5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-26221
Spotfire Analyst Cloud
5.0
MEDIUM
EPSS
0.1%
2023 CWE-522 1 PoC

The Spotfire Connectors component of TIBCO Software Inc.'s Spotfire Analyst, Spotfire Server, and Spotfire for AWS Marketplace contains an easily exploitable vulnerability that allows a low privileged attacker with read/write access to craft malicious Analyst files. A successful attack using this vulnerability requires human interaction from a person other than the attacker. Affected releases are TIBCO Software Inc.'s Spotfire Analyst: versions 12.3.0, 12.4.0, and 12.5.0, Spotfire Server: versions 12.3.0, 12.4.0, and 12.5.0, and Spotfire for AWS Marketplace: version 12.5.0.

CVE-2023-0326
GitLab DAST API scanner DevOps Web
5.0
MEDIUM
EPSS
0.3%
2023 1 PoC

An issue has been discovered in GitLab DAST API scanner affecting all versions starting from 1.6.50 before 2.11.0, where Authorization headers was leaked in vulnerability report evidence.

CVE-2023-0964
Sales Tracker Management System Web Database
5.0
MEDIUM
EPSS
0.2%
2023 CWE-89 1 PoC

A vulnerability classified as critical has been found in SourceCodester Sales Tracker Management System 1.0. Affected is an unknown function of the file admin/products/view_product.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. VDB-221634 is the identifier assigned to this vulnerability.

CVE-2023-1369
Vir.IT eXplorer General
5.0
MEDIUM
EPSS
0.1%
2023 CWE-404 1 PoC

A vulnerability was found in TG Soft Vir.IT eXplorer 9.4.86.0. It has been rated as problematic. This issue affects the function 0x82730088 in the library VIRAGTLT.sys of the component IoControlCode Handler. The manipulation leads to denial of service. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 9.5 is able to address this issue. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-222875.

CVE-2023-21459
Samsung Mobile Devices General
5.0
MEDIUM
EPSS
0.2%
2023 1 PoC

Use after free vulnerability in decon driver prior to SMR Mar-2023 Release 1 allows attackers to cause memory access fault.

CVE-2023-2629
pimcore/customer-data-framework General
5.0
MEDIUM
EPSS
0.0%
2023 CWE-1236 1 PoC

Improper Neutralization of Formula Elements in a CSV File in GitHub repository pimcore/customer-data-framework prior to 3.3.9.

CVE-2023-5536
Ubuntu Server General
5.0
MEDIUM
EPSS
0.0%
2023 1 PoC

A feature in LXD (LP#1829071), affects the default configuration of Ubuntu Server which allows privileged users in the lxd group to escalate their privilege to root without requiring a sudo password.

CVE-2023-34050
Spring AMQP Web
5.0
MEDIUM
EPSS
43.0%
2023 1 PoC

In spring AMQP versions 1.0.0 to 2.4.16 and 3.0.0 to 3.0.9 , allowed list patterns for deserializable class names were added to Spring AMQP, allowing users to lock down deserialization of data in messages from untrusted sources; however by default, when no allowed list was provided, all classes could be deserialized. Specifically, an application is vulnerable if * the SimpleMessageConverter or SerializerMessageConverter is used * the user does not configure allowed list patterns * untrusted message originators gain permissions to write messages to

CVE-2023-0673
Online Eyewear Shop Web Database
5.0
MEDIUM
EPSS
0.3%
2023 CWE-89 1 PoC

A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerability is an unknown functionality of the file oews/?p=products/view_product.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The complexity of an attack is rather high. The exploitation appears to be difficult. The associated identifier of this vulnerability is VDB-220195.

CVE-2023-29108
ABAP Platform and SAP Web Dispatcher General
5.0
MEDIUM
EPSS
0.2%
2023 CWE-923 1 PoC

The IP filter in ABAP Platform and SAP Web Dispatcher - versions WEBDISP 7.85, 7.89, KERNEL 7.85, 7.89, 7.91, may be vulnerable by erroneous IP netmask handling. This may enable access to backend applications from unwanted sources.

