5682 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-23490
Survey Maker WordPress Plugin Web Database Windows
8.8
HIGH
EPSS
1.4%
2023 1 PoC

The Survey Maker WordPress Plugin, version < 3.1.2, is affected by an authenticated SQL injection vulnerability in the 'surveys_ids' parameter of its 'ays_surveys_export_json' action.

CVE-2023-25434
Software Genérico General
8.8
HIGH
EPSS
0.2%
2023 1 PoC

libtiff 4.5.0 is vulnerable to Buffer Overflow via extractContigSamplesBytes() at /libtiff/tools/tiffcrop.c:3215.

CVE-2023-23583
Intel(R) Processors General
8.8
HIGH
EPSS
0.3%
2023 1 PoC

Sequence of processor instructions leads to unexpected behavior for some Intel(R) Processors may allow an authenticated user to potentially enable escalation of privilege and/or information disclosure and/or denial of service via local access.

CVE-2023-40195
Apache Airflow Spark Provider Web
8.8
HIGH
EPSS
2.1%
2023 CWE-502 1 PoC

Deserialization of Untrusted Data, Inclusion of Functionality from Untrusted Control Sphere vulnerability in Apache Software Foundation Apache Airflow Spark Provider. When the Apache Spark provider is installed on an Airflow deployment, an Airflow user that is authorized to configure Spark hooks can effectively run arbitrary code on the Airflow node by pointing it at a malicious Spark server. Prior to version 4.1.3, this was not called out in the documentation explicitly, so it is possible that administrators provided authorizations to configure Spark hooks without taking this into account. W

CVE-2023-37221
BOT Web
8.8
HIGH
EPSS
0.1%
2023 CWE-79 1 PoC

7Twenty BOT - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting').

CVE-2023-24507
NX General
8.8
HIGH
EPSS
0.4%
2023 1 PoC

AgilePoint NX v8.0 SU2.2 & SU2.3 – Insecure File Upload - Vulnerability allows insecure file upload, by an unspecified request.

CVE-2023-35808
Software Genérico Web
8.8
HIGH
EPSS
0.4%
2023 2 PoCs

An issue was discovered in SugarCRM Enterprise before 11.0.6 and 12.x before 12.0.3. An Unrestricted File Upload vulnerability has been identified in the Notes module. By using crafted requests, custom PHP code can be injected and executed through the Notes module because of missing input validation. Regular user privileges can be used to exploit this vulnerability. Editions other than Enterprise are also affected.

CVE-2023-23388
Windows 10 Version 1809 Windows
8.8
HIGH
EPSS
17.7%
2023 CWE-681 1 PoC

Windows Bluetooth Driver Elevation of Privilege Vulnerability

CVE-2023-29048
OX App Suite General
8.8
HIGH
EPSS
0.4%
2023 CWE-78 1 PoC

A component for parsing OXMF templates could be abused to execute arbitrary system commands that would be executed as the non-privileged runtime user. Users and attackers could run system commands with limited privilege to gain unauthorized access to confidential information and potentially violate integrity by modifying resources. The template engine has been reconfigured to deny execution of harmful commands on a system level. No publicly available exploits are known.

CVE-2023-46536
Software Genérico General
8.8
HIGH
EPSS
0.3%
2023 1 PoC

TP-LINK TL-WR886N V7.0_3.0.14_Build_221115_Rel.56908n.bin was discovered to contain a stack overflow via the function chkRegVeriRegister.

CVE-2023-29842
Software Genérico Web Database
8.8
HIGH
EPSS
0.1%
2023 3 PoCs

ChurchCRM 4.5.4 endpoint /EditEventTypes.php is vulnerable to Blind SQL Injection (Time-based) via the EN_tyid POST parameter.

CVE-2023-2724
Chrome General
8.8
HIGH
EPSS
15.2%
2023 1 PoC

Type confusion in V8 in Google Chrome prior to 113.0.5672.126 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

CVE-2023-50094
Software Genérico Web ⚡ nuclei
8.8
HIGH
EPSS
88.6%
2023 2 PoCs

reNgine before 2.1.2 allows OS Command Injection if an adversary has a valid session ID. The attack places shell metacharacters in an api/tools/waf_detector/?url= string. The commands are executed as root via subprocess.check_output.

CVE-2023-3547
All in One B2B for WooCommerce Web Windows
8.8
HIGH
EPSS
0.2%
2023 1 PoC

The All in One B2B for WooCommerce WordPress plugin through 1.0.3 does not properly check nonce values in several actions, allowing an attacker to perform CSRF attacks.

CVE-2023-2921
Short URL Web Database Windows
8.8
HIGH
EPSS
0.3%
2023 1 PoC

The Short URL WordPress plugin through 1.6.8 does not properly sanitise and escape a parameter before using it in SQL statement, leading to a SQL injection exploitable by users with relatively low privilege on the site, like subscribers.

CVE-2023-39928
Webkit Web
8.8
HIGH
EPSS
0.2%
2023 CWE-416 1 PoC

A use-after-free vulnerability exists in the MediaRecorder API of Webkit WebKitGTK 2.40.5. A specially crafted web page can abuse this vulnerability to cause memory corruption and potentially arbitrary code execution. A user would need to to visit a malicious webpage to trigger this vulnerability.

CVE-2023-4033
mlflow/mlflow General
8.8
HIGH
EPSS
0.2%
2023 CWE-78 1 PoC

OS Command Injection in GitHub repository mlflow/mlflow prior to 2.6.0.

CVE-2023-39371
Softswitch General
8.8
HIGH
EPSS
0.1%
2023 CWE-601 1 PoC

StarTrinity Softswitch version 2023-02-16 - Open Redirect (CWE-601)

CVE-2023-30350
Software Genérico Cloud
8.8
HIGH
EPSS
3.3%
2023 1 PoC

FS S3900-24T4S devices allow authenticated attackers with guest access to escalate their privileges and reset the admin password.

CVE-2023-51034
Software Genérico General
8.8
HIGH
EPSS
0.3%
2023 1 PoC

TOTOlink EX1200L V9.3.5u.6146_B20201023 is vulnerable to arbitrary command execution via the cstecgi.cgi UploadFirmwareFile interface.