33293 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2020-13567
OpenEMR Web Database
8.8
HIGH
EPSS
0.1%
2020 CWE-89 1 PoC

Multiple SQL injection vulnerabilities exist in phpGACL 3.3.7. A specially crafted HTTP request can lead to a SQL injection. An attacker can send an HTTP request to trigger this vulnerability.

CVE-2020-28599
Openscad General
8.8
HIGH
EPSS
1.4%
2020 CWE-121 2 PoCs

A stack-based buffer overflow vulnerability exists in the import_stl.cc:import_stl() functionality of Openscad openscad-2020.12-RC2. A specially crafted STL file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

CVE-2020-27347
tmux General
8.8
HIGH
EPSS
0.3%
2020 CWE-121 1 PoC

In tmux before version 3.1c the function input_csi_dispatch_sgr_colon() in file input.c contained a stack-based buffer-overflow that can be exploited by terminal output.

CVE-2020-7266
McAfee VirusScan Enterprise (VSE) for Windows Windows
8.8
HIGH
EPSS
0.0%
2020 CWE-274 1 PoC

Privilege Escalation vulnerability in McAfee VirusScan Enterprise (VSE) for Windows prior to 8.8 Patch 14 Hotfix 116778 allows local users to delete files the user would otherwise not have access to via manipulating symbolic links to redirect a McAfee delete action to an unintended file. This is achieved through running a malicious script or program on the target machine.

CVE-2020-36945
WebDamn User Registration & Login System with User Panel Database
8.8
HIGH
EPSS
0.4%
2020 CWE-89 1 PoC

WebDamn User Registration Login System contains a SQL injection vulnerability that allows unauthenticated attackers to bypass login authentication by manipulating email credentials. Attackers can inject the payload '<email>' OR '1'='1' in both username and password fields to gain unauthorized access to the user panel.

CVE-2020-13581
SoftMaker General
8.8
HIGH
EPSS
0.3%
2020 CWE-122 1 PoC

In SoftMaker Software GmbH SoftMaker Office PlanMaker 2021 (Revision 1014), a specially crafted document can cause the document parser to copy data from a particular record type into a buffer that is smaller than the size used for the copy which will cause a heap-based buffer overflow. An attacker can entice the victim to open a document to trigger this vulnerability.

CVE-2020-11925
Software Genérico General
8.8
HIGH
EPSS
0.3%
2020 1 PoC

An issue was discovered in Luvion Grand Elite 3 Connect through 2020-02-25. Authentication to the device is based on a username and password. The root credentials are the same across all devices of this model.

CVE-2020-35789
Software Genérico Cloud
8.8
HIGH
EPSS
0.8%
2020 1 PoC

NETGEAR NMS300 devices before 1.6.0.27 are affected by command injection by an authenticated user.

CVE-2020-36898
QiHang Media Web Digital Signage General
8.8
HIGH
EPSS
15.0%
2020 CWE-22 2 PoCs

QiHang Media Web Digital Signage 3.0.9 contains an unauthenticated file deletion vulnerability in the QH.aspx endpoint that allows remote attackers to delete files without authentication. Attackers can exploit the 'data' parameter by sending a POST request with file paths to delete arbitrary files with web server permissions using directory traversal sequences.

CVE-2020-7752
systeminformation Web
8.8
HIGH
EPSS
3.1%
2020 2 PoCs

This affects the package systeminformation before 4.27.11. This package is vulnerable to Command Injection. The attacker can concatenate curl's parameters to overwrite Javascript files and then execute any OS commands.

CVE-2020-13493
Pixar General
8.8
HIGH
EPSS
0.3%
2020 CWE-122 2 PoCs

A heap overflow vulnerability exists in Pixar OpenUSD 20.05 when the software parses compressed sections in binary USD files. A specially crafted USDC file format path jumps decompression heap overflow in a way path jumps are processed. To trigger this vulnerability, the victim needs to open an attacker-provided malformed file.

CVE-2020-37163
QuickDate Database
8.8
HIGH
EPSS
0.0%
2020 CWE-89 1 PoC

QuickDate 1.3.2 contains a SQL injection vulnerability that allows remote attackers to manipulate database queries through the '_located' parameter in the find_matches endpoint. Attackers can inject UNION-based SQL statements to extract database information including user credentials, database name, and system version.

CVE-2016-15005
github.com/dinever/golf Web
8.8
HIGH
EPSS
0.2%
2016 1 PoC

CSRF tokens are generated using math/rand, which is not a cryptographically secure random number generator, allowing an attacker to predict values and bypass CSRF protections with relatively few requests.

CVE-2016-8730
Corel PHOTO-PAINT General
8.8
HIGH
EPSS
0.2%
2016 1 PoC

An of bound write / memory corruption vulnerability exists in the GIF parsing functionality of Core PHOTO-PAINT X8 18.1.0.661. A specially crafted GIF file can cause a vulnerability resulting in potential memory corruption resulting in code execution. An attacker can send the victim a specific GIF file to trigger this vulnerability.

CVE-2016-4657
🔥 KEV Software Genérico General
8.8
HIGH
EPSS
79.4%
2016 4 PoCs

WebKit in Apple iOS before 9.3.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site.

CVE-2016-7201
🔥 KEV Software Genérico Web
8.8
HIGH
EPSS
89.8%
2016 3 PoCs

The Chakra JavaScript scripting engine in Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-7200, CVE-2016-7202, CVE-2016-7203, CVE-2016-7208, CVE-2016-7240, CVE-2016-7242, and CVE-2016-7243.

CVE-2016-9045
ProcessMaker Enterprise Web
8.8
HIGH
EPSS
0.6%
2016 1 PoC

A code execution vulnerability exists in ProcessMaker Enterprise Core 3.0.1.7-community. A specially crafted web request can cause unsafe deserialization potentially resulting in PHP code being executed. An attacker can send a crafted web parameter to trigger this vulnerability.

CVE-2016-9044
WebFOCUS General
8.8
HIGH
EPSS
3.3%
2016 1 PoC

An exploitable command execution vulnerability exists in Information Builders WebFOCUS Business Intelligence Portal 8.1 . A specially crafted web parameter can cause a command injection. An authenticated attacker can send a crafted web request to trigger this vulnerability.

CVE-2016-8386
Argus General
8.8
HIGH
EPSS
0.3%
2016 1 PoC

An exploitable heap-based buffer overflow exists in Iceni Argus. When it attempts to convert a PDF containing a malformed font to XML, the tool will attempt to use a size out of the font to search through a linked list of buffers to return. Due to a signedness issue, a buffer smaller than the requested size will be returned. Later when the tool tries to populate this buffer, the overflow will occur which can lead to code execution under the context of the user running the tool.