33293 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-34226
Software Genérico Web Database
9.4
CRITICAL
EPSS
0.4%
2024 1 PoC

SQL injection vulnerability in /php-sqlite-vms/?page=manage_visitor&id=1 in SourceCodester Visitor Management System 1.0 allow attackers to execute arbitrary SQL commands via the id parameters.

CVE-2024-6235
NetScaler Console General ⚡ nuclei
9.4
CRITICAL
EPSS
86.8%
2024 0 PoCs

Sensitive information disclosure in NetScaler Console

CVE-2024-35307
Pandora FMS General
9.4
CRITICAL
EPSS
15.3%
2024 CWE-88 1 PoC

Argument Injection Leading to Remote Code Execution in Realtime Graph Extension, allowing unauthenticated attackers to execute arbitrary code on the server. This issue affects Pandora FMS: from 700 through <777.

CVE-2024-8963
🔥 KEV CSA (Cloud Services Appliance) Cloud ⚡ nuclei
9.4
CRITICAL
EPSS
94.2%
2024 CWE-22 1 PoC

Path Traversal in the Ivanti CSA before 4.6 Patch 519 allows a remote unauthenticated attacker to access restricted functionality.

CVE-2024-37802
Software Genérico Database
9.4
CRITICAL
EPSS
0.1%
2024 1 PoC

CodeProjects Health Care hospital Management System v1.0 was discovered to contain a SQL injection vulnerability in the Patient Info module via the searvalu parameter.

CVE-2024-25124
fiber General
9.4
CRITICAL
EPSS
0.5%
2024 CWE-346 2 PoCs

Fiber is a web framework written in go. Prior to version 2.52.1, the CORS middleware allows for insecure configurations that could potentially expose the application to multiple CORS-related vulnerabilities. Specifically, it allows setting the Access-Control-Allow-Origin header to a wildcard (`*`) while also having the Access-Control-Allow-Credentials set to true, which goes against recommended security best practices. The impact of this misconfiguration is high as it can lead to unauthorized access to sensitive user data and expose the system to various types of attacks listed in the PortSwig

CVE-2024-28253
OpenMetadata General ⚡ nuclei
9.4
CRITICAL
EPSS
92.9%
2024 CWE-94 0 PoCs

OpenMetadata is a unified platform for discovery, observability, and governance powered by a central metadata repository, in-depth lineage, and seamless team collaboration. `CompiledRule::validateExpression` is also called from `PolicyRepository.prepare`. `prepare()` is called from `EntityRepository.prepareInternal()` which, in turn, gets called from `EntityResource.createOrUpdate()`. Note that even though there is an authorization check (`authorizer.authorize()`), it gets called after `prepareInternal()` gets called and therefore after the SpEL expression has been evaluated. In order to reach

CVE-2019-20695
Software Genérico General
9.4
CRITICAL
EPSS
0.3%
2019 1 PoC

Certain NETGEAR devices are affected by disclosure of sensitive information. This affects SRK60 before 2.3.5.106, SRR60 before 2.3.5.106, and SRS60 before 2.3.5.106.

CVE-2019-17137
AC1200 Networking
9.4
CRITICAL
EPSS
0.4%
2019 CWE-626 1 PoC

This vulnerability allows network-adjacent attackers to bypass authentication on affected installations of NETGEAR AC1200 R6220 Firmware version 1.1.0.86 Smart WiFi Router. Authentication is not required to exploit this vulnerability. The specific flaw exists within the processing of path strings. By inserting a null byte into the path, the user can skip most authentication checks. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-8616.

CVE-2021-45497
Software Genérico General
9.4
CRITICAL
EPSS
0.2%
2021 1 PoC

NETGEAR D7000 devices before 1.0.1.82 are affected by authentication bypass.

CVE-2021-31962
Windows 10 Version 1809 DevOps Windows
9.4
CRITICAL
EPSS
17.8%
2021 1 PoC

Kerberos AppContainer Security Feature Bypass Vulnerability

CVE-2021-21952
Anker" General
9.4
CRITICAL
EPSS
0.5%
2021 CWE-288 1 PoC

An authentication bypass vulnerability exists in the CMD_DEVICE_GET_RSA_KEY_REQUEST functionality of the home_security binary of Anker Eufy Homebase 2 2.1.6.9h. A specially-crafted set of network packets can lead to increased privileges.

