5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-53960
Impact/Pulse/First Web Database
9.3
CRITICAL
EPSS
0.3%
2023 CWE-89 2 PoCs

SOUND4 IMPACT/FIRST/PULSE/Eco version 2.x contains an SQL injection vulnerability in the 'index.php' authentication mechanism that allows attackers to manipulate login credentials. Attackers can inject malicious SQL code through the 'password' POST parameter to bypass authentication and potentially gain unauthorized access to the system.

CVE-2023-53894
phpfm Web
9.3
CRITICAL
EPSS
0.5%
2023 CWE-1390 1 PoC

phpfm 1.7.9 contains an authentication bypass vulnerability that allows attackers to log in by exploiting loose type comparison in password hash validation. Attackers can craft specific password hashes beginning with 0e or 00e to bypass authentication and upload malicious PHP files to the server.

CVE-2023-53771
MiniDVBLinux Change Root Password PoC General
9.3
CRITICAL
EPSS
1.1%
2023 CWE-306 2 PoCs

MiniDVBLinux 5.4 contains an authentication bypass vulnerability that allows remote attackers to change the root password without authentication. Attackers can send crafted POST requests to the system setup endpoint with modified SYSTEM_PASSWORD parameters to reset root credentials.

CVE-2023-50839
JS Help Desk – Best Help Desk & Support Plugin Database ⚡ nuclei
9.3
CRITICAL
EPSS
16.3%
2023 CWE-89 0 PoCs

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in JS Help Desk JS Help Desk – Best Help Desk & Support Plugin.This issue affects JS Help Desk – Best Help Desk & Support Plugin: from n/a through 2.8.1.

CVE-2023-36534
Zoom Desktop Client for Windows Windows
9.3
CRITICAL
EPSS
0.6%
2023 CWE-22 1 PoC

Path traversal in Zoom Desktop Client for Windows before 5.14.7 may allow an unauthenticated user to enable an escalation of privilege via network access.

CVE-2023-6013
h2oai/h2o-3 Web
9.3
CRITICAL
EPSS
0.2%
2023 CWE-79 1 PoC

H2O is vulnerable to stored XSS vulnerability which can lead to a Local File Include attack.

CVE-2023-53982
PMB Web Database
9.3
CRITICAL
EPSS
0.0%
2023 CWE-89 1 PoC

PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php endpoint that allows remote attackers to manipulate database queries. Attackers can exploit the unsanitized 'id' parameter by injecting conditional sleep statements to extract information or perform time-based blind SQL injection attacks.

CVE-2023-54339
Webgrind Web
9.3
CRITICAL
EPSS
0.7%
2023 CWE-78 1 PoC

Webgrind 1.1 contains a remote command execution vulnerability that allows unauthenticated attackers to inject OS commands via the dataFile parameter in index.php. Attackers can execute arbitrary system commands by manipulating the dataFile parameter, such as using payload '0%27%26calc.exe%26%27' to execute commands on the target system.

CVE-2023-53969
Screen SFT DAB 600/C Web
9.3
CRITICAL
EPSS
0.4%
2023 CWE-306 2 PoCs

Screen SFT DAB 600/C firmware 1.9.3 contains a session management vulnerability that allows attackers to bypass authentication controls by exploiting IP address session binding. Attackers can reuse the same IP address and issue unauthorized requests to the userManager API to change user passwords without proper authentication.

CVE-2023-53948
Lilac-Reloaded General
9.3
CRITICAL
EPSS
0.5%
2023 CWE-78 1 PoC

Lilac-Reloaded for Nagios 2.0.8 contains a remote code execution vulnerability in the autodiscovery feature that allows attackers to inject arbitrary commands. Attackers can exploit the lack of input filtering in the nmap_binary parameter to execute a reverse shell by sending a crafted POST request to the autodiscovery endpoint.

CVE-2023-53923
Ulicms Web
9.3
CRITICAL
EPSS
0.2%
2023 CWE-862 1 PoC

UliCMS 2023.1 contains a privilege escalation vulnerability that allows unauthenticated attackers to create administrative accounts through the UserController endpoint. Attackers can send a crafted POST request to /dist/admin/index.php with specific parameters to generate a new admin user with full system access.

CVE-2023-6038
h2oai/h2o-3 Web ⚡ nuclei
9.3
CRITICAL
EPSS
63.3%
2023 CWE-862 1 PoC

A Local File Inclusion (LFI) vulnerability exists in the h2o-3 REST API, allowing unauthenticated remote attackers to read arbitrary files on the server with the permissions of the user running the h2o-3 instance. This issue affects the default installation and does not require user interaction. The vulnerability can be exploited by making specific GET or POST requests to the ImportFiles and ParseSetup endpoints, respectively. This issue was identified in version 3.40.0.4 of h2o-3.

CVE-2023-0606
ampache/ampache Web
9.3
CRITICAL
EPSS
0.4%
2023 CWE-79 1 PoC

Cross-site Scripting (XSS) - Reflected in GitHub repository ampache/ampache prior to 5.5.7.

CVE-2023-53968
Screen SFT DAB 600/C Web
9.3
CRITICAL
EPSS
0.6%
2023 CWE-306 2 PoCs

Screen SFT DAB 600/C Firmware 1.9.3 contains a session management vulnerability that allows attackers to bypass authentication controls by exploiting IP address session binding. Attackers can reuse the same IP address and issue unauthorized requests to the userManager API to remove user accounts without proper authentication.

CVE-2023-6569
h2oai/h2o-3 General
9.3
CRITICAL
EPSS
0.2%
2023 CWE-73 1 PoC

External Control of File Name or Path in h2oai/h2o-3

CVE-2023-53922
TinyWebGallery Web
9.3
CRITICAL
EPSS
2.3%
2023 CWE-434 1 PoC

TinyWebGallery v2.5 contains a remote code execution vulnerability in the admin upload functionality that allows unauthenticated attackers to upload malicious PHP files. Attackers can upload .phar files with embedded system commands to execute arbitrary code on the server by accessing the uploaded file's URL.

CVE-2023-32590
Subscribe to Category Database ⚡ nuclei
9.3
CRITICAL
EPSS
19.3%
2023 CWE-89 1 PoC

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Daniel Söderström / Sidney van de Stouwe Subscribe to Category.This issue affects Subscribe to Category: from n/a through 2.7.4.

CVE-2023-54335
eXtplorer Web
9.3
CRITICAL
EPSS
0.6%
2023 CWE-306 1 PoC

eXtplorer 2.1.14 contains an authentication bypass vulnerability that allows attackers to login without a password by manipulating the login request. Attackers can exploit this flaw to upload malicious PHP files and execute remote commands on the vulnerable file management system.

CVE-2023-1244
answerdev/answer Web
9.3
CRITICAL
EPSS
0.3%
2023 CWE-79 1 PoC

Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6.

CVE-2023-53955
Impact/Pulse/First General
9.3
CRITICAL
EPSS
0.7%
2023 CWE-639 2 PoCs

SOUND4 IMPACT/FIRST/PULSE/Eco v2.x contains an insecure direct object reference vulnerability that allows attackers to bypass authorization and access hidden system resources. Attackers can exploit the vulnerability by manipulating user-supplied input to execute privileged functionalities without proper authentication.