33293 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-56058
VRPConnector General
9.8
CRITICAL
EPSS
43.8%
2024 CWE-502 1 PoC

Deserialization of Untrusted Data vulnerability in denniskravetstns VRPConnector vrpconnector allows Object Injection.This issue affects VRPConnector: from n/a through <= 2.0.1.

CVE-2024-29375
Software Genérico General
9.8
CRITICAL
EPSS
11.7%
2024 2 PoCs

CSV Injection vulnerability in Addactis IBNRS v.3.10.3.107 allows a remote attacker to execute arbitrary code via a crafted .ibnrs file to the Project Description, Identifiers, Custom Triangle Name (inside Input Triangles) and Yield Curve Name parameters.

CVE-2024-51139
Software Genérico Web
9.8
CRITICAL
EPSS
5.5%
2024 1 PoC

Buffer Overflow vulnerability in Vigor2620/LTE200 3.9.8.9 and earlier and Vigor2860/2925 3.9.8 and earlier and Vigor2862/2926 3.9.9.5 and earlier and Vigor2133/2762/2832 3.9.9 and earlier and Vigor165/166 4.2.7 and earlier and Vigor2135/2765/2766 4.4.5.1 and earlier and Vigor2865/2866/2927 4.4.5.3 and earlier and Vigor2962/3910 4.3.2.8/4.4.3.1 and earlier and Vigor3912 4.3.6.1 and earlier allows a remote attacker to execute arbitrary code via the CGI parser's handling of the "Content-Length" header of HTTP POST requests.

CVE-2024-48453
Software Genérico General
9.8
CRITICAL
EPSS
4.0%
2024 1 PoC

An issue in INOVANCE AM401_CPU1608TPTN allows a remote attacker to execute arbitrary code via the ExecuteUserProgramUpgrade function

CVE-2024-41611
Software Genérico General
9.8
CRITICAL
EPSS
0.5%
2024 1 PoC

In D-Link DIR-860L REVA FIRMWARE PATCH 1.10..B04, the Telnet service contains hardcoded credentials, enabling attackers to log in remotely to the Telnet service and perform arbitrary commands.

CVE-2024-32735
CyberPower PowerPanel Enterprise Web ⚡ nuclei
9.8
CRITICAL
EPSS
72.7%
2024 1 PoC

An issue regarding missing authentication for certain utilities exists in CyberPower PowerPanel Enterprise prior to v2.8.3. An unauthenticated remote attacker can access the PDNU REST APIs, which may result in compromise of the application.

CVE-2024-34257
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
89.6%
2024 0 PoCs

TOTOLINK EX1800T V9.1.0cu.2112_B20220316 has a vulnerability in the apcliEncrypType parameter that allows unauthorized execution of arbitrary commands, allowing an attacker to obtain device administrator privileges.

CVE-2024-34331
Software Genérico General
9.8
CRITICAL
EPSS
0.5%
2024 1 PoC

A lack of code signature verification in Parallels Desktop for Mac v19.3.0 and below allows attackers to escalate privileges via a crafted macOS installer, because Parallels Service is setuid root.

CVE-2024-57768
Software Genérico Database
9.8
CRITICAL
EPSS
0.2%
2024 1 PoC

JFinalOA before v2025.01.01 was discovered to contain a SQL injection vulnerability via the component validRoleKey?sysRole.key.

CVE-2024-27747
Software Genérico Web
9.8
CRITICAL
EPSS
17.0%
2024 1 PoC

File Upload vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the email Image parameter in the profile.php component.

CVE-2024-1207
Booking Calendar Web Database Windows
9.8
CRITICAL
EPSS
78.7%
2024 CWE-89 1 PoC

The WP Booking Calendar plugin for WordPress is vulnerable to SQL Injection via the 'calendar_request_params[dates_ddmmyy_csv]' parameter in all versions up to, and including, 9.9 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-31819
Software Genérico Web
9.8
CRITICAL
EPSS
83.1%
2024 4 PoCs

An issue in WWBN AVideo v.12.4 through v.14.2 allows a remote attacker to execute arbitrary code via the systemRootPath parameter of the submitIndex.php component.

CVE-2024-10586
Debug Tool Web Windows
9.8
CRITICAL
EPSS
58.9%
2024 CWE-862 2 PoCs

The Debug Tool plugin for WordPress is vulnerable to arbitrary file creation due to a missing capability check on the dbt_pull_image() function and missing file type validation in all versions up to, and including, 2.2. This makes it possible for unauthenticated attackers to to create arbitrary files such as .php files that can be leveraged for remote code execution. CVE-2024-52416 may be a duplicate of this issue.

CVE-2024-4443
Business Directory Plugin – Easy Listing Directories for WordPress Web Database Windows ⚡ nuclei
9.8
CRITICAL
EPSS
93.9%
2024 CWE-89 1 PoC

The Business Directory Plugin – Easy Listing Directories for WordPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘listingfields’ parameter in all versions up to, and including, 6.4.2 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-25897
Software Genérico Web Database
9.8
CRITICAL
EPSS
12.3%
2024 1 PoC

ChurchCRM 5.5.0 FRCatalog.php is vulnerable to Blind SQL Injection (Time-based) via the CurrentFundraiser GET parameter.

CVE-2024-25254
Software Genérico General
9.8
CRITICAL
EPSS
0.2%
2024 1 PoC

SuperScan v4.1 was discovered to contain a buffer overflow via the Hostname/IP parameter.

CVE-2024-6127
Empire Web
9.8
CRITICAL
EPSS
66.1%
2024 CWE-22 2 PoCs

BC Security Empire before 5.9.3 is vulnerable to a path traversal issue that can lead to remote code execution. A remote, unauthenticated attacker can exploit this vulnerability over HTTP by acting as a normal agent, completing all cryptographic handshakes, and then triggering an upload of payload data containing a malicious path.

CVE-2024-28213
nGrinder General
9.8
CRITICAL
EPSS
8.1%
2024 CWE-502 1 PoC

nGrinder before 3.5.9 allows to accept serialized Java objects from unauthenticated users, which could allow remote attacker to execute arbitrary code via unsafe Java objects deserialization.

CVE-2024-33775
Software Genérico General
9.8
CRITICAL
EPSS
3.4%
2024 1 PoC

An issue with the Autodiscover component in Nagios XI 2024R1.01 allows a remote attacker to escalate privileges via a crafted Dashlet.

CVE-2024-37393
Software Genérico Web Windows ⚡ nuclei
9.8
CRITICAL
EPSS
84.7%
2024 3 PoCs

Multiple LDAP injections vulnerabilities exist in SecurEnvoy MFA before 9.4.514 due to improper validation of user-supplied input. An unauthenticated remote attacker could exfiltrate data from Active Directory through blind LDAP injection attacks against the DESKTOP service exposed on the /secserver HTTP endpoint. This may include ms-Mcs-AdmPwd, which has a cleartext password for the Local Administrator Password Solution (LAPS) feature.