6739 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-51984
HL-L8260CDN Windows
6.8
MEDIUM
EPSS
0.5%
2024 CWE-522 2 PoCs

An authenticated attacker can reconfigure the target device to use an external service (such as LDAP or FTP) controlled by the attacker. If an existing password is present for an external service, the attacker can force the target device to authenticate to an attacker controlled device using the existing credentials for that external service. In the case of an external LDAP or FTP service, this will disclose the plaintext password for that external service to the attacker.

CVE-2024-12659
Advanced SystemCare Utimate General
6.8
MEDIUM
EPSS
0.0%
2024 CWE-476 1 PoC

A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0. It has been classified as problematic. Affected is the function 0x8001E004 in the library AscRegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-37016
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2024 2 PoCs

Mengshen Wireless Door Alarm M70 2024-05-24 allows Authentication Bypass via a Capture-Replay approach.

CVE-2024-20803
Samsung Mobile Devices General
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

Improper authentication vulnerability in Bluetooth pairing process prior to SMR Jan-2024 Release 1 allows remote attackers to establish pairing process without user interaction.

CVE-2024-30939
Software Genérico General
6.8
MEDIUM
EPSS
0.1%
2024 2 PoCs

An issue discovered in Yealink VP59 Teams Editions with firmware version 91.15.0.118 allows a physically proximate attacker to gain control of an account via a flaw in the factory reset procedure.

CVE-2024-8743
File Manager Web Windows
6.8
MEDIUM
EPSS
42.9%
2024 CWE-434 1 PoC

The Bit File Manager – 100% Free & Open Source File Manager and Code Editor for WordPress plugin for WordPress is vulnerable to Limited JavaScript File Upload in all versions up to, and including, 6.5.7. This is due to a lack of proper checks on allowed file types. This makes it possible for authenticated attackers, with Subscriber-level access and above, and granted permissions by an administrator, to upload .css and .js files, which could lead to Stored Cross-Site Scripting.

CVE-2024-37726
Software Genérico General
6.8
MEDIUM
EPSS
7.9%
2024 2 PoCs

Insecure Permissions vulnerability in Micro-Star International Co., Ltd MSI Center v.2.0.36.0 allows a local attacker to escalate privileges via the Export System Info function in MSI.CentralServer.exe

CVE-2024-41585
Software Genérico General
6.8
MEDIUM
EPSS
0.2%
2024 1 PoC

DrayTek Vigor3910 devices through 4.3.2.6 are affected by an OS command injection vulnerability that allows an attacker to leverage the recvCmd binary to escape from the emulated instance and inject arbitrary commands into the host machine.

CVE-2024-35133
Security Verify Access General
6.8
MEDIUM
EPSS
2.9%
2024 CWE-601 2 PoCs

IBM Security Verify Access 10.0.0 through 10.0.8 OIDC Provider could allow a remote authenticated attacker to conduct phishing attacks, using an open redirect attack. By persuading a victim to visit a specially crafted Web site, a remote attacker could exploit this vulnerability to spoof the URL displayed to redirect a user to a malicious Web site that would appear to be trusted. This could allow the attacker to obtain highly sensitive information or conduct further attacks against the victim.

CVE-2024-5430
GitLab DevOps
6.8
MEDIUM
EPSS
0.0%
2024 CWE-284 1 PoC

An issue was discovered in GitLab CE/EE affecting all versions starting from 16.10 prior to 16.11.5, starting from 17.0 prior to 17.0.3, and starting from 17.1 prior to 17.1.1, which allows a project maintainer can delete the merge request approval policy via graphQL.

CVE-2024-1588
SendPress Newsletters Web Windows
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

The SendPress Newsletters WordPress plugin through 1.23.11.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)

CVE-2024-12653
USB over Network General
6.8
MEDIUM
EPSS
0.1%
2024 CWE-476 1 PoC

A vulnerability classified as problematic has been found in FabulaTech USB over Network 6.0.6.1. Affected is the function 0x22040C in the library ftusbbus2.sys of the component IOCT Handler. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-2907
AGCA Web Windows
6.8
MEDIUM
EPSS
0.3%
2024 1 PoC

The AGCA WordPress plugin before 7.2.2 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup).

CVE-2024-12661
Advanced SystemCare Utimate General
6.8
MEDIUM
EPSS
0.0%
2024 CWE-476 1 PoC

A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0. It has been rated as problematic. Affected by this issue is the function 0x8001E024 in the library AscRegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-30988
Software Genérico Web Database
6.8
MEDIUM
EPSS
0.2%
2024 2 PoCs

Cross Site Scripting vulnerability in /search-invoices.php of phpgurukul Client Management System using PHP & MySQL 1.1 allows attackers to execute arbitrary code and obtain sensitive information via the Search bar.

CVE-2024-1231
CM Download Manager Web Windows
6.8
MEDIUM
EPSS
0.1%
2024 1 PoC

The CM Download Manager WordPress plugin before 2.9.0 does not have CSRF checks in some places, which could allow attackers to make logged in admins unpublish downloads via a CSRF attack

CVE-2024-27156
Toshiba Tec e-Studio multi-function peripheral (MFP) General
6.8
MEDIUM
EPSS
0.2%
2024 CWE-532 1 PoC

The session cookies, used for authentication, are stored in clear-text logs. An attacker can retrieve authentication sessions. A remote attacker can retrieve the credentials and bypass the authentication mechanism. As for the affected products/models/versions, see the reference URL.

CVE-2024-4977
Index WP MySQL For Speed Web Database Windows
6.8
MEDIUM
EPSS
0.4%
2024 1 PoC

The Index WP MySQL For Speed WordPress plugin before 1.4.18 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin

CVE-2024-12658
Advanced SystemCare Utimate General
6.8
MEDIUM
EPSS
0.0%
2024 CWE-476 1 PoC

A vulnerability was found in IObit Advanced SystemCare Utimate up to 17.0.0 and classified as problematic. This issue affects the function 0x8001E01C in the library AscRegistryFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2024-3632
Smart Image Gallery Web Windows
6.8
MEDIUM
EPSS
0.2%
2024 1 PoC

The Smart Image Gallery WordPress plugin before 1.0.19 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack