3165 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-23740
Software Genérico General
9.8
CRITICAL
EPSS
23.2%
2024 2 PoCs

An issue in Kap for macOS version 3.6.0 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.

CVE-2024-28515
Software Genérico General
9.8
CRITICAL
EPSS
16.2%
2024 1 PoC

Buffer Overflow vulnerability in CSAPP_Lab CSAPP Lab3 15-213 Fall 20xx allows a remote attacker to execute arbitrary code via the lab3 of csapp,lab3/buflab-update.pl component.

CVE-2024-12877
GiveWP – Donation Plugin and Fundraising Platform Web Windows
9.8
CRITICAL
EPSS
27.5%
2024 CWE-502 2 PoCs

The GiveWP – Donation Plugin and Fundraising Platform plugin for WordPress is vulnerable to PHP Object Injection in all versions up to, and including, 3.19.2 via deserialization of untrusted input from the donation form like 'firstName'. This makes it possible for unauthenticated attackers to inject a PHP Object. The additional presence of a POP chain allows attackers to delete arbitrary files on the server that makes remote code execution possible. Please note this was only partially patched in 3.19.3, a fully sufficient patch was not released until 3.19.4. However, another CVE was assigned b

CVE-2024-21334
System Center Operations Manager (SCOM) 2019 General
9.8
CRITICAL
EPSS
6.9%
2024 CWE-416 1 PoC

Open Management Infrastructure (OMI) Remote Code Execution Vulnerability

CVE-2024-27764
Software Genérico General
9.8
CRITICAL
EPSS
1.1%
2024 1 PoC

An issue in Jeewms v.3.7 and before allows a remote attacker to escalate privileges via the AuthInterceptor component.

CVE-2024-39844
Software Genérico General
9.8
CRITICAL
EPSS
37.1%
2024 1 PoC

In ZNC before 1.9.1, remote code execution can occur in modtcl via a KICK.

CVE-2024-10589
Leopard - WordPress Offload Media Web Windows
9.8
CRITICAL
EPSS
0.4%
2024 CWE-862 1 PoC

The Leopard - WordPress Offload Media plugin for WordPress is vulnerable to unauthorized modification of data that can lead to privilege escalation due to a missing capability check on the import_settings() function in all versions up to, and including, 3.1.1. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update arbitrary options on the WordPress site. This can be leveraged to update the default role for registration to administrator and enable user registration for attackers to gain administrative user access to a vulnerable site.

CVE-2024-50649
Software Genérico General
9.8
CRITICAL
EPSS
1.4%
2024 1 PoC

The user avatar upload function in python_book V1.0 has an arbitrary file upload vulnerability.

CVE-2024-53499
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.1%
2024 1 PoC

Jeewms v3.7 was discovered to contain a SQL injection vulnerability via the CgReportController API.

CVE-2024-11704
Firefox General
9.8
CRITICAL
EPSS
0.3%
2024 1 PoC

A double-free issue could have occurred in `sec_pkcs7_decoder_start_decrypt()` when handling an error path. Under specific conditions, the same symmetric key could have been freed twice, potentially leading to memory corruption. This vulnerability affects Firefox < 133, Thunderbird < 133, Firefox ESR < 128.7, and Thunderbird < 128.7.

CVE-2024-41195
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2024 1 PoC

An issue in Ocuco Innovation - INNOVASERVICEINTF.EXE v2.10.24.17 allows attackers to bypass authentication and escalate privileges to Administrator via a crafted TCP packet.

CVE-2024-9707
Hunk Companion Web Windows ⚡ nuclei
9.8
CRITICAL
EPSS
90.3%
2024 CWE-862 2 PoCs

The Hunk Companion plugin for WordPress is vulnerable to unauthorized plugin installation/activation due to a missing capability check on the /wp-json/hc/v1/themehunk-import REST API endpoint in all versions up to, and including, 1.8.4. This makes it possible for unauthenticated attackers to install and activate arbitrary plugins which can be leveraged to achieve remote code execution if another vulnerable plugin is installed and activated.

CVE-2024-4295
Email Subscribers & Newsletters – Email Marketing, Post Notifications & Newsletter Plugin for WordPress Web Database Windows ⚡ nuclei
9.8
CRITICAL
EPSS
92.9%
2024 CWE-89 3 PoCs

The Email Subscribers by Icegram Express plugin for WordPress is vulnerable to SQL Injection via the ‘hash’ parameter in all versions up to, and including, 5.7.20 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-25291
Software Genérico General
9.8
CRITICAL
EPSS
15.8%
2024 2 PoCs

Deskfiler v1.2.3 allows attackers to execute arbitrary code via uploading a crafted plugin.

CVE-2024-5765
WpStickyBar Web Database Windows ⚡ nuclei
9.8
CRITICAL
EPSS
78.2%
2024 1 PoC

The WpStickyBar WordPress plugin through 2.1.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection

CVE-2024-6265
UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WP Web Database Windows ⚡ nuclei
9.8
CRITICAL
EPSS
32.9%
2024 CWE-89 0 PoCs

The UsersWP – Front-end login form, User Registration, User Profile & Members Directory plugin for WordPress plugin for WordPress is vulnerable to time-based SQL Injection via the ‘uwp_sort_by’ parameter in all versions up to, and including, 1.2.10 due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query. This makes it possible for unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.

CVE-2024-54852
Software Genérico Windows
9.8
CRITICAL
EPSS
0.1%
2024 1 PoC

When LDAP connection is activated in Teedy versions between 1.9 to 1.12, the username field of the login form is vulnerable to LDAP injection. Due to improper sanitization of user input, an unauthenticated attacker is then able to perform various malicious actions, such as creating arbitrary accounts and spraying passwords.

CVE-2024-44808
Software Genérico Web
9.8
CRITICAL
EPSS
3.4%
2024 1 PoC

An issue in Vypor Attack API System v.1.0 allows a remote attacker to execute arbitrary code via the user GET parameter.

CVE-2024-37079
🔥 KEV VMware vCenter Server General
9.8
CRITICAL
EPSS
82.0%
2024 1 PoC

vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a specially crafted network packet potentially leading to remote code execution.

CVE-2024-23897
🔥 KEV Jenkins DevOps
9.8
CRITICAL
EPSS
94.5%
2024 55 PoCs

Jenkins 2.441 and earlier, LTS 2.426.2 and earlier does not disable a feature of its CLI command parser that replaces an '@' character followed by a file path in an argument with the file's contents, allowing unauthenticated attackers to read arbitrary files on the Jenkins controller file system.