CVE-2021-20999
UC20-WL2000-AC (No. 1334950000) General
9.4
CRITICAL
EPSS
0.4%
2021 CWE-668 1 PoC

In Weidmüller u-controls and IoT-Gateways in versions up to 1.12.1 a network port intended only for device-internal usage is accidentally accessible via external network interfaces. By exploiting this vulnerability the device may be manipulated or the operation may be stopped.

CVE-2021-45501
Software Genérico General
9.4
CRITICAL
EPSS
0.2%
2021 1 PoC

Certain NETGEAR devices are affected by authentication bypass. This affects AC2400 before 1.1.0.84, AC2600 before 1.1.0.84, D7000 before 1.0.1.82, R6020 before 1.0.0.52, R6080 before 1.0.0.52, R6120 before 1.0.0.80, R6220 before 1.1.0.110, R6230 before 1.1.0.110, R6260 before 1.1.0.84, R6330 before 1.1.0.84, R6350 before 1.1.0.84, R6700v2 before 1.1.0.84, R6800 before 1.1.0.84, R6850 before 1.1.0.84, R6900v2 before 1.1.0.84, R7200 before 1.1.0.84, R7350 before 1.1.0.84, R7400 before 1.1.0.84, and R7450 before 1.1.0.84.

CVE-2012-10039
ZEN Load Balancer General
9.4
CRITICAL
EPSS
47.8%
2012 CWE-78 2 PoCs

ZEN Load Balancer versions 2.0 and 3.0-rc1 contain a command injection vulnerability in content2-2.cgi. The filelog parameter is passed directly into a backtick-delimited exec() call without sanitation. An authenticated attacker can inject arbitrary shell commands, resulting in remote code execution as the root user. ZEN Load Balancer is the predecessor of ZEVENET and SKUDONET. The affected versions (2.0 and 3.0-rc1) are no longer supported. SKUDONET CE is the current community-maintained successor.

CVE-2012-5864
eSolar General
9.4
UNKNOWN
EPSS
18.3%
2012 CWE-287 1 PoC

These Sinapsi devices do not check if users that visit pages within the device have properly authenticated. By directly visiting the pages within the device, attackers can gain unauthorized access with administrative privileges.

CVE-2012-10059
ERP/CRM Web Database
9.4
CRITICAL
EPSS
47.8%
2012 CWE-78 5 PoCs

Dolibarr ERP/CRM versions <= 3.1.1 and <= 3.2.0 contain a post-authenticated OS command injection vulnerability in its database backup feature. The export.php script fails to sanitize the sql_compat parameter, allowing authenticated users to inject arbitrary system commands, resulting in remote code execution on the server.

CVE-2012-10040
Openfiler General
9.4
CRITICAL
EPSS
56.3%
2012 CWE-78 2 PoCs

Openfiler v2.x contains a command injection vulnerability in the system.html page. The device parameter is used to instantiate a NetworkCard object, whose constructor in network.inc calls exec() with unsanitized input. An authenticated attacker can exploit this to execute arbitrary commands as the openfiler user. Due to misconfigured sudoers, the openfiler user can escalate privileges to root via sudo /bin/bash without a password.

CVE-2025-34291
Langflow General ⚡ nuclei
9.4
CRITICAL
EPSS
13.3%
2025 CWE-346 1 PoC

Langflow versions up to and including 1.6.9 contain a chained vulnerability that enables account takeover and remote code execution. An overly permissive CORS configuration (allow_origins='*' with allow_credentials=True) combined with a refresh token cookie configured as SameSite=None allows a malicious webpage to perform cross-origin requests that include credentials and successfully call the refresh endpoint. An attacker-controlled origin can therefore obtain fresh access_token / refresh_token pairs for a victim session. Obtained tokens permit access to authenticated endpoints — including bu

CVE-2025-70141
Software Genérico Web
9.4
CRITICAL
EPSS
0.6%
2025 2 PoCs

SourceCodester Customer Support System 1.0 contains an incorrect access control vulnerability in ajax.php. The AJAX dispatcher does not enforce authentication or authorization before invoking administrative methods in admin_class.php based on the action parameter. An unauthenticated remote attacker can perform sensitive operations such as creating customers and deleting users (including the admin account), as well as modifying or deleting other application records (tickets, departments, comments), resulting in unauthorized data modification.