1326 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2019-25444
Fiverr Clone Script Database
8.8
HIGH
EPSS
0.1%
2019 CWE-89 1 PoC

Fiverr Clone Script 1.2.2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attackers can supply malicious SQL syntax in the page parameter to extract sensitive database information or modify database contents.

CVE-2019-11209
TIBCO FTL Community Edition General
8.8
HIGH
EPSS
0.5%
2019 1 PoC

The realm configuration component of TIBCO Software Inc.'s TIBCO FTL Community Edition, TIBCO FTL Developer Edition, TIBCO FTL Enterprise Edition contains a vulnerability that theoretically fails to properly enforce access controls. This issue affects TIBCO FTL Community Edition 6.0.0; 6.0.1; 6.1.0, TIBCO FTL Developer Edition 6.0.1; 6.1.0, and TIBCO FTL Enterprise Edition 6.0.0; 6.0.1; 6.1.0.

CVE-2019-15789
MicroK8s DevOps
8.8
HIGH
EPSS
0.0%
2019 CWE-269 1 PoC

Privilege escalation vulnerability in MicroK8s allows a low privilege user with local access to obtain root access to the host by provisioning a privileged container. Fixed in MicroK8s 1.15.3.

CVE-2019-25527
Inout EasyRooms Ultimate Edition Database
8.8
HIGH
EPSS
0.2%
2019 CWE-89 1 PoC

Inout EasyRooms Ultimate Edition v1.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the numguest parameter. Attackers can send POST requests to the search/searchdetailed endpoint with malicious SQL payloads to bypass authentication, extract sensitive data, or modify database contents.

CVE-2019-15949
🔥 KEV Software Genérico Web
8.8
HIGH
EPSS
87.1%
2019 2 PoCs

Nagios XI before 5.6.6 allows remote command execution as root. The exploit requires access to the server as the nagios user, or access as the admin user via the web interface. The getprofile.sh script, invoked by downloading a system profile (profile.php?cmd=download), is executed as root via a passwordless sudo entry; the script executes check_plugin, which is owned by the nagios user. A user logged into Nagios XI with permissions to modify plugins, or the nagios user on the server, can modify the check_plugin executable and insert malicious commands to execute as root.

CVE-2019-5069
Epignosis Web
8.8
HIGH
EPSS
0.6%
2019 CWE-502 1 PoC

A code execution vulnerability exists in Epignosis eFront LMS v5.2.12. A specially crafted web request can cause unsafe deserialization potentially resulting in PHP code being executed. An attacker can send a crafted web parameter to trigger this vulnerability.

CVE-2019-25255
VideoFlow Digital Video Protection DVP Web
8.7
HIGH
EPSS
0.1%
2019 CWE-78 3 PoCs

VideoFlow Digital Video Protection DVP 2.10 contains an authenticated remote code execution vulnerability that allows attackers to execute system commands with root privileges. Attackers can exploit the vulnerability through a cross-site request forgery (CSRF) mechanism to gain unauthorized system access.

CVE-2019-25552
CEWE PHOTO SHOW General
8.7
HIGH
EPSS
0.1%
2019 CWE-836 1 PoC

CEWE PHOTO SHOW 6.4.3 contains a denial of service vulnerability that allows attackers to crash the application by submitting an excessively long buffer to the password field. Attackers can paste a large string of repeated characters into the password input during the upload process to trigger an application crash.

CVE-2019-25470
eWON General
8.7
HIGH
EPSS
0.1%
2019 CWE-798 1 PoC

eWON Firmware versions 12.2 to 13.0 contain an authentication bypass vulnerability that allows attackers with minimal privileges to retrieve sensitive user data by exploiting the wsdReadForm endpoint. Attackers can send POST requests to /wrcgi.bin/wsdReadForm with base64-encoded partial credentials and a crafted wsdList parameter to extract encrypted passwords for all users, which can be decrypted using a hardcoded XOR key.

CVE-2019-25465
HiIpcam General
8.7
HIGH
EPSS
0.4%
2019 CWE-260 1 PoC

Hisilicon HiIpcam V100R003 contains a directory traversal vulnerability that allows unauthenticated attackers to access sensitive configuration files by exploiting directory listing in the cgi-bin directory. Attackers can request the getadslattr.cgi endpoint to retrieve ADSL credentials and network configuration parameters including usernames, passwords, and DNS settings.