CVE-2023-2025
OpenBlue Enterprise Manager Data Collector General
5.0
MEDIUM
EPSS
0.1%
2023 CWE-200 1 PoC

OpenBlue Enterprise Manager Data Collector versions prior to 3.2.5.75 may expose sensitive information to an unauthorized user under certain circumstances.

CVE-2023-6124
salesagility/suitecrm General
5.0
MEDIUM
EPSS
0.2%
2023 CWE-918 1 PoC

Server-Side Request Forgery (SSRF) in GitHub repository salesagility/suitecrm prior to 7.14.2, 8.4.2, 7.12.14.

CVE-2023-31404
SAP BusinessObjects Business Intelligence Platform (Central Management Service) General
5.0
MEDIUM
EPSS
0.3%
2023 CWE-200 1 PoC

Under certain conditions, SAP BusinessObjects Business Intelligence Platform (Central Management Service) - versions 420, 430, allows an attacker to access information which would otherwise be restricted. Some users with specific privileges could have access to credentials of other users. It could let them access data sources which would otherwise be restricted.

CVE-2023-23638
Apache Dubbo Web
5.0
MEDIUM
EPSS
50.3%
2023 CWE-502 7 PoCs

A deserialization vulnerability existed when dubbo generic invoke, which could lead to malicious code execution. This issue affects Apache Dubbo 2.7.x version 2.7.21 and prior versions; Apache Dubbo 3.0.x version 3.0.13 and prior versions; Apache Dubbo 3.1.x version 3.1.5 and prior versions.

CVE-2023-26435
OX App Suite General
5.0
MEDIUM
EPSS
0.2%
2023 CWE-918 1 PoC

It was possible to call filesystem and network references using the local LibreOffice instance using manipulated ODT documents. Attackers could discover restricted network topology and services as well as including local files with read permissions of the open-xchange system user. This was limited to specific file-types, like images. We have improved existing content filters and validators to avoid including any local resources. No publicly available exploits are known.

CVE-2023-27894
BusinessObjects Business Intelligence Platform (Web Services) Web Networking
5.0
MEDIUM
EPSS
0.4%
2023 CWE-200 1 PoC

SAP BusinessObjects Business Intelligence Platform (Web Services) - versions 420, 430, allows an attacker to inject arbitrary values as CMS parameters to perform lookups on the internal network which is otherwise not accessible externally. On successful exploitation, attacker can scan internal network to determine internal infrastructure for further attacks like remote file inclusion, retrieve server files, bypass firewall and force the vulnerable server to execute malicious requests, resulting in sensitive information disclosure. This causes limited impact on confidentiality of data.

CVE-2023-35887
Apache MINA SSHD Web Networking
5.0
MEDIUM
EPSS
0.1%
2023 CWE-22 1 PoC

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Software Foundation Apache MINA. In SFTP servers implemented using Apache MINA SSHD that use a RootedFileSystem, logged users may be able to discover "exists/does not exist" information about items outside the rooted tree via paths including parent navigation ("..") beyond the root, or involving symlinks. This issue affects Apache MINA: from 1.0 before 2.10. Users are recommended to upgrade to 2.10

CVE-2023-7188
Fahuo100 Web Database
5.0
MEDIUM
EPSS
0.0%
2023 CWE-89 1 PoC

A vulnerability classified as critical has been found in Shipping 100 Fahuo100 up to 1.1. Affected is an unknown function of the file member/login.php. The manipulation of the argument M_pwd leads to sql injection. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. VDB-249390 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2023-26431
OX App Suite General
5.0
MEDIUM
EPSS
0.2%
2023 CWE-918 1 PoC

IPv4-mapped IPv6 addresses did not get recognized as "local" by the code and a connection attempt is made. Attackers with access to user accounts could use this to bypass existing deny-list functionality and trigger requests to restricted network infrastructure to gain insight about topology and running services. We now respect possible IPV4-mapped IPv6 addresses when checking if contained in a deny-list. No publicly available exploits are known.

CVE-2023-29915
Software Genérico General
4.9
MEDIUM
EPSS
0.3%
2023 1 PoC

H3C Magic R200 version R200V100R004 was discovered to contain a stack overflow via CMD parameter at /goform/aspForm.