5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-6002
YugabyteDB Web
6.5
MEDIUM
EPSS
0.2%
2023 CWE-117 1 PoC

YugabyteDB is vulnerable to cross site scripting (XSS) via log injection. Writing invalidated user input to log files can allow an unprivileged attacker to forge log entries or inject malicious content into the logs.

CVE-2023-33754
Software Genérico Cloud
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

The captive portal in Inpiazza Cloud WiFi versions prior to v4.2.17 does not enforce limits on the number of attempts for password recovery, allowing attackers to brute force valid user accounts to gain access to login credentials.

CVE-2023-2756
pimcore/customer-data-framework Database
6.5
MEDIUM
EPSS
7.0%
2023 CWE-89 1 PoC

SQL Injection in GitHub repository pimcore/customer-data-framework prior to 3.3.10.

CVE-2023-5227
thorsten/phpmyfaq Web
6.5
MEDIUM
EPSS
0.4%
2023 CWE-434 1 PoC

Unrestricted Upload of File with Dangerous Type in GitHub repository thorsten/phpmyfaq prior to 3.1.8.

CVE-2023-20118
🔥 KEV Cisco Small Business RV Series Router Firmware Web Networking
6.5
MEDIUM
EPSS
3.8%
2023 CWE-77 1 PoC

A vulnerability in the web-based management interface of Cisco Small Business Routers RV016, RV042, RV042G, RV082, RV320, and RV325 Routers could allow an authenticated, remote attacker to execute arbitrary commands on an affected device. This vulnerability is due to improper validation of user input within incoming HTTP packets. An attacker could exploit this vulnerability by sending a crafted HTTP request to the web-based management interface. A successful exploit could allow the attacker to gain root-level privileges and access unauthorized data. To exploit this vulnerability, an attacke

CVE-2023-2792
Mattermost General
6.5
MEDIUM
EPSS
0.3%
2023 CWE-200 1 PoC

Mattermost fails to sanitize ephemeral error messages, allowing an attacker to obtain arbitrary message contents by a specially crafted /groupmsg command.

CVE-2023-45873
Software Genérico General
6.5
MEDIUM
EPSS
0.4%
2023 2 PoCs

An issue was discovered in Couchbase Server through 7.2.2. A data reader may cause a denial of service (application exist) because of the OOM killer.

CVE-2023-34096
Thruk General
6.5
MEDIUM
EPSS
45.1%
2023 CWE-22 4 PoCs

Thruk is a multibackend monitoring webinterface which currently supports Naemon, Icinga, Shinken and Nagios as backends. In versions 3.06 and prior, the file `panorama.pm` is vulnerable to a Path Traversal vulnerability which allows an attacker to upload a file to any folder which has write permissions on the affected system. The parameter location is not filtered, validated or sanitized and it accepts any kind of characters. For a path traversal attack, the only characters required were the dot (`.`) and the slash (`/`). A fix is available in version 3.06.2.

CVE-2023-32219
Mazda (2015-2016) General
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

A Mazda model (2015-2016) can be unlocked via an unspecified method.

CVE-2023-5070
Social Media Share Buttons & Social Sharing Icons Web Windows
6.5
MEDIUM
EPSS
14.9%
2023 CWE-200 1 PoC

The Social Media Share Buttons & Social Sharing Icons plugin for WordPress is vulnerable to Sensitive Information Exposure in versions up to, and including, 2.8.5 via the sfsi_save_export function. This can allow subscribers to export plugin settings that include social media authentication tokens and secrets as well as app passwords.

CVE-2023-1443
Twister Antivirus General
6.5
MEDIUM
EPSS
0.7%
2023 CWE-404 2 PoCs

A vulnerability was found in Filseclab Twister Antivirus 8. It has been declared as problematic. This vulnerability affects the function 0x80112053 in the library fildds.sys of the component IoControlCode Handler. The manipulation leads to denial of service. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-223288.

CVE-2023-50126
Software Genérico General
6.5
MEDIUM
EPSS
0.0%
2023 1 PoC

Missing encryption in the RFID tags of the Hozard alarm system (Alarmsysteem) v1.0 allow attackers to create a cloned tag via brief physical proximity to one of the original tags, which results in an attacker being able to bring the alarm system to a disarmed state.

CVE-2023-49111
SAST Web
6.5
MEDIUM
EPSS
0.3%
2023 CWE-79 3 PoCs

For Kiuwan installations with SSO (single sign-on) enabled, an unauthenticated reflected cross-site scripting attack can be performed on the login page "login.html". This is possible due to the request parameter "message" values being directly included in a JavaScript block in the response. This is especially critical in business environments using AD SSO authentication, e.g. via ADFS, where attackers could potentially steal AD passwords. This issue affects Kiuwan SAST: <master.1808.p685.q13371

CVE-2023-30943
Software Genérico Web ⚡ nuclei
6.5
MEDIUM
EPSS
26.8%
2023 CWE-73 3 PoCs

The vulnerability was found Moodle which exists because the application allows a user to control path of the older to create in TinyMCE loaders. A remote user can send a specially crafted HTTP request and create arbitrary folders on the system.

CVE-2023-1623
Custom Post Type UI Web Windows
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

The Custom Post Type UI WordPress plugin before 1.13.5 does not properly check for CSRF when sending the debug information to a user supplied email, which could allow attackers to make a logged in admin send such information to an arbitrary email address via a CSRF attack.

CVE-2023-5196
Mattermost General
6.5
MEDIUM
EPSS
0.2%
2023 CWE-400 1 PoC

Mattermost fails to enforce character limits in all possible notification props allowing an attacker to send a really long value for a notification_prop resulting in the server consuming an abnormal quantity of computing resources and possibly becoming temporarily unavailable for its users.

CVE-2023-37028
Software Genérico Networking
6.5
MEDIUM
EPSS
0.0%
2023 1 PoC

A Null pointer dereference vulnerability in the Mobile Management Entity (MME) in Magma <= 1.8.0 (fixed in v1.9 commit 08472ba98b8321f802e95f5622fa90fec2dea486) allows network-adjacent attackers to crash the MME via an S1AP `E-RAB Modification Indication` packet missing an expected `eNB_UE_S1AP_ID` field.

CVE-2023-24119
Software Genérico General
6.5
MEDIUM
EPSS
0.4%
2023 1 PoC

Jensen of Scandinavia Eagle 1200AC V15.03.06.33_en was discovered to contain a stack overflow via the ssid parameter at /goform/WifiBasicSet.

CVE-2023-43040
Spectrum Fusion HCI General
6.5
MEDIUM
EPSS
5.7%
2023 CWE-1220 1 PoC

IBM Spectrum Fusion HCI 2.5.2 through 2.7.2 could allow an attacker to perform unauthorized actions in RGW for Ceph due to improper bucket access. IBM X-Force ID: 266807.

CVE-2023-0667
Wireshark General
6.5
MEDIUM
EPSS
0.3%
2023 CWE-122 2 PoCs

Due to failure in validating the length provided by an attacker-crafted MSMMS packet, Wireshark version 4.0.5 and prior, in an unusual configuration, is susceptible to a heap-based buffer overflow, and possibly code execution in the context of the process running Wireshark