3165 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2024-7939
3DSwymer Web
8.7
HIGH
EPSS
0.9%
2024 CWE-79 1 PoC

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

CVE-2024-58275
Easywall General
8.7
HIGH
EPSS
0.4%
2024 CWE-88 1 PoC

Easywall 0.3.1 allows authenticated remote command execution via a command injection vulnerability in the /ports-save endpoint that suffers from a parameter injection flaw. Attackers can inject shell metacharacters to execute arbitrary commands on the server.

CVE-2024-12089
ENOVIA Collaborative Industry Innovator Web
8.7
HIGH
EPSS
0.8%
2024 CWE-79 1 PoC

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

CVE-2024-43684
TimeProvider 4100 Web
8.7
HIGH
EPSS
0.2%
2024 CWE-352 1 PoC

Cross-Site Request Forgery (CSRF) vulnerability in Microchip TimeProvider 4100 allows Cross Site Request Forgery, Cross-Site Scripting (XSS).This issue affects TimeProvider 4100: from 1.0.

CVE-2024-58287
reNgine General
8.7
HIGH
EPSS
0.9%
2024 CWE-78 1 PoC

reNgine 2.2.0 contains a command injection vulnerability in the nmap_cmd parameter of scan engine configuration that allows authenticated attackers to execute arbitrary commands. Attackers can modify the nmap_cmd parameter with malicious base64-encoded payloads to achieve remote code execution during scan engine configuration.

CVE-2024-11303
JetPort 5601 General ⚡ nuclei
8.7
HIGH
EPSS
14.9%
2024 CWE-22 1 PoC

The pathname of the root directory to a Restricted Directory ('Path Traversal') vulnerability in Korenix JetPort 5601 allows Path Traversal.This issue affects JetPort 5601: through 1.2.

CVE-2024-58300
MultiHaul TG series Networking
8.7
HIGH
EPSS
0.3%
2024 CWE-306 1 PoC

Siklu MultiHaul TG series devices before version 2.0.0 contain an unauthenticated vulnerability that allows remote attackers to retrieve randomly generated credentials via a network request. Attackers can send a specific hex-encoded command to port 12777 to obtain username and password, enabling direct SSH access to the device.

CVE-2024-10344
Helix Core General
8.7
HIGH
EPSS
0.9%
2024 CWE-400 1 PoC

In Helix Core versions prior to 2024.2, an unauthenticated remote Denial of Service (DoS) via the refuse function was identified. Reported by Karol Więsek.

CVE-2024-54449
LogicalDOC Community Web
8.7
HIGH
EPSS
0.2%
2024 CWE-23 1 PoC

The API used to interact with documents in the application contains two endpoints with a flaw that allows an authenticated attacker to write a file with controlled contents to an arbitrary location on the underlying file system. This can be used to facilitate RCE. An account with ‘read’ and ‘write’ privileges on at least one existing document in the application is required to exploit the vulnerability. Exploitation of this vulnerability would allow an attacker to run commands of their choosing on the underlying operating system of the web server running LogicalDOC.

CVE-2024-11664
eNMS Networking
8.7
HIGH
EPSS
3.8%
2024 CWE-22 1 PoC

A vulnerability, which was classified as critical, has been found in eNMS up to 4.2. Affected by this issue is the function multiselect_filtering of the file eNMS/controller.py of the component TGZ File Handler. The manipulation leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The patch is identified as 22b0b443acca740fc83b5544165c1f53eff3f529. It is recommended to apply a patch to fix this issue.

CVE-2024-12245
LogicalDOC Community Database
8.7
HIGH
EPSS
0.1%
2024 CWE-89 1 PoC

Logout functionality contains a blind SQL injection that can be exploited by unauthenticated attackers. Using a time-based blind SQLi technique the attacker can disclose all database contents. Account takeover is a potential outcome depending on the presence or lack thereof entries in certain database tables.

CVE-2024-58310
Network Management Card 4 Web
8.7
HIGH
EPSS
0.2%
2024 CWE-22 1 PoC

APC Network Management Card 4 contains a path traversal vulnerability that allows unauthenticated attackers to access sensitive system files by manipulating URL parameters. Attackers can exploit directory traversal techniques to read critical system files like /etc/passwd by using encoded path traversal characters in HTTP requests.

CVE-2024-58288
Genexus Protection Server Windows
8.7
HIGH
EPSS
0.1%
2024 CWE-428 1 PoC

Genexus Protection Server 9.7.2.10 contains an unquoted service path vulnerability in the protsrvservice Windows service configuration. Attackers can exploit the unquoted binary path to execute arbitrary code with elevated LocalSystem privileges by placing malicious executables in specific file system locations.

CVE-2024-58316
online-shopping-system-advanced Web Database
8.7
HIGH
EPSS
0.1%
2024 CWE-89 1 PoC

Online Shopping System Advanced 1.0 contains a SQL injection vulnerability in the payment_success.php script that allows attackers to inject malicious SQL through the unfiltered 'cm' parameter. Attackers can exploit the vulnerability by sending crafted SQL queries to retrieve sensitive database information by manipulating the user ID parameter.

CVE-2024-43683
TimeProvider 4100 Web
8.7
HIGH
EPSS
0.2%
2024 CWE-601 1 PoC

URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Microchip TimeProvider 4100 allows XSS Through HTTP Headers.This issue affects TimeProvider 4100: from 1.0.

CVE-2024-8004
ENOVIA Collaborative Industry Innovator Web
8.7
HIGH
EPSS
0.9%
2024 CWE-79 1 PoC

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.

CVE-2024-58312
xbtitFM Web
8.7
HIGH
EPSS
3.3%
2024 CWE-22 1 PoC

xbtitFM 4.1.18 contains a path traversal vulnerability that allows unauthenticated attackers to access sensitive system files by manipulating URL parameters. Attackers can exploit directory traversal techniques to read critical system files like using encoded path traversal characters in HTTP requests.

CVE-2024-58283
WBCE CMS Web
8.7
HIGH
EPSS
0.4%
2024 CWE-434 1 PoC

WBCE CMS version 1.6.2 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the Elfinder file manager. Attackers can exploit the file upload functionality in the elfinder connector to upload a web shell and execute arbitrary system commands through a user-controlled parameter.

CVE-2024-5421
utnserver Pro General ⚡ nuclei
8.7
HIGH
EPSS
23.8%
2024 CWE-78 2 PoCs

Missing input validation and OS command integration of the input in the utnserver Pro, utnserver ProMAX, INU-100 web-interface allows authenticated command injection.This issue affects utnserver Pro, utnserver ProMAX, INU-100 version 20.1.22 and below.

CVE-2024-12091
ENOVIA Collaborative Industry Innovator Web
8.7
HIGH
EPSS
1.5%
2024 CWE-79 1 PoC

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session.