5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-31903
Software Genérico Web
9.8
CRITICAL
EPSS
6.1%
2023 1 PoC

GuppY CMS 6.00.10 is vulnerable to Unrestricted File Upload which allows remote attackers to execute arbitrary code by uploading a php file.

CVE-2023-51972
Software Genérico General
9.8
CRITICAL
EPSS
3.8%
2023 1 PoC

Tenda AX1803 v1.0.0.1 was discovered to contain a command injection vulnerability via the function fromAdvSetLanIp.

CVE-2023-4696
usememos/memos General
9.8
CRITICAL
EPSS
1.3%
2023 CWE-284 2 PoCs

Improper Access Control in GitHub repository usememos/memos prior to 0.13.2.

CVE-2023-3211
WordPress Database Administrator Web Database Windows
9.8
CRITICAL
EPSS
0.8%
2023 1 PoC

The WordPress Database Administrator WordPress plugin through 1.0.3 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

CVE-2023-30869
Easy Digital Downloads General ⚡ nuclei
9.8
CRITICAL
EPSS
50.1%
2023 CWE-287 0 PoCs

Improper Authentication vulnerability in Easy Digital Downloads plugin allows unauth. Privilege Escalation. This issue affects Easy Digital Downloads: from 3.1 through 3.1.1.4.1.

CVE-2023-35088
Apache InLong Web Database
9.8
CRITICAL
EPSS
0.6%
2023 CWE-89 1 PoC

Improper Neutralization of Special Elements Used in an SQL Command ('SQL Injection') vulnerability in Apache Software Foundation Apache InLong.This issue affects Apache InLong: from 1.4.0 through 1.7.0.  In the toAuditCkSql method, the groupId, streamId, auditId, and dt are directly concatenated into the SQL query statement, which may lead to SQL injection attacks. Users are advised to upgrade to Apache InLong's 1.8.0 or cherry-pick [1] to solve it. [1] https://github.com/apache/inlong/pull/8198

CVE-2023-34754
Software Genérico Web Database ⚡ nuclei
9.8
CRITICAL
EPSS
14.9%
2023 1 PoC

bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the pid parameter at admin/index.php?mode=settings&page=plugins&action=edit.

CVE-2023-49231
Software Genérico Web
9.8
CRITICAL
EPSS
0.8%
2023 3 PoCs

An authentication bypass vulnerability was found in Stilog Visual Planning 8. It allows an unauthenticated attacker to receive an administrative API token.

CVE-2023-23461
Libpeconv General
9.8
CRITICAL
EPSS
0.4%
2023 1 PoC

Libpeconv – access violation, before commit b076013 (30/11/2022).

CVE-2023-46665
PolyEco1000 General
9.8
CRITICAL
EPSS
0.0%
2023 CWE-284 1 PoC

Sielco PolyEco1000 is vulnerable to an authentication bypass vulnerability due to an attacker modifying passwords in a POST request and gain unauthorized access to the affected device with administrative privileges.

CVE-2023-29542
Firefox Windows
9.8
CRITICAL
EPSS
0.1%
2023 2 PoCs

A newline in a filename could have been used to bypass the file extension security mechanisms that replace malicious file extensions such as .lnk with .download. This could have led to accidental execution of malicious code. *This bug only affects Firefox and Thunderbird on Windows. Other versions of Firefox and Thunderbird are unaffected.* This vulnerability affects Firefox < 112, Firefox ESR < 102.10, and Thunderbird < 102.10.

CVE-2023-42000
Arcserve UDP General
9.8
CRITICAL
EPSS
1.2%
2023 CWE-22 1 PoC

Arcserve UDP prior to 9.2 contains a path traversal vulnerability in com.ca.arcflash.ui.server.servlet.FileHandlingServlet.doUpload(). An unauthenticated remote attacker can exploit it to upload arbitrary files to any location on the file system where the UDP agent is installed.

CVE-2023-46484
Software Genérico General
9.8
CRITICAL
EPSS
4.6%
2023 1 PoC

An issue in TOTOlink X6000R V9.4.0cu.852_B20230719 allows a remote attacker to execute arbitrary code via the setLedCfg function.

CVE-2023-25770
C300 General
9.8
CRITICAL
EPSS
0.1%
2023 CWE-502 1 PoC

Controller DoS may occur due to buffer overflow when an error is generated in response to a specially crafted message. See Honeywell Security Notification for recommendations on upgrading and versioning.

CVE-2023-29809
Software Genérico Database
9.8
CRITICAL
EPSS
2.9%
2023 3 PoCs

SQL injection vulnerability found in Maximilian Vogt companymaps (cmaps) v.8.0 allows a remote attacker to execute arbitrary code via a crafted script in the request.

CVE-2023-33443
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2023 1 PoC

Incorrect access control in the administrative functionalities of BES--6024PB-I50H1 VideoPlayTool v2.0.1.0 allow attackers to execute arbitrary administrative commands via a crafted payload sent to the desired endpoints.

CVE-2023-51518
Apache James server DevOps Web
9.8
CRITICAL
EPSS
0.4%
2023 CWE-502 1 PoC

Apache James prior to version 3.7.5 and 3.8.0 exposes a JMX endpoint on localhost subject to pre-authentication deserialisation of untrusted data. Given a deserialisation gadjet, this could be leveraged as part of an exploit chain that could result in privilege escalation. Note that by default JMX endpoint is only bound locally. We recommend users to:  - Upgrade to a non-vulnerable Apache James version  - Run Apache James isolated from other processes (docker - dedicated virtual machine)  - If possible turn off JMX