2785 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-1712
deepset-ai/haystack General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-547 1 PoC

Use of Hard-coded, Security-relevant Constants in GitHub repository deepset-ai/haystack prior to 0.1.30.

CVE-2023-5389
ControlEdge UOC General
9.1
CRITICAL
EPSS
0.1%
2023 CWE-749 2 PoCs

An attacker could potentially exploit this vulnerability, leading to the ability to modify files on Honeywell Experion ControlEdge VirtualUOC and ControlEdge UOC . This exploit could be used to write a file that may result in unexpected behavior based on configuration changes or updating of files that could result in subsequent execution of a malicious application if triggered. Honeywell recommends updating to the most recent version of the product. See Honeywell Security Notification for recommendations on upgrading and versioning. 

CVE-2023-35153
xwiki-platform Web
9.1
CRITICAL
EPSS
2.4%
2023 CWE-79 1 PoC

XWiki Platform is a generic wiki platform. Starting in version 5.4.4 and prior to versions 14.4.8, 14.10.4, and 15.0, a stored cross-site scripting vulnerability can be exploited by users with edit rights by adding a `AppWithinMinutes.FormFieldCategoryClass` class on a page and setting the payload on the page title. Then, any user visiting `/xwiki/bin/view/AppWithinMinutes/ClassEditSheet` executes the payload. The issue has been patched in XWiki 14.4.8, 14.10.4, and 15.0. As a workaround, update `AppWithinMinutes.ClassEditSheet` with a patch.

CVE-2023-36645
Software Genérico Database
9.1
CRITICAL
EPSS
0.2%
2023 1 PoC

SQL injection vulnerability in ITB-GmbH TradePro v9.5, allows remote attackers to run SQL queries via oordershow component in customer function.

CVE-2023-5754
PolyEco1000 General
9.1
CRITICAL
EPSS
0.1%
2023 CWE-307 1 PoC

Sielco PolyEco1000 uses a weak set of default administrative credentials that can be easily guessed in remote password attacks and gain full control of the system.

CVE-2023-45146
xxl-rpc General
9.1
CRITICAL
EPSS
3.6%
2023 CWE-502 1 PoC

XXL-RPC is a high performance, distributed RPC framework. With it, a TCP server can be set up using the Netty framework and the Hessian serialization mechanism. When such a configuration is used, attackers may be able to connect to the server and provide malicious serialized objects that, once deserialized, force it to execute arbitrary code. This can be abused to take control of the machine the server is running by way of remote code execution. This issue has not been fixed.

CVE-2023-2227
modoboa/modoboa General ⚡ nuclei
9.1
CRITICAL
EPSS
90.5%
2023 CWE-285 1 PoC

Improper Authorization in GitHub repository modoboa/modoboa prior to 2.1.0.

CVE-2023-47211
OpManager Web ⚡ nuclei
9.1
CRITICAL
EPSS
76.1%
2023 CWE-22 0 PoCs

A directory traversal vulnerability exists in the uploadMib functionality of ManageEngine OpManager 12.7.258. A specially crafted HTTP request can lead to arbitrary file creation. An attacker can send a malicious MiB file to trigger this vulnerability.

CVE-2023-28762
SAP BusinessObjects Intelligence Platform General
9.1
CRITICAL
EPSS
0.2%
2023 CWE-200 1 PoC

SAP BusinessObjects Business Intelligence Platform - versions 420, 430, allows an authenticated attacker with administrator privileges to get the login token of any logged-in BI user over the network without any user interaction. The attacker can impersonate any user on the platform resulting into accessing and modifying data. The attacker can also make the system partially or entirely unavailable.

CVE-2023-5832
mintplex-labs/anything-llm General
9.1
CRITICAL
EPSS
0.1%
2023 CWE-20 1 PoC

Improper Input Validation in GitHub repository mintplex-labs/anything-llm prior to 0.1.0.

CVE-2023-0877
froxlor/froxlor General
9.1
CRITICAL
EPSS
0.5%
2023 CWE-94 1 PoC

Code Injection in GitHub repository froxlor/froxlor prior to 2.0.11.

CVE-2023-45685
Titan MFT Windows
9.1
CRITICAL
EPSS
0.4%
2023 CWE-22 1 PoC

Insufficient path validation when extracting a zip archive in South River Technologies' Titan MFT and Titan SFTP servers on Windows and Linux allows an authenticated attacker to write a file to any location on the filesystem via path traversal

CVE-2023-49583
@sap/xssec Web
9.1
CRITICAL
EPSS
0.4%
2023 CWE-749 1 PoC

SAP BTP Security Services Integration Library ([Node.js] @sap/xssec - versions < 3.6.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attacker can obtain arbitrary permissions within the application.

CVE-2023-47873
WP Child Theme Generator General ⚡ nuclei
9.1
CRITICAL
EPSS
13.0%
2023 CWE-434 0 PoCs

Unrestricted Upload of File with Dangerous Type vulnerability in WEN Solutions WP Child Theme Generator.This issue affects WP Child Theme Generator: from n/a through 1.0.9.

CVE-2023-29519
xwiki-platform General
9.1
CRITICAL
EPSS
4.7%
2023 CWE-74 1 PoC

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. A registered user can perform remote code execution leading to privilege escalation by injecting the proper code in the "property" field of an attachment selector, as a gadget of their own dashboard. Note that the vulnerability does not impact comments of a wiki. The vulnerability has been patched in XWiki 13.10.11, 14.4.8, 14.10.2, 15.0-rc-1. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVE-2023-40275
Software Genérico General
9.1
CRITICAL
EPSS
0.6%
2023 2 PoCs

An issue was discovered in OpenClinic GA 5.247.01. It allows retrieval of patient lists via queries such as findFirstname= to _common/search/searchByAjax/patientslistShow.jsp.

CVE-2023-41807
Pandora FMS General
9.1
CRITICAL
EPSS
0.0%
2023 CWE-269 1 PoC

Improper Privilege Management vulnerability in Pandora FMS on all allows Privilege Escalation. This vulnerability allows a user to escalate permissions on the system shell. This issue affects Pandora FMS: from 700 through 773.

CVE-2023-28725
Software Genérico General
9.1
CRITICAL
EPSS
2.2%
2023 3 PoCs

General Bytes Crypto Application Server (CAS) 20230120, as distributed with General Bytes BATM devices, allows remote attackers to execute arbitrary Java code by uploading a Java application to the /batm/app/admin/standalone/deployments directory, aka BATM-4780, as exploited in the wild in March 2023. This is fixed in 20221118.48 and 20230120.44.

CVE-2023-50422
cloud-security-services-integration-library Cloud
9.1
CRITICAL
EPSS
0.5%
2023 CWE-749 2 PoCs

SAP BTP Security Services Integration Library ([Java] cloud-security-services-integration-library) - versions below 2.17.0 and versions from 3.0.0 to before 3.3.0, allow under certain conditions an escalation of privileges. On successful exploitation, an unauthenticated attacker can obtain arbitrary permissions within the application.

CVE-2023-5841
OpenEXR General
9.1
CRITICAL
EPSS
0.8%
2023 CWE-122 1 PoC

Due to a failure in validating the number of scanline samples of a OpenEXR file containing deep scanline data, Academy Software Foundation OpenEX image parsing library version 3.2.1 and prior is susceptible to a heap-based buffer overflow vulnerability. This issue was resolved as of versions v3.2.2 and v3.1.12 of the affected library.