5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-51385
Software Genérico Networking
6.5
MEDIUM
EPSS
17.2%
2023 29 PoCs

In ssh in OpenSSH before 9.6, OS command injection might occur if a user name or host name has shell metacharacters, and this name is referenced by an expansion token in certain situations. For example, an untrusted Git repository can have a submodule with shell metacharacters in a user name or host name.

CVE-2023-33140
Microsoft OneNote for Universal General
6.5
MEDIUM
EPSS
5.5%
2023 2 PoCs

Microsoft OneNote Spoofing Vulnerability

CVE-2023-25728
Firefox General
6.5
MEDIUM
EPSS
0.2%
2023 1 PoC

The <code>Content-Security-Policy-Report-Only</code> header could allow an attacker to leak a child iframe's unredacted URI when interaction with that iframe triggers a redirect. This vulnerability affects Firefox < 110, Thunderbird < 102.8, and Firefox ESR < 102.8.

CVE-2023-26136
tough-cookie General
6.5
MEDIUM
EPSS
6.4%
2023 CWE-1321 4 PoCs

Versions of the package tough-cookie before 4.1.3 are vulnerable to Prototype Pollution due to improper handling of Cookies when using CookieJar in rejectPublicSuffixes=false mode. This issue arises from the manner in which the objects are initialized.

CVE-2023-1624
WPCode Web Windows
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

The WPCode WordPress plugin before 2.0.9 has a flawed CSRF when deleting log, and does not ensure that the file to be deleted is inside the expected folder. This could allow attackers to make users with the wpcode_activate_snippets capability delete arbitrary log files on the server, including outside of the blog folders

CVE-2023-4013
GDPR Cookie Compliance (CCPA, DSGVO, Cookie Consent) Web Windows
6.5
MEDIUM
EPSS
0.2%
2023 1 PoC

The GDPR Cookie Compliance (CCPA, DSGVO, Cookie Consent) WordPress plugin before 4.12.5 does not have proper CSRF checks when managing its license, which could allow attackers to make logged in admins update and deactivate the plugin's license via CSRF attacks

CVE-2023-5459
DVP32ES2 PLC General
6.5
MEDIUM
EPSS
0.1%
2023 CWE-404 1 PoC

A vulnerability has been found in Delta Electronics DVP32ES2 PLC 1.48 and classified as critical. This vulnerability affects unknown code of the component Password Transmission Handler. The manipulation leads to denial of service. The exploit has been disclosed to the public and may be used. VDB-241582 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2023-2380
SRX5308 General
6.5
MEDIUM
EPSS
0.1%
2023 CWE-404 1 PoC

A vulnerability, which was classified as problematic, was found in Netgear SRX5308 up to 4.3.5-3. Affected is an unknown function. The manipulation leads to denial of service. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-227658 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2023-22040
WebLogic Server Database
6.5
MEDIUM
EPSS
0.2%
2023 1 PoC

Vulnerability in the Oracle WebLogic Server product of Oracle Fusion Middleware (component: Core). Supported versions that are affected are 12.2.1.4.0 and 14.1.1.0.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise Oracle WebLogic Server. Successful attacks of this vulnerability can result in unauthorized creation, deletion or modification access to critical data or all Oracle WebLogic Server accessible data and unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of Oracle WebLogic Serv

CVE-2023-1783
Orangescrum Cloud
6.5
MEDIUM
EPSS
0.1%
2023 CWE-79 1 PoC

OrangeScrum version 2.0.11 allows an external attacker to remotely obtain AWS instance credentials. This is possible because the application does not properly validate the HTML content to be converted to PDF.

CVE-2023-0491
Schedulicity Web Windows
6.5
MEDIUM
EPSS
0.3%
2023 1 PoC

The Schedulicity WordPress plugin through 2.21 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.

CVE-2023-35016
Security Verify Governance, Identity Manager General
6.5
MEDIUM
EPSS
0.1%
2023 CWE-22 1 PoC

IBM Security Verify Governance, Identity Manager 10.0 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system. IBM X-Force ID: 257772.

CVE-2023-23547
UR32L General
6.5
MEDIUM
EPSS
0.4%
2023 CWE-22 1 PoC

A directory traversal vulnerability exists in the luci2-io file-export mib functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to arbitrary file read. An attacker can send a network request to trigger this vulnerability.

CVE-2023-24626
Software Genérico General
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

socket.c in GNU Screen through 4.9.0, when installed setuid or setgid (the default on platforms such as Arch Linux and FreeBSD), allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process.

CVE-2023-47995
Software Genérico General
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

Memory Allocation with Excessive Size Value discovered in BitmapAccess.cpp::FreeImage_AllocateBitmap in FreeImage 3.18.0 allows attackers to cause a denial of service.

CVE-2023-39376
SiberianCMS Web
6.5
MEDIUM
EPSS
0.1%
2023 CWE-284 1 PoC

SiberianCMS - CWE-284 Improper Access Control Authorized user may disable a security feature over the network

CVE-2023-21868
MySQL Server Database
6.5
MEDIUM
EPSS
0.1%
2023 1 PoC

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Optimizer). Supported versions that are affected are 8.0.31 and prior. Easily exploitable vulnerability allows low privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 6.5 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H).

CVE-2023-7004
TTLock App General
6.5
MEDIUM
EPSS
0.0%
2023 1 PoC

The TTLock App does not employ proper verification procedures to ensure that it is communicating with the expected device, allowing for connection to a device that spoofs the MAC address of a lock, which compromises the legitimate locks integrity.

CVE-2023-50915
Software Genérico General
6.5
MEDIUM
EPSS
0.2%
2023 2 PoCs

An issue exists in GalaxyClientService.exe in GOG Galaxy (Beta) 2.0.67.2 through 2.0.71.2 that could allow authenticated users to overwrite and corrupt critical system files via a combination of an NTFS Junction and an RPC Object Manager symbolic link and could result in a denial of service.

CVE-2023-22881
Zoom (for Android, iOS, Linux, macOS, and Windows) clients before version 5.13.5 Windows
6.5
MEDIUM
EPSS
0.8%
2023 CWE-119 1 PoC

Zoom clients before version 5.13.5 contain a STUN parsing vulnerability. A malicious actor could send specially crafted UDP traffic to a victim Zoom client to remotely cause the client to crash, causing a denial of service.