CVE-2019-25358
FileOptimizer General
8.7
HIGH
EPSS
0.0%
2019 CWE-1282 1 PoC

FileOptimizer 14.00.2524 contains a denial of service vulnerability that allows attackers to crash the application by manipulating the FileOptimizer32.ini configuration file. Attackers can overwrite the TempDirectory parameter with a 5000-character buffer to cause the application to crash when opening options.

CVE-2019-25647
PhreeBooks ERP Web
8.7
HIGH
EPSS
0.3%
2019 CWE-434 1 PoC

PhreeBooks ERP 5.2.3 contains a remote code execution vulnerability in the image manager that allows authenticated attackers to upload and execute arbitrary PHP files by bypassing file extension controls. Attackers can upload malicious PHP files through the image manager endpoint and execute them to establish reverse shell connections and execute system commands.

CVE-2019-25333
Momentum Series JAWS Web Cloud
8.7
HIGH
EPSS
0.8%
2019 CWE-22 1 PoC

Bullwark Momentum Series JAWS 1.0 contains a directory traversal vulnerability that allows unauthenticated attackers to access system files by manipulating HTTP request paths. Attackers can exploit the vulnerability by sending crafted GET requests with multiple '../' sequences to read sensitive files like /etc/passwd outside the web root directory.

CVE-2019-25237
SOL GPON/EPON OLT Platform Web
8.7
HIGH
EPSS
0.1%
2019 CWE-863 2 PoCs

V-SOL GPON/EPON OLT Platform v2.03 contains a privilege escalation vulnerability that allows normal users to gain administrative access by manipulating the user role parameter. Attackers can send a crafted HTTP POST request to the user management endpoint with 'user_role_mod' set to integer value '1' to elevate their privileges.

CVE-2019-25243
FaceSentry Access Control System Web
8.7
HIGH
EPSS
1.1%
2019 CWE-78 2 PoCs

FaceSentry 6.4.8 contains an authenticated remote command injection vulnerability in pingTest.php and tcpPortTest.php scripts. Attackers can exploit unsanitized input parameters to inject and execute arbitrary shell commands with root privileges by manipulating the 'strInIP' and 'strInPort' parameters.

CVE-2019-25248
N100 H.264 VGA IP Camera General
8.7
HIGH
EPSS
0.2%
2019 CWE-306 2 PoCs

Beward N100 M2.1.6.04C014 contains an unauthenticated vulnerability that allows remote attackers to access live video streams without credentials. Attackers can directly retrieve the camera's RTSP stream by exploiting the lack of authentication in the video access mechanism.

CVE-2019-11043
🔥 KEV PHP Web
8.7
HIGH
EPSS
94.1%
2019 CWE-120 25 PoCs

In PHP versions 7.1.x below 7.1.33, 7.2.x below 7.2.24 and 7.3.x below 7.3.11 in certain configurations of FPM setup it is possible to cause FPM module to write past allocated buffers into the space reserved for FCGI protocol data, thus opening the possibility of remote code execution.

CVE-2019-25706
DR-810 Networking
8.7
HIGH
EPSS
0.0%
2019 CWE-538 1 PoC

Across DR-810 contains an unauthenticated file disclosure vulnerability that allows remote attackers to download the rom-0 backup file containing sensitive information by sending a simple GET request. Attackers can access the rom-0 endpoint without authentication to retrieve and decompress the backup file, exposing router passwords and other sensitive configuration data.

CVE-2019-25289
SmartLiving SmartLAN/G/SI General
8.7
HIGH
EPSS
0.5%
2019 CWE-78 2 PoCs

SmartLiving SmartLAN <=6.x contains an authenticated remote command injection vulnerability in the web.cgi binary through the 'par' POST parameter with the 'testemail' module. Attackers can exploit the unsanitized parameter and system() function call to execute arbitrary system commands with root privileges using default credentials.

CVE-2019-25654
Core FTP/SFTP Server General
8.7
HIGH
EPSS
0.1%
2019 CWE-787 1 PoC

Core FTP/SFTP Server 1.2 contains a buffer overflow vulnerability that allows attackers to crash the service by supplying an excessively long string in the User domain field. Attackers can paste a malicious payload containing 7000 bytes of data into the domain configuration to trigger an application crash and deny service.