17307 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2023-49606
Tinyproxy Web
9.8
CRITICAL
EPSS
74.2%
2023 CWE-416 3 PoCs

A use-after-free vulnerability exists in the HTTP Connection Headers parsing in Tinyproxy 1.11.1 and Tinyproxy 1.10.0. A specially crafted HTTP header can trigger reuse of previously freed memory, which leads to memory corruption and could lead to remote code execution. An attacker needs to make an unauthenticated HTTP request to trigger this vulnerability.

CVE-2023-6623
Essential Blocks Web Windows ⚡ nuclei
9.8
CRITICAL
EPSS
88.1%
2023 2 PoCs

The Essential Blocks WordPress plugin before 4.4.3 does not prevent unauthenticated attackers from overwriting local variables when rendering templates over the REST API, which may lead to Local File Inclusion attacks.

CVE-2023-49109
Apache DolphinScheduler Web
9.8
CRITICAL
EPSS
7.1%
2023 CWE-94 1 PoC

Exposure of Remote Code Execution in Apache Dolphinscheduler. This issue affects Apache DolphinScheduler: before 3.2.1. We recommend users to upgrade Apache DolphinScheduler to version 3.2.1, which fixes the issue.

CVE-2023-29631
Software Genérico Web
9.8
CRITICAL
EPSS
0.1%
2023 1 PoC

PrestaShop jmsslider 1.6.0 is vulnerable to Incorrect Access Control via ajax_jmsslider.php.

CVE-2023-27638
Software Genérico Web Database ⚡ nuclei
9.8
CRITICAL
EPSS
39.0%
2023 1 PoC

An issue was discovered in the tshirtecommerce (aka Custom Product Designer) component 2.1.4 for PrestaShop. An HTTP request can be forged with a compromised tshirtecommerce_design_cart_id GET parameter in order to exploit an insecure parameter in the functions hookActionCartSave and updateCustomizationTable, which could lead to a SQL injection. This is exploited in the wild in March 2023.

CVE-2023-28489
CP-8031 MASTER MODULE General
9.8
CRITICAL
EPSS
2.7%
2023 CWE-77 2 PoCs

A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05). Affected devices are vulnerable to command injection via the web server port 443/tcp, if the parameter “Remote Operation” is enabled. The parameter is disabled by default. The vulnerability could allow an unauthenticated remote attacker to perform arbitrary code execution on the device.

CVE-2023-34747
Software Genérico Web
9.8
CRITICAL
EPSS
29.0%
2023 1 PoC

File upload vulnerability in ujcms 6.0.2 via /api/backend/core/web-file-upload/upload.

CVE-2023-47246
🔥 KEV Software Genérico Web ⚡ nuclei
9.8
CRITICAL
EPSS
94.4%
2023 3 PoCs

In SysAid On-Premise before 23.3.36, a path traversal vulnerability leads to code execution after an attacker writes a file to the Tomcat webroot, as exploited in the wild in November 2023.

CVE-2023-2734
MStore API – Create Native Android & iOS Apps On The Cloud Web Cloud Windows ⚡ nuclei
9.8
CRITICAL
EPSS
63.1%
2023 CWE-288 0 PoCs

The MStore API plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 3.9.1. This is due to insufficient verification on the user being supplied during the cart sync from mobile REST API request through the plugin. This makes it possible for unauthenticated attackers to log in as any existing user on the site, such as an administrator, if they have access to the user id.

CVE-2023-27667
Software Genérico Database
9.8
CRITICAL
EPSS
0.3%
2023 1 PoC

Auto Dealer Management System v1.0 was discovered to contain a SQL injection vulnerability.

CVE-2023-39453
ImageGear General
9.8
CRITICAL
EPSS
0.4%
2023 CWE-416 1 PoC

A use-after-free vulnerability exists in the tif_parse_sub_IFD functionality of Accusoft ImageGear 20.1. A specially crafted malformed file can lead to arbitrary code execution. An attacker can deliver this file to trigger this vulnerability.

CVE-2023-50030
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.1%
2023 1 PoC

In the module "Jms Setting" (jmssetting) from Joommasters for PrestaShop, a guest can perform SQL injection in versions <= 1.1.0. The method `JmsSetting::getSecondImgs()` has a sensitive SQL call that can be executed with a trivial http call and exploited to forge a blind SQL injection.

CVE-2023-31902
Software Genérico General
9.8
CRITICAL
EPSS
64.2%
2023 2 PoCs

RPA Technology Mobile Mouse 3.6.0.4 is vulnerable to Remote Code Execution (RCE).

CVE-2023-49547
Software Genérico Web Database
9.8
CRITICAL
EPSS
7.6%
2023 2 PoCs

Customer Support System v1 was discovered to contain a SQL injection vulnerability via the username parameter at /customer_support/ajax.php?action=login.

CVE-2023-43208
🔥 KEV Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
94.4%
2023 6 PoCs

NextGen Healthcare Mirth Connect before version 4.4.1 is vulnerable to unauthenticated remote code execution. Note that this vulnerability is caused by the incomplete patch of CVE-2023-37679.

CVE-2023-30967
com.palantir.meta:orbital-simulator General
9.8
CRITICAL
EPSS
0.5%
2023 CWE-22 1 PoC

Gotham Orbital-Simulator service prior to 0.692.0 was found to be vulnerable to a Path traversal issue allowing an unauthenticated user to read arbitrary files on the file system.

CVE-2023-51966
Software Genérico General
9.8
CRITICAL
EPSS
0.2%
2023 1 PoC

Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo.

CVE-2023-6989
Shield: Blocks Bots, Protects Users, and Prevents Security Breaches Web Windows ⚡ nuclei
9.8
CRITICAL
EPSS
65.8%
2023 CWE-98 0 PoCs

The Shield Security – Smart Bot Blocking & Intrusion Prevention Security plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 18.5.9 via the render_action_template parameter. This makes it possible for unauthenticated attacker to include and execute PHP files on the server, allowing the execution of any PHP code in those files.

CVE-2023-23415
Windows 10 Version 1809 Windows
9.8
CRITICAL
EPSS
3.9%
2023 CWE-122 1 PoC

Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability

CVE-2023-27570
Software Genérico Database
9.8
CRITICAL
EPSS
0.2%
2023 1 PoC

The eo_tags package before 1.4.19 for PrestaShop allows SQL injection via a crafted _ga cookie.