 1 PoC

The LTL Freight Quotes – Old Dominion Edition plugin for WordPress is vulnerable to SQL Injection via the 'edit_id' and 'dropship_edit_id' parameters in all versions up to, and including, 4.2.10 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-56528
Software Genérico General
7.5
HIGH
EPSS
0.4%
2024 1 PoC

This vulnerability affects Snowplow Collector 3.x before 3.3.0 (unless it’s set up behind a reverse proxy that establishes payload limits). It involves sending very large payloads to the Collector and can render it unresponsive to the rest of the requests. As a result, data would not enter the pipeline and would be potentially lost.

CVE-2024-33437
Software Genérico General
7.5
HIGH
EPSS
0.4%
2024 1 PoC

An issue in CSS Exfil Protection v.1.1.0 allows a remote attacker to obtain sensitive information due to missing support for CSS Style Rules.

CVE-2024-13681
Uncode Web Windows
7.5
HIGH
EPSS
0.3%
2024 CWE-20 1 PoC

The Uncode theme for WordPress is vulnerable to arbitrary file read due to insufficient input validation in the 'uncode_admin_get_oembed' function in all versions up to, and including, 2.9.1.6. This makes it possible for unauthenticated attackers to read arbitrary files on the server.

CVE-2024-34593
Samsung Mobile Devices General
7.5
HIGH
EPSS
1.4%
2024 1 PoC

Improper input validation in parsing and distributing RTCP packet in librtp.so prior to SMR Jul-2024 Release 1 allows remote attackers to execute arbitrary code with system privilege. User interaction is required for triggering this vulnerability.

CVE-2024-13184
The Ultimate WordPress Toolkit – WP Extended Web Database Windows
7.5
HIGH
EPSS
0.9%
2024 CWE-89 1 PoC

The The Ultimate WordPress Toolkit – WP Extended plugin for WordPress is vulnerable to time-based SQL Injection via the Login Attempts module in all versions up to, and including, 3.0.12 